Click here to download all references as Bib-File.•
2021-03-10
⋅
Microsoft
⋅
Monitoring the Software Supply Chain with Azure Sentinel |
2021-03-10
⋅
DomainTools
⋅
Examining Exchange Exploitation and its Lessons for Defenders CHINACHOPPER |
2021-03-10
⋅
US-CERT
⋅
Remediating Networks Affected by the SolarWinds and Active Directory/M365 Compromise SUNBURST |
2021-03-10
⋅
Bleeping Computer
⋅
Norway parliament data stolen in Microsoft Exchange attack |
2021-03-10
⋅
Lemon's InfoSec Ramblings
⋅
Microsoft Exchange & the HAFNIUM Threat Actor CHINACHOPPER |
2021-03-10
⋅
ESET Research
⋅
Exchange servers under siege from at least 10 APT groups Microcin MimiKatz PlugX Winnti APT27 APT41 Calypso Tick ToddyCat Tonto Team Vicious Panda |
2021-03-10
⋅
Bitdefender
⋅
FIN8 Returns with Improved BADHATCH Toolkit BADHATCH |
2021-03-10
⋅
⋅
NTT Security
⋅
日本を標的としたPseudoGateキャンペーンによるSpelevo Exploit Kitを用いた攻撃について Zloader |
2021-03-10
⋅
Intezer
⋅
New Linux Backdoor RedXOR Likely Operated by Chinese Nation-State Actor RedXOR XOR DDoS |
2021-03-09
⋅
Youtube (SANS Digital Forensics and Incident Response)
⋅
Jackpotting ESXi Servers For Maximum Encryption | Eric Loui & Sergei Frankoff | SANS CTI Summit 2021 DarkSide RansomEXX DarkSide RansomEXX GOLD DUPONT |
2021-03-09
⋅
YouTube (John Hammond)
⋅
HAFNIUM - Post-Exploitation Analysis from Microsoft Exchange CHINACHOPPER |
2021-03-09
⋅
Malwarebytes
⋅
Microsoft Exchange attacks cause panic as criminals go shell collecting |
2021-03-09
⋅
Check Point Research
⋅
Clast82 – A new Dropper on Google Play Dropping the AlienBot Banker and MRAT Alien |
2021-03-09
⋅
CyberArk
⋅
Kinsing: The Malware with Two Faces Kinsing |
2021-03-09
⋅
splunk
⋅
Cloud Federated Credential Abuse & Cobalt Strike: Threat Research February 2021 Cobalt Strike |
2021-03-09
⋅
PRAETORIAN
⋅
Reproducing the Microsoft Exchange Proxylogon Exploit Chain CHINACHOPPER |
2021-03-09
⋅
Red Canary
⋅
Microsoft Exchange server exploitation: how to detect, mitigate, and stay calm CHINACHOPPER |
2021-03-09
⋅
Palo Alto Networks Unit 42
⋅
Remediation Steps for the Microsoft Exchange Server Vulnerabilities CHINACHOPPER |
2021-03-09
⋅
Cisco Talos
⋅
Hafnium Update: Continued Microsoft Exchange Server Exploitation |
2021-03-09
⋅
Attivo NETWORKS
⋅
Hafnium – Active Exploitation of Microsoft Exchange and Lateral Movement |