Click here to download all references as Bib-File.

Enter keywords to filter the library entries below or Propose new Entry
2021-07-27CleafyCleafy
Oscorp evolves into UBEL: an advanced Android malware spreading across the globe
Oscorp
2021-07-27BlackberryBlackBerry Research & Intelligence Team
Old Dogs New Tricks: Attackers Adopt Exotic Programming Languages
elf.wellmess ElectroRAT BazarNimrod Buer Cobalt Strike Remcos Snake TeleBot WellMess Zebrocy
2021-07-27SkynewsDeborah Haynes
Iran's Secret Cyber Files
2021-07-27SYGNIAAmitai Ben Shushan Ehrlich, Amnon Kushnir, Arie Zilberstein, Asaf Eitani, Gil Biton, Itay Shohat, Martin Korman, Noam Lifshitz, Sygnia Incident Response Team
TG1021: "Praying Mantis" Dissecting an Advanced Memory-Resident Attack
2021-07-26CheckMalCheckMal
WhiteBlackGroup Ransomware (.encrpt3d)
WhiteBlackCrypt
2021-07-26FortninetFred Gutierrez, Shunichi Imano
Wiper Malware Riding the 2021 Tokyo Olympic Games
VIGILANT CLEANER
2021-07-26MalwarebytesThomas Reed
OSX.XLoader hides little except its main purpose: What we learned in the installation process
Xloader
2021-07-26Twitter (@alex_lanstein)Alex Lanstein
Tweet on BITTER group widely targeting diplomats in Yangon
2021-07-26The WireKabir Agarwal, Sangeeta Barooah Pisharoty
From Army and BSF to RAW, Spyware Threat Touched National Security Field Too
Chrysaor
2021-07-26malwareunicornMalware Unicorn
Portable Executable Injection Study
2021-07-26vmwarePavankumar Chaudhari, Quentin Fois
Hunting IcedID and unpacking automation with Qiling
IcedID
2021-07-26SentinelOnePhil Stokes
Detecting XLoader | A macOS ‘Malware-as-a-Service’ Info Stealer and Keylogger
Xloader
2021-07-25Medium svch0stsvch0st
Guide to Named Pipes and Hunting for Cobalt Strike Pipes
Cobalt Strike
2021-07-25Youtube (AhmedS Kasmani)AhmedS Kasmani
Analysis of Malware from Kaseya/Revil Supply Chain attack.
REvil
2021-07-25Max Kersten's BlogMax Kersten
Ghidra script to decrypt a string array in XOR DDoS
XOR DDoS
2021-07-25Arkadiy Tetelman A Security BlogArkadiy Tetelman
Scanning your iPhone for Pegasus, NSO Group's malware
Chrysaor
2021-07-24Twitter (@MsftSecIntel)Microsoft Security Intelligence
Tweet on attackers increasingly using HTML smuggling in phishing and other email campaigns to deliver Casbaneiro
Metamorfo
2021-07-240ffset BlogDaniel Bunce
Quack Quack: Analysing Qakbot’s Browser Hooking Module – Part 1
QakBot
2021-07-24InfoSec Handlers Diary BlogXavier Mertens
Agent.Tesla Dropped via a .daa Image and Talking to Telegram
Agent Tesla
2021-07-23Github (Lastline-Inc)Pavankumar Chaudhari, Quentin Fois
YARA rules, IOCs and Scripts for extracting IcedID C2s
IcedID