Click here to download all references as Bib-File.•
2023-07-19
⋅
Twitter (@MsftSecIntel)
⋅
Tweet on targeted attacks against the defense sector in Ukraine and Eastern Europe by the threat actor Secret Blizzard DeliveryCheck Kazuar |
2023-07-14
⋅
Microsoft
⋅
Analysis of Storm-0558 techniques for unauthorized email access Storm-0558 |
2023-07-12
⋅
Fortinet
⋅
LokiBot Campaign Targets Microsoft Office Document Using Vulnerabilities and Macros Loki Password Stealer (PWS) |
2023-07-11
⋅
Microsoft
⋅
Storm-0978 attacks reveal financial and espionage motives ROMCOM RAT |
2023-07-06
⋅
Microsoft
⋅
The five-day job: A BlackByte ransomware intrusion case study BlackByte ExByte |
2023-06-30
⋅
Microsoft
⋅
Monthly news - July 2023 Storm-1295 |
2023-06-14
⋅
Microsoft
⋅
Cadet Blizzard emerges as a novel and distinct Russian threat actor p0wnyshell reGeorg WhisperGate DEV-0586 SaintBear |
2023-06-08
⋅
Microsoft
⋅
Detecting and mitigating a multi-stage AiTM phishing and BEC campaign Storm-1167 |
2023-05-24
⋅
Microsoft
⋅
Volt Typhoon targets US critical infrastructure with living-off-the-land techniques Volt Typhoon |
2023-04-19
⋅
Microsoft
⋅
Exploring STRONTIUM's Abuse of Cloud Services FusionDrive |
2023-04-19
⋅
Microsoft
⋅
Exploring STRONTIUM's Abuse of Cloud Services FusionDrive |
2023-04-18
⋅
Microsoft
⋅
Nation-state threat actor PHOSPHORUS refines tradecraft to attack high-value targets Drokbk |
2023-04-18
⋅
Microsoft
⋅
How Microsoft names threat actors |
2023-04-18
⋅
Microsoft
⋅
How Microsoft names threat actors |
2023-04-18
⋅
Microsoft
⋅
How Microsoft names threat actors |
2023-04-13
⋅
Microsoft
⋅
Threat actors strive to cause Tax Day headaches CloudEyE Remcos |
2023-04-11
⋅
Microsoft
⋅
DEV-0196: QuaDream’s “KingsPawn” malware used to target civil society in Europe, North America, the Middle East, and Southeast Asia Carmine Tsunami |
2023-04-11
⋅
Microsoft
⋅
Guidance for investigating attacks using CVE-2022-21894: The BlackLotus campaign BlackLotus |
2023-04-10
⋅
Check Point
⋅
March 2023’s Most Wanted Malware: New Emotet Campaign Bypasses Microsoft Blocks to Distribute Malicious OneNote Files Agent Tesla CloudEyE Emotet Formbook Nanocore RAT NjRAT QakBot Remcos Tofsee |
2023-04-07
⋅
Microsoft
⋅
MERCURY and DEV-1084: Destructive attack on hybrid environment DarkBit Storm-1084 |