Click here to download all references as Bib-File.•
| 2020-09-18
⋅
AppGate
⋅
Reverse Engineering Dridex and Automating IOC Extraction Dridex |
| 2020-09-18
⋅
Symantec
⋅
APT41: Indictments Put Chinese Espionage Group in the Spotlight CROSSWALK PlugX POISONPLUG ShadowPad Winnti |
| 2020-09-18
⋅
Symantec
⋅
Elfin: Latest U.S. Indictments Appear to Target Iranian Espionage Group Nanocore RAT |
| 2020-09-18
⋅
Github (gdbinit)
⋅
EvilQuest/ThiefQuest strings decrypt/deobfuscator EvilQuest |
| 2020-09-17
⋅
Avast Decoded
⋅
Complex obfuscation? Meh… (1/2) DarkGate |
| 2020-09-17
⋅
CRYPSIS
⋅
Ransomware’s New Trend: Exfiltration and Extortion LockBit |
| 2020-09-17
⋅
FBI
⋅
FBI FLASH ME-000134-MW: Indicators of Compromise Associated with Rana Intelligence Computing, also known as APT39, Chafer, Cadelspy, Remexi, and ITG07 |
| 2020-09-17
⋅
FBI
⋅
FBI PIN Number 20200917-001: IRGC-Associated Cyber Operations Against US Company Networks MimiKatz Nanocore RAT |
| 2020-09-17
⋅
U.S. Department of the Treasury
⋅
Counter Terrorism Designations; Iran/Cyber-related Designations |
| 2020-09-17
⋅
SophosLabs Uncut
⋅
Maze attackers adopt Ragnar Locker virtual machine technique Maze |
| 2020-09-17
⋅
Max Kersten's Blog
⋅
Automatic ReZer0 payload and configuration extraction |
| 2020-09-16
⋅
Qianxin
⋅
Target defense industry: Lazarus uses recruitment bait combined with continuously updated cyber weapons CRAT |
| 2020-09-16
⋅
FBI
⋅
FBI Flash AC-000133-TT: Indictment of China-Based Cyber Actors Associated with APT 41for Intrusion Activities APT41 |
| 2020-09-16
⋅
Department of Justice
⋅
Seven International Cyber Defendants, Including “Apt41” Actors, Charged In Connection With Computer Intrusion Campaigns Against More Than 100 Victims Globally APT41 RedGolf |
| 2020-09-15
⋅
Seguranca Informatica
⋅
Threat analysis: The emergent URSA trojan impacts many countries using a sophisticated loader Mispadu |
| 2020-09-15
⋅
CrowdStrike
⋅
Nowhere to Hide - 2020 Threat Hunting Report NedDnLoader RDAT TRACER KITTEN |
| 2020-09-15
⋅
US-CERT
⋅
Alert (AA20-259A): Iran-Based Threat Actor Exploits VPN Vulnerabilities CHINACHOPPER Fox Kitten |
| 2020-09-15
⋅
Recorded Future
⋅
Back Despite Disruption: RedDelta Resumes Operations PlugX |
| 2020-09-14
⋅
KELA
⋅
Back to School: Why Cybercriminals Continue to Target the Education Sector | Part Two |
| 2020-09-14
⋅
Trend Micro
⋅
Analysis of a Convoluted Attack Chain Involving Ngrok |