Click here to download all references as Bib-File.•
| 2022-01-11
⋅
Twitter (@cglyer)
⋅
Thread on DEV-0401, a china based ransomware operator exploiting VMware Horizon with log4shell and deploying NightSky ransomware Cobalt Strike NightSky |
| 2021-11-18
⋅
Mandiant
⋅
Introducing Mandiant's Digital Forensics and Incident Response Framework for Embedded OT Systems |
| 2021-11-05
⋅
Trend Micro
⋅
A Review and Analysis of 2021 Buer Loader Campaigns Buer |
| 2021-11-05
⋅
Trend Micro
⋅
An Analysis of Buer Loader Buer |
| 2021-11-02
⋅
SpearTip
⋅
FBI Warning: HelloKitty Ransomware Add DDoS to Extortion Arsenal HelloKitty |
| 2021-10-22
⋅
Reuters
⋅
EXCLUSIVE Governments turn tables on ransomware gang REvil by pushing it offline REvil REvil |
| 2021-09-14
⋅
McAfee
⋅
Operation ‘Harvest’: A Deep Dive into a Long-term Campaign MimiKatz PlugX Winnti |
| 2021-09-14
⋅
CSO Online
⋅
Russia is fully capable of shutting down cybercrime |
| 2021-09-01
⋅
YouTube (Black Hat)
⋅
How Did the Adversaries Abusing the Bitcoin Blockchain Evade Our Takeover? Cerber Pony |
| 2021-08-26
⋅
The New York Times
⋅
Spies for Hire: China’s New Breed of Hackers Blends Espionage and Entrepreneurship |
| 2021-08-17
⋅
IBM X-Force Exchange
⋅
Analysis of Diavol Ransomware Reveals Possible Link to TrickBot Gang Diavol |
| 2021-07-29
⋅
Talos Intelligence
⋅
Talos Spotlight: Solarmarker solarmarker |
| 2021-07-21
⋅
IBM
⋅
This Chat is Being Recorded: Egregor Ransomware Negotiations Uncovered Egregor |
| 2021-07-19
⋅
CrowdStrike
⋅
Shlayer Malvertising Campaigns Still Using Flash Update Disguise Shlayer |
| 2021-07-14
⋅
MDSec
⋅
Investigating a Suspicious Service Cobalt Strike |
| 2021-07-14
⋅
Cado Security
⋅
Triage analysis of Serv-U FTP user backdoor deployed by CVE-2021-35211 (DEV-0322) |
| 2021-07-13
⋅
Cado Security
⋅
Resources for Investigating Cloud and Container Penetration Testing Tools |
| 2021-06-29
⋅
YouTube (C. Beek)
⋅
Demo of REvil/Sodinokibi Linux variant encrypting a Linux system REvil |
| 2021-06-10
⋅
lacework
⋅
Keksec & Tsunami-Ryuk N3Cr0m0rPh |
| 2021-05-20
⋅
lacework
⋅
8220 Gangs Recent use of Custom Miner and Botnet |