Click here to download all references as Bib-File.•
2020-05-26
⋅
CISA
⋅
Alert (AA21-116A): Russian Foreign Intelligence Service (SVR) Cyber Operations: Trends and Best Practices for Network Defenders elf.wellmess WellMess |
2020-05-26
⋅
Council on Foreign Relations
⋅
The EU’s Response to SolarWinds |
2020-05-26
⋅
DataBreaches.net
⋅
A former DarkSide listing shows up on REvil’s leak site DarkSide REvil |
2020-05-26
⋅
Youtube (GRIMM Cyber)
⋅
Passive DNS for Threat Detection & Hunting (Discussing some infrastructure related to APT32) METALJACK |
2020-05-26
⋅
CrowdStrike
⋅
Weaponized Disk Image Files: Analysis, Trends and Remediation Nanocore RAT |
2020-05-26
⋅
Seguranca Informatica
⋅
The updated Grandoreiro Malware equipped with latenbot-C2 features in Q2 2020 now extended to Portuguese banks Grandoreiro |
2020-05-26
⋅
ESET Research
⋅
From Agent.BTZ to ComRAT v4: A ten‑year journey (White Paper) Agent.BTZ |
2020-05-26
⋅
ESET Research
⋅
From Agent.BTZ to ComRAT v4: A ten‑year journey Agent.BTZ |
2020-05-25
⋅
Elastic
⋅
The Elastic Guide to Threat Hunting |
2020-05-25
⋅
⋅
CERT-FR
⋅
INDICATEURS DE COMPROMISSION DU CERT-FR - Objet: Le code malveillant Dridex Dridex |
2020-05-25
⋅
⋅
AhnLab
⋅
Hangul malware distributed in real estate investment related emails (using EPS) |
2020-05-24
⋅
Positive Technologies
⋅
Operation TA505: network infrastructure. Part 3. AndroMut Buhtrap SmokeLoader |
2020-05-24
⋅
Nullteilerfrei Blog
⋅
Zloader String Obfuscation Zloader |
2020-05-22
⋅
Yoroi
⋅
Cyber-Criminal espionage Operation insists on Italian Manufacturing Agent Tesla |
2020-05-22
⋅
Positive Technologies
⋅
Operation TA505: investigating the ServHelper backdoor with NetSupport RAT. Part 2. NetSupportManager RAT ServHelper |
2020-05-22
⋅
ESET Research
⋅
Insidious Android malware gives up all malicious features but one to gain stealth DEFENSOR ID |
2020-05-22
⋅
ThreatConnect
⋅
ThreatConnect Research Roundup: Possible APT33 Infrastructure |
2020-05-22
⋅
⋅
Antiy CERT
⋅
Analysis of Ramsay components of Darkhotel's infiltration and isolation network Ramsay DarkHotel |
2020-05-21
⋅
Sophos
⋅
Asnarök attackers twice modified attack midstream NOTROBIN Ragnarok |
2020-05-21
⋅
BrightTALK (FireEye)
⋅
Navigating MAZE: Analysis of a Rising Ransomware Threat Maze |