Click here to download all references as Bib-File.•
| 2020-10-29
⋅
Twitter (@SophosLabs)
⋅
Tweet on similarities between BUER in-memory loader & RYUK in-memory loader Buer Ryuk |
| 2020-10-28
⋅
SophosLabs Uncut
⋅
Hacks for sale: inside the Buer Loader malware-as-a-service Buer Ryuk Zloader |
| 2020-10-21
⋅
SophosLabs Uncut
⋅
LockBit uses automated attack tools to identify tasty targets LockBit |
| 2020-09-24
⋅
SophosLabs
⋅
Email-delivered MoDi RAT attack pastes PowerShell commands MoDi RAT |
| 2020-09-24
⋅
SophosLabs Uncut
⋅
Email-delivered MoDi RAT attack pastes PowerShell commands DBatLoader |
| 2020-09-17
⋅
SophosLabs Uncut
⋅
Maze attackers adopt Ragnar Locker virtual machine technique Maze |
| 2020-08-12
⋅
SophosLabs Uncut
⋅
Color by numbers: inside a Dharma ransomware-as-a-service attack Dharma |
| 2020-08-04
⋅
SophosLabs Uncut
⋅
WastedLocker’s techniques point to a familiar heritage WastedLocker |
| 2020-07-14
⋅
SophosLabs Uncut
⋅
RATicate upgrades “RATs as a Service” attacks with commercial “crypter” LokiBot BetaBot CloudEyE NetWire RC |
| 2020-05-27
⋅
SophosLabs
⋅
Netwalker ransomware tools give insight into threat actor Mailto |
| 2020-05-21
⋅
Sophos
⋅
Asnarök attackers twice modified attack midstream NOTROBIN Ragnarok |
| 2020-05-21
⋅
Sophos
⋅
Ragnar Locker ransomware deploys virtual machine to dodge security RagnarLocker |
| 2020-05-14
⋅
SophosLabs
⋅
RATicate: an attacker’s waves of information-stealing malware Agent Tesla BetaBot BlackRemote Formbook Loki Password Stealer (PWS) NetWire RC NjRAT Remcos |
| 2020-05-12
⋅
SophosLabs Uncut
⋅
Maze ransomware: extorting victims for 1 year and counting Maze |
| 2020-03-05
⋅
SophosLabs
⋅
Cloud Snooper Attack Bypasses AWS Security Measures Cloud Snooper Ghost RAT |
| 2019-12-24
⋅
Sophos
⋅
Gozi V3: tracked by their own stealth ISFB |
| 2019-12-09
⋅
SophosLabs Uncut
⋅
Snatch ransomware reboots PCs into Safe Mode to bypass protection Snatch |
| 2019-09-18
⋅
SophosLabs Uncut
⋅
The WannaCry hangover WannaCryptor |
| 2019-09-17
⋅
SophosLabs
⋅
WannaCry Aftershock WannaCryptor |
| 2019-08-05
⋅
SophosLabs
⋅
Baldr vs The World: A credential thief's burst of creative energy delivers a dangerous new threat Baldr |