Click here to download all references as Bib-File.•
| 2021-06-01
⋅
Department of Justice
⋅
Justice Department Announces Court-Authorized Seizure of Domain Names Used in Furtherance of Spear-Phishing Campaign Posing as U.S. Agency for International Development Cobalt Strike |
| 2021-06-01
⋅
Microsoft
⋅
New sophisticated email-based attack from NOBELIUM Cobalt Strike |
| 2021-06-01
⋅
⋅
Rising Threat Intelligence Center
⋅
Rising warning: APT organizes Lazarus Group to launch an attack on China |
| 2021-06-01
⋅
Medium mergene
⋅
Detecting Initial Access: HTML Smuggling and ISO Images — Part 2 |
| 2021-06-01
⋅
Medium mergene
⋅
Detecting Initial Access: HTML Smuggling and ISO Images — Part 1 |
| 2021-05-28
⋅
Microsoft
⋅
Breaking down NOBELIUM’s latest early-stage toolset BOOMBOX Cobalt Strike |
| 2021-05-28
⋅
Twitter (@MBThreatIntel)
⋅
Tweet on web skimmer hiding JavaScript inside images for exfiltration |
| 2021-05-24
⋅
Anchored Narratives on Threat Intelligence and Geopolitics
⋅
Tracking StrongPity with Yara StrongPity |
| 2021-05-21
⋅
The Record
⋅
FSB NKTsKI: Foreign ‘cyber mercenaries’ breached Russian federal agencies Mail-O |
| 2021-05-20
⋅
Microsoft
⋅
Phorpiex morphs: How a longstanding botnet persists and thrives in the current threat environment Phorpiex |
| 2021-05-20
⋅
Twitter (@MsftSecIntel)
⋅
Tweet on Java-based STRRAT malware campaign distributed via email STRRAT |
| 2021-05-19
⋅
Medium Mehmet Ergene
⋅
Enterprise Scale Threat Hunting: Network Beacon Detection with Unsupervised ML and KQL — Part 2 Cobalt Strike |
| 2021-05-18
⋅
Blackberry
⋅
Strong ARMing with MacOS: Adventures in Cross-Platform Emulation |
| 2021-05-18
⋅
Youtube (AhmedS Kasmani)
⋅
Malware Analysis: Agent Tesla Part 1/2 Extraction of final payload from dropper. Agent Tesla |
| 2021-05-14
⋅
Advanced Intelligence
⋅
From Dawn to "Silent Night": "DarkSide Ransomware" Initial Attack Vector Evolution DarkSide |
| 2021-05-13
⋅
Blackberry
⋅
Threat Thursday: SombRAT — Always Leave Yourself a Backdoor SombRAT |
| 2021-05-12
⋅
Medium Mehmet Ergene
⋅
Enterprise Scale Threat Hunting: Network Beacon Detection with Unsupervised ML and KQL — Part 1 Cobalt Strike |
| 2021-05-12
⋅
The Record
⋅
Agents raid home of Kansas man seeking info on botnet that infected DOD network PerlBot |
| 2021-05-11
⋅
VMRay
⋅
Threat Bulletin: Exploring the Differences and Similarities of Agent Tesla v2 & v3 Agent Tesla |
| 2021-05-11
⋅
Twitter (@MsftSecIntel)
⋅
Tweet on Snip3 crypter delivering AsyncRAT or AgentTesla Agent Tesla AsyncRAT |