Click here to download all references as Bib-File.•
| 2021-11-08
⋅
Bitdefender
⋅
Popular NPM Repositories Compromised in Man-in-the-Middle Attack DanaBot |
| 2021-11-08
⋅
The Record
⋅
US arrests and charges Ukrainian man for Kaseya ransomware attack REvil REvil |
| 2021-11-08
⋅
FBI
⋅
WANTED poster for Yevhgyeniy Polyanin (REvil affiliate) REvil REvil |
| 2021-11-08
⋅
Department of Justice
⋅
Ukrainian Arrested and Charged with Ransomware Attack on Kaseya REvil REvil |
| 2021-11-08
⋅
Department of Justice
⋅
Indictment of Yevgeniy Polyanin, one off the REvil affliates REvil REvil |
| 2021-11-08
⋅
U.S. Department of the Treasury
⋅
Advisory on Ransomware and the Use of the Financial System to Facilitate Ransom Payments REvil REvil |
| 2021-11-08
⋅
KELA
⋅
Ain’t No Actor Trustworthy Enough: The importance of validating sources |
| 2021-11-08
⋅
U.S. Department of the Treasury
⋅
Treasury Continues to Counter Ransomware as Part of Whole-of-Government Effort; Sanctions Ransomware Operators and Virtual Currency Exchange (Yaroslav Vasinskyi & Yevgeniy Polyanin) REvil REvil |
| 2021-11-08
⋅
NCC Group
⋅
TA505 exploits SolarWinds Serv-U vulnerability (CVE-2021-35211) for initial access |
| 2021-11-08
⋅
⋅
DIICOT (Romanian Directorate for Investigating Organized Crime and Terrorism)
⋅
Press release 2 08.11.2021 REvil REvil |
| 2021-11-08
⋅
Europol
⋅
Five Affiliates to Sodinokibi/REvil Unplugged REvil |
| 2021-11-08
⋅
CitizenLab
⋅
Devices of Palestinian Human Rights Defenders Hacked with NSO Group’s Pegasus Spyware Chrysaor |
| 2021-11-07
⋅
Palo Alto Networks Unit 42
⋅
Targeted Attack Campaign Against ManageEngine ADSelfService Plus Delivers Godzilla Webshells, NGLite Trojan and KdcSponge Stealer Godzilla Webshell NGLite |
| 2021-11-07
⋅
ChinaTalk
⋅
Selling China's Story |
| 2021-11-07
⋅
McAfee
⋅
Who Will Bend the Knee in RaaS Game of Thrones in 2022? |
| 2021-11-07
⋅
Marco Ramilli's Blog
⋅
CONTI Ransomware: Cheat Sheet Conti |
| 2021-11-05
⋅
Twitter (@Unit42_Intel)
⋅
Tweet on TA551 (Shathak) BazarLoader infection with CobaltStrike and DarkVNC drops BazarBackdoor Cobalt Strike |
| 2021-11-05
⋅
Emanuele De Lucia on Security
⋅
The BigBoss Rules: Something about one of the Uroburos’ RPC-based backdoors Turla SilentMoon |
| 2021-11-05
⋅
Twitter (@inversecos)
⋅
TTPs used by Pysa Ransonmware group Mespinoza MimiKatz |
| 2021-11-05
⋅
Zscaler
⋅
Spike in DanaBot Malware Activity DanaBot |