Click here to download all references as Bib-File.•

Enter keywords to filter the library entries below or Propose new Entry
2023-09-08 ⋅ Zscaler ⋅ Zscaler
Technical Analysis of HijackLoader
HijackLoader
2023-08-30 ⋅ Nisos ⋅ Vincas Čižiūnas
Trickbot in Light of Trickleaks Data
TrickBot
2023-07-27 ⋅ X (@BlackLotusLabs) ⋅ Black Lotus Labs
Tweet on update on AVrecon bot's migration to new infrastructure
AVrecon
2023-07-15 ⋅ MSSP Lab ⋅ cocomelonc
Malware source code investigation: BlackLotus - part 1
BlackLotus
2023-06-13 ⋅ Outpost24 ⋅ Beatriz Pimenta Klein
ICS attack classifications: differentiating between cyberwarfare, cyberterrorism, and hacktivism
UAC-0118
2023-05-29 ⋅ kn0s-organization
BlackLotus stage 2 bootkit-rootkit analysis
BlackLotus
2023-05-03 ⋅ unpac.me ⋅ Sean Wilson
UnpacMe Weekly: New Version of IcedId Loader
IcedID PhotoLoader
2023-04-19 ⋅ Sophos ⋅ Andreas Klopsch
‘AuKill’ EDR killer malware abuses Process Explorer driver
AuKill
2023-04-11 ⋅ Microsoft ⋅ Microsoft Incident Response
Guidance for investigating attacks using CVE-2022-21894: The BlackLotus campaign
BlackLotus
2023-03-09 ⋅ binarly ⋅ Aleksandr Matrosov
The Untold Story of the BlackLotus UEFI Bootkit
BlackLotus
2023-03-04 ⋅ ThreatZero ⋅ Raphael Mendonça
KL Remota -  Brazilian Malware Bank
2023-03-01 ⋅ ESET Research ⋅ Martin Smolár
BlackLotus UEFI bootkit: Myth confirmed
BlackLotus
2023-01-09 ⋅ Twitter (@SethKingHi) ⋅ SKII
Tweet on HuskLoader
HuskLoader
2022-12-13 ⋅ Sophos ⋅ Andreas Klopsch, Andrew Brandt
Signed driver malware moves up the software trust chain
KillAV
2022-10-04 ⋅ Sophos ⋅ Andreas Klopsch
Remove All The Callbacks – BlackByte Ransomware Disables EDR Via RTCore64.sys Abuse
BlackByte
2022-09-28 ⋅ Kaspersky ⋅ GReAT
Prilex: the pricey prickle credit card complex
2022-09-27 ⋅ Github (blacklotuslabs) ⋅ Black Lotus Labs
Chaos Is A Go-Based Swiss Army Knife Of Malware (IOCs)
2022-09-22 ⋅ ComputerWeekly ⋅ Alex Scroxton
ALPHV/BlackCat ransomware family becoming more dangerous
BlackCat BlackCat FIN7
2022-08-04 ⋅ META ⋅ Ben Nimmo, David Agranovich, Margarita Franklin, Mike Dvilyanski, Nathaniel Gleicher
Quarterly Adversarial Threat Report AUGUST 2022
2022-05-19 ⋅ NetbyteSEC ⋅ Fareed
Scam and Malicious APK targeting Malaysian: MyMaidKL Technical Analysis