Click here to download all references as Bib-File.

Enter keywords to filter the library entries below or Propose new Entry
2020-06-08SentinelOnePhil Stokes
A Guide to macOS Threat Hunting and Incident Response
2020-06-02Pwntario BlogAnton
Hunting Malicious Macros
2020-05-26Youtube (GRIMM Cyber)Konstantin Klinger
Passive DNS for Threat Detection & Hunting (Discussing some infrastructure related to APT32)
METALJACK
2020-05-25ElasticBrent Murphy, David French, Jamie Butler
The Elastic Guide to Threat Hunting
2020-05-15SentinelOnePhil Stokes
A Guide to macOS Threat Hunting and Incident Response
2020-04-15Twitter (MalwareHunterTeam)MalwareHunterTeam
Tweet on SpyMax sample
SpyMax
2020-04-14IntrinsecJean Bichet
Deobfuscating and hunting for OSTAP, Trickbot’s dropper and best friend
ostap TrickBot
2020-04-13Twitter (MalwareHunterTeam)MalwareHunterTeam
Tweet on XploitSPY
XploitSPY
2020-02-11Twitter (@malwrhunterteam)MalwareHunterTeam
Tweet on Parallax RAT
Parallax RAT
2020-01-27Palo Alto Networks Unit 42Brittany Barbehenn, Robert Falcone
xHunt Campaign: New Watering Hole Identified for Credential Harvesting
2020-01-24ReversingLabsRobert Simmons
Hunting for Ransomware
Ryuk
2020-01-09Twitter (@malwrhunterteam)malwrhunterteam
Tweet on BitPyLock
BitPyLock
2020-01-04Medium d-hunterDoron Karmi
A Look Into Konni 2019 Campaign
Konni
2020-01-01SecureworksSecureWorks
IRON HUNTER
Agent.BTZ Cobra Carbon System LightNeuron Mosquito Nautilus Neuron Skipper Uroburos Turla
2020-01-01SecureworksSecureWorks
BRONZE HUNTLEY
Korlia
2019-12-12Twitter (@malwrhunterteam)malwrhunterteam
Tweet on DMR Ransomware
HDMR
2019-12-04Palo Alto Networks Unit 42Robert Falcone
xHunt Campaign: xHunt Actor’s Cheat Sheet
2019-11-14Youtube (mitrecorp)Karl Scheuerman, Piotr Wojtyla
MITRE ATT&CKcon 2.0: How a Threat Hunting Team Has Upgraded Its Use of ATT&CK
Kimsuky
2019-10-24CybereasonAssaf Dahan, Cybereason Nocturnus, Lior Rochberger
Hunting Raccoon: The new Masked Bandit on the Block
Raccoon
2019-10-15FireEyeTobias Krueger
LOWKEY: Hunting for the Missing Volume Serial ID
LOWKEY POISONPLUG