Click here to download all references as Bib-File.•
| 2021-11-10
⋅
zimperium
⋅
PhoneSpy: The App-Based Cyberattack Snooping South Korean Citizens PhoneSpy |
| 2021-11-10
⋅
Trend Micro
⋅
Void Balaur and the Rise of the Cybermercenary Industry ZStealer Void Balaur |
| 2021-11-10
⋅
Trend Micro
⋅
Void Balaur and the Rise of the Cybermercenary Industry (IOCs) |
| 2021-11-10
⋅
CrowdStrike
⋅
Ploutus ATM Malware Case Study: Automated Deobfuscation of a Strongly Obfuscated .NET Binary Ploutus ATM |
| 2021-11-10
⋅
open source dfir
⋅
Use EVTX files on VirusTotal with Timesketch and Sigma (Part 2) |
| 2021-11-10
⋅
Blackberry
⋅
REvil Under the Microscope GootKit REvil |
| 2021-11-10
⋅
Microsoft
⋅
The hunt for NOBELIUM, the most sophisticated nation-state attack in history |
| 2021-11-10
⋅
Cisco Talos
⋅
North Korean attackers use malicious blogs to deliver malware to high-profile South Korean targets GoldDragon |
| 2021-11-10
⋅
Randori
⋅
Zero-Day Disclosure: Palo Alto Networks GlobalProtect VPN CVE-2021-3064 |
| 2021-11-10
⋅
Twitter (@billyleonard)
⋅
Tweet on Rekoobe (used by APT31), being a fork of open source tool called Tiny SHell, used by different actor since at least 2012 Rekoobe |
| 2021-11-10
⋅
AT&T
⋅
Stories from the SOC - Powershell, Proxyshell, Conti TTPs OH MY! Cobalt Strike Conti |
| 2021-11-10
⋅
McAfee
⋅
The Newest Malicious Actor: “Squirrelwaffle” Malicious Doc. Squirrelwaffle |
| 2021-11-10
⋅
Sekoia
⋅
Walking on APT31 infrastructure footprints Rekoobe Unidentified ELF 004 Cobalt Strike |
| 2021-11-10
⋅
⋅
mai1zhi2 / SharpBeacon - CobaltStrike Beacon written in .Net 4 SharpBeacon |
| 2021-11-09
⋅
Cybereason
⋅
THREAT ANALYSIS REPORT: From Shatak Emails to the Conti Ransomware Cobalt Strike Conti |
| 2021-11-09
⋅
Certitude
⋅
The Invisible JavaScript Backdoor |
| 2021-11-09
⋅
Trend Micro
⋅
Compromised Docker Hub Accounts Abused for Cryptomining Linked to TeamTNT |
| 2021-11-09
⋅
Cloudflare
⋅
A Brief History of the Meris Botnet |
| 2021-11-09
⋅
CrowdStrike
⋅
Scheming with URLs: One-Click Attack Surface in Linux Desktop Environments |
| 2021-11-09
⋅
360 netlab
⋅
Abcbot, an evolving botnet Abcbot |