Click here to download all references as Bib-File.•
2022-10-28
⋅
cocomelonc
⋅
APT techniques: Token theft via UpdateProcThreadAttribute. Simple C++ example. |
2022-10-12
⋅
Trend Micro
⋅
Black Basta Ransomware Gang Infiltrates Networks via QAKBOT, Brute Ratel, and Cobalt Strike Black Basta Brute Ratel C4 Cobalt Strike QakBot |
2022-09-25
⋅
cocomelonc
⋅
APT techniques: Access Token manipulation. Token theft. Simple C++ example. |
2022-09-06
⋅
Trend Micro
⋅
Play Ransomware's Attack Playbook Similar to that of Hive, Nokoyawa PLAY |
2022-07-31
⋅
BushidoToken Blog
⋅
Space Invaders: Cyber Threats That Are Out Of This World Poison Ivy Raindrop SUNBURST TEARDROP WastedLocker |
2022-07-28
⋅
Kaspersky Labs
⋅
LofyLife: malicious npm packages steal Discord tokens and bank card data Lofy |
2022-07-28
⋅
Kaspersky
⋅
LofyLife: malicious npm packages steal Discord tokens and bank card data |
2022-07-26
⋅
Mandiant
⋅
Mandiant Red Team Emulates FIN11 Tactics To Control Operational Technology Servers Clop Industroyer MimiKatz Triton |
2022-07-14
⋅
Sophos
⋅
BlackCat ransomware attacks not merely a byproduct of bad luck BlackCat BlackCat |
2022-06-30
⋅
Trend Micro
⋅
Black Basta Ransomware Operators Expand Their Attack Arsenal With QakBot Trojan and PrintNightmare Exploit Black Basta Cobalt Strike QakBot |
2022-06-29
⋅
Intezer
⋅
YTStealer Malware: “YouTube Cookies! Om Nom Nom Nom” YTStealer |
2022-06-26
⋅
Overview of Russian GRU and SVR Cyberespionage Campaigns 1H 2022 Cobalt Strike CredoMap EnvyScout |
2022-06-21
⋅
Qvoid-Token-Grabber QvoidStealer |
2022-06-09
⋅
Blackberry
⋅
Symbiote: A New, Nearly-Impossible-to-Detect Linux Threat Symbiote |
2022-06-01
⋅
Deep instinct
⋅
Iranian Threat Actor Continues to Develop Mass Exploitation Tools CobaltMirage FRP |
2022-06-01
⋅
cyble
⋅
Hazard Token Grabber: Upgraded Version Of Stealer Targeting Discord Users |
2022-05-19
⋅
Trend Micro
⋅
Bruised but Not Broken: The Resurgence of the Emotet Botnet Malware Emotet QakBot |
2022-05-05
⋅
Cisco Talos
⋅
Mustang Panda deploys a new wave of malware targeting Europe Cobalt Strike Meterpreter PlugX PUBLOAD |
2022-05-03
⋅
Cisco
⋅
Conti and Hive ransomware operations: Leveraging victim chats for insights Conti Hive |
2022-05-02
⋅
Cisco Talos
⋅
Conti and Hive ransomware operations: Leveraging victim chats for insights Cobalt Strike Conti Hive |