Click here to download all references as Bib-File.•
2022-01-11
⋅
BleepingComputer
⋅
New SysJoker backdoor targets Windows, macOS, and Linux SysJoker SysJoker SysJoker |
2022-01-11
⋅
muha2xmad
⋅
Unpacking Dridex malware Dridex |
2022-01-11
⋅
Twitter (@cglyer)
⋅
Thread on DEV-0401, a china based ransomware operator exploiting VMware Horizon with log4shell and deploying NightSky ransomware Cobalt Strike NightSky |
2022-01-11
⋅
Recorded Future
⋅
Combating Human Trafficking With Threat Intelligence |
2022-01-11
⋅
ESET Research
⋅
Signed kernel drivers – Unguarded gateway to Windows’ core InvisiMole LoJax RobinHood Slingshot |
2022-01-11
⋅
Understanding and Mitigating Russian State- Sponsored Cyber Threats to U.S. Critical Infrastructure |
2022-01-11
⋅
CrowdStrike
⋅
TellYouThePass Ransomware Analysis Reveals a Modern Reinterpretation Using Golang TellYouThePass |
2022-01-11
⋅
Check Point
⋅
APT35 exploits Log4j vulnerability to distribute new modular PowerShell toolkit APT35 |
2022-01-11
⋅
Cybereason
⋅
Threat Analysis Report: DatopLoader Exploits ProxyShell to Deliver QBOT and Cobalt Strike Cobalt Strike QakBot Squirrelwaffle |
2022-01-11
⋅
Intezer
⋅
New SysJoker Backdoor Targets Windows, Linux, and macOS SysJoker SysJoker SysJoker |
2022-01-10
⋅
splunk
⋅
Detecting Malware Script Loaders using Remcos: Threat Research Release December 2021 Remcos |
2022-01-10
⋅
Lab52
⋅
TokyoX: DLL side-loading an unknown artifact TokyoX |
2022-01-10
⋅
Fortinet
⋅
COVID Omicron Variant Lure Used to Distribute RedLine Stealer RedLine Stealer |
2022-01-10
⋅
Cado Security
⋅
Abcbot - An Evolution of Xanthe Abcbot Xanthe |
2022-01-09
⋅
Github (xephora)
⋅
Observed malicious IOCs for the ChromeLoader/CS_installer aka Choziosi Loader Malware Choziosi Choziosi |
2022-01-09
⋅
YouTube (0xca7)
⋅
Cat vs. RAT II - Bitrat BitRAT |
2022-01-09
⋅
Atomic Matryoshka
⋅
Malware Headliners: Dridex Dridex |
2022-01-09
⋅
forensicitguy
⋅
Inspecting a PowerShell Cobalt Strike Beacon Cobalt Strike |
2022-01-09
⋅
muha2xmad
⋅
Unpacking Vmprotect packer |
2022-01-09
⋅
Twitter (@sixdub)
⋅
Tweet on malicious document used by Gamaredon aka DEV-0157 |