Click here to download all references as Bib-File.•
| 2021-08-19
⋅
Blackberry
⋅
BlackBerry Prevents: Threat Actor Group TA575 and Dridex Malware Cobalt Strike Dridex TA575 |
| 2021-08-18
⋅
Intezer
⋅
Cobalt Strike: Detect this Persistent Threat Cobalt Strike |
| 2021-08-17
⋅
Recorded Future
⋅
Operation Secondary Infektion Continues Targeting Democratic Institutions and Regional Geopolitics |
| 2021-08-17
⋅
Medium michaelkoczwara
⋅
Cobalt Strike Hunting — DLL Hijacking/Attack Analysis Cobalt Strike |
| 2021-08-17
⋅
Sekoia
⋅
An insider insights into Conti operations – Part one Cobalt Strike Conti |
| 2021-08-17
⋅
Advanced Intelligence
⋅
Hunting for Corporate Insurance Policies: Indicators of [Ransom] Exfiltration Cobalt Strike Conti |
| 2021-08-17
⋅
Seguranca Informatica
⋅
Secrets behind the Lazarus’s VHD ransomware VHD Ransomware |
| 2021-08-17
⋅
Trend Micro
⋅
Confucius Uses Pegasus Spyware-related Lures to Target Pakistani Military Chrysaor Confucius |
| 2021-08-17
⋅
Huntress Labs
⋅
Snakes on a Domain: An Analysis of a Python Malware Loader |
| 2021-08-17
⋅
Volatility Labs
⋅
North Korean APT37 / InkySquid Infects Victims Using Browser Exploits BLUELIGHT APT37 |
| 2021-08-16
⋅
Malcat
⋅
Statically unpacking a simple .NET dropper Loki Password Stealer (PWS) |
| 2021-08-15
⋅
Symantec
⋅
The Ransomware Threat Babuk BlackMatter DarkSide Avaddon Babuk BADHATCH BazarBackdoor BlackMatter Clop Cobalt Strike Conti DarkSide DoppelPaymer Egregor Emotet FiveHands FriedEx Hades IcedID LockBit Maze MegaCortex MimiKatz QakBot RagnarLocker REvil Ryuk TrickBot WastedLocker |
| 2021-08-14
⋅
Check Point Research
⋅
Indra — Hackers Behind Recent Attacks on Iran Meteor Predatory Sparrow |
| 2021-08-12
⋅
Sentinel LABS
⋅
ShadowPad: A Masterpiece of Privately Sold Malware in Chinese Espionage ShadowPad Earth Lusca |
| 2021-08-12
⋅
Netskope
⋅
Netskope Threat Coverage: LockBit LockBit |
| 2021-08-12
⋅
Cisco Talos
⋅
Signed MSI files, Raccoon and Amadey are used for installing ServHelper RAT Amadey Raccoon ServHelper |
| 2021-08-12
⋅
Blackberry
⋅
Threat Thursday: Ficker Infostealer Malware Ficker Stealer |
| 2021-08-12
⋅
The Record
⋅
PrintNightmare vulnerability weaponized by Magniber ransomware gang Magniber |
| 2021-08-12
⋅
Vice Society Leverages PrintNightmare In Ransomware Attacks |
| 2021-08-12
⋅
The Record
⋅
SynAck ransomware gang releases decryption keys for old victims SynAck |