Click here to download all references as Bib-File.•
| 2021-11-10
⋅
Sekoia
⋅
Walking on APT31 infrastructure footprints Rekoobe Unidentified ELF 004 Cobalt Strike |
| 2021-11-09
⋅
Trend Micro
⋅
Compromised Docker Hub Accounts Abused for Cryptomining Linked to TeamTNT |
| 2021-11-08
⋅
NCC Group
⋅
TA505 exploits SolarWinds Serv-U vulnerability (CVE-2021-35211) for initial access |
| 2021-11-05
⋅
Blackberry
⋅
Hunter Becomes Hunted: Zebra2104 Hides a Herd of Malware Cobalt Strike DoppelDridex Mount Locker Phobos StrongPity |
| 2021-11-04
⋅
Blackberry
⋅
Threat Thursday: Karma Ransomware Karma |
| 2021-11-04
⋅
splunk
⋅
Detecting IcedID... Could It Be A Trickbot Copycat? IcedID |
| 2021-11-03
⋅
Telsy
⋅
Dissecting new AppleSeed backdoor of Kimsuky threat actor Appleseed |
| 2021-11-03
⋅
Team Cymru
⋅
Webinject Panel Administration: A Vantage Point into Multiple Threat Actor Campaigns - A Case Study on the Value of Threat Reconnaisance DoppelDridex IcedID QakBot Zloader |
| 2021-11-03
⋅
Trend Micro
⋅
TeamTNT Upgrades Arsenal, Refines Focus on Kubernetes and GPU Environments TeamTNT |
| 2021-11-02
⋅
Twitter (@malwrhunterteam)
⋅
Tweet on linux version of Hive Ransomware group's command to shut down ESXI VMs Hive |
| 2021-11-01
⋅
Symantec
⋅
BlackMatter: New Data Exfiltration Tool Used in Attacks ExMatter |
| 2021-10-27
⋅
CrowdStrike
⋅
Tales From the Cryptojacking Front Lines |
| 2021-10-26
⋅
Symantec
⋅
Almost 100 Organizations in Brazil Targeted with Banking Trojan bancos |
| 2021-10-26
⋅
Microsoft
⋅
Protect your business from password sprays with Microsoft DART recommendations |
| 2021-10-25
⋅
CrowdStrike
⋅
OverWatch Elite In Action: Prompt Call Escalation Proves Vital to Containing Attack MimiKatz |
| 2021-10-25
⋅
lacework
⋅
TeamTNT Continues to Target Exposed Docker API |
| 2021-10-22
⋅
TEAMT5
⋅
Assassinations of "MiniNinja" in Various APAC Countries ToddyCat |
| 2021-10-21
⋅
Microsoft
⋅
Franken-phish: TodayZoo built from other phishing kits |
| 2021-10-20
⋅
AhnLab
⋅
VNC Malware (TinyNuke, TightVNC) Used by Kimsuky Group TinyNuke |
| 2021-10-20
⋅
Symantec
⋅
New Espionage Campaign Targets South East Asia Unidentified 087 |