Click here to download all references as Bib-File.

Enter keywords to filter the library entries below or Propose new Entry
2024-08-08Twitter (@MonThreat)ThreatMon
Tweet about EvilByte claiming to have hacked Argentine Radio
Evilbyte
2024-08-04Twitter (@embee_research)Embee_research
Decoding a Cobalt Strike Downloader Script With CyberChef
Cobalt Strike
2024-07-10Risky.bizCatalin Cimpanu
Risky Biz News: US takes down RT's Twitter bot farm
Lifting Zmiy
2024-07-09Twitter (@H4ckManac)HackManac
Tweet on data breaches caused by 888 group
Threat Actor 888
2024-07-01Twitter (@DailyDarkWeb)Dark Web Intelligence
Tweet on Anonymous KSA
Anonymous KSA
2024-05-23Twitter (@embee_research)Embee_research
Tracking APT SideWinder With DNS Records
SideWinder
2024-05-21Twitter (@embee_research)Embee_research
Tweets on decoding a Latrodectus loader
Latrodectus
2024-05-15Twitter (@embee_research)Embee_research
Revealing Spammer Infrastructure With Passive DNS - 226 Toll-Themed Domains Targeting Australia
2024-05-07Twitter (@fs0c131y)Baptiste Robert
Tweets on LockBitSupp
LockBit
2024-04-29Twitter (@sekoia_io)sekoia
@sekoia_io's tweet about the (not so) new infostealer, named ACR Stealer
ACR Stealer
2024-04-11Twitter (@embee_research)Embee_research
Tracking Malicious Infrastructure With DNS Records - Vultur Banking Trojan
Vultur
2024-04-04Twitter (@BushidoToken)BushidoToken
Tweet about the SEXi Ransomware attack on IXMETRO POWERHOST
SEXi
2024-04-04Twitter (@embee_research)Embee_research
TLS Certificate For Threat Intelligence - Identifying MatanBuchus Domains Through Hardcoded Certificate Values
Matanbuchus
2024-04-01Twitter (@embee_research)Embee_research
Passive DNS For Phishing Link Analysis - Identifying 36 Latrodectus Domains With Historical Records and 302 Redirects
Latrodectus
2024-03-31Twitter (@fr0gger)Thomas Roccia
Tweet with visual summary of the execution flow
xzbot
2024-03-30Twitter (@embee_research)Embee_research
Uncovering APT Infrastructure with Passive DNS Pivoting
2024-03-27Twitter (@embee_research)Embee_research
Uncovering Malicious Infrastructure with DNS Pivoting
LokiBot XWorm
2024-03-18Twitter (@juanandres_gs)Juan Andrés Guerrero-Saade
Twitter thread on the sample identified
AcidPour
2024-03-07Twitter (@H4ckManac)HackManac
Duvel reportedly compromised by Stormous ransomware group
Stormous
2024-03-02Twitter (@SinghSoodeep)Sudeep Singh
Tweet on WINELOADER targeting with German embassy themed lure
WINELOADER