Click here to download all references as Bib-File.•
2021-07-30
⋅
Menlo Security
⋅
ISOMorph Infection: In-Depth Analysis of a New HTML Smuggling Campaign AsyncRAT NjRAT |
2021-07-30
⋅
HP
⋅
Detecting TA551 domains Valak Dridex IcedID ISFB QakBot |
2021-07-30
⋅
Medium walmartglobaltech
⋅
Decrypting BazarLoader strings with a Unicorn BazarBackdoor |
2021-07-30
⋅
Twitter (@Unit42_Intel)
⋅
Tweet on BazarLoader infection leading to cobaltstrike and Powershell script file for PrintNightmare vulnerability BazarBackdoor Cobalt Strike |
2021-07-30
⋅
Bleeping Computer
⋅
DOJ: SolarWinds hackers breached emails from 27 US Attorneys’ offices |
2021-07-30
⋅
RiskIQ
⋅
Bear Tracks: Infrastructure Patterns Lead to More Than 30 Active APT29 C2 Servers elf.wellmess WellMess |
2021-07-29
⋅
Microsoft
⋅
BazaCall: Phony call centers lead to exfiltration and ransomware BazarBackdoor BazarCall |
2021-07-29
⋅
Silent Push
⋅
Using the Silent Push app and API to find punycode domains |
2021-07-29
⋅
Microsoft
⋅
When coin miners evolve, Part 2: Hunting down LemonDuck and LemonCat attacks Lemon Duck |
2021-07-29
⋅
Kaspersky
⋅
GhostEmperor: Chinese-speaking APT targets high-profile victims using unknown rootkit GhostEmperor |
2021-07-29
⋅
Talos Intelligence
⋅
Talos Spotlight: Solarmarker solarmarker |
2021-07-29
⋅
Avast
⋅
Magnitude Exploit Kit: Still Alive and Kicking Magniber |
2021-07-29
⋅
Intrusiontruth
⋅
An (in)Competent Cyber Program – A brief cyber history of the 'CCP' |
2021-07-29
⋅
Recorded Future
⋅
“Beijing One Pass” Employee Benefits Software Exhibits Spyware Characteristics |
2021-07-29
⋅
360 Total Security
⋅
“Netfilter Rootkit II ” Continues to Hold WHQL Signatures NetfilterRootkit |
2021-07-29
⋅
Microsoft
⋅
BazaCall: Phony call centers lead to exfiltration and ransomware BazarBackdoor Cobalt Strike |
2021-07-29
⋅
ENISA
⋅
ENISA Threat Landscape for Supply Chain Attacks |
2021-07-29
⋅
SentinelOne
⋅
MeteorExpress | Mysterious Wiper Paralyzes Iranian Trains with Epic Troll Meteor |
2021-07-29
⋅
Rasta Mouse
⋅
NTLM Relaying via Cobalt Strike Cobalt Strike |
2021-07-28
⋅
ThreatFabric
⋅
Vultur, with a V for VNC Vultur |