Click here to download all references as Bib-File.•
| 2025-04-25
⋅
Twitter (@teamcymru_S2)
⋅
Tweet on North Korean Cyber Ops Leveraging Russian Infrastructure |
| 2025-04-23
⋅
Cisco Talos
⋅
Introducing ToyMaker, an initial access broker working in cahoots with double extortion gangs HOLERUN |
| 2025-04-10
⋅
Symantec
⋅
Shuckworm Targets Foreign Military Mission Based in Ukraine |
| 2025-04-08
⋅
Team Cymru
⋅
Inside DanaBot’s Infrastructure: In Support of Operation Endgame II DanaBot |
| 2025-04-08
⋅
Trustwave
⋅
A deep Dive into the Leaked Black Basta Chat Logs Black Basta Black Basta |
| 2025-02-21
⋅
cyjax
⋅
How’s that for a malicious Linkc, new group launches DLS LinkC Pub |
| 2025-02-20
⋅
Trend Micro
⋅
Updated Shadowpad Malware Leads to Ransomware Deployment EvilExtractor PlugX ShadowPad Teleboyi |
| 2025-02-20
⋅
Trend Micro
⋅
Updated Shadowpad Malware Leads to Ransomware Deployment EvilExtractor NailaoLocker PlugX ShadowPad |
| 2025-02-13
⋅
Symantec
⋅
China-linked Espionage Tools Used in Ransomware Attacks PlugX |
| 2025-02-04
⋅
Team Cymru
⋅
Tracing the Path From SmartApeSG to NetSupport RAT SmartApeSG NetSupportManager RAT Quasar RAT |
| 2024-12-20
⋅
Team Cymru
⋅
Jingle Shells: How Virtual Offices Enable a Facade of Legitimacy |
| 2024-12-16
⋅
Gdata
⋅
New I2PRAT communicates via anonymous peer-to-peer network Unidentified 118 |
| 2024-11-11
⋅
Kaspersky
⋅
Ymir: new stealthy ransomware in the wild Ymir |
| 2024-10-14
⋅
cyble
⋅
Hidden in Plain Sight: ErrorFather’s Deadly Deployment of Cerberus ErrorFather |
| 2024-09-27
⋅
Virus Bulletin
⋅
CrackedCantil: A Malware Symphony Delivered By Cracked Software; Performed By Loaders, Infostealers, Ransomware, Et Al. CrackedCantil |
| 2024-09-17
⋅
Mandiant
⋅
An Offer You Can Refuse: UNC2970 Backdoor Deployment Using Trojanized PDF Reader BURNBOOK MISTPEN |
| 2024-09-09
⋅
Github (itaymigdal)
⋅
Poshito - New Telegram C2 |
| 2024-09-09
⋅
SC Magazine
⋅
Significant ransom payment by major Iranian IT firm underway IRLeaks |
| 2024-08-20
⋅
Symantec
⋅
New Backdoor Targeting Taiwan Employs Stealthy Communications Msupedge |
| 2024-08-07
⋅
Symantec
⋅
Cloud Cover: How Malicious Actors Are Leveraging Cloud Services GoGra Grager MOONTAG Ondritols TONERJAM |