Click here to download all references as Bib-File.

Enter keywords to filter the library entries below or Propose new Entry
2020-11-19Twitter (@VK_intel)Vitali Kremez
Tweet on Trickbot Group pushing LIGHTBOT powershell script to gather information about AD Server
LightBot
2020-11-17Twitter (@VK_intel)Vitali Kremez
Tweet on a new fileless TrickBot loading method using code from MemoryModule
TrickBot
2020-11-12Twitter (@ddash_ct)ddash
Tweet on Lootwodniw
Lootwodniw
2020-11-12Twitter (@IntezerLabs)Intezer
Tweet on Agelocker
AgeLocker
2020-11-06Twitter (@3xp0rtblog)3xp0rt
Tweet on Hunter Stealer
Hunter Stealer
2020-11-05Twitter (@ffforward)TheAnalyst
Tweet on Zloader infection leads to Cobaltstrike Installation and deployment of RYUK
Cobalt Strike Ryuk Zloader
2020-11-05IntezerTwitter (IntezerLabs)
Tweet on Ngioweb botnet
Ngioweb
2020-10-29Twitter (@anthomsec)Andrew Thompson
Tweet on UNC1878 activity
BazarBackdoor Ryuk TrickBot UNC1878
2020-10-29Twitter (@SophosLabs)SophosLabs
Tweet on similarities between BUER in-memory loader & RYUK in-memory loader
Buer Ryuk
2020-10-28Twitter (@BitsOfBinary)John
Tweet on macOS version of Manuscrypt
Manuscrypt
2020-10-27Twitter (@3xp0rtblog)3xp0rt
Tweet on Ficker Stealer
Ficker Stealer
2020-10-06Twitter (@MsftSecIntel)Microsoft Security Intelligence
Tweet on TA505 threat actor exploiting Zerologon (CVE-2020-1472) Vulnerability
2020-10-02Twitter (@craiu)Costin Raiu
Tweet about IAmTheKing / PowerPool actor naming
PowerPool
2020-09-23Twitter (@demonslay335)Michael Gillespie
Tweet on Ironcat (Sodinokibi imposter)
Ironcat
2020-09-22Twitter (@Nocturnus)Cybereason Nocturnus
Tweet on Outlaw Group using IRCBot, SSH bruteforce tool, port Scanner, and an XMRIG crypto miner for their hacking operation
PerlBot
2020-09-13Twitter (@bartblaze)BartBlaze
Tweet on Cryakl 2.0.0.0
Cryakl
2020-09-11Twitter (@Arkbird_SOLG)Arkbird
Tweet on discovery of a sample
Turla SilentMoon
2020-09-06Twitter (@3xp0rtblog)3xp0rt
Tweet and description of NixScare Stealer
NixScare Stealer
2020-09-03Twitter (@Arkbird_SOLG)Arkbird
Tweet on development in more_eggs
More_eggs
2020-09-01Twitter (@Vishnyak0v)Alexey Vishnyakov
Tweet on sample discovery
Unidentified 078 (Zebrocy Nim Loader?)