Click here to download all references as Bib-File.•

Enter keywords to filter the library entries below or Propose new Entry
2021-09-16 ⋅ PCrisk ⋅ Tomas Meskauskas
.harma (Ouroboros) ransomware from the operating system
Zeropadypt
2021-09-16 ⋅ Department Of Health And Social Services (DHSS) ⋅ Department Of Health And Social Services (DHSS)
Department of Health and Social Services 2021 Cyberattack: Frequently Asked Questions Updated Sept. 16, 2021
2021-09-16 ⋅ Lumen ⋅ Black Lotus Labs
No Longer Just Theory: Black Lotus Labs Uncovers Linux Executables Deployed as Stealth Windows Loaders
PrivetSanya Meterpreter
2021-09-16 ⋅ Group-IB ⋅ Ivan Lebedev, Reza Rafati
RUNLIR - phishing campaign targeting Netherlands
2021-09-16 ⋅ Twitter (@GossiTheDog) ⋅ Kevin Beaumont
Tweet on some unknown threat actor dropping Mgbot, custom IIS modular backdoor and cobalstrike using exploiting ProxyShell
Cobalt Strike MgBot
2021-09-16 ⋅ Akamai ⋅ Larry Cashdollar
Capoae Malware Ramps Up: Uses Multiple Vulnerabilities and Tactics to Spread
Capoae
2021-09-16 ⋅ Kaspersky ⋅ AMR
Exploitation of the CVE-2021-40444 vulnerability in MSHTML
2021-09-16 ⋅ Cisco ⋅ Tiago Pereira, Vitor Ventura
Operation Layover: How we tracked an attack on the aviation industry to five years of compromise
AsyncRAT Houdini NjRAT
2021-09-16 ⋅ Objective-See ⋅ Tom McGuire
Analysis of CVE-2021-30860 the flaw and fix of a zero-click vulnerability, exploited in the wild
Chrysaor
2021-09-16 ⋅ Medium Shabarkin ⋅ Pavel Shabarkin
Pointer: Hunting Cobalt Strike globally
Cobalt Strike
2021-09-16 ⋅ CISA ⋅ US-CERT
APT Actors Exploiting Newly Identified Vulnerability in ManageEngine ADSelfService Plus
2021-09-16 ⋅ Blackberry ⋅ The BlackBerry Research & Intelligence Team
Threat Thursday: NetWire RAT is Coming Down the Line
NetWire RC
2021-09-16 ⋅ RiskIQ ⋅ RiskIQ
Untangling the Spider Web: The Curious Connection Between WIZARD SPIDER’s Ransomware Infrastructure and a Windows Zero-Day Exploit
Cobalt Strike Ryuk
2021-09-15 ⋅ Silent Push ⋅ Silent Push
Bad ASes
2021-09-15 ⋅ Microsoft ⋅ Microsoft 365 Defender Threat Intelligence Team, Microsoft Threat Intelligence Center (MSTIC)
Analyzing attacks that exploit the CVE-2021-40444 MSHTML vulnerability
EXOTIC LILY
2021-09-15 ⋅ Twitter (@ReBensk) ⋅ Re-ind
Original Tweet on this unidentified Android banking malware targeting South Korea
Unidentified APK 006
2021-09-15 ⋅ Telsy ⋅ Telsy
REMCOS and Agent Tesla loaded into memory with Rezer0 loader
Agent Tesla Remcos
2021-09-15 ⋅ cyble ⋅ Cyble
APT-C-23 Using New Variant Of Android Spyware To Target Users In The Middle East
2021-09-15 ⋅ CrowdStrike ⋅ Falcon OverWatch Team
Shining a Light on DarkOxide
2021-09-15 ⋅ MikroTik ⋅ MikroTik
Mēris botnet