Click here to download all references as Bib-File.•
| 2024-05-22
⋅
Mandiant
⋅
IOC Extinction? China-Nexus Cyber Espionage Actors Use ORB Networks to Raise Cost on Defenders |
| 2024-05-08
⋅
Mandiant
⋅
M-Trends 2024 Special Report: Chinese Espionage Operations Targeting The Visibility Gap BOLDMOVE WHIRLPOOL |
| 2024-05-01
⋅
Mandiant
⋅
Uncharmed: Untangling Iran's APT42 Operations TAMECAT |
| 2024-04-25
⋅
Mandiant
⋅
Poll Vaulting: Cyber Threats to Global Elections Callisto |
| 2024-04-22
⋅
Mandiant
⋅
M-Trends 2024 Special Report UNC4393 |
| 2024-04-19
⋅
YouTube (Decipher)
⋅
A Decade of Sandworm: Digging into APT44’s Past and Future With Mandiant |
| 2024-04-17
⋅
Mandiant
⋅
Unearthing APT44: Russia’s Notorious Cyber Sabotage Unit Sandworm Sandworm |
| 2024-04-16
⋅
Mandiant
⋅
APT44: Unearthing Sandworm VPNFilter BlackEnergy CaddyWiper EternalPetya HermeticWiper Industroyer INDUSTROYER2 Olympic Destroyer PartyTicket RoarBAT Sandworm |
| 2024-04-04
⋅
Mandiant
⋅
Cutting Edge, Part 4: Ivanti Connect Secure VPN Post-Exploitation Lateral Movement Case Studies UNC3569 UNC5266 UNC5291 UNC5330 UNC5337 UTA0178 |
| 2024-04-04
⋅
Mandiant
⋅
Cutting Edge, Part 4: Ivanti Connect Secure VPN Post-Exploitation Lateral Movement Case Studies TONERJAM |
| 2024-03-22
⋅
Mandiant
⋅
APT29 Uses WINELOADER to Target German Political Parties WINELOADER |
| 2024-03-21
⋅
Mandiant
⋅
Bringing Access Back — Initial Access Brokers Exploit F5 BIG-IP (CVE-2023-46747) and ScreenConnect GOREVERSE SNOWLIGHT |
| 2024-02-27
⋅
Mandiant
⋅
Cutting Edge, Part 3: Investigating Ivanti Connect Secure VPN Exploitation and Persistence Attempts BUSHWALK Kubo Injector PITFUEL PITHOOK PITSOCK |
| 2024-02-27
⋅
Mandiant
⋅
When Cats Fly: Suspected Iranian Threat Actor UNC1549 Targets Israeli and Middle East Aerospace and Defense Sectors LIGHTRAIL MINIBIKE MINIBUS UNC1549 |
| 2024-01-30
⋅
Mandiant
⋅
Evolution of UNC4990: Uncovering USB Malware's Hidden Depths QUIETBOARD Vetta Loader UNC4990 |
| 2024-01-19
⋅
Mandiant
⋅
Chinese Espionage Group UNC3886 Found Exploiting CVE-2023-34048 Since Late 2021 |
| 2024-01-12
⋅
Mandiant
⋅
Cutting Edge: Suspected APT Targets Ivanti Connect Secure VPN in New Zero-Day Exploitation UTA0178 |
| 2023-12-14
⋅
Mandiant
⋅
Opening a Can of Whoop Ads: Detecting and Disrupting a Malvertising Campaign Distributing Backdoors DanaBot DarkGate UNC4393 |
| 2023-12-14
⋅
Mandiant
⋅
Opening a Can of Whoop Ads: Detecting and Disrupting a Malvertising Campaign Distributing Backdoors DanaBot DarkGate |
| 2023-11-09
⋅
Mandiant
⋅
Sandworm Disrupts Power in Ukraine Using a Novel Attack Against Operational Technology CaddyWiper |