Click here to download all references as Bib-File.•
2021-01-05
⋅
Intezer
⋅
Operation ElectroRAT: Attacker Creates Fake Companies to Drain Your Crypto Wallets ElectroRAT |
2021-01-05
⋅
⋅
Sangfor
⋅
Red team's perspective on the TTPs in Sunburst's backdoor SUNBURST |
2021-01-05
⋅
⋅
Sangfor
⋅
Attack from Mustang Panda? My rabbit is back! NjRAT |
2021-01-05
⋅
Objective-See
⋅
Discharging ElectroRAT ElectroRAT |
2021-01-05
⋅
Twitter (@Sebdraven)
⋅
Tweet on link between Babuk and Vasa locker Babuk |
2021-01-05
⋅
Trend Micro
⋅
Earth Wendigo Injects JavaScript Backdoor to Service Worker for Mailbox Exfiltration Cobalt Strike Earth Wendigo |
2021-01-04
⋅
⋅
NSFOCUS
⋅
Steganography, Little Fire Dragon and AGENTVX: A Detailed Analysis of APT Organization EVILNUM's New Attack Activities EVILNUM |
2021-01-04
⋅
Cisco Talos
⋅
Interview with a LockBit ransomware operator LockBit |
2021-01-04
⋅
Bleeping Computer
⋅
China's APT hackers move to ransomware attacks Clambling PlugX |
2021-01-04
⋅
Twitter (@TheEnergyStory)
⋅
Some small detail on compiler used for TEARDROP TEARDROP |
2021-01-04
⋅
KELA
⋅
Darknet Threat Actors Are Not Playing Games with the Gaming Industry REvil |
2021-01-04
⋅
splunk
⋅
Detecting Supernova Malware: SolarWinds Continued SUPERNOVA |
2021-01-04
⋅
Netresec
⋅
Finding Targeted SUNBURST Victims with pDNS SUNBURST |
2021-01-04
⋅
Check Point
⋅
DRIDEX Stopping Serial Killer: Catching the Next Strike Dridex |
2021-01-04
⋅
Bleeping Computer
⋅
TransLink confirms ransomware data theft, still restoring systems Egregor |
2021-01-03
⋅
Chuongdong blog
⋅
Babuk Ransomware Babuk |
2021-01-03
⋅
⋅
EST Security
⋅
Thallium organization exploits private stock investment messenger to attack software supply chain |
2021-01-02
⋅
The Wall Street Journal
⋅
How Russia’s ‘Info Warrior’ Hackers Let Kremlin Play Geopolitics on the Cheap |
2021-01-02
⋅
The New York Times
⋅
As Understanding of Russian Hacking Grows, So Does Alarm |
2021-01-02
⋅
Twitter (MalwareHunterTeam)
⋅
Tweet on Knot Ransomware Knot |