Click here to download all references as Bib-File.•
2022-02-28
⋅
Twitter (@struppigel)
⋅
Tweet on Gofing discovery Gofing |
2022-02-28
⋅
Reuters
⋅
New Chinese hacking tool found, spurring U.S. warning to allies Daxin |
2022-02-28
⋅
Cyber Geeks
⋅
How to Analyze Malicious Documents – Case Study of an Attack Targeting Ukrainian Organization |
2022-02-28
⋅
Twitter (@M_haggis)
⋅
Tweet on parsing Daxin driver metadata using powershell Daxin |
2022-02-28
⋅
ZDNet
⋅
Microsoft finds FoxBlade malware on Ukrainian systems, removes RT from Windows app store HermeticWiper |
2022-02-28
⋅
⋅
ASEC
⋅
Remcos RAT malware disseminated by pretending to be tax invoices Remcos |
2022-02-28
⋅
Trellix
⋅
Trellix Global Defenders: Cyberattacks Targeting Ukraine and HermeticWiper Protections HermeticWiper |
2022-02-28
⋅
Trellix
⋅
Trellix Global Defenders: Analysis and Protections for BlackByte Ransomware BlackByte |
2022-02-28
⋅
Bleeping Computer
⋅
Meta: Ukrainian officials, military targeted by Ghostwriter hackers Ghostwriter |
2022-02-28
⋅
Microsoft
⋅
Cyber threat activity in Ukraine: analysis and resources HermeticWiper IsaacWiper PartyTicket WhisperGate |
2022-02-28
⋅
Sophos
⋅
Conti and Karma actors attack healthcare provider at same time through ProxyShell exploits Conti Karma |
2022-02-28
⋅
Lab52
⋅
Looking for Penquins in the Wild Penquin Turla |
2022-02-28
⋅
AhnLab
⋅
CoinMiner Being Distributed to Vulnerable MS-SQL Servers |
2022-02-28
⋅
AhnLab
⋅
Change in Distribution Method of Malware Disguised as Estimate (VBS Script) Formbook |
2022-02-28
⋅
Stairwell
⋅
Quick n’ dirty detection research: Building a labeled malware corpus for YARA testing |
2022-02-28
⋅
NSHC
⋅
Threat Actor targeted attack against Finance and Investment industry (ENG) |
2022-02-28
⋅
Medium arnozobec
⋅
Analyzing conti-leaks without speaking russian — only methodology Conti |
2022-02-28
⋅
Microsoft Sentinel 101
⋅
Detecting malware kill chains with Defender and Microsoft Sentinel HermeticWiper |
2022-02-28
⋅
Bleeping Computer
⋅
Chinese cyberspies target govts with their ‘most advanced’ backdoor Daxin |
2022-02-28
⋅
Github (TheParmak)
⋅
conti-leaks-englished Conti |