Click here to download all references as Bib-File.•
2024-10-17
⋅
Sekoia
⋅
ClickFix tactic: The Phantom Meet Rhadamanthys Stealc |
2024-10-17
⋅
Cisco Talos
⋅
UAT-5647 targets Ukrainian and Polish entities with RomCom malware variants MeltingClaw ROMCOM RAT ShadyHammock RomCom |
2024-10-17
⋅
Loader Insight Agency
⋅
Correlating Vidar Stealer Build IDs Based on Loader Tasks Lumma Stealer SmokeLoader Vidar |
2024-10-17
⋅
Hunt.io
⋅
From Warm to Burned: Shedding Light on Updated WarmCookie Infrastructure WarmCookie |
2024-10-16
⋅
nao_sec
⋅
IcePeony with the '996' work culture IceCache IceEvent IcePeony |
2024-10-16
⋅
BitSight
⋅
Exfiltration over Telegram Bots: Skidding Infostealer Logs 404 Keylogger Agent Tesla |
2024-10-16
⋅
Trend Micro
⋅
Fake LockBit, Real Damage: Ransomware Samples Abuse AWS S3 to Steal Data BockLit |
2024-10-16
⋅
ThreatMon
⋅
X-ZIGZAG Technical Malware Analysis Report AsyncRAT X-ZIGZAG |
2024-10-15
⋅
Microsoft
⋅
Phish, Click, Breach: Hunting for a Sophisticated Cyber Attack UNC4393 |
2024-10-15
⋅
⋅
Weixin
⋅
Analysis of the attack activities of APT-C-35 (belly brain worm) against a manufacturing company in South Asia Unidentified 117 (Donot Loader) |
2024-10-14
⋅
Trend Micro
⋅
Water Makara Uses Obfuscated JavaScript in Spear Phishing Campaign, Targets Brazil With Astaroth Malware Astaroth Water Makara |
2024-10-13
⋅
Elastic
⋅
Declawing PUMAKIT PUMAKIT |
2024-10-11
⋅
HarfangLab
⋅
HijackLoader evolution: abusing genuine signing certificates HijackLoader |
2024-10-11
⋅
Trend Micro
⋅
Earth Simnavaz (aka APT34) Levies Advanced Cyberattacks Against Middle East STEALHOOK OilRig |
2024-10-11
⋅
zimperium
⋅
Expanding the Investigation: Deep Dive into Latest TrickMo Samples TrickMo |
2024-10-11
⋅
Trend Micro
⋅
Earth Simnavaz (aka APT34) Levies Advanced Cyberattacks Against UAE and Gulf Regions STEALHOOK |
2024-10-10
⋅
Hunt.io
⋅
Unmasking Adversary Infrastructure: How Certificates and Redirects Exposed Earth Baxia and PlugX Activity Cobalt Strike PlugX |
2024-10-10
⋅
paloalto Netoworks: Unit42
⋅
Lynx Ransomware: A Rebranding of INC Ransomware INC Lynx |
2024-10-10
⋅
NCSC UK
⋅
Russian foreign intelligence poses global threat with cyber campaign exploiting established vulnerabilities |
2024-10-10
⋅
US Department of Defense
⋅
Update on SVR Cyber Operations and Vulnerability Exploitation |