Click here to download all references as Bib-File.

Enter keywords to filter the library entries below or Propose new Entry
2022-05-08Twitter (@malmoeb)Stephan Berger
Twitter Thread on popularity and detection of r77
r77
2022-05-08Threat hunting with hints of incident responseJouni Mikkola
Bzz.. Bzz.. Bumblebee loader
BumbleBee
2022-05-08Twitter (@CraigHRowland)Craig Rowland
Twitter Thread with description of functionality for BPFDoor
BPFDoor
2022-05-08QualysAmit Gadhave
Ursnif Malware Banks on News Events for Phishing Attacks
ISFB
2022-05-08Twitter (@cyb3rops)Florian Roth
Tweet on source code for BPFDoor found on VT
BPFDoor
2022-05-08IronNetBrent Eskridge, Joey Fitzpatrick, Michael Leardi
Tracking Cobalt Strike Servers Used in Cyberattacks on Ukraine
Cobalt Strike
2022-05-07YouTube (botconf eu)Daniel Lunghi, Jaromír Hořejší
Operation Gamblingpuppet: Analysis Of A Multiplatform Campaign Targeting Online Gambling Customers
Earth Berberoka
2022-05-07Cert-UACert-UA
Mass distribution of JesterStealer malware using chemical attack themes (CERT-UA#4625)
2022-05-07YouTube (botconf eu)Dominika Regéciová
Yara: Down The Rabbit Hole Without Slowing Down
2022-05-07DoublePulsarKevin Beaumont
BPFDoor — an active Chinese global surveillance tool
BPFDoor
2022-05-06Github (foxkera)foxkera
Github Repository for Mineping
Mineping
2022-05-06EllipticElliptic
OFAC Sanctions Virtual Asset Mixer For the First Time to Combat North Korea’s Lazarus Group
2022-05-06CrowdStrikePaul-Danut Urian
macOS Malware Is More Reality Than Myth: Popular Threats and Challenges in Analysis
Lador
2022-05-06cybleCyble Research Labs
Rebranded Babuk Ransomware In Action: DarkAngels Ransomware Performs Targeted Attack
Babuk
2022-05-06Mitchell's MusingsAiden Mitchell
Attempted AsyncRAT via .vbs
AsyncRAT
2022-05-06CrowdStrikePaul-Danut Urian
macOS Malware Is More Reality Than Myth: Popular Threats and Challenges in Analysis
EvilQuest FlashBack Shlayer XCSSET
2022-05-06NetskopeGustavo Palazolo
Emotet: New Delivery Mechanism to Bypass VBA Protection
Emotet
2022-05-06Twitter (@MsftSecIntel)Microsoft Security Intelligence
Twitter Thread on initial infeciton of SocGholish/ FAKEUPDATES campaigns lead to BLISTER Loader, CobaltStrike, Lockbit and followed by Hands On Keyboard activity
FAKEUPDATES Blister Cobalt Strike LockBit
2022-05-06Palo Alto Networks Unit 42Chris Navarrete, Durgesh Sangvikar, Siddhart Shibiraj, Yanhui Jia, Yu Fu
Cobalt Strike Analysis and Tutorial: CS Metadata Encoding and Decoding
Cobalt Strike
2022-05-06KasperskyIgor Golovin
Mobile subscription Trojans and their little tricks