Click here to download all references as Bib-File.•
| 2024-10-03
⋅
CitizenLab
⋅
Disrupting COLDRIVER: U.S. court orders seizure of domains used in Russian cyberattacks Callisto |
| 2024-10-03
⋅
US Court for the District of Columbia
⋅
Civil Action No. 1:24-cv-02719-RC: Microsoft vs. Star Blizzard Callisto |
| 2024-09-30
⋅
OALabs
⋅
Latrodectus Extracting new AES encrypted strings from this RAT Latrodectus |
| 2024-09-30
⋅
X (@GenThreatLabs)
⋅
Tweet on FAKEUPDATES pushing WARMCOOKIE backdoor via compromised websites targeting France FAKEUPDATES WarmCookie |
| 2024-09-30
⋅
The DFIR Report
⋅
Nitrogen Campaign Drops Sliver and Ends With BlackCat Ransomware BlackCat Nitrogen Loader Sliver |
| 2024-09-27
⋅
Virus Bulletin
⋅
CrackedCantil: A Malware Symphony Delivered By Cracked Software; Performed By Loaders, Infostealers, Ransomware, Et Al. CrackedCantil |
| 2024-09-26
⋅
cyble
⋅
Nexe Backdoor Unleashed: Patchwork APT Group’s Sophisticated Evasion of Defenses |
| 2024-09-26
⋅
The Wall Street Journal
⋅
China-Linked Hackers Breach U.S. Internet Providers in New ‘Salt Typhoon’ Cyberattack GhostEmperor |
| 2024-09-26
⋅
Microsoft
⋅
Storm-0501: Ransomware attacks expanding to hybrid cloud environments Storm-0501 |
| 2024-09-25
⋅
Cloudflare
⋅
Unraveling SloppyLemming’s Operations Across South Asia SloppyLemming |
| 2024-09-24
⋅
Trend Micro
⋅
Earth Preta Evolves its Attacks with New Malware and Strategies FDMTP |
| 2024-09-24
⋅
ThreatFabric
⋅
Octo2: European Banks Already Under Attack by New Malware Variant Coper |
| 2024-09-20
⋅
CISO Series
⋅
Cybersecurity News: INC targets healthcare, Providence schools cyberattack, Apple iPads bricked INC Storm-0494 |
| 2024-09-19
⋅
PWC
⋅
COLDWASTREL of space Callisto |
| 2024-09-19
⋅
Trend Micro
⋅
Earth Baxia Uses Spear-Phishing and GeoServer Exploit to Target APAC Cobalt Strike Earth Baxia |
| 2024-09-19
⋅
Trend Micro
⋅
Earth Baxia Uses Spear-Phishing and GeoServer Exploit to Target APAC (IoCs) Cobalt Strike Earth Baxia |
| 2024-09-18
⋅
Twitter (@MsftSecIntel)
⋅
Tweet about threat actor Vanilla Tempest INC GootLoader Storm-0494 |
| 2024-09-18
⋅
loginsoft
⋅
Medusa Ransomware: Evolving Tactics in Modern Cyber Extortion MedusaLocker |
| 2024-09-18
⋅
People’s Republic of China-Linked Actors Compromise Routers and IoT Devices for Botnet Operations Nosedive |
| 2024-09-18
⋅
Lumen
⋅
Derailing the Raptor Train Nosedive |