Click here to download all references as Bib-File.•
| 2021-02-23
⋅
Twitter
⋅
Disclosing networks of state-linked information operations |
| 2021-02-16
⋅
Twitter (@craiu)
⋅
Twitter thread on Exaramel Linux backdoor used by Russian Group Sandworm Exaramel |
| 2021-02-15
⋅
Twitter (@TheDFIRReport)
⋅
Tweet on Qakbot post infection discovery activity QakBot |
| 2021-02-12
⋅
Twitter (@ESETresearch)
⋅
A twitter thread on discussing updated attack chain of EVILNUM group and their use PYVIL malware PyVil |
| 2021-02-11
⋅
Twitter (@malwrhunterteam)
⋅
Tweet on one of the first Fedex-themed lures for FluBot FluBot |
| 2021-02-11
⋅
Twitter (@TheDFIRReport)
⋅
Tweet on Hancitor Activity followed by cobaltsrike beacon Cobalt Strike Hancitor |
| 2021-02-09
⋅
Twitter (@fwosar)
⋅
Tweet on CD PROJEKT RED targeted by HelloKitty ransomware group HelloKitty |
| 2021-02-05
⋅
Twitter (@8th_grey_owl)
⋅
Tweet on CALMTHORN, used by Tonto Team CALMTHORN |
| 2021-02-03
⋅
Twitter (@James_inthe_box)
⋅
Tiwtter thread on Nim rewrite of Bazarloader BazarNimrod |
| 2021-02-02
⋅
Twitter (@TheDFIRReport)
⋅
Tweet on recent dridex post infection activity Cobalt Strike Dridex |
| 2021-02-01
⋅
Twitter (@IntelAdvanced)
⋅
Tweet on Active Directory Exploitation by RYUK "one" group Ryuk |
| 2021-01-31
⋅
Twitter (@NCCGroupInfosec)
⋅
Tweet on ITW exploitation of 0-day in SonicWall SMA 100 series |
| 2021-01-29
⋅
Twitter (@VK_intel)
⋅
Tweet on analysis of Vovalex ransomware written in DLang Vovalex |
| 2021-01-29
⋅
Twitter (@Kangxiaopao)
⋅
Tweet on WormLocker WormLocker |
| 2021-01-28
⋅
Twitter (@struppigel)
⋅
Tweet on Sn0wsLogger malware Sn0wsLogger |
| 2021-01-27
⋅
Twitter (@milkr3am)
⋅
Tweet on all Emotet epoch pushing payload to self remove emotet malware on 2021-04-25 Emotet |
| 2021-01-26
⋅
Twitter (@swisscom_csirt)
⋅
Tweet on Cring Ransomware groups using customized Mimikatz sample followed by CobaltStrike and dropping Cring rasomware Cobalt Strike Cring MimiKatz |
| 2021-01-26
⋅
Twitter (@RedDrip7)
⋅
Tweet on DPRK malware used to target security researchers |
| 2021-01-25
⋅
Twitter (@IntelAdvanced)
⋅
Tweet on Ryuk Ransomware group's post exploitation tactics including usage of Keethief tool Ryuk |
| 2021-01-22
⋅
Twitter (@bryceabdo)
⋅
Tweet on GRIMAGENT malware used by UNC1878 during some #RYUK intrusions in 2020 GRIMAGENT |