Click here to download all references as Bib-File.

Enter keywords to filter the library entries below or Propose new Entry
2021-08-18Recorded FutureInsikt Group®
@online{group:20210818:china:f0a7872, author = {Insikt Group®}, title = {{China Propaganda Network Targets BBC Media, UK in Large-Scale Influence Campaign}}, date = {2021-08-18}, organization = {Recorded Future}, url = {https://www.recordedfuture.com/china-propaganda-targets-bbc-uk/}, language = {English}, urldate = {2021-09-10} } China Propaganda Network Targets BBC Media, UK in Large-Scale Influence Campaign
2021-08-17Recorded FutureInsikt Group®
@techreport{group:20210817:operation:65bec11, author = {Insikt Group®}, title = {{Operation Secondary Infektion Continues Targeting Democratic Institutions and Regional Geopolitics}}, date = {2021-08-17}, institution = {Recorded Future}, url = {https://go.recordedfuture.com/hubfs/reports/cta-2021-0817.pdf}, language = {English}, urldate = {2021-09-10} } Operation Secondary Infektion Continues Targeting Democratic Institutions and Regional Geopolitics
2021-08-11GEMINIInsikt Group®
@online{group:20210811:amid:63ffd85, author = {Insikt Group®}, title = {{Amid Boom in Phishing, Fraudsters Target Customers of Small and Mid-sized Banks}}, date = {2021-08-11}, organization = {GEMINI}, url = {https://geminiadvisory.io/amid-phishing-boom-fraudsters-target-small-and-mid-sized-banks/}, language = {English}, urldate = {2021-09-10} } Amid Boom in Phishing, Fraudsters Target Customers of Small and Mid-sized Banks
2021-08-04Recorded FutureInsikt Group®
@techreport{group:20210804:protect:283486d, author = {Insikt Group®}, title = {{Protect Against BlackMatter Ransomware Before It’s Offered}}, date = {2021-08-04}, institution = {Recorded Future}, url = {https://go.recordedfuture.com/hubfs/reports/MTP-2021-0804.pdf}, language = {English}, urldate = {2021-08-06} } Protect Against BlackMatter Ransomware Before It’s Offered
BlackMatter DarkSide
2021-07-29Recorded FutureInsikt Group®
@techreport{group:20210729:beijing:553baa8, author = {Insikt Group®}, title = {{“Beijing One Pass” Employee Benefits Software Exhibits Spyware Characteristics}}, date = {2021-07-29}, institution = {Recorded Future}, url = {https://go.recordedfuture.com/hubfs/reports/cta-2021-0729.pdf}, language = {English}, urldate = {2021-08-02} } “Beijing One Pass” Employee Benefits Software Exhibits Spyware Characteristics
2021-07-27Recorded FutureInsikt Group®
@online{group:20210727:blackmatter:db85bfb, author = {Insikt Group®}, title = {{BlackMatter Ransomware Emerges As Successor to DarkSide, REvil}}, date = {2021-07-27}, organization = {Recorded Future}, url = {https://www.recordedfuture.com/blackmatter-ransomware-successor-darkside-revil/}, language = {English}, urldate = {2021-07-29} } BlackMatter Ransomware Emerges As Successor to DarkSide, REvil
DarkSide LockBit REvil
2021-07-27Recorded FutureInsikt Group®
@techreport{group:20210727:chinas:6cab907, author = {Insikt Group®}, title = {{China’s Digital Colonialism: Espionage and Repression Along the Digital Silk Road}}, date = {2021-07-27}, institution = {Recorded Future}, url = {https://go.recordedfuture.com/hubfs/reports/cta-2021-0727.pdf}, language = {English}, urldate = {2021-07-29} } China’s Digital Colonialism: Espionage and Repression Along the Digital Silk Road
2021-07-15Recorded FutureInsikt Group®
@techreport{group:20210715:threats:c0bb112, author = {Insikt Group®}, title = {{Threats to the 2020 Tokyo Olympic Games}}, date = {2021-07-15}, institution = {Recorded Future}, url = {https://go.recordedfuture.com/hubfs/reports/cta-2021-0715.pdf}, language = {English}, urldate = {2021-07-20} } Threats to the 2020 Tokyo Olympic Games
2021-07-08Recorded FutureInsikt Group®
@online{group:20210708:chinese:98d34d3, author = {Insikt Group®}, title = {{Chinese State-Sponsored Activity Group TAG-22 Targets Nepal, the Philippines, and Taiwan Using Winnti and Other Tooling}}, date = {2021-07-08}, organization = {Recorded Future}, url = {https://www.recordedfuture.com/chinese-group-tag-22-targets-nepal-philippines-taiwan/}, language = {English}, urldate = {2021-07-12} } Chinese State-Sponsored Activity Group TAG-22 Targets Nepal, the Philippines, and Taiwan Using Winnti and Other Tooling
ShadowPad Spyder Winnti
2021-07-08Recorded FutureInsikt Group
@online{group:20210708:chinese:4a012a2, author = {Insikt Group}, title = {{Chinese State-Sponsored Activity Group TAG-22 Targets Nepal, the Philippines, and Taiwan Using Winnti and Other Tooling}}, date = {2021-07-08}, organization = {Recorded Future}, url = {https://www.recordedfuture.com/chinese-group-tag-22-targets-nepal-philippines-taiwan}, language = {English}, urldate = {2022-07-25} } Chinese State-Sponsored Activity Group TAG-22 Targets Nepal, the Philippines, and Taiwan Using Winnti and Other Tooling
Cobalt Strike Earth Lusca
2021-06-16Recorded FutureInsikt Group®
@techreport{group:20210616:threat:d585785, author = {Insikt Group®}, title = {{Threat Activity Group RedFoxtrot Linked to China’s PLA Unit 69010; Targets Bordering Asian Countries}}, date = {2021-06-16}, institution = {Recorded Future}, url = {https://go.recordedfuture.com/hubfs/reports/cta-2021-0616.pdf}, language = {English}, urldate = {2022-07-29} } Threat Activity Group RedFoxtrot Linked to China’s PLA Unit 69010; Targets Bordering Asian Countries
Icefog PcShare PlugX Poison Ivy QuickHeal DAGGER PANDA
2021-06-02Recorded FutureInsikt Group®
@techreport{group:20210602:threats:d878fa3, author = {Insikt Group®}, title = {{Threats to Asian Communities in North America, Europe, and Oceania}}, date = {2021-06-02}, institution = {Recorded Future}, url = {https://go.recordedfuture.com/hubfs/reports/cta-2021-0602.pdf}, language = {English}, urldate = {2021-06-16} } Threats to Asian Communities in North America, Europe, and Oceania
2021-05-11Recorded FutureInsikt Group®
@techreport{group:20210511:business:36b4351, author = {Insikt Group®}, title = {{The Business of Fraud: Drops and Mules}}, date = {2021-05-11}, institution = {Recorded Future}, url = {https://go.recordedfuture.com/hubfs/reports/cta-2021-0511.pdf}, language = {English}, urldate = {2021-05-21} } The Business of Fraud: Drops and Mules
2021-05-05Recorded FutureInsikt Group®
@online{group:20210505:chinas:0d77f3f, author = {Insikt Group®}, title = {{China’s PLA Unit 61419 Purchasing Foreign Antivirus Products, Likely for Exploitation}}, date = {2021-05-05}, organization = {Recorded Future}, url = {https://www.recordedfuture.com/china-pla-unit-purchasing-antivirus-exploitation/}, language = {English}, urldate = {2021-05-08} } China’s PLA Unit 61419 Purchasing Foreign Antivirus Products, Likely for Exploitation
2021-04-21Recorded FutureInsikt Group®
@techreport{group:20210421:iranlinked:3eb0720, author = {Insikt Group®}, title = {{Iran-Linked Threat Actor The MABNA Institute’s Operations in 2020}}, date = {2021-04-21}, institution = {Recorded Future}, url = {https://go.recordedfuture.com/hubfs/reports/cta-2021-0421.pdf}, language = {English}, urldate = {2021-05-04} } Iran-Linked Threat Actor The MABNA Institute’s Operations in 2020
2021-03-25Recorded FutureInsikt Group®
@online{group:20210325:suspected:5b0078f, author = {Insikt Group®}, title = {{Suspected Chinese Group Calypso APT Exploiting Vulnerable Microsoft Exchange Servers}}, date = {2021-03-25}, organization = {Recorded Future}, url = {https://www.recordedfuture.com/chinese-group-calypso-exploiting-microsoft-exchange/}, language = {English}, urldate = {2021-03-30} } Suspected Chinese Group Calypso APT Exploiting Vulnerable Microsoft Exchange Servers
Meterpreter PlugX
2021-03-24Recorded FutureInsikt Group®
@techreport{group:20210324:myanmar:f99a20a, author = {Insikt Group®}, title = {{Myanmar Coup and Internet Censorship Pushes Civilians to Underground Forums, Dark Web}}, date = {2021-03-24}, institution = {Recorded Future}, url = {https://go.recordedfuture.com/hubfs/reports/cta-2021-0324.pdf}, language = {English}, urldate = {2021-03-25} } Myanmar Coup and Internet Censorship Pushes Civilians to Underground Forums, Dark Web
2021-03-17Recorded FutureInsikt Group®
@online{group:20210317:chinalinked:65b251b, author = {Insikt Group®}, title = {{China-linked TA428 Continues to Target Russia and Mongolia IT Companies}}, date = {2021-03-17}, organization = {Recorded Future}, url = {https://www.recordedfuture.com/china-linked-ta428-threat-group}, language = {English}, urldate = {2021-03-19} } China-linked TA428 Continues to Target Russia and Mongolia IT Companies
PlugX Poison Ivy TA428
2021-03-12Recorded FutureInsikt Group®
@techreport{group:20210312:dewmode:c28007f, author = {Insikt Group®}, title = {{DEWMODE Web Shell Used on Accellion FTA Appliances}}, date = {2021-03-12}, institution = {Recorded Future}, url = {https://go.recordedfuture.com/hubfs/reports/mtp-2021-0312.pdf}, language = {English}, urldate = {2021-03-16} } DEWMODE Web Shell Used on Accellion FTA Appliances
DEWMODE
2021-02-28Recorded FutureInsikt Group®
@online{group:20210228:chinalinked:ce3b62d, author = {Insikt Group®}, title = {{China-linked Group RedEcho Targets the Indian Power Sector Amid Heightened Border Tensions}}, date = {2021-02-28}, organization = {Recorded Future}, url = {https://www.recordedfuture.com/redecho-targeting-indian-power-sector/}, language = {English}, urldate = {2021-03-31} } China-linked Group RedEcho Targets the Indian Power Sector Amid Heightened Border Tensions
PlugX ShadowPad RedEcho