Click here to download all references as Bib-File.•
2021-09-03
⋅
Trend Micro
⋅
The State of SSL/TLS Certificate Usage in Malware C&C Communications AdWind ostap AsyncRAT BazarBackdoor BitRAT Buer Chthonic CloudEyE Cobalt Strike DCRat Dridex FindPOS GootKit Gozi IcedID ISFB Nanocore RAT Orcus RAT PandaBanker Qadars QakBot Quasar RAT Rockloader ServHelper Shifu SManager TorrentLocker TrickBot Vawtrak Zeus Zloader |
2021-09-03
⋅
cyble
⋅
Spyware Variant Disguised as Korean Video App Targets Multiple Asian Countries goontact |
2021-09-03
⋅
Twitter (@ESETresearch)
⋅
Twitter thread on SPARKLOG, a launcher component for PRIVATELOG along with STASHLOG PRIVATELOG STASHLOG |
2021-09-03
⋅
Seguranca Informatica
⋅
Netwalker ransomware full analysis Mailto |
2021-09-03
⋅
IBM
⋅
Dissecting Sodinokibi Ransomware Attacks: Bringing Incident Response and Intelligence Together in the Fight Valak QakBot REvil |
2021-09-03
⋅
McAfee
⋅
Phishing Android Malware Targets Taxpayers in India Elibomi |
2021-09-03
⋅
FireEye
⋅
PST, Want a Shell? ProxyShell Exploiting Microsoft Exchange Servers CHINACHOPPER HTran |
2021-09-03
⋅
Sophos
⋅
Conti affiliates use ProxyShell Exchange exploit in ransomware attacks Cobalt Strike Conti |
2021-09-02
⋅
⋅
AhnLab
⋅
Attacks using metasploit meterpreter Appleseed Meterpreter |
2021-09-02
⋅
MalwareBookReports
⋅
Cross-Platform Java Dropper: Snake and XLoader (Mac Version) Xloader 404 Keylogger |
2021-09-02
⋅
US Department of Health and Human Services
⋅
Demystifying BlackMatter BlackMatter BlackMatter DarkSide |
2021-09-02
⋅
Bloomberg
⋅
Juniper Breach Mystery Starts to Clear With New Details on Hackers and U.S. Role (APT5) |
2021-09-02
⋅
Medium michaelkoczwara
⋅
Cobalt Strike PowerShell Payload Analysis Cobalt Strike |
2021-09-02
⋅
⋅
KrCert
⋅
TTPs#6 Targeted Watering Hole Attack Strategy Analysis (SILENT CHOLLIMA) Tiger RAT |
2021-09-02
⋅
Anomali
⋅
Cybercrime Group FIN7 Using Windows 11 Alpha-Themed Docs to Drop Javascript Backdoor |
2021-09-02
⋅
Twitter (@th3_protoCOL)
⋅
Tweet on Confluence Server exploitation (CVE-2021-26084) in the wild and cobaltsrike activity (mentioned in replies by GaborSzappanos) Cobalt Strike |
2021-09-02
⋅
Juniper
⋅
Attacks Continue Against Realtek Vulnerabilities Dark |
2021-09-02
⋅
Bleeping Computer
⋅
Autodesk reveals it was targeted by Russian SolarWinds hackers SUNBURST |
2021-09-02
⋅
Kaspersky
⋅
QakBot Technical Analysis QakBot |
2021-09-02
⋅
Talos
⋅
Translated: Talos' insights from the recently leaked Conti ransomware playbook Conti |