Click here to download all references as Bib-File.•
| 2022-05-02
⋅
Mandiant
⋅
UNC3524: Eye Spy on Your Email QUIETEXIT UNC3524 |
| 2022-04-29
⋅
Team Cymru
⋅
Sliver Case Study: Assessing Common Offensive Security Tools The Use of the Sliver C2 Framework for Malicious Purposes Sliver |
| 2022-04-07
⋅
Team Cymru
⋅
MoqHao Part 2: Continued European Expansion MoqHao |
| 2022-04-07
⋅
Twitter (@ChicagoCyber)
⋅
Tweet on TA455 (Iranian threat actor) IoCs |
| 2022-03-23
⋅
Team Cymru
⋅
Raccoon Stealer – An Insight into Victim “Gates” Raccoon |
| 2022-03-16
⋅
Mandiant
⋅
Have Your Cake and Eat it Too? An Overview of UNC2891 SLAPSTICK STEELCORGI LightBasin |
| 2022-03-16
⋅
Dragos
⋅
Suspected Conti Ransomware Activity in the Auto Manufacturing Sector Conti Emotet |
| 2022-03-10
⋅
Medium walmartglobaltech
⋅
Diavol the Enigma of Ransomware Diavol |
| 2022-03-04
⋅
Medium walmartglobaltech
⋅
SystemBC, PowerShell version SystemBC |
| 2022-02-23
⋅
Mandiant
⋅
(Ex)Change of Pace: UNC2596 Observed Leveraging Vulnerabilities to Deploy Cuba Ransomware Cuba KillAV |
| 2022-02-14
⋅
Medium walmartglobaltech
⋅
PrivateLoader to Anubis Loader Anubis Loader PrivateLoader |
| 2022-02-08
⋅
Proofpoint
⋅
Ugg Boots 4 Sale: A Tale of Palestinian-Aligned Espionage BrittleBush NimbleMamba TA402 |
| 2022-02-01
⋅
Medium walmartglobaltech
⋅
Sugar Ransomware, a new RaaS Sugar |
| 2022-01-26
⋅
Team Cymru
⋅
Analysis of a Management IP Address linked to Molerats APT |
| 2022-01-20
⋅
Palo Alto Networks Unit 42
⋅
Threat Brief: Ongoing Russia and Ukraine Cyber Conflict WhisperGate |
| 2022-01-11
⋅
Medium walmartglobaltech
⋅
Signed DLL campaigns as a service BATLOADER Cobalt Strike ISFB Zloader |
| 2021-12-06
⋅
Mandiant
⋅
Suspected Russian Activity Targeting Government and Business Entities Around the Globe (UNC2452) Cobalt Strike CryptBot |
| 2021-11-18
⋅
Cisco
⋅
BlackMatter, LockBit, and THOR BlackMatter LockBit PlugX |
| 2021-11-17
⋅
Mandiant
⋅
ProxyNoShell: A Change in Tactics Exploiting ProxyShell Vulnerabilities |
| 2021-11-10
⋅
AT&T
⋅
Stories from the SOC - Powershell, Proxyshell, Conti TTPs OH MY! Cobalt Strike Conti |