Click here to download all references as Bib-File.•
| 2021-07-06
⋅
splunk
⋅
REvil Ransomware Threat Research Update and Detections REvil |
| 2021-07-06
⋅
YouTube ( DuMp-GuY TrIcKsTeR)
⋅
[1] Lokibot analyzing - defeating GuLoader with Windbg (Kernel debugging) and Live C2 CloudEyE Loki Password Stealer (PWS) |
| 2021-07-06
⋅
Medium walmartglobaltech
⋅
TA505 adds GoLang crypter for delivering miners and ServHelper ServHelper |
| 2021-07-06
⋅
FPRI
⋅
Understanding Russia’s Cyber Strategy |
| 2021-07-06
⋅
AT&T
⋅
Lazarus campaign TTPs and evolution |
| 2021-07-06
⋅
0ffset Blog
⋅
New TA402/MOLERATS Malware – Decrypting .NET Reactor Strings SharpStage |
| 2021-07-06
⋅
The Record
⋅
Moroccan hacker Dr HeX arrested for phishing attacks, malware distribution |
| 2021-07-06
⋅
Group-IB
⋅
Operation Lyrebird: Group-IB assists INTERPOL in identifying suspect behind numerous cybercrimes worldwide |
| 2021-07-06
⋅
Twitter (@MBThreatIntel)
⋅
Tweet on a malspam campaign that is taking advantage of Kaseya VSA ransomware attack to drop CobaltStrike Cobalt Strike |
| 2021-07-06
⋅
paloalto Networks Unit 42
⋅
Understanding REvil: The Ransomware Gang Behind the Kaseya Attack Gandcrab REvil |
| 2021-07-05
⋅
⋅
Antiy CERT
⋅
Analysis of "Bitter Elephant" organization's attack activities against my country in the first half of the year |
| 2021-07-05
⋅
Twitter (@R3MRUM)
⋅
Twitter thread with additional context on C2 domains found in REvil configuration REvil |
| 2021-07-05
⋅
splunk
⋅
Kaseya, Sera. What REvil Shall Encrypt, Shall Encrypt REvil |
| 2021-07-05
⋅
Morphisec
⋅
Real-Time Prevention of the Kaseya VSA Supply Chain REvil Ransomware Attack REvil |
| 2021-07-05
⋅
Trend Micro
⋅
Tracking Cobalt Strike: A Trend Micro Vision One Investigation Cobalt Strike |
| 2021-07-05
⋅
⋅
Antiy
⋅
Analysis of "Bitter Elephant" organization's attacks against country in the first half of the year |
| 2021-07-05
⋅
⋅
S2W LAB Inc.
⋅
Kaseya supply chain attack delivers mass ransomware REvil |
| 2021-07-05
⋅
Kaspersky
⋅
REvil ransomware attack against MSPs and its clients around the world REvil |
| 2021-07-05
⋅
Github (f0wl)
⋅
REvil Linux Configuration Extractor REvil |
| 2021-07-04
⋅
Sophos
⋅
Independence Day: REvil uses supply chain exploit to attack hundreds of businesses REvil |