Click here to download all references as Bib-File.•
2021-09-29
⋅
CYBER GEEKS All Things Infosec
⋅
How to defeat the Russian Dukes: A step-by-step analysis of MiniDuke used by APT29/Cozy Bear MiniDuke |
2021-09-29
⋅
United States Department of Justice
⋅
Federal Indictment in Chicago Charges Turkish National With Directing Cyber Attack on Multinational Hospitality Company WireX |
2021-09-29
⋅
The Record
⋅
Turkish national charged for DDoS attacks with the WireX botnet WireX |
2021-09-29
⋅
Trend Micro
⋅
FormBook Adds Latest Office 365 0-Day Vulnerability (CVE-2021-40444) to Its Arsenal Formbook |
2021-09-28
⋅
Flashpoint
⋅
REvil’s “Cryptobackdoor” Con: Ransomware Group’s Tactics Roil Affiliates, Sparking a Fallout REvil |
2021-09-28
⋅
Zscaler
⋅
Squirrelwaffle: New Loader Delivering Cobalt Strike Cobalt Strike Squirrelwaffle |
2021-09-28
⋅
Recorded Future
⋅
The Business of Fraud: Laundering Funds in the Criminal Underground |
2021-09-28
⋅
Recorded Future
⋅
4 Chinese APT Groups Identified Targeting Mail Server of Afghan Telecommunications Firm Roshan PlugX Winnti |
2021-09-28
⋅
Kaspersky Labs
⋅
FinSpy: unseen findings FinFisher FinFisher FinFisher FinFisher RAT |
2021-09-27
⋅
Cyber-Anubis
⋅
RedLine Infostealer | Detailed Reverse Engineering RedLine Stealer |
2021-09-27
⋅
Youtube (OALabs)
⋅
Live Coding A Squirrelwaffle Malware Config Extractor Squirrelwaffle |
2021-09-27
⋅
Trend Micro
⋅
Fake Installers Drop Malware and Open Doors for Opportunistic Attackers RedLine Stealer Socelars Vidar |
2021-09-27
⋅
Kaspersky
⋅
BloodyStealer and gaming assets for sale BloodyStealer |
2021-09-27
⋅
Security Soup Blog
⋅
DoppelDridex Delivered via Slack and Discord DoppelDridex |
2021-09-27
⋅
Cybereason
⋅
Threat Analysis Report: Inside the Destructive PYSA Ransomware Mespinoza |
2021-09-27
⋅
Microsoft
⋅
FoggyWeb: Targeted NOBELIUM malware leads to persistent backdoor |
2021-09-26
⋅
Medium BlueteamOps
⋅
Supercharging Bulk DFIR triage with Node-RED, Google’s Log2timeline & Google’s Timesketch |
2021-09-25
⋅
Twitter (@MsftSecIntel)
⋅
Thread on Malicious Android apps posing as bank loan services are being widely distributed to targets in Asia Unidentified APK 006 |
2021-09-24
⋅
Twitter (@inversecos)
⋅
A thread on TTPs of Prometheus Ransomware attacks Prometheus |
2021-09-24
⋅
Yoroi
⋅
Hunting the LockBit Gang's Exfiltration Infrastructures LockBit StealBit |