Click here to download all references as Bib-File.

Enter keywords to filter the library entries below or Propose new Entry
2021-08-02The RecordDmitry Smilyanets
An interview with BlackMatter: A new ransomware group that’s learning from the mistakes of DarkSide and REvil
DarkSide LockBit REvil
2021-08-02360 Threat Intelligence CenterAdvanced Threat Institute
Operation Hunting - The latest attack by the CNC (APT-C-48) has been revealed
2021-08-02KELAVictoria Kivilevich
All Access Pass: Five Trends with Initial Access Brokers
2021-08-02AT&TJavier Ruiz, Ofer Caspi
New sophisticated RAT in town: FatalRat analysis
FatalRat
2021-08-01The RecordCatalin Cimpanu
Decryptor released for Prometheus ransomware victims
Prometheus
2021-08-01The DFIR ReportThe DFIR Report
BazarCall to Conti Ransomware via Trickbot and Cobalt Strike
BazarBackdoor Cobalt Strike Conti TrickBot
2021-08-01ID RansomwareAndrew Ivanov
BlackMatter Ransomware
DarkSide
2021-07-31Bleeping ComputerLawrence Abrams
DarkSide ransomware gang returns as new BlackMatter operation
DarkSide
2021-07-31Youtube (OALabs)Sergei Frankoff
Python3 Tips For Reverse Engineers
2021-07-31Bleeping ComputerLawrence Abrams
BlackMatter ransomware gang rises from the ashes of DarkSide, REvil
DarkSide REvil
2021-07-30ThreatpostElizabeth Montalbano
Novel Meteor Wiper Used in Attack that Crippled Iranian Train System
Meteor
2021-07-30cyblecybleinc
Aberebot on the Rise: New Banking Trojan Targeting Users Through Phishing
Aberebot
2021-07-30Menlo SecurityMENLO Security
ISOMorph Infection: In-Depth Analysis of a New HTML Smuggling Campaign
AsyncRAT NjRAT
2021-07-30HPPatrick Schläpfer
Detecting TA551 domains
Valak Dridex IcedID ISFB QakBot
2021-07-30Medium walmartglobaltechJason Reaves
Decrypting BazarLoader strings with a Unicorn
BazarBackdoor
2021-07-30Twitter (@Unit42_Intel)Unit 42
Tweet on BazarLoader infection leading to cobaltstrike and Powershell script file for PrintNightmare vulnerability
BazarBackdoor Cobalt Strike
2021-07-30Bleeping ComputerSergiu Gatlan
DOJ: SolarWinds hackers breached emails from 27 US Attorneys’ offices
2021-07-30RiskIQTeam Atlas
Bear Tracks: Infrastructure Patterns Lead to More Than 30 Active APT29 C2 Servers
elf.wellmess WellMess
2021-07-29MicrosoftMicrosoft Defender Threat Intelligence
BazaCall: Phony call centers lead to exfiltration and ransomware
BazarBackdoor BazarCall
2021-07-29Silent PushSilent Push
Using the Silent Push app and API to find punycode domains