Click here to download all references as Bib-File.•
2024-05-30
⋅
Akamai
⋅
RedTail Cryptominer Threat Actors Adopt PAN-OS CVE-2024-3400 Exploit RedTail |
2024-05-29
⋅
Medium (DoingFedTime)
⋅
80-000 records exposed in shell data breach by threat actor Threat Actor 888 |
2024-05-28
⋅
Microsoft
⋅
Moonstone Sleet emerges as new North Korean threat actor with new bag of tricks splitloader |
2024-05-28
⋅
Reliaquest
⋅
BlackSuit Attack Analysis BlackSuit |
2024-05-22
⋅
Deep Dive Into Unfading Sea Haze: A New Threat Actor in the South China Sea SilentGh0st |
2024-05-16
⋅
Symantec
⋅
Springtail: New Linux Backdoor Added to Toolkit Gomir Kimsuky |
2024-05-15
⋅
Stairwell
⋅
Stairwell threat report: Black Basta overview and detection rules Black Basta Black Basta |
2024-05-15
⋅
Microsoft
⋅
Threat actors misusing Quick Assist in social engineering attacks leading to ransomware Black Basta Cobalt Strike QakBot |
2024-05-10
⋅
⋅
Qianxin Threat Intelligence Center
⋅
Recruitment trap for blockchain practitioners: Analysis of suspected Lazarus (APT-Q-1) stealing operations BeaverTail |
2024-04-22
⋅
Microsoft
⋅
Analyzing Forest Blizzard’s custom post-compromise tool for exploiting CVE-2022-38028 to obtain credentials GooseEgg |
2024-04-17
⋅
Microsoft
⋅
Russian US election interference targets support for Ukraine after slow start |
2024-04-17
⋅
Microsoft
⋅
Nation-states engage in US-focused influence operations ahead of US presidential election |
2024-04-16
⋅
HarfangLab
⋅
Analysis of the APT31 Indictment RAWDOOR APT31 |
2024-04-12
⋅
Volexity
⋅
Zero-Day Exploitation of Unauthenticated Remote Code Execution Vulnerability in GlobalProtect (CVE-2024-3400) UPSTYLE UTA0218 |
2024-04-12
⋅
Palo Alto Networks Unit 42
⋅
Threat Brief: Operation MidnightEclipse, Post-Exploitation Activity Related to CVE-2024-3400 UPSTYLE |
2024-04-10
⋅
2024-04-10
⋅
XZ Utils Backdoor | Threat Actor Planned to Inject Further Vulnerabilities xzbot |
2024-04-04
⋅
Microsoft
⋅
China tests US voter fault lines and ramps AI content to boost its geopolitical interests |
2024-04-04
⋅
Twitter (@embee_research)
⋅
TLS Certificate For Threat Intelligence - Identifying MatanBuchus Domains Through Hardcoded Certificate Values Matanbuchus |
2024-04-04
⋅
Proofpoint
⋅
Latrodectus: This Spider Bytes Like Ice IcedID Latrodectus |
2024-04-01
⋅
Microsoft
⋅
Same targets, new playbooks: East Asia threat actors employ unique methods |