Click here to download all references as Bib-File.•
2019-12-10
⋅
Sentinel LABS
⋅
Anchor Project | The Deadly Planeswalker: How The TrickBot Group United High-Tech Crimeware & APT Anchor |
2019-12-02
⋅
Twitter (@VK_intel)
⋅
Tweet on Socelars Stealer Socelars |
2019-11-05
⋅
Twitter (@VK_intel)
⋅
Tweet on Possible Snatch Snatch |
2019-10-24
⋅
Sentinel LABS
⋅
How TrickBot Malware Hooking Engine Targets Windows 10 Browsers TrickBot |
2019-10-17
⋅
Let's Learn: Dissecting Lazarus Windows x86 Loader Involved in Crypto Trading App Distribution: "snowman" & ADVObfuscator AppleJeus |
2019-10-11
⋅
Twitter (@VK_intel)
⋅
Possible Lazarus x86 Malware (AppleJeus) AppleJeus |
2019-09-11
⋅
Twitter (@VK_intel)
⋅
Tweet on Stealer/Uploader Ryuk Stealer |
2019-08-24
⋅
Github (k-vitali)
⋅
Notes on Nemty Ransomware Nemty |
2019-07-12
⋅
Twitter (@VK_intel)
⋅
ATM Malware Pin/PAN Card Offline Skimmer XFSADM XFSADM |
2019-06-19
⋅
Twitter (@VK_intel)
⋅
Tweet on Mach-O & PE32 Payloads PowerCat |
2019-06-04
⋅
SlideShare
⋅
Inside Cybercrime Groups Harvesting Active Directory for Fun and Profit - Vitali Kremez TrickBot |
2019-05-09
⋅
Sentinel LABS
⋅
RobinHood Ransomware “CoolMaker” Functions Not So Cool RobinHood |
2019-04-25
⋅
Twitter (@VK_intel)
⋅
Tweet on Ransomware RobinHood |
2019-04-13
⋅
GitHub
⋅
Decoded Turla Powershell Implant PowerShellRunner |
2019-03-28
⋅
Vitali Kremez Blog
⋅
Let's Learn: Dissecting Operation ShadowHammer Shellcode Internals in crt_ExitProcess shadowhammer |
2019-01-17
⋅
Twitter (@VK_intel)
⋅
Tweet on Turla Outlook Backdoor Outlook Backdoor |
2019-01-15
⋅
Flashpoint
⋅
Disclosure of Chilean Redbanc Intrusion Leads to Lazarus Ties PowerRatankba |
2019-01-07
⋅
Let's Learn: Deeper Dive into Gamaredon Group Pteranodon Implant Version '_512' Pteranodon |
2018-12-21
⋅
Let's Learn: In-Depth on APT28/Sofacy Zebrocy Golang Loader Zebrocy |
2018-12-10
⋅
Vitali Kremez Blog
⋅
Let's Learn: Reviewing Sofacy's "Zebrocy" C++ Loader: Advanced Insight Zebrocy |