Click here to download all references as Bib-File.•
| 2021-07-07
⋅
Talos
⋅
InSideCopy: How this APT continues to evolve its arsenal (Network IOCs) AllaKore Lilith NjRAT |
| 2021-07-07
⋅
Talos
⋅
InSideCopy: How this APT continues to evolve its arsenal (IOCs) AllaKore Lilith NjRAT |
| 2021-07-07
⋅
Talos
⋅
InSideCopy: How this APT continues to evolve its arsenal AllaKore Lilith NjRAT |
| 2021-07-07
⋅
Kaspersky
⋅
WildPressure targets the macOS platform Guard Milum WildPressure |
| 2021-07-07
⋅
Talos Intelligence
⋅
InSideCopy: How this APT continues to evolve its arsenal AllaKore NjRAT SideCopy |
| 2021-07-06
⋅
Zscaler
⋅
Kaseya Supply Chain Ransomware Attack - Technical Analysis of the REvil Payload REvil |
| 2021-07-06
⋅
Twitter (@_alex_il_)
⋅
Tweet on REvil ransomware actor using vulnerable defender executable in its infection flow in early may before Kaseya attack REvil |
| 2021-07-06
⋅
splunk
⋅
REvil Ransomware Threat Research Update and Detections REvil |
| 2021-07-06
⋅
YouTube ( DuMp-GuY TrIcKsTeR)
⋅
[1] Lokibot analyzing - defeating GuLoader with Windbg (Kernel debugging) and Live C2 CloudEyE Loki Password Stealer (PWS) |
| 2021-07-06
⋅
Medium walmartglobaltech
⋅
TA505 adds GoLang crypter for delivering miners and ServHelper ServHelper |
| 2021-07-06
⋅
FPRI
⋅
Understanding Russia’s Cyber Strategy |
| 2021-07-06
⋅
AT&T
⋅
Lazarus campaign TTPs and evolution |
| 2021-07-06
⋅
0ffset Blog
⋅
New TA402/MOLERATS Malware – Decrypting .NET Reactor Strings SharpStage |
| 2021-07-06
⋅
The Record
⋅
Moroccan hacker Dr HeX arrested for phishing attacks, malware distribution |
| 2021-07-06
⋅
Group-IB
⋅
Operation Lyrebird: Group-IB assists INTERPOL in identifying suspect behind numerous cybercrimes worldwide |
| 2021-07-06
⋅
Twitter (@MBThreatIntel)
⋅
Tweet on a malspam campaign that is taking advantage of Kaseya VSA ransomware attack to drop CobaltStrike Cobalt Strike |
| 2021-07-06
⋅
paloalto Networks Unit 42
⋅
Understanding REvil: The Ransomware Gang Behind the Kaseya Attack Gandcrab REvil |
| 2021-07-05
⋅
⋅
Antiy CERT
⋅
Analysis of "Bitter Elephant" organization's attack activities against my country in the first half of the year |
| 2021-07-05
⋅
Twitter (@R3MRUM)
⋅
Twitter thread with additional context on C2 domains found in REvil configuration REvil |
| 2021-07-05
⋅
splunk
⋅
Kaseya, Sera. What REvil Shall Encrypt, Shall Encrypt REvil |