Click here to download all references as Bib-File.

Enter keywords to filter the library entries below or Propose new Entry
2021-07-29MicrosoftMicrosoft 365 Defender Threat Intelligence Team
BazaCall: Phony call centers lead to exfiltration and ransomware
BazarBackdoor Cobalt Strike
2021-07-29ENISAApostolos Malatras, Eleni Tsekmezoglou, Ifigeneia Lella, Konstantinos Moulinos, Marianthi Theocharidou, Sebastian García, Veronica Valeros, Volker Distelrath
ENISA Threat Landscape for Supply Chain Attacks
2021-07-28ThreatFabricThreatFabric
Vultur, with a V for VNC
Vultur
2021-07-28ThreatpostLisa Vaas
BlackMatter & Haron: Evil Ransomware Newborns or Rebirths
Haron Ransomware
2021-07-28MalwarebytesHossein Jazi
Crimea “manifesto” deploys VBA Rat using double attack vectors
2021-07-28DomainToolsChad Anderson
Finding AnchorDNS C2s With Iris Investigate
AnchorDNS
2021-07-28PrevailionPrevailion
Cert Safari: Leveraging TLS Certificates to Hunt Evil
2021-07-27BitdefenderMartin Zugec, Victor Vrabie
Deep dive into a FIN8 attack – A forensic investigation
2021-07-27Trend MicroAlfredo Oliveira, David Fiser
Threat Actors Exploit Misconfigured Apache Hadoop YARN
Kinsing
2021-07-27FlashpointFlashpoint
Chatter Indicates BlackMatter as REvil Successor
REvil
2021-07-27Youtube (SANS Institute)John Hammond, Katie Nickels
SANS Threat Analysis Rundown - Kaseya VSA attack
REvil
2021-07-27Palo Alto Networks Unit 42Alex Hinchliffe, Mike Harbison
THOR: Previously Unseen PlugX Variant Deployed During Microsoft Exchange Server Attacks by PKPLUG Group
PlugX
2021-07-27The RecordCatalin Cimpanu
BlackMatter ransomware targets companies with revenue of $100 million and more
2021-07-27Recorded FutureInsikt Group®
BlackMatter Ransomware Emerges As Successor to DarkSide, REvil
DarkSide LockBit REvil
2021-07-27Bleeping ComputerSergiu Gatlan
UC San Diego Health discloses data breach after phishing attack
2021-07-27ElasticElastic Security Intelligence & Analytics Team
Collecting and operationalizing threat data from the Mozi botnet
Mozi
2021-07-27360 Threat Intelligence CenterAdvanced Threat Institute
Summary of Kimsuky's secret stealing activities in the first half of 2021
2021-07-27BlackberryBlackBerry Research & Intelligence Team
Old Dogs New Tricks: Attackers Adopt Exotic Programming Languages
elf.wellmess ElectroRAT BazarNimrod Buer Cobalt Strike Remcos Snake TeleBot WellMess Zebrocy
2021-07-27SYGNIAAmitai Ben Shushan Ehrlich, Amnon Kushnir, Arie Zilberstein, Asaf Eitani, Gil Biton, Itay Shohat, Martin Korman, Noam Lifshitz, Sygnia Incident Response Team
TG1021: "Praying Mantis" Dissecting an Advanced Memory-Resident Attack
2021-07-26MalwarebytesThomas Reed
OSX.XLoader hides little except its main purpose: What we learned in the installation process
Xloader