Click here to download all references as Bib-File.•
| 2021-04-14
⋅
InfoSec Handlers Diary Blog
⋅
April 2021 Forensic Quiz: Answers and Analysis Anchor BazarBackdoor Cobalt Strike |
| 2021-04-07
⋅
Palo Alto Networks Unit 42
⋅
Wireshark Tutorial: Examining Traffic from Hancitor Infections Hancitor |
| 2021-04-01
⋅
Palo Alto Networks Unit 42
⋅
Wireshark Tutorial: Decrypting RDP Traffic |
| 2021-04-01
⋅
Palo Alto Networks Unit 42
⋅
Hancitor’s Use of Cobalt Strike and a Noisy Network Ping Tool Cobalt Strike Hancitor Moskalvzapoe |
| 2021-03-30
⋅
YouTube ( malware-traffic-analysis.net)
⋅
2021-03-29 BazaCall (BazarCall) Example BazarBackdoor |
| 2021-02-03
⋅
InfoSec Handlers Diary Blog
⋅
Excel spreadsheets push SystemBC malware Cobalt Strike SystemBC |
| 2021-01-19
⋅
Palo Alto Networks Unit 42
⋅
Wireshark Tutorial: Examining Emotet Infection Traffic Emotet GootKit IcedID QakBot TrickBot |
| 2021-01-13
⋅
InfoSec Handlers Diary Blog
⋅
Hancitor activity resumes after a hoilday break Hancitor |
| 2021-01-07
⋅
Palo Alto Networks Unit 42
⋅
TA551: Email Attack Campaign Switches from Valak to IcedID IcedID |
| 2020-12-17
⋅
Microsoft
⋅
A moment of reckoning: the need for a strong and global cybersecurity response SUNBURST |
| 2020-12-09
⋅
InfoSec Handlers Diary Blog
⋅
Recent Qakbot (Qbot) activity Cobalt Strike QakBot |
| 2020-10-29
⋅
Palo Alto Networks Unit 42
⋅
Threat Assessment: Ryuk Ransomware and Trickbot Targeting U.S. Healthcare and Public Health Sector Anchor BazarBackdoor Ryuk TrickBot |
| 2020-09-23
⋅
paloalto Netoworks: Unit42
⋅
Case Study: Emotet Thread Hijacking, an Email Attack Technique Emotet |
| 2020-09-10
⋅
SANS ISC InfoSec Forums
⋅
Recent Dridex activity Dridex |
| 2020-09-07
⋅
Github (pan-unit42)
⋅
Collection of recent Dridex IOCs Cutwail Dridex |
| 2020-08-21
⋅
Palo Alto Networks Unit 42
⋅
Wireshark Tutorial: Decrypting HTTPS Traffic Dridex |
| 2020-07-24
⋅
Palo Alto Networks Unit 42
⋅
Evolution of Valak, from Its Beginnings to Mass Distribution Valak |
| 2020-05-28
⋅
Palo Alto Networks Unit 42
⋅
Goodbye Mworm, Hello Nworm: TrickBot Updates Propagation Module TrickBot |
| 2020-04-03
⋅
Palo Alto Networks Unit 42
⋅
GuLoader: Malspam Campaign Installing NetWire RAT CloudEyE NetWire RC |
| 2020-02-13
⋅
Palo Alto Networks Unit 42
⋅
Wireshark Tutorial: Examining Qakbot Infections QakBot |