Click here to download all references as Bib-File.

Enter keywords to filter the library entries below or Propose new Entry
2021-11-16WiredLily Hay Newman
‘Ghostwriter’ Looks Like a Purely Russian Op - Except It's Not
2021-11-16CiscoAsheer Malhotra, Chetan Raghuprasad, Vanja Svajcer
Attackers use domain fronting technique to target Myanmar with Cobalt Strike
Cobalt Strike
2021-11-16MicrosoftMicrosoft Threat Intelligence Center (MSTIC)
Evolving trends in Iranian threat actor activity – MSTIC presentation at CyberWarCon 2021
2021-11-16vmwareTakahiro Haruyama
Monitoring Winnti 4.0 C2 Servers for Two Years
Winnti
2021-11-16MalwarebytesMalwarebytes Threat Intelligence Team
TrickBot helps Emotet come back from the dead
Emotet TrickBot
2021-11-15Trend MicroAlfredo Oliveira, David Fiser
Groups Target Alibaba ECS Instances for Cryptojacking
2021-11-15binarlyBinarly Team
Design issues of modern EDRs: bypassing ETW-based solutions
ESPecter FinFisher RAT
2021-11-15SUCURIBen Martin
Fake Ransomware Infection Spooks Website Owners
2021-11-15Bleeping ComputerLawrence Abrams
Emotet malware is back and rebuilding its botnet via TrickBot
Emotet
2021-11-15SentinelOnePhil Stokes
Infect If Needed | A Deeper Dive Into Targeted Backdoor macOS.Macma
CDDS
2021-11-15The DFIR Report0xtornado, v3t0_
Exchange Exploit Leads to Domain Wide Ransomware
2021-11-15Check Point ResearchCheck Point Research
Uncovering MosesStaff techniques: Ideology over Money
DCSrv MosesStaff
2021-11-15Recorded FutureAllan Liska
Ransomware - Understand. Prevent. Recover.
2021-11-15MalwarebytesJovi Umawing
Evasive maneuvers: HTML smuggling explained
2021-11-15TRUESECFabio Viggiani
ProxyShell, QBot, and Conti Ransomware Combined in a Series of Cyberattacks
Cobalt Strike Conti QakBot
2021-11-15cyber.wtf blogLuca Ebach
Guess who’s back
Emotet
2021-11-14Github (gabrielcurrie)Gabriel Currie
Ready for (nearly) anything: Five things to prepare for a cyber security incident
2021-11-14Twitter (@f0wlsec)Marius Genheimer
A static config extractor for the main component of DanaBot
DanaBot
2021-11-13ZAYOTEMHalil Filik, Mustafa Günel
Alien Technical Analysis Report
Alien
2021-11-13YouTube (AGDC Services)AGDC Services
Automate Qbot Malware String Decryption With Ghidra Script
QakBot