Click here to download all references as Bib-File.•
2022-02-24
⋅
Cisco Talos
⋅
Threat Advisory: Cyclops Blink VPNFilter |
2022-02-11
⋅
Cisco Talos
⋅
Threat Roundup for February 4 to February 11 DarkComet Ghost RAT Loki Password Stealer (PWS) Tinba Tofsee Zeus |
2021-11-10
⋅
Cisco Talos
⋅
North Korean attackers use malicious blogs to deliver malware to high-profile South Korean targets GoldDragon |
2021-11-09
⋅
Cisco Talos
⋅
Cisco Talos finds 10 vulnerabilities in Azure Sphere’s Linux kernel, Security Monitor and Pluton |
2021-11-03
⋅
Cisco Talos
⋅
Microsoft Exchange vulnerabilities exploited once again for ransomware, this time with Babuk Babuk CHINACHOPPER |
2021-10-26
⋅
Cisco Talos
⋅
SQUIRRELWAFFLE Leverages malspam to deliver Qakbot, Cobalt Strike Cobalt Strike QakBot Squirrelwaffle |
2021-10-19
⋅
Cisco Talos
⋅
Malicious campaign uses a barrage of commodity RATs to target Afghanistan and India DCRat Quasar RAT |
2021-08-31
⋅
Cisco Talos
⋅
Attracting flies with Honey(gain): Adversarial abuse of proxyware |
2021-08-12
⋅
Cisco Talos
⋅
Signed MSI files, Raccoon and Amadey are used for installing ServHelper RAT Amadey Raccoon ServHelper |
2021-05-26
⋅
Cisco Talos
⋅
Elizabethan England has nothing on modern-day Russia |
2021-05-07
⋅
Cisco Talos
⋅
Lemon Duck spreads its wings: Actors target Microsoft Exchange servers, incorporate new TTPs CHINACHOPPER Cobalt Strike Lemon Duck |
2021-03-09
⋅
Cisco Talos
⋅
Hafnium Update: Continued Microsoft Exchange Server Exploitation |
2021-03-02
⋅
Cisco Talos
⋅
ObliqueRAT returns with new campaign using hijacked websites Oblique RAT |
2021-02-17
⋅
Cisco Talos
⋅
Masslogger campaigns exfiltrates user credentials MASS Logger |
2021-01-04
⋅
Cisco Talos
⋅
Interview with a LockBit ransomware operator LockBit |
2020-12-21
⋅
Cisco Talos
⋅
2020: The year in malware WolfRAT Prometei Poet RAT Agent Tesla Astaroth Ave Maria CRAT Emotet Gozi IndigoDrop JhoneRAT Nanocore RAT NjRAT Oblique RAT SmokeLoader StrongPity WastedLocker Zloader |
2020-12-14
⋅
Cisco Talos
⋅
Threat Advisory: SolarWinds supply chain attack SUNBURST TEARDROP |
2020-11-17
⋅
Cisco Talos
⋅
Nibiru ransomware variant decryptor Nibiru |
2020-10-29
⋅
Cisco Talos
⋅
DoNot’s Firestarter abuses Google Firebase Cloud Messaging to spread KnSpy |
2020-09-29
⋅
Cisco Talos
⋅
LodaRAT Update: Alive and Well Loda |