Click here to download all references as Bib-File.•
| 2021-04-07
            
            ⋅
            
            RiskIQ
            ⋅
            
             Yanbian Gang Malware Continues with Wide-Scale Distribution and C2 Yanbian Gang  | 
| 2021-04-06
            
            ⋅
            
            Malwarebytes
            ⋅
            
             A deep dive into Saint Bot, a new downloader Saint Bot  | 
| 2021-04-01
            
            ⋅
            
            AhnLab
            ⋅
            
             ASEC REPORT VOL.102 Q1 2021 ComeBacker JessieConTea LCPDot  | 
| 2021-04-01
            
            ⋅
            
            Microsoft
            ⋅
            
             Automating threat actor tracking: Understanding attacker behavior for intelligence and contextual alerting  | 
| 2021-03-31
            
            ⋅
            
            Sophos
            ⋅
            
             Sophos MTR in Real Time: What is Astro Locker Team? Mount Locker  | 
| 2021-03-30
            
            ⋅
            
            Proofpoint
            ⋅
            
             BadBlood: TA453 Targets US and Israeli Medical Research Personnel in Credential Phishing Campaigns TA453  | 
| 2021-03-26
            
            ⋅
            
            SonicWall
            ⋅
            
             China’s “Winnti” Spyder Module Spyder  | 
| 2021-03-26
            
            ⋅
            
            MIT Technology Review
            ⋅
            
             Google’s top security teams unilaterally shut down a counterterrorism operation  | 
| 2021-03-25
            
            ⋅
            
            Microsoft
            ⋅
            
             Analyzing attacks taking advantage of the Exchange Server vulnerabilities CHINACHOPPER  | 
| 2021-03-24
            
            ⋅
            
            Malwarebytes
            ⋅
            
             Software renewal scammers unmasked  | 
| 2021-03-22
            
            ⋅
            
            
            ⋅
            
            AhnLab
            ⋅
            
             대북관련 본문 내용의 External 링크를 이용한 악성 워드 문서  | 
| 2021-03-18
            
            ⋅
            
            Proofpoint
            ⋅
            
             Now You See It, Now You Don’t: CopperStealer Performs Widespread Theft CopperStealer SmokeLoader  | 
| 2021-03-16
            
            ⋅
            
            Microsoft
            ⋅
            
             Guidance for responders: Investigating and remediating on-premises Exchange Server vulnerabilities  | 
| 2021-03-15
            
            ⋅
            
            Team Cymru
            ⋅
            
             FIN8: BADHATCH Threat Indicator Enrichmen BADHATCH  | 
| 2021-03-10
            
            ⋅
            
            Proofpoint
            ⋅
            
             NimzaLoader: TA800’s New Initial Access Malware BazarNimrod Cobalt Strike  | 
| 2021-03-09
            
            ⋅
            
            splunk
            ⋅
            
             Cloud Federated Credential Abuse & Cobalt Strike: Threat Research February 2021 Cobalt Strike  | 
| 2021-03-09
            
            ⋅
            
            Microsoft
            ⋅
            
             Microsoft Exchange Server Vulnerabilities Mitigations – updated March 9, 2021 HAFNIUM  | 
| 2021-03-08
            
            ⋅
            
            Symantec
            ⋅
            
             How Symantec Stops Microsoft Exchange Server Attacks CHINACHOPPER MimiKatz  | 
| 2021-03-08
            
            ⋅
            
            Secureworks
            ⋅
            
             SUPERNOVA Web Shell Deployment Linked to SPIRAL Threat Group SUPERNOVA BRONZE SPIRAL  | 
| 2021-03-06
            
            ⋅
            
            Blue Team Blog
            ⋅
            
             Microsoft Exchange Zero Day’s – Mitigations and Detections.  |