Click here to download all references as Bib-File.•
2021-10-07
⋅
Virus Bulletin
⋅
Operation Bookcodes – targeting South Korea BookCodes RAT LPEClient |
2021-10-07
⋅
VB Localhost
⋅
Back to Black(Tech): an analysis of recent BlackTech operations and an open directory full of exploits Flagpro |
2021-10-07
⋅
Microsoft
⋅
Russian cyberattacks pose greater risk to governments and other insights from our annual report |
2021-10-07
⋅
Twitter (@billyleonard)
⋅
Tweet on IOCs related to APT28 |
2021-10-07
⋅
Amnesty International
⋅
Hackers-for-Hire in West Africa - Activist in Togo attacked with Indian-made Spyware yty |
2021-10-07
⋅
S2W Inc.
⋅
Operation Newton: Hi Kimsuky? Did an Apple(seed) really fall on Newton’s head? Appleseed Kimsuky |
2021-10-07
⋅
The Record
⋅
Netherlands can use intelligence or armed forces to respond to ransomware attacks |
2021-10-07
⋅
The Record
⋅
Google notifies 14,000 Gmail users of targeted APT28 attacks |
2021-10-07
⋅
Netskope
⋅
SquirrelWaffle: New Malware Loader Delivering Cobalt Strike and QakBot Cobalt Strike QakBot Squirrelwaffle |
2021-10-07
⋅
Blackberry
⋅
Threat Thursday: BluStealer Infostealer BluStealer |
2021-10-07
⋅
Mandiant
⋅
FIN12: The Prolific Ransomware Intrusion Threat Actor That Has Aggressively Pursued Healthcare Targets BazarBackdoor GRIMAGENT Ryuk |
2021-10-06
⋅
Cybereason
⋅
Operation GhostShell: Novel RAT Targets Global Aerospace and Telecoms Firms ShellClient RAT |
2021-10-05
⋅
ESET Research
⋅
UEFI threats moving to the ESP: Introducing ESPecter bootkit ESPecter |
2021-10-05
⋅
Trend Micro
⋅
Ransomware as a Service: Enabler of Widespread Attacks Cerber Conti DarkSide Gandcrab Locky Nefilim REvil Ryuk |
2021-10-05
⋅
Seguranca Informatica
⋅
Malware analysis: Details on LockBit ransomware LockBit |
2021-10-05
⋅
Sophos
⋅
Python ransomware script targets ESXi server for encryption |
2021-10-05
⋅
EXPMON
⋅
Regarding the Threats Posed by Encrypted Office Files |
2021-10-04
⋅
Github (OALabs)
⋅
Reverse engineered the Hancitor DLL and built a static config extractor Hancitor |
2021-10-04
⋅
Cisco
⋅
Threat hunting in large datasets by clustering security events BazarBackdoor TrickBot |
2021-10-04
⋅
Sophos
⋅
Atom Silo ransomware actors use Confluence exploit, DLL side-load for stealthy attack ATOMSILO Cobalt Strike |