Click here to download all references as Bib-File.•
2020-10-27
⋅
US-CERT
⋅
Alert (AA20-301A): North Korean Advanced Persistent Threat Focus: Kimsuky BabyShark GREASE MECHANICAL Meterpreter Kimsuky |
2020-10-22
⋅
US-CERT
⋅
Alert (AA20-296B): Iranian Advanced Persistent Threat Actors Threaten Election-Related Systems |
2020-10-22
⋅
US-CERT
⋅
Alert (AA20-296A): Russian State-Sponsored Advanced Persistent Threat Actor Compromises U.S. Government Targets |
2020-10-09
⋅
US-CERT
⋅
Alert (AA20-283A): APT Actors Chaining Vulnerabilities Against SLTT, Critical Infrastructure, and Elections Organizations |
2020-10-01
⋅
US-CERT
⋅
Malware Analysis Report (AR20-275A): Remote Access Trojan: SLOTHFULMEDIA SlothfulMedia |
2020-10-01
⋅
US-CERT
⋅
Alert (AA20-275A): Potential for China Cyber Response to Heightened U.S.-China Tensions CHINACHOPPER Cobalt Strike Empire Downloader MimiKatz Poison Ivy |
2020-09-24
⋅
US-CERT
⋅
Analysis Report (AR20-268A): Federal Agency Compromised by Malicious Cyber Actor Cobalt Strike Meterpreter |
2020-09-15
⋅
US-CERT
⋅
Malware Analysis Report (AR20-259A): Iranian Web Shells CHINACHOPPER |
2020-09-15
⋅
US-CERT
⋅
Alert (AA20-259A): Iran-Based Threat Actor Exploits VPN Vulnerabilities CHINACHOPPER Fox Kitten |
2020-09-14
⋅
US-CERT
⋅
Alert (AA20-258A): Chinese Ministry of State Security-Affiliated Cyber Threat Actor Activity |
2020-08-19
⋅
US-CERT
⋅
Malware Analysis Report (AR20-232A) Bankshot BLINDINGCAN |
2020-08-14
⋅
Department of Homeland Security
⋅
Alert (AA20-227A): Phishing Emails Used to Deploy KONNI Malware Konni |
2020-08-03
⋅
US-CERT
⋅
MAR-10292089-1.v1 – Chinese Remote Access Trojan: TAIDOOR taidoor |
2020-07-16
⋅
CISA
⋅
Malware Analysis Report (AR20-198C) WellMail |
2020-07-16
⋅
CISA
⋅
Malware Analysis Report (AR20-198A) SoreFang |
2020-07-16
⋅
CISA
⋅
Malware Analysis Report (AR20-198B) WellMess |
2020-05-26
⋅
CISA
⋅
Alert (AA21-116A): Russian Foreign Intelligence Service (SVR) Cyber Operations: Trends and Best Practices for Network Defenders elf.wellmess WellMess |
2020-05-12
⋅
US-CERT
⋅
MAR-10288834-1.v1 – North Korean Remote Access Tool: COPPERHEDGE Bankshot |
2020-05-12
⋅
US-CERT
⋅
MAR-10288834-3.v1 – North Korean Trojan: PEBBLEDASH PEBBLEDASH |
2020-05-12
⋅
US-CERT
⋅
MAR-10288834-2.v1 – North Korean Trojan: TAINTEDSCRIBE TAINTEDSCRIBE |