Click here to download all references as Bib-File.

Enter keywords to filter the library entries below or Propose new Entry
2022-04-06Github (infinitumlabs)Arda Büyükkaya
Karakurt Hacking Team Indicators of Compromise (IOC)
Cobalt Strike
2022-04-06Medium mars0xMars
WannaHusky Malware Analysis w/ YARA + TTPs
WannaHusky
2022-04-06ESET ResearchLukáš Štefanko
Fake e‑shops on the prowl for banking credentials using Android malware
Unidentified APK 008
2022-04-06Bleeping ComputerSergiu Gatlan
US disrupts Russian Cyclops Blink botnet before being used in attacks
CyclopsBlink
2022-04-05SymantecThreat Hunter Team
Cicada: Chinese APT Group Widens Targeting in Recent Espionage Activity
MimiKatz APT10
2022-04-05NetbyteSECFareed, Rosamira, Taqi
RTF template injection sample targeting Malaysia
2022-04-05Trend MicroAbdelrhman Sharshar, Earle Earnshaw, Ian Kenefick, Lucas Silva, Mohamed Fahmy, Ryan Maglaque
Thwarting Loaders: From SocGholish to BLISTER’s LockBit Payload
Blister LockBit
2022-04-05Malwarebytes LabsAnkur Saini, Hossein Jazi, Jérôme Segura
Colibri Loader combines Task Scheduler and PowerShell in clever persistence technique
Colibri Loader Mars Stealer
2022-04-05eSentireeSentire Threat Response Unit (TRU)
eSentire Threat Intelligence Malware Analysis: HeaderTip
HeaderTip
2022-04-05eSentireeSentire Threat Response Unit (TRU)
eSentire Threat Intelligence Malware Analysis: DoubleZero
DoubleZero
2022-04-05Trend MicroAbdelrhman Sharshar, Earle Maui Earnshaw, Ian Kenefick, Lucas Silva, Mohamed Fahmy, Ryan Maglaque
Thwarting Loaders: From SocGholish to BLISTER’s LockBit Payload
FAKEUPDATES Blister LockBit
2022-04-05Trend MicroAbdelrhman Sharshar, Earle Maui Earnshaw, Ian Kenefick, Lucas Silva, Mohamed Fahmy, Ryan Maglaque
Thwarting Loaders: From SocGholish to BLISTER’s LockBit Payload (IoCs)
FAKEUPDATES Blister LockBit
2022-04-05US Department of JusticeDepartment of Justice
Justice Department Investigation Leads to Shutdown of Largest Online Darknet Marketplace
2022-04-05US Department of JusticeDepartment of Justice
Indictment of Dmitry Olegovich Pavlov in connection with his operation and administration of the servers used to run Hydra
2022-04-05Medium jsecurity101Jonathan Johnson
Bypassing Access Mask Auditing Strategies
2022-04-05AhnLabASEC Analysis Team
Malicious Word Documents Using MS Media Player (Impersonating AhnLab)
2022-04-05BundeskriminalamtBKA (Bundeskriminalamt)
Illegal darknet marketplace "Hydra Market" shut down
2022-04-05cybleCyble
A New Info Stealer Targeting Over 30 Browsers
Lightning Stealer
2022-04-05ExpelBrian Bahtiarian, Britton Manahan, David Blanton, Kyle Pellett
Incident report: From CLI to console, chasing an attacker in AWS
2022-04-05Cert-UACert-UA
Information on cyberattacks aimed at gaining access to Telegram accounts (CERT-UA#4360)
UAC-0094