Click here to download all references as Bib-File.•
2024-02-20
⋅
Trendmicro
⋅
Earth Preta Campaign Uses DOPLUGS to Target Asia DOPLUGS |
2024-02-12
⋅
Estrellas's Blog
⋅
Unveiling custom packers: A comprehensive guide Dridex Simda |
2024-02-09
⋅
Department of Justice
⋅
International Cybercrime Malware Service Dismantled by Federal Authorities: Key Malware Sales and Support Actors in Malta and Nigeria Charged in Federal Indictments Ave Maria |
2024-02-07
⋅
Lumen
⋅
KV-Botnet: Don’t call it a Comeback KV |
2024-01-11
⋅
Forescout
⋅
Clearing the Fog of War – A critical analysis of recent energy sector cyberattacks in Denmark and Ukraine |
2024-01-09
⋅
Trend Micro
⋅
Black Basta-Affiliated Water Curupira’s Pikabot Spam Campaign Pikabot Water Curupira |
2024-01-03
⋅
CISO Series
⋅
Cybersecurity News: Google $5B suit settled, Orbit Chain loses $80M, FDA cyber agreement IRLeaks |
2023-12-14
⋅
Mandiant
⋅
Opening a Can of Whoop Ads: Detecting and Disrupting a Malvertising Campaign Distributing Backdoors DanaBot DarkGate UNC4393 |
2023-12-14
⋅
SentinelOne
⋅
Gaza Cybergang | Unified Front Targeting Hamas Opposition BarbWire Micropsia Pierogi AridViper |
2023-12-14
⋅
Mandiant
⋅
Opening a Can of Whoop Ads: Detecting and Disrupting a Malvertising Campaign Distributing Backdoors DanaBot DarkGate |
2023-12-07
⋅
Palo Alto Networks Unit 42
⋅
Fighting Ursa Aka APT28: Illuminating a Covert Campaign |
2023-12-06
⋅
Unveiling “Vetta Loader”: A custom loader hitting Italy and spread through infected USB Drives Vetta Loader |
2023-11-21
⋅
Checkpoint
⋅
The Platform Matters: A Comparative Study on Linux and Windows Ransomware Attacks Gwisin |
2023-10-27
⋅
Kaspersky
⋅
A cascade of compromise: unveiling Lazarus’ new campaign LPEClient PostNapTea |
2023-10-20
⋅
Twitter (@embee_research)
⋅
Decoding a Cobalt Strike .hta Loader Using CyberChef and Emulation Cobalt Strike |
2023-10-18
⋅
Twitter (@embee_research)
⋅
Ghidra Tutorial - Using Entropy To Locate a Cobalt Strike Decryption Function Cobalt Strike |
2023-10-12
⋅
Cluster25
⋅
CVE-2023-38831 Exploited by Pro-Russia Hacking Groups in RU-UA Conflict Zone for Credential Harvesting Operations Agent Tesla Crimson RAT Nanocore RAT SmokeLoader |
2023-09-12
⋅
⋅
ANSSI
⋅
FIN12: A Cybercriminal Group with Multiple Ransomware BlackCat Cobalt Strike Conti Hive MimiKatz Nokoyawa Ransomware PLAY Royal Ransom Ryuk SystemBC |
2023-09-04
⋅
⋅
Cert-UA
⋅
APT28 cyberattack: msedge as a bootloader, TOR and mockbin.org/website.hook services as a control center (CERT-UA#7469) |
2023-09-04
⋅
AhnLab
⋅
CHM Malware Using Fukushima Contaminated Water Discharge: RedEyes (ScarCruft) |