Click here to download all references as Bib-File.•

Enter keywords to filter the library entries below or Propose new Entry
2023-03-09 ⋅ eSentire ⋅ eSentire Threat Response Unit (TRU)
BatLoader Continues to Abuse Google Search Ads to Deliver Vidar Stealer and Ursnif
BATLOADER ISFB Vidar
2023-01-26 ⋅ NCSC UK ⋅ NCSC UK
SEABORGIUM and TA453 continue their respective spear-phishing campaigns against targets of interest
2022-12-22 ⋅ Recorded Future ⋅ Insikt Group
RedDelta Targets European Government Organizations and Continues to Iterate Custom PlugX Variant
DOPLUGS RedDelta
2022-12-08 ⋅ Team Cymru ⋅ S2 Research Team
Iranian Exploitation Activities Continue as of November 2022
2022-09-22 ⋅ Broadcom ⋅ Symantec Threat Hunter Team
Noberus Ransomware: Darkside and BlackMatter Successor Continues to Evolve its Tactics
BlackCat BlackMatter DarkSide
2022-09-20 ⋅ Recorded Future ⋅ Insikt Group®
Threat Actors Continue to Abuse Google Tag Manager for Payment Card e-Skimming
2022-08-29 ⋅ ⋅ 360 netlab ⋅ wanghao
PureCrypter Loader continues to be active and has spread to more than 10 other families
404 Keylogger Agent Tesla AsyncRAT Formbook RedLine Stealer
2022-08-18 ⋅ Mandiant ⋅ Douglas Bienstock
You Can’t Audit Me: APT29 Continues Targeting Microsoft 365
2022-08-08 ⋅ Fortinet ⋅ James Slaughter
Life After Death - SmokeLoader Continues to Haunt Using Old Vulnerabilities
SmokeLoader zgRAT
2022-08-05 ⋅ ⋅ 360 netlab ⋅ Daji, suqitian
The DGA family Orchard continues to change, and the new version generates DGA domain names using Bitcoin transaction information
Orchard
2022-07-31 ⋅ DataBreaches.net ⋅ Dissent
Thai entities continue to fall prey to cyberattacks and leaks
Desorden Group
2022-07-22 ⋅ Sekoia ⋅ Threat & Detection Research Team
CALISTO continues its credential harvesting campaign
Callisto
2022-07-19 ⋅ Google ⋅ Billy Leonard
Continued cyber activity in Eastern Europe observed by TAG
CyberAzov APT28 Callisto Ghostwriter Sandworm Turla
2022-07-19 ⋅ Google ⋅ Billy Leonard
Continued cyber activity in Eastern Europe observed by TAG
CyberAzov
2022-07-13 ⋅ Malwarebytes Labs ⋅ Hossein Jazi, Roberto Santos
Cobalt Strikes again: UAC-0056 continues to target Ukraine in its latest campaign
Cobalt Strike
2022-07-05 ⋅ SECUINFRA ⋅ SECUINFRA Falcon Team
Whatever floats your Boat – Bitter APT continues to target Bangladesh
AlmondRAT Artra Downloader Bitter RAT ZxxZ
2022-06-01 ⋅ Deep instinct ⋅ Simon Kenin
Iranian Threat Actor Continues to Develop Mass Exploitation Tools
CobaltMirage FRP
2022-05-20 ⋅ VinCSS ⋅ Dang Dinh Phuong, m4n0w4r, Tran Trung Kien
[RE027] China-based APT Mustang Panda might have still continued their attack activities against organizations in Vietnam
PlugX
2022-05-20 ⋅ AdvIntel ⋅ Marley Smith, Vitali Kremez, Yelisey Boguslavskiy
DisCONTInued: The End of Conti’s Brand Marks New Chapter For Cybercrime Landscape
AvosLocker Black Basta BlackByte BlackCat Conti HelloKitty Hive
2022-04-29 ⋅ AttackIQ ⋅ Francis Guibernau, Jackson Wells
Attack Graph Response to UNC1151 Continued Targeting of Ukraine
MicroBackdoor