Click here to download all references as Bib-File.•
2021-09-14
⋅
CrowdStrike
⋅
Big Game Hunting TTPs Continue to Shift After DarkSide Pipeline Attack BlackMatter DarkSide REvil Avaddon BlackMatter Clop Conti CryptoLocker DarkSide DoppelPaymer Hades REvil |
2021-09-14
⋅
ZecOps
⋅
The Recent iOS 0-Click, CVE-2021-30860, Sounds Familiar. An Unreleased Write-up: One Year Later Chrysaor |
2021-09-09
⋅
Blackberry
⋅
Threat Thursday: Get Your Paws Off My Data, Raccoon Infostealer Raccoon |
2021-09-09
⋅
Symantec
⋅
Grayfly: Chinese Threat Actor Uses Newly-discovered Sidewalk Malware CROSSWALK MimiKatz SideWalk |
2021-09-08
⋅
CrowdStrike
⋅
2021 Threat Hunting Report |
2021-09-08
⋅
AT&T
⋅
TeamTNT with new campaign aka “Chimaera” TeamTNT |
2021-09-08
⋅
Ciper Tech Solutions
⋅
Rapidly Evolving BlackMatter Ransomware Tactics BlackMatter |
2021-09-07
⋅
⋅
Qianxin
⋅
Analysis of recent attacks by the Lazarus APT organization on the blockchain finance and energy industries |
2021-09-02
⋅
⋅
AhnLab
⋅
Attacks using metasploit meterpreter Appleseed Meterpreter |
2021-09-02
⋅
Microsoft
⋅
A deep-dive into the SolarWinds Serv-U SSH vulnerability (DEV-0322) |
2021-09-01
⋅
Intezer
⋅
TeamTNT: Cryptomining Explosion TeamTNT Tsunami |
2021-09-01
⋅
Medium s2wlab
⋅
BlackMatter x Babuk : Using the same web server for sharing leaked files Babuk BlackMatter Babuk BlackMatter |
2021-08-31
⋅
⋅
Qianxin
⋅
Analysis of suspected Russian-speaking attackers using COVID-19 vaccine bait to attack the Middle East GRUNT |
2021-08-30
⋅
⋅
Qianxin
⋅
Operation (Thủy Tinh) OceanStorm: The evil lotus hidden under the abyss Cobalt Strike MimiKatz |
2021-08-26
⋅
Microsoft
⋅
Widespread credential phishing campaign abuses open redirector links |
2021-08-25
⋅
Twitter (@malwrhunterteam)
⋅
Tweet on Hydra-variant with Dutch ransom note Nitro |
2021-08-20
⋅
⋅
TEAMT5
⋅
See REvil again?! See how hackers use the same encryption ransomware program REvil to annihilate the attack evidence REvil |
2021-08-20
⋅
Symantec
⋅
LockFile: Ransomware Uses PetitPotam Exploit to Compromise Windows Domain Controllers LockFile |
2021-08-19
⋅
Blackberry
⋅
BlackBerry Prevents: Threat Actor Group TA575 and Dridex Malware Cobalt Strike Dridex TA575 |
2021-08-18
⋅
AhnLab
⋅
Infostealer Malware Azorult Being Distributed Through Spam Mails Azorult |