Click here to download all references as Bib-File.•
2021-03-02
⋅
Rapid7 Labs
⋅
Rapid7’s InsightIDR Enables Detection And Response to Microsoft Exchange Zero-Day CHINACHOPPER HAFNIUM |
2021-03-02
⋅
Volexity
⋅
Operation Exchange Marauder: Active Exploitation of Multiple Zero-Day Microsoft Exchange Vulnerabilities CHINACHOPPER HAFNIUM |
2021-03-02
⋅
Microsoft
⋅
HAFNIUM targeting Exchange Servers with 0-day exploits CHINACHOPPER HAFNIUM |
2021-03-02
⋅
Github (microsoft)
⋅
Microsoft-365-Defender-Hunting-Queries for hunting Gootkit malware delivery and C2 GootKit |
2021-03-02
⋅
Twitter (@MsftSecIntel)
⋅
Tweet on Gootkit malware campaign GootKit |
2021-03-02
⋅
Microsoft
⋅
HAFNIUM targeting Exchange Servers with 0-day exploits PowerCat |
2021-03-01
⋅
Microsoft
⋅
Detect and defend against the recent nation-state cyber attack SUNBURST |
2021-02-25
⋅
Microsoft
⋅
CodeQL queries to hunt for Solorigate activity SUNBURST |
2021-02-25
⋅
Microsoft
⋅
Microsoft open sources CodeQL queries used to hunt for Solorigate activity SUNBURST |
2021-02-18
⋅
Microsoft
⋅
Microsoft Internal Solorigate Investigation – Final Update |
2021-02-12
⋅
InfoSec Handlers Diary Blog
⋅
AgentTesla Dropped Through Automatic Click in Microsoft Help File Agent Tesla |
2021-02-11
⋅
Microsoft
⋅
Web shell attacks continue to rise |
2021-02-09
⋅
Medium (@alex.birsan)
⋅
Dependency Confusion: How I Hacked Into Apple, Microsoft and Dozens of Other Companies |
2021-02-09
⋅
Microsoft
⋅
3 Ways to Mitigate Risk When Using Private Package Feeds |
2021-02-09
⋅
Microsoft
⋅
Windows Win32k Elevation of Privilege Vulnerability CVE-2021-1732 (exploited ITW) |
2021-02-09
⋅
Microsoft
⋅
Multiple Security Updates Affecting TCP/IP: CVE-2021-24074, CVE-2021-24094, and CVE-2021-24086 |
2021-02-05
⋅
Bleeping Computer
⋅
Microsoft warns of increasing OAuth Office 365 phishing attacks |
2021-02-02
⋅
Click All the Things! Blog
⋅
XLSB: Analyzing a Microsoft Excel Binary Spreadsheet |
2021-02-01
⋅
Microsoft
⋅
What tracking an attacker email infrastructure tells us about persistent cybercriminal operations Dridex Emotet Makop Ransomware SmokeLoader TrickBot |
2021-01-28
⋅
YouTube (Microsoft Security Community)
⋅
Microsoft 365 Defender webinar: Protect, Detect, and Respond to Solorigate using M365 Defender SUNBURST |