Click here to download all references as Bib-File.

Enter keywords to filter the library entries below or Propose new Entry
2021-07-06splunkSplunk Threat Research Team
REvil Ransomware Threat Research Update and Detections
REvil
2021-07-06Binary DefenseBinary Defense
Mars-Deimos: SolarMarker/Jupyter Infostealer (Part 1)
solarmarker
2021-07-06ID RansomwareAndrew Ivanov
AvosLocker Ransomware
2021-07-06TRUESECAlexander Andersson
How the Kaseya VSA Zero Day Exploit Worked
REvil
2021-07-06YouTube ( DuMp-GuY TrIcKsTeR)Jiří Vinopal
[1] Lokibot analyzing - defeating GuLoader with Windbg (Kernel debugging) and Live C2
CloudEyE Loki Password Stealer (PWS)
2021-07-06CrowdStrikeAdam Meyers
The Evolution of PINCHY SPIDER from GandCrab to REvil
Gandcrab REvil
2021-07-06CybereasonTom Fakterman
Cybereason vs. REvil Ransomware: The Kaseya Chronicles
REvil
2021-07-06Medium walmartglobaltechJason Reaves, Joshua Platt
TA505 adds GoLang crypter for delivering miners and ServHelper
ServHelper
2021-07-06FPRIJosephine Wolff
Understanding Russia’s Cyber Strategy
2021-07-06AT&TFernando Martinez
Lazarus campaign TTPs and evolution
2021-07-060ffset Blog0verfl0w_, Daniel Bunce
New TA402/MOLERATS Malware – Decrypting .NET Reactor Strings
SharpStage
2021-07-06The RecordCatalin Cimpanu
Moroccan hacker Dr HeX arrested for phishing attacks, malware distribution
2021-07-06Group-IBDmitry Volkov, Stephen Kavanagh
Operation Lyrebird: Group-IB assists INTERPOL in identifying suspect behind numerous cybercrimes worldwide
2021-07-06Twitter (@MBThreatIntel)Malwarebytes Threat Intelligence
Tweet on a malspam campaign that is taking advantage of Kaseya VSA ransomware attack to drop CobaltStrike
Cobalt Strike
2021-07-06paloalto Networks Unit 42John Martineau
Understanding REvil: The Ransomware Gang Behind the Kaseya Attack
Gandcrab REvil
2021-07-05Antiy CERTAntiy CERT
Analysis of "Bitter Elephant" organization's attack activities against my country in the first half of the year
2021-07-05Twitter (@R3MRUM)R3MRUM
Twitter thread with additional context on C2 domains found in REvil configuration
REvil
2021-07-05Twitter (@SophosLabs)SophosLabs
Tweet with a REvil ransomware execution demo
REvil
2021-07-05splunkRyan Kovar
Kaseya, Sera. What REvil Shall Encrypt, Shall Encrypt
REvil
2021-07-05MorphisecMorphisec
Real-Time Prevention of the Kaseya VSA Supply Chain REvil Ransomware Attack
REvil