Click here to download all references as Bib-File.•
| 2021-10-07
⋅
Mandiant
⋅
FIN12: The Prolific Ransomware Intrusion Threat Actor That Has Aggressively Pursued Healthcare Targets BazarBackdoor GRIMAGENT Ryuk |
| 2021-10-05
⋅
Blackberry
⋅
Drawing a Dragon: Connecting the Dots to Find APT41 Cobalt Strike Ghost RAT |
| 2021-09-30
⋅
PTSecurity
⋅
Masters of Mimicry: new APT group ChamelGang and its arsenal Cobalt Strike |
| 2021-09-30
⋅
Blackberry
⋅
Threat Thursday: xLoader Infostealer Xloader Formbook |
| 2021-09-29
⋅
Silent Push
⋅
Evaluating the Value of Security Intelligence Feeds with Silent Push |
| 2021-09-29
⋅
Advanced Intelligence
⋅
Backup “Removal” Solutions - From Conti Ransomware With Love Cobalt Strike Conti |
| 2021-09-27
⋅
Microsoft
⋅
FoggyWeb: Targeted NOBELIUM malware leads to persistent backdoor |
| 2021-09-25
⋅
Twitter (@MsftSecIntel)
⋅
Thread on Malicious Android apps posing as bank loan services are being widely distributed to targets in Asia Unidentified APK 006 |
| 2021-09-23
⋅
Blackberry
⋅
Threat Thursday: BlackMatter RaaS - Darker Than DarkSide? BlackMatter DarkSide BlackMatter DarkSide |
| 2021-09-22
⋅
Red Canary
⋅
Intelligence Insights: September 2021 |
| 2021-09-21
⋅
Recorded Future
⋅
China-Linked Group TAG-28 Targets India’s “The Times Group” and UIDAI (Aadhaar) Government Agency With Winnti Malware Winnti |
| 2021-09-21
⋅
Talos Intelligence
⋅
TinyTurla - Turla deploys new malware to keep a secret backdoor on victim machines TinyTurla |
| 2021-09-21
⋅
civilsphereproject
⋅
Capturing and Detecting AndroidTester Remote Access Trojan with the Emergency VPN SpyNote |
| 2021-09-21
⋅
Microsoft
⋅
Catching the big fish: Analyzing a large-scale phishing-as-a-service operation |
| 2021-09-17
⋅
Group-IB
⋅
Scamdemic outbreak Scammers attack users in Middle Eastern countries |
| 2021-09-16
⋅
Blackberry
⋅
Threat Thursday: NetWire RAT is Coming Down the Line NetWire RC |
| 2021-09-15
⋅
Microsoft
⋅
Analyzing attacks that exploit the CVE-2021-40444 MSHTML vulnerability EXOTIC LILY |
| 2021-09-15
⋅
Telsy
⋅
REMCOS and Agent Tesla loaded into memory with Rezer0 loader Agent Tesla Remcos |
| 2021-09-15
⋅
Microsoft
⋅
Analyzing attacks that exploit the CVE-2021-40444 MSHTML vulnerability Cobalt Strike |
| 2021-09-14
⋅
CrowdStrike
⋅
Big Game Hunting TTPs Continue to Shift After DarkSide Pipeline Attack BlackMatter DarkSide REvil Avaddon BlackMatter Clop Conti CryptoLocker DarkSide DoppelPaymer Hades REvil |