Click here to download all references as Bib-File.
2019-12-10 ⋅ Sentinel LABS ⋅ MORPHISEC DISCOVERS CCLEANER BACKDOOR SAVING MILLIONS OF AVAST USERS Anchor |
2019-12-02 ⋅ Twitter (@VK_intel) ⋅ Tweet on Socelars Stealer Socelars |
2019-11-05 ⋅ Twitter (@VK_intel) ⋅ Tweet on Possible Snatch Snatch |
2019-10-24 ⋅ Sentinel LABS ⋅ How TrickBot Malware Hooking Engine Targets Windows 10 Browsers TrickBot |
2019-10-17 ⋅ Let's Learn: Dissecting Lazarus Windows x86 Loader Involved in Crypto Trading App Distribution: "snowman" & ADVObfuscator AppleJeus |
2019-10-11 ⋅ Twitter (@VK_intel) ⋅ Possible Lazarus x86 Malware (AppleJeus) AppleJeus |
2019-09-11 ⋅ Twitter (@VK_intel) ⋅ Tweet on Stealer/Uploader Ryuk Stealer |
2019-08-24 ⋅ Github (k-vitali) ⋅ Notes on Nemty Ransomware Nemty |
2019-07-12 ⋅ Twitter (@VK_intel) ⋅ ATM Malware Pin/PAN Card Offline Skimmer XFSADM XFSADM |
2019-06-19 ⋅ Twitter (@VK_intel) ⋅ Tweet on Mach-O & PE32 Payloads PowerCat |
2019-06-04 ⋅ SlideShare ⋅ Inside Cybercrime Groups Harvesting Active Directory for Fun and Profit - Vitali Kremez TrickBot |
2019-05-09 ⋅ Sentinel LABS ⋅ RobinHood Ransomware “CoolMaker” Functions Not So Cool RobinHood |
2019-04-25 ⋅ Twitter (@VK_intel) ⋅ Tweet on Ransomware RobinHood |
2019-04-13 ⋅ GitHub ⋅ Decoded Turla Powershell Implant PowerShellRunner |
2019-03-28 ⋅ Vitali Kremez Blog ⋅ Let's Learn: Dissecting Operation ShadowHammer Shellcode Internals in crt_ExitProcess shadowhammer |
2019-01-17 ⋅ Twitter (@VK_intel) ⋅ Tweet on Turla Outlook Backdoor Outlook Backdoor |
2019-01-15 ⋅ Flashpoint ⋅ Disclosure of Chilean Redbanc Intrusion Leads to Lazarus Ties PowerRatankba |
2019-01-07 ⋅ Let's Learn: Deeper Dive into Gamaredon Group Pteranodon Implant Version '_512' Pteranodon |
2018-12-21 ⋅ Let's Learn: In-Depth on APT28/Sofacy Zebrocy Golang Loader Zebrocy |
2018-12-10 ⋅ Vitali Kremez Blog ⋅ Let's Learn: Reviewing Sofacy's "Zebrocy" C++ Loader: Advanced Insight Zebrocy |