Click here to download all references as Bib-File.

Enter keywords to filter the library entries below or Propose new Entry
2021-12-06MalwareBookReportsmuzi
AGENT TESLAGGAH
Agent Tesla
2021-12-06MandiantAshraf Abdalhalim, Ben Read, Doug Bienstock, Gabriella Roncone, Jonathan Leathery, Josh Madeley, Juraj Sucik, Luis Rocha, Luke Jenkins, Manfred Erjak, Marius Fodoreanu, Microsoft Detection and Response Team (DART), Microsoft Threat Intelligence Center (MSTIC), Mitchell Clarke, Parnian Najafi, Sarah Hawley, Wojciech Ledzion
Suspected Russian Activity Targeting Government and Business Entities Around the Globe (UNC2452)
Cobalt Strike CryptBot
2021-12-06CERT-FRCERT-FR
Phishing campaigns by the Nobelium intrusion set
Cobalt Strike
2021-12-04ThetaHamish Krebs
Pivoting through malicious infrastructure: from ZoomPortable to Windscribe
2021-12-04BleepingComputerBill Toulas
Malicious KMSPico installers steal your cryptocurrency wallets
CryptBot
2021-12-03GoSecureGoSecure Titan Labs
TrickBot Leverages Zoom Work from Home Interview Malspam, Heaven’s Gate and… Spamhaus?
TrickBot
2021-12-03HSEHSE
Conti cyber attack on the HSE
Conti
2021-12-03Github (rivitna)Andrey Zhdanov
Hive Demo and IoCs
Hive Hive
2021-12-03CleafyCleafy
Mobile banking fraud: BRATA strikes again
BRATA
2021-12-03RiskIQKelsey Clapp
Woo's There? Magecart Targets WooCommerce
magecart
2021-12-03Trend MicroNitesh Surana
Vulnerabilities Exploited for Monero Mining Malware Delivered via GitHub, Netlify
2021-12-03vmwareVMWare
TigerRAT – Advanced Adversaries on the Prowl
Tiger RAT
2021-12-03KrebsOnSecurityBrian Krebs
Who Is the Network Access Broker ‘Babam’?
2021-12-03SANS ISC InfoSec ForumsBrad Duncan
TA551 (Shathak) pushes IcedID (Bokbot)
IcedID
2021-12-02FBIFBI
CU-000156-MW: Indicators of Compromise Associated with Cuba Ransomware
Cuba
2021-12-02GoogleGoogle Threat Analysis Group, Shane Huntley
TAG Bulletin: Q4 2021
2021-12-02Red CanaryTony Lambert
KMSPico and Cryptbot: A spicy combo
CryptBot
2021-12-02AnkuraVishal Thakur
Revix Linux Ransomware
REvil
2021-12-02CERT-FRCERT-FR
Phishing Campaigns by the Nobelium Intrusion Set
Cobalt Strike
2021-12-02CISAUS-CERT
Alert (AA21-336A): APT Actors Exploiting CVE-2021-44077 in Zoho ManageEngine ServiceDesk Plus
KDC Sponge NGLite