Click here to download all references as Bib-File.•

Enter keywords to filter the library entries below or Propose new Entry
2022-11-03 ⋅ Team Cymru ⋅ S2 Research Team
Inside the V1 Raccoon Stealer’s Den
Raccoon
2022-11-03 ⋅ IronNet ⋅ IronNet Threat Research
Robin Banks still might be robbing your bank (part 2)
Evilginx
2022-11-03 ⋅ 360 netlab ⋅ Liu Ya, RootKiter
P2P Botnets: Review - Status - Continuous Monitoring
FritzFrog Hajime Mozi Pink
2022-11-03 ⋅ Group-IB ⋅ Rustam Mirkasymov
Financially motivated, dangerously activated: OPERA1ER APT in Africa
Cobalt Strike Common Raven
2022-11-03 ⋅ ANY.RUN ⋅ ANY.RUN
What is Orcus RAT? Technical Analysis and Malware Configuration
Orcus RAT
2022-11-03 ⋅ Sophos ⋅ Gabor Szappanos
Family Tree: DLL-Sideloading Cases May Be Related
DARKDEW MISTCLOAK
2022-11-03 ⋅ Github (chronicle) ⋅ Chronicle
GCTI Open Source Detection Signatures
Cobalt Strike Sliver
2022-11-03 ⋅ Sentinel LABS ⋅ Antonio Cocomazzi
Black Basta Ransomware | Attacks Deploy Custom EDR Evasion Tools Tied to FIN7 Threat Actor
Black Basta
2022-11-03 ⋅ Zscaler ⋅ Sudeep Singh
APT-36 Uses New TTPs and New Tools to Target Indian Governmental Organizations
LimePad
2022-11-03 ⋅ Group-IB ⋅ Group-IB
OPERA1ER: Playing god without permission
2022-11-03 ⋅ paloalto Netoworks: Unit42 ⋅ Chris Navarrete, Durgesh Sangvikar, Matthew Tennis, Siddhart Shibiraj, Yanhui Jia, Yu Fu
Cobalt Strike Analysis and Tutorial: Identifying Beacon Team Servers in the Wild
Cobalt Strike
2022-11-03 ⋅ SentinelOne ⋅ SentinelLabs
Black Basta Ransomware | Attacks deploy Custom EDR Evasion Tools tied to FIN7 Threat Actor
Black Basta QakBot SocksBot
2022-11-02 ⋅ CySecurity News ⋅ CySecurity News
Missile Supplier MBDA Breach Disclosed by CloudSEK
Adrastea
2022-11-02 ⋅ Sekoia ⋅ Quentin Bourgue, sekoia, Threat & Detection Research Team
BlueFox Stealer: a newcomer designed for traffers teams
Aurora Stealer BlueFox
2022-11-02 ⋅ cyble ⋅ Cyble
New Laplas Clipper Distributed via SmokeLoader
LaplasClipper
2022-11-02 ⋅ Blackberry ⋅ Blackberry Research
RomCom Threat Actor Abuses KeePass and SolarWinds to Target Ukraine and Potentially the United Kingdom
ROMCOM RAT RomCom
2022-11-02 ⋅ Twitter (@_CPResearch_) ⋅ Checkpoint Research
Tweet on Azov Wiper
Azov Wiper
2022-11-02 ⋅ ASEC ⋅ ASEC
Appleseed Being Distributed to Nuclear Power Plant-Related Companies
Appleseed
2022-11-02 ⋅ NOZOMI Network Labs ⋅ Nozomi Networks Labs
Could Threat Actors Be Downgrading Their Malware to Evade Detection?
Bashlite
2022-11-01 ⋅ BlackPoint ⋅ BlackPoint
Ratting Out Arechclient2
SectopRAT