Click here to download all references as Bib-File.

Enter keywords to filter the library entries below or Propose new Entry
2021-03-05Medium walmartglobaltechJason Reaves
A look at an Android bot from unpacking to DGA
FluBot
2021-03-05Reddit CrowdstrikeAndrew-CS
2021-03-05 - Cool Query Friday - Hunting For Renamed Command Line Programs
2021-03-05BlackberryCodi Starks, Kevin Finnigin
ZeroLogon to Ransomware
Mailto
2021-03-05Pastebin (MALWAREQUINN)MalwareQuinn
Hafnium Exchange Vuln Detection - KQL
HAFNIUM
2021-03-05Github (cert-lv)Andrew Konst
Detect webshells dropped on Microsoft Exchange servers after 0day compromises
HAFNIUM
2021-03-05WiredAndy Greenberg
Chinese Hacking Spree Hit an ‘Astronomical’ Number of Victims
CHINACHOPPER
2021-03-04Trend MicroDon Ovid Ladores, Junestherry Salvador, Raphael Centeno
New in Ransomware: AlumniLocker, Humble Feature Different Extortion Techniques
2021-03-04CrowdStrikeThe Falcon Complete Team
Falcon Complete Stops Microsoft Exchange Server Zero-Day Exploits
CHINACHOPPER HAFNIUM
2021-03-04ElasticDevon Kerr
Detection and Response for HAFNIUM Activity
HAFNIUM
2021-03-04FireEyeBen Read, Jonathan Leathery, Lindsay Smith
New SUNSHUTTLE Second-Stage Backdoor Uncovered Targeting U.S.-Based Entity; Possible Connection to UNC2452
UNC2452
2021-03-04F5Dor Nizar, Roy Moshailov
IcedID Banking Trojan Uses COVID-19 Pandemic to Lure New Victims
IcedID
2021-03-04FlashpointFlashpoint
Breaking: Elite Cybercrime Forum “Maza” Breached by Unknown Attacker
2021-03-03Cert-UACert-UA
Renewal of cyber attacks using the Pterodo hacker group Armageddon/Gamaredon
Pteranodon
2021-03-03GTSCGTSC
'Mild' update on Microsoft Exchange 0day security vulnerability being used to attack organizations in Vietnam
ToddyCat
2021-03-03MITREMITRE ATT&CK
HAFNIUM
CHINACHOPPER HAFNIUM
2021-03-03splunkRyan Kovar
Detecting HAFNIUM Exchange Server Zero-Day Activity in Splunk
HAFNIUM
2021-03-03DomainToolsJoe Slowik
Centreon to Exim and Back: On the Trail of Sandworm
Exaramel PAS
2021-03-03Kaspersky LabsSergey Golovanov
New targeted RTM attacks
2021-03-03SYGNIAAmitai Ben Shushan, Amnon Kushnir, Boaz Wasserman, Martin Korman, Noam Lifshitz
Lazarus Group’s MATA Framework Leveraged to Deploy TFlower Ransomware
Dacls Dacls Dacls TFlower
2021-03-02MicrosoftTom Burt
New nation-state cyberattacks (HAFNIUM)