Click here to download all references as Bib-File.

Enter keywords to filter the library entries below or Propose new Entry
2021-01-01SecureworksSecureWorks
Threat Profile: GOLD MANSARD
Nefilim Nemty GOLD MANSARD
2020-12-17NSANSA
Detecting Abuse of Authentication Mechanisms
2020-12-16Twitter (@0xrb)R. Bansal
List of domain infrastructure including DGA domain used by UNC2452
SUNBURST
2020-12-07NSANSA
Russian State-Sponsored Actors Exploiting Vulnerability in VMware® Workspace ONE Access Using Compromised Credentials
2020-08-23Github (Insane-Forensics)Insane-Forensics
Dispatches from Drovorub: Network Threat Hunting for Russia GRU GTsSS' Malware at Scale
2020-08-14NSANSA
Drovorub Malware: Fact Sheet & FAQs
2020-08-13NSANSA
NSA and FBI Expose Russian Previously Undisclosed Malware “Drovorub” in Cybersecurity Advisory
2020-08-11FireEyeAlex Pennino, Brendan McKeague, Harris Ansari, Nick Schroeder, Tim Martin
COOKIEJAR: Tracking Adversaries With FireEye Endpoint Security’s Logon Tracker Module
2020-05-28WiredAndy Greenberg
NSA: Russia's Sandworm Hackers Have Hijacked Mail Servers
2019-12-24Bleeping ComputerLawrence Abrams
Maze Ransomware Releases Files Stolen from City of Pensacola
Maze
2019-12-11Bleeping ComputerLawrence Abrams
Maze Ransomware Behind Pensacola Cyberattack, $1M Ransom Demand
Maze
2019-09-04Trend MicroJaromír Hořejší, Joseph C. Chen
Glupteba Campaign Hits Network Routers and Updates C&C Servers with Data from Bitcoin Transactions
Glupteba
2019-03-05PepperMalware BlogPepper Potts
Quick Analysis of a Trickbot Sample with NSA's Ghidra SRE Framework
TrickBot
2018-12-12Kaspersky LabsAnton Ivanov, Boris Larin, Vladislav Stolyarov
Zero-day in Windows Kernel Transaction Manager (CVE-2018-8611)
SandCat
2018-11-12ccdcoeEnsar Şeker, İhsan Burak Tolga
National Cyber Security Organisation: TURKEY
2018-10-18McAfeeAsheer Malhotra, Ryan Sherstobitoff
‘Operation Oceansalt’ Attacks South Korea, U.S., and Canada With Source Code From Chinese Hacker Group
Oceansalt APT1
2018-10-17Raj Samani, Ryan Sherstobitoff
‘Operation Oceansalt’ Delivers Wave After Wave
APT1
2018-05-07European Association for Secure TransactionsEuropean Association for Secure Transactions
EAST Publishes European Fraud Update 2-2018
WinPot
2018-03-01CrySyS LabBoldizsar Bencsath
Territorial Dispute – NSA’s perspective on APT landscape
9002 RAT Agent.BTZ DuQu EYService Flame FlowerShop Stuxnet Uroburos
2017-11-27BlacklakeBrian Krebs
WHO WAS THE NSA CONTRACTOR ARRESTED FOR LEAKING THE ‘SHADOW BROKERS’ HACKING TOOLS?
The Shadow Brokers
2017-09-07HackReadAhmed Waqas
New NSA Data Dump: ShadowBrokers Release UNITEDRAKE Malware
The Shadow Brokers
2017-05-12EmsisoftHolger Keller
Global WannaCry ransomware outbreak uses known NSA exploits
WannaCryptor
2017-04-17CSO OnlineMichael Kan
New NSA leak may expose its bank spying, Windows exploits
The Shadow Brokers
2017-01-01Github (rain-1)Epivalent, rain1
WannaCry|WannaDecrypt0r NSA-Cyberweapon-Powered Ransomware Worm
WannaCryptor
2016-11-14ProofpointProofpoint Staff
Ransoc Desktop Locking Ransomware Ransacks Local Files and Social Media Profiles
Ransoc
2016-10-01Vice MotherboardJanus Rose
‘Shadow Brokers’ Whine That Nobody Is Buying Their Hacked NSA Files
The Shadow Brokers
2015-02-16Ars TechnicaDan Goodin
How “omnipotent” hackers tied to NSA hid for 14 years—and were found at last
Equation Group
2012-08-01Virus BulletinAditya K. Sood, Richard J. Enbody, Rohit Bansal
Inside the ICE IX bot, descendent of Zeus
Ice IX