Click here to download all references as Bib-File.•
2024-04-30
⋅
Intrinsec
⋅
Matanbuchus & Co: Code Emulation and Cybercrime Infrastructure Discovery FAKEUPDATES Matanbuchus |
2024-04-30
⋅
Elastic
⋅
Dissecting REMCOS RAT: An in- depth analysis of a widespread 2024 malware, Part Two Remcos |
2024-04-30
⋅
Trellix
⋅
Pouring Acid Rain AcidPour AcidRain |
2024-04-30
⋅
0x0d4y
⋅
Latrodectus [IceNova] – Technical Analysis of the… New IcedID… Its Continuation… Or its Replacement? Latrodectus |
2024-04-29
⋅
cyber5w
⋅
How to unpack Death Ransomware DeathRansom |
2024-04-29
⋅
ThreatMon
⋅
Understanding the 'Kapeka' Backdoor: Detailed Analysis by APT44 Kapeka |
2024-04-29
⋅
Twitter (@sekoia_io)
⋅
@sekoia_io's tweet about the (not so) new infostealer, named ACR Stealer ACR Stealer |
2024-04-29
⋅
Zscaler
⋅
Zloader Learns Old Tricks Zloader |
2024-04-29
⋅
The DFIR Report
⋅
From IcedID to Dagon Locker Ransomware in 29 Days IcedID Mount Locker |
2024-04-27
⋅
Google
⋅
Finding Malware: Detecting SOGU with Google Security Operations. PlugX |
2024-04-25
⋅
Mandiant
⋅
Poll Vaulting: Cyber Threats to Global Elections Callisto |
2024-04-25
⋅
SOCRadar
⋅
Dark Web Profile: Red Ransomware |
2024-04-25
⋅
Microsoft
⋅
Guidance for Incident Responders |
2024-04-24
⋅
Securonix
⋅
Analysis of Ongoing FROZEN#SHADOW Attack Campaign Leveraging SSLoad Malware and RMM Software for Domain Takeover Cobalt Strike Latrodectus |
2024-04-24
⋅
Seqrite
⋅
Pakistani APTs Escalate Attacks on Indian Gov. Seqrite Labs Unveils Threats and Connections AllaKore Crimson RAT |
2024-04-24
⋅
Elastic
⋅
Dissecting REMCOS RAT: An in- depth analysis of a widespread 2024 malware, Part One Remcos |
2024-04-24
⋅
kienmanowar Blog
⋅
[QuickNote] Qakbot 5.0 – Decrypt strings and configuration QakBot |
2024-04-24
⋅
Cisco
⋅
ArcaneDoor - New espionage-focused campaign found targeting perimeter network devices ArcaneDoor Storm-1849 |
2024-04-24
⋅
NCSC UK
⋅
Line Dancer - In-memory shellcode loader targeting Cisco Adaptive Security Appliance (ASA) devices. |
2024-04-24
⋅
NCSC UK
⋅
Line Runner: Persistent webshell targeting Cisco Adaptive Security Appliance (ASA) devices. |