Click here to download all references as Bib-File.•
2023-11-21
⋅
Palo Alto Networks Unit 42
⋅
Hacking Employers and Seeking Employment: Two Job-Related Campaigns Bear Hallmarks of North Korean Threat Actors BeaverTail InvisibleFerret WageMole |
2023-10-19
⋅
Symantec
⋅
Crambus: New Campaign Targets Middle Eastern Government Clipog |
2023-10-10
⋅
Symantec
⋅
Grayling: Previously Unseen Threat Actor Targets Multiple Organizations in Taiwan Cobalt Strike Havoc MimiKatz Grayling |
2023-10-02
⋅
ThreatFabric
⋅
LightSpy mAPT Mobile Payment System Attack DragonEgg WyrmSpy lightSpy |
2023-09-12
⋅
Symantec
⋅
Redfly: Espionage Actors Continue to Target Critical Infrastructure ShadowPad Redfly |
2023-09-11
⋅
Symantec
⋅
Tweet about Symantec discovering a new variant of SiestaGraph SiestaGraph |
2023-09-01
⋅
Trellix
⋅
ICYMI: Emotet Reappeared Early This Year, Unfortunately Emotet |
2023-08-22
⋅
Symantec
⋅
Carderbee: APT Group use Legit Software in Supply Chain Attack Targeting Orgs in Hong Kong PlugX Carderbee |
2023-08-07
⋅
Team Cymru
⋅
Visualizing Qakbot Infrastructure Part II: Uncharted Territory QakBot |
2023-08-02
⋅
Medium (@morimolymoly)
⋅
HUI Loader — Malware Analysis Note HUI Loader |
2023-07-28
⋅
Team Cymru
⋅
Inside the IcedID BackConnect Protocol (Part 2) IcedID |
2023-07-18
⋅
Symantec
⋅
FIN8 Uses Revamped Sardonic Backdoor to Deliver Noberus Ransomware BlackCat Unidentified 103 (FIN8) |
2023-06-30
⋅
K7 Security
⋅
Cobalt Strike’s Deployment with Hardware Breakpoint for AMSI Bypass Cobalt Strike |
2023-06-30
⋅
Github (itaymigdal)
⋅
Formbook unpacking Formbook |
2023-06-21
⋅
Symantec
⋅
Graphican: Flea Uses New Backdoor in Attacks Targeting Foreign Ministries Graphican |
2023-06-20
⋅
SOCRadar
⋅
Cyber Shadows Pact: Darknet Parliament (KillNet, Anonymous Sudan, REvil) UserSec |
2023-06-15
⋅
Team Cymru
⋅
Darth Vidar: The Aesir Strike Back Vidar |
2023-06-15
⋅
Symantec
⋅
Shuckworm: Inside Russia’s Relentless Cyber Campaign Against Ukraine Pteranodon |
2023-06-10
⋅
The DFIR Report
⋅
IcedID Brings ScreenConnect and CSharp Streamer to ALPHV Ransomware Deployment BlackCat Cobalt Strike IcedID |
2023-05-17
⋅
Team Cymru
⋅
Visualizing QakBot Infrastructure QakBot |