Click here to download all references as Bib-File.

Enter keywords to filter the library entries below or Propose new Entry
2022-01-03forensicitguyTony Lambert
A Tale of Two Dropper Scripts for Agent Tesla
Agent Tesla
2022-01-02forensicitguyTony Lambert
Analyzing a Magnitude EK Appx Package Dropping Magniber
Magniber
2022-01-01forensicitguyTony Lambert
Analyzing an IcedID Loader Document
IcedID
2021-12-02Red CanaryTony Lambert
KMSPico and Cryptbot: A spicy combo
CryptBot
2021-08-05Red CanaryBrian Donohue, Dan Cotton, Tony Lambert
When Dridex and Cobalt Strike give you Grief
Cobalt Strike DoppelDridex DoppelPaymer
2021-03-09Red CanaryBrian Donohue, Katie Nickels, Tony Lambert
Microsoft Exchange server exploitation: how to detect, mitigate, and stay calm
CHINACHOPPER
2021-02-18Red CanaryTony Lambert
Clipping Silver Sparrow’s wings: Outing macOS malware before it takes flight
Silver Sparrow
2021-01-06Red CanaryTony Lambert
Hunting for GetSystem in offensive security tools
Cobalt Strike Empire Downloader Meterpreter PoshC2
2020-07-22Red CanaryTony Lambert
Connecting Kinsing malware to Citrix and SaltStack campaigns
Kinsing
2020-05-07Red CanaryTony Lambert
Introducing Blue Mockingbird
2019-05-01Red CanaryTony Lambert
FrameworkPOS and the adequate persistent threat
Grateful POS