Click here to download all references as Bib-File.•
2021-07-26
⋅
The Wire
⋅
From Army and BSF to RAW, Spyware Threat Touched National Security Field Too Chrysaor |
2021-07-26
⋅
malwareunicorn
⋅
Portable Executable Injection Study |
2021-07-26
⋅
vmware
⋅
Hunting IcedID and unpacking automation with Qiling IcedID |
2021-07-26
⋅
SentinelOne
⋅
Detecting XLoader | A macOS ‘Malware-as-a-Service’ Info Stealer and Keylogger Xloader |
2021-07-25
⋅
Medium svch0st
⋅
Guide to Named Pipes and Hunting for Cobalt Strike Pipes Cobalt Strike |
2021-07-25
⋅
Youtube (AhmedS Kasmani)
⋅
Analysis of Malware from Kaseya/Revil Supply Chain attack. REvil |
2021-07-25
⋅
Max Kersten's Blog
⋅
Ghidra script to decrypt a string array in XOR DDoS XOR DDoS |
2021-07-25
⋅
Arkadiy Tetelman A Security Blog
⋅
Scanning your iPhone for Pegasus, NSO Group's malware Chrysaor |
2021-07-24
⋅
Twitter (@MsftSecIntel)
⋅
Tweet on attackers increasingly using HTML smuggling in phishing and other email campaigns to deliver Casbaneiro Metamorfo |
2021-07-24
⋅
0ffset Blog
⋅
Quack Quack: Analysing Qakbot’s Browser Hooking Module – Part 1 QakBot |
2021-07-24
⋅
InfoSec Handlers Diary Blog
⋅
Agent.Tesla Dropped via a .daa Image and Talking to Telegram Agent Tesla |
2021-07-23
⋅
Github (Lastline-Inc)
⋅
YARA rules, IOCs and Scripts for extracting IcedID C2s IcedID |
2021-07-23
⋅
Malwarebytes
⋅
AvosLocker enters the ransomware scene, asks for partners AvosLocker |
2021-07-22
⋅
cyble
⋅
DoNot APT Group Delivers A Spyware Variant Of Chat App VICEROY TIGER |
2021-07-22
⋅
Expel
⋅
Incident report: Spotting SocGholish WordPress injection FAKEUPDATES |
2021-07-22
⋅
Microsoft
⋅
When coin miners evolve, Part 1: Exposing LemonDuck and LemonCat, modern mining malware infrastructure Lemon Duck |
2021-07-22
⋅
⋅
Trend Micro
⋅
Analysis of "[Urgent] Damage report regarding the occurrence of cyber attacks, etc. associated with the Tokyo Olympics.exe" VIGILANT CLEANER |
2021-07-22
⋅
The Record
⋅
Wiper malware targeting Japanese PCs discovered ahead of Tokyo Olympics opening VIGILANT CLEANER |
2021-07-22
⋅
Twitter (@HackSysTeam)
⋅
Tweet on analysis of Pegasus Chrysaor |
2021-07-22
⋅
Sophos
⋅
Malware increasingly targets Discord for abuse |