Click here to download all references as Bib-File.

Enter keywords to filter the library entries below or Propose new Entry
2021-01-25Twitter (@IntelAdvanced)Advanced Intelligence
Tweet on Ryuk Ransomware group's post exploitation tactics including usage of Keethief tool
Ryuk
2021-01-22Twitter (@bryceabdo)Bryce
Tweet on GRIMAGENT malware used by UNC1878 during some #RYUK intrusions in 2020
GRIMAGENT
2021-01-20Twitter (@malwrhunterteam)MalwareHunterTeam
Tweet on Vovalex ransomware
Vovalex
2021-01-19Twitter (@ConfiantIntel)ConfiantIntel
Tweet on WizardUpdate macOS backdoor
Vigram
2021-01-19Twitter (@jpcert_ac)JPCERT/CC
Tweet on LODEINFO ver 0.47 spotted ITW targeting Japan
LODEINFO
2021-01-18Twitter (@teamcymru)Team Cymru
Tweet on APT36 CrimsonRAT C2
Crimson RAT
2021-01-17Twitter (@AltShiftPrtScn)Peter Mackenzie
Tweet on Conti Ransomware group exploiting FortiGate VPNs to drop in CobaltStrike loaders
Cobalt Strike Conti
2021-01-11Twitter (@dk_samper)Dávid Kosť
Tweet on Initial access of Avaddon Ransomware group from an IR engagement
Avaddon
2021-01-07Twitter (@campuscodi)Catalin Cimpanu
Tweet on London's Hackney Council attacked by Pysa/Mespinoza ransomware
Mespinoza
2021-01-05Twitter (@Sebdraven)Sébastien Larinier
Tweet on link between Babuk and Vasa locker
Babuk
2021-01-04Twitter (@TheEnergyStory)Dominik Reichel
Some small detail on compiler used for TEARDROP
TEARDROP
2021-01-02Twitter (MalwareHunterTeam)MalwareHunterTeam
Tweet on Knot Ransomware
Knot
2020-12-30Twitter (@3xp0rtblog)3xp0rt
Tweet on Alfonso Stealer
Alfonso Stealer
2020-12-26Twitter (@MalwareRE)Ramin Nafisi
Tweet on active exploitation of 0day vulnerability in the SolarWinds Orion
SUPERNOVA
2020-12-24Twitter (@TheEnergyStory)Dominik Reichel
Tweet on TEARDROP sample
TEARDROP
2020-12-20Twitter (@TychoTithonus)Royce Williams
SolarWinds/SunBurst FNV-1a-XOR hashes found in analysis
SUNBURST
2020-12-19Twitter (@GossiTheDog)Kevin Beaumont
A twitter thread on Azure sentinel hunting queries for detecting UNC2452 activity
2020-12-17Twitter (@megabeets_)Itay Cohen
Tweet on SUNBURST malware discussing some of its evasion techniques
SUNBURST
2020-12-16Twitter @cybercdh)Colin Hardy
Tweet on 3 key actions SUNBURST performs as soon as it's invoked
SUNBURST
2020-12-16Twitter (@FireEye)FireEye
Tweet on SUNBURST from FireEye detailing some additional information
SUNBURST