Click here to download all references as Bib-File.•
2022-02-23
⋅
Mandiant
⋅
(Ex)Change of Pace: UNC2596 Observed Leveraging Vulnerabilities to Deploy Cuba Ransomware Cuba KillAV |
2022-02-14
⋅
Medium walmartglobaltech
⋅
PrivateLoader to Anubis Loader Anubis Loader PrivateLoader |
2022-02-08
⋅
Proofpoint
⋅
Ugg Boots 4 Sale: A Tale of Palestinian-Aligned Espionage BrittleBush NimbleMamba TA402 |
2022-02-01
⋅
Medium walmartglobaltech
⋅
Sugar Ransomware, a new RaaS Sugar |
2022-01-26
⋅
Team Cymru
⋅
Analysis of a Management IP Address linked to Molerats APT |
2022-01-20
⋅
Palo Alto Networks Unit 42
⋅
Threat Brief: Ongoing Russia and Ukraine Cyber Conflict WhisperGate |
2022-01-11
⋅
Medium walmartglobaltech
⋅
Signed DLL campaigns as a service BATLOADER Cobalt Strike ISFB Zloader |
2021-12-06
⋅
Mandiant
⋅
Suspected Russian Activity Targeting Government and Business Entities Around the Globe (UNC2452) Cobalt Strike CryptBot |
2021-11-18
⋅
Cisco
⋅
BlackMatter, LockBit, and THOR BlackMatter LockBit PlugX |
2021-11-17
⋅
Mandiant
⋅
ProxyNoShell: A Change in Tactics Exploiting ProxyShell Vulnerabilities |
2021-11-10
⋅
AT&T
⋅
Stories from the SOC - Powershell, Proxyshell, Conti TTPs OH MY! Cobalt Strike Conti |
2021-11-04
⋅
CrowdStrike
⋅
CARBON SPIDER Embraces Big Game Hunting, Part 2 BlackMatter Griffon BlackMatter DarkSide HiddenTear JSSLoader |
2021-10-07
⋅
Mandiant
⋅
FIN12: The Prolific Ransomware Intrusion Threat Actor That Has Aggressively Pursued Healthcare Targets BazarBackdoor GRIMAGENT Ryuk |
2021-09-03
⋅
FireEye
⋅
PST, Want a Shell? ProxyShell Exploiting Microsoft Exchange Servers CHINACHOPPER HTran |
2021-08-30
⋅
CrowdStrike
⋅
CARBON SPIDER Embraces Big Game Hunting, Part 1 Bateleur Griffon Carbanak DarkSide JSSLoader PILLOWMINT REvil |
2021-08-24
⋅
Volexity
⋅
North Korean BLUELIGHT Special: InkySquid Deploys RokRAT RokRAT |
2021-08-17
⋅
Volatility Labs
⋅
North Korean APT37 / InkySquid Infects Victims Using Browser Exploits BLUELIGHT APT37 |
2021-08-11
⋅
Team Cymru
⋅
MoqHao Part 1.5: High-Level Trends of Recent Campaigns Targeting Japan MoqHao |
2021-08-04
⋅
FireEye
⋅
Cloudy with a Chance of APTNovel Microsoft 365 Attacks in the Wild |
2021-08-03
⋅
CrowdStrike
⋅
Squashing SPIDERS: Threat Intelligence, Threat Hunting and Rapid Response Stops SQL Injection Campaign |