Click here to download all references as Bib-File.•
2022-01-06
⋅
Sekoia
⋅
NOBELIUM’s EnvyScout infection chain goes in the registry, targeting embassies Cobalt Strike EnvyScout |
2022-01-05
⋅
AhnLab
⋅
Analysis Report on Kimsuky Group’s APT Attacks (AppleSeed, PebbleDash) Appleseed Kimsuky PEBBLEDASH |
2022-01-05
⋅
Lumen
⋅
New Konni Campaign Kicks Off the New Year by Targeting Russian Ministry of Foreign Affairs Konni |
2022-01-05
⋅
VMRay
⋅
Malware Analysis Spotlight: Kuzuluy Phishing Kit |
2022-01-05
⋅
McAfee
⋅
Technical Analysis of CVE-2021-1732 |
2022-01-05
⋅
Check Point
⋅
Can You Trust a File’s Digital Signature? New Zloader Campaign exploits Microsoft’s Signature Verification putting users at risk Zloader |
2022-01-05
⋅
ARMOR
⋅
Threat Intelligence Report: The Evolution of Doppel Spider from BitPaymer to Grief Ransomware DoppelPaymer FriedEx |
2022-01-05
⋅
Telsy
⋅
SIDECOPY APT: From Windows to *nix SideCopy |
2022-01-05
⋅
SYGNIA
⋅
Elephant Beetle: Uncovering an Organized Financial-Theft Operation FIN13 |
2022-01-04
⋅
SYGNIA
⋅
TG2003: Elephant Beetle - Uncovering an Organized Financial-theft Operation FIN13 |
2022-01-04
⋅
Microsoft
⋅
Leveraging the Power of KQL in Incident Response |
2022-01-04
⋅
forensicitguy
⋅
Extracting Indicators from a Packed Mirai Sample Mirai |
2022-01-04
⋅
The Cyber Security Times
⋅
Purple Fox malware is actively distributed via Telegram Installers PurpleFox |
2022-01-03
⋅
Tweet on a live C2 panel for Mint stealer MintStealer |
2022-01-03
⋅
Cluster25
⋅
North Korean Group “KONNI” Targets The Russian Diplomatic Sector With New Versions Of Malware Implants Konni |
2022-01-03
⋅
forensicitguy
⋅
A Tale of Two Dropper Scripts for Agent Tesla Agent Tesla |
2022-01-03
⋅
AhnLab
⋅
Distribution of Redline Stealer Disguised as Software Crack DanaBot RedLine Stealer Vidar |
2022-01-03
⋅
MinervaLabs
⋅
Malicious Telegram Installer Drops Purple Fox Rootkit PurpleFox |
2022-01-02
⋅
Atomic Matryoshka
⋅
"Cracking Open the Malware Piñata" Series: Intro to Dynamic Analysis with RedLineStealer RedLine Stealer |
2022-01-02
⋅
BleepingComputer
⋅
Malicious CSV text files used to install BazarBackdoor malware BazarBackdoor |