Click here to download all references as Bib-File.•
| 2022-03-17
⋅
Google
⋅
Exposing initial access broker with ties to Conti BazarBackdoor BumbleBee Cobalt Strike Conti |
| 2022-02-23
⋅
CrowdStrike
⋅
Access Brokers: Who Are the Targets, and What Are They Worth? |
| 2021-12-28
⋅
NTT
⋅
Flagpro: The new malware used by BlackTech Flagpro |
| 2021-12-03
⋅
KrebsOnSecurity
⋅
Who Is the Network Access Broker ‘Babam’? |
| 2021-10-21
⋅
curatedintel
⋅
Initial Access Broker Landscape |
| 2021-10-08
⋅
⋅
NTT
⋅
Malware Flagpro used by targeted attack group BlackTech Flagpro |
| 2021-08-26
⋅
Bleeping Computer
⋅
Ragnarok ransomware releases master decryptor after shutdown Ragnarok |
| 2021-08-24
⋅
Vice Motherboard
⋅
How Data Brokers Sell Access to the Backbone of the Internet |
| 2021-08-24
⋅
Volexity
⋅
North Korean BLUELIGHT Special: InkySquid Deploys RokRAT RokRAT |
| 2021-08-05
⋅
Group-IB
⋅
Prometheus TDS The key to success for Campo Loader, Hancitor, IcedID, and QBot Prometheus Backdoor Buer campoloader Hancitor IcedID QakBot |
| 2021-08-02
⋅
KELA
⋅
All Access Pass: Five Trends with Initial Access Brokers |
| 2021-07-14
⋅
Medium s2wlab
⋅
Matryoshka : Variant of ROKRAT, APT37 (Scarcruft) RokRAT |
| 2021-05-06
⋅
Group-IB
⋅
GrelosGTM group abuses Google Tag Manager to attack e-commerce websites |
| 2021-04-14
⋅
Group-IB
⋅
Lazarus BTC Changer Back in action with JS sniffers redesigned to steal crypto |
| 2021-03-15
⋅
Group-IB
⋅
JavaScript sniffers' new tricks: Analysis of the E1RB JS sniffer family |
| 2021-03-10
⋅
⋅
NTT Security
⋅
日本を標的としたPseudoGateキャンペーンによるSpelevo Exploit Kitを用いた攻撃について Zloader |
| 2021-02-18
⋅
⋅
NTT Security
⋅
nccTrojan used in targeted attack by TA428 group against defense and aviation organizations nccTrojan |
| 2021-02-15
⋅
cyble
⋅
Ngrok Platform Abused by Hackers to Deliver a New Wave of Phishing Attacks |
| 2021-01-06
⋅
Malwarebytes
⋅
Retrohunting APT37: North Korean APT used VBA self decode technique to inject RokRat RokRAT |
| 2020-12-23
⋅
Group-IB
⋅
New attacks by UltraRank group |