Click here to download all references as Bib-File.•
| 2021-08-03
⋅
Twitter (@ValthekOn)
⋅
Tweet on blacklisted extensions & names of BlackMatter ransomware making the check against custom hashes values DarkSide |
| 2021-08-02
⋅
Youtube (Forschungsinstitut Cyber Defense)
⋅
The CODE 2021: Workshop presentation and demonstration about CobaltStrike Cobalt Strike |
| 2021-07-19
⋅
Proofpoint
⋅
New Threat Actor Uses Spanish Language Lures to Distribute Seldom Observed Bandook Malware Bandook Caliente Bandits |
| 2021-06-22
⋅
Darktrace
⋅
Crypto-mining on a DNS server |
| 2021-06-17
⋅
Intezer
⋅
Klingon RAT Holding on for Dear Life KlingonRAT |
| 2021-06-17
⋅
Proofpoint
⋅
New TA402 Molerats Malware Targets Governments in the Middle East Molerat Loader |
| 2021-05-27
⋅
cyberpunkleigh
⋅
Apostle Ransomware Analysis Apostle |
| 2021-05-19
⋅
Nozomi Networks
⋅
Colonial Pipeline Ransomware Attack: Revealing How DarkSide Works DarkSide |
| 2021-04-16
⋅
Trend Micro
⋅
XCSSET Quickly Adapts to macOS 11 and M1-based Macs XCSSET |
| 2021-03-09
⋅
360 netlab
⋅
Threat Alert: z0Miner Is Spreading quickly by Exploiting ElasticSearch and Jenkins Vulnerabilities |
| 2021-02-22
⋅
AdvIntel
⋅
Economic Growth, Digital Inclusion, & Specialized Crime: Financial Cyber Fraud in LATAM BRATA Mekotio Metamorfo Ploutus ATM VictoryGate |
| 2021-02-08
⋅
Medium kurtikleiton
⋅
Evade EDR with Shellcode Injection and gain persistence using Registry Run Keys |
| 2021-01-26
⋅
FireEye
⋅
Phishing Campaign Leverages WOFF Obfuscation and Telegram Channels for Communication |
| 2021-01-24
⋅
malwareandstuff blog
⋅
Catching Debuggers with Section Hashing |
| 2021-01-24
⋅
evotec
⋅
The only command you will ever need to understand and fix your Group Policies (GPO) |
| 2021-01-19
⋅
Malwarebytes
⋅
Malwarebytes targeted by Nation State Actor implicated in SolarWinds breach. Evidence suggests abuse of privileged access to Microsoft Office 365 and Azure environments |
| 2021-01-14
⋅
Imperva
⋅
Python Cryptominer Botnet Quickly Adopts Latest Vulnerabilities |
| 2021-01-01
⋅
Secureworks
⋅
Threat Profile: GOLD FRANKLIN Grateful POS Meterpreter MimiKatz RemCom FIN6 |
| 2020-12-16
⋅
Lookout
⋅
Lookout Discovers New Spyware Used by Sextortionists to Blackmail iOS and Android Users goontact |
| 2020-12-05
⋅
CitizenLab
⋅
Something to Remember Us By: Device Confiscated by Russian Authorities Returned with Monokle-Type Spyware Installed Monokle |