Click here to download all references as Bib-File.•
2021-09-29
⋅
Malware Traffic Analysis
⋅
2021-09-29 (Wednesday) - Hancitor with Cobalt Strike Cobalt Strike Hancitor |
2021-09-17
⋅
Malware Traffic Analysis
⋅
2021-09-17 - SQUIRRELWAFFLE Loader with Cobalt Strike Cobalt Strike Squirrelwaffle |
2021-09-01
⋅
InfoSec Handlers Diary Blog
⋅
STRRAT: a Java-based RAT that doesn't care if you have Java STRRAT |
2021-07-09
⋅
InfoSec Handlers Diary Blog
⋅
Hancitor tries XLL as initial malware file Cobalt Strike Hancitor |
2021-05-19
⋅
Palo Alto Networks Unit 42
⋅
BazarCall: Call Centers Help Spread BazarLoader Malware BazarBackdoor campoloader |
2021-04-14
⋅
InfoSec Handlers Diary Blog
⋅
April 2021 Forensic Quiz: Answers and Analysis Anchor BazarBackdoor Cobalt Strike |
2021-04-07
⋅
Palo Alto Networks Unit 42
⋅
Wireshark Tutorial: Examining Traffic from Hancitor Infections Hancitor |
2021-04-01
⋅
Palo Alto Networks Unit 42
⋅
Wireshark Tutorial: Decrypting RDP Traffic |
2021-04-01
⋅
Palo Alto Networks Unit 42
⋅
Hancitor’s Use of Cobalt Strike and a Noisy Network Ping Tool Cobalt Strike Hancitor Moskalvzapoe |
2021-03-30
⋅
YouTube ( malware-traffic-analysis.net)
⋅
2021-03-29 BazaCall (BazarCall) Example BazarBackdoor |
2021-02-03
⋅
InfoSec Handlers Diary Blog
⋅
Excel spreadsheets push SystemBC malware Cobalt Strike SystemBC |
2021-01-19
⋅
Palo Alto Networks Unit 42
⋅
Wireshark Tutorial: Examining Emotet Infection Traffic Emotet GootKit IcedID QakBot TrickBot |
2021-01-13
⋅
InfoSec Handlers Diary Blog
⋅
Hancitor activity resumes after a hoilday break Hancitor |
2021-01-07
⋅
Palo Alto Networks Unit 42
⋅
TA551: Email Attack Campaign Switches from Valak to IcedID IcedID |
2020-12-09
⋅
InfoSec Handlers Diary Blog
⋅
Recent Qakbot (Qbot) activity Cobalt Strike QakBot |
2020-10-29
⋅
Palo Alto Networks Unit 42
⋅
Threat Assessment: Ryuk Ransomware and Trickbot Targeting U.S. Healthcare and Public Health Sector Anchor BazarBackdoor Ryuk TrickBot |
2020-09-23
⋅
paloalto Netoworks: Unit42
⋅
Case Study: Emotet Thread Hijacking, an Email Attack Technique Emotet |
2020-09-10
⋅
SANS ISC InfoSec Forums
⋅
Recent Dridex activity Dridex |
2020-09-07
⋅
Github (pan-unit42)
⋅
Collection of recent Dridex IOCs Cutwail Dridex |
2020-08-21
⋅
Palo Alto Networks Unit 42
⋅
Wireshark Tutorial: Decrypting HTTPS Traffic Dridex |