Click here to download all references as Bib-File.•

Enter keywords to filter the library entries below or Propose new Entry
2020-10-13 ⋅ Hornetsecurity ⋅ Security Lab
BazarLoader Campaign with Fake Termination Emails
BazarBackdoor
2020-10-06 ⋅ Department of Homeland Security ⋅ Department of Homeland Security
Homeland Threat Assessment October 2020
2020-10-06 ⋅ Twitter (@MsftSecIntel) ⋅ Microsoft Security Intelligence
Tweet on TA505 threat actor exploiting Zerologon (CVE-2020-1472) Vulnerability
2020-10-02 ⋅ Health Sector Cybersecurity Coordination Center (HC3) ⋅ Health Sector Cybersecurity Coordination Center (HC3)
Report 202010021600: Recent Bazarloader Use in Ransomware Campaigns
BazarBackdoor Cobalt Strike Ryuk TrickBot
2020-10-02 ⋅ KrebsOnSecurity ⋅ Brian Krebs
Attacks Aimed at Disrupting the Trickbot Botnet
TrickBot
2020-10-01 ⋅ Centre for Cyber Security ⋅ Centre for Cyber Security
The Anatomy of Targeted Ransomware Attacks
2020-09-30 ⋅ NTT Security ⋅ Hajime Takai, Rintaro Koike, Shogo Hayashi
Unveiling the CryptoMimic (Paper)
2020-09-30 ⋅ NTT Security ⋅ Hajime Takai, Rintaro Koike, Shogo Hayashi
Unveiling the CryptoMimic (Slides)
2020-09-30 ⋅ NTT Security ⋅ Fumio Ozawa, Rintaro Koike, Shogo Hayashi
Operation LagTime IT: colourful Panda footprint (Slides)
Cotx RAT nccTrojan Poison Ivy Tmanger
2020-09-30 ⋅ NTT Security ⋅ Fumio Ozawa, Rintaro Koike, Shogo Hayashi
Operation LagTime IT: colourful Panda footprint
Cotx RAT nccTrojan Poison Ivy Tmanger
2020-09-25 ⋅ VISA ⋅ Visa Security Alert
Visa Security Alert: New Malware Samples identified in Point-of-Sale Compromises
BlackPOS pwnpos rtpos
2020-09-25 ⋅ 360 Total Security ⋅ kate
APT-C-43 steals Venezuelan military secrets to provide intelligence support for the reactionaries - HpReact campaign
PyArk El Machete
2020-09-24 ⋅ Microsoft ⋅ Ben Koehl, Joe Hannon
Microsoft Security—detecting empires in the cloud
2020-09-24 ⋅ Github (FortyNorthSecurity) ⋅ Joe Leon, Matt Grandy
Offensive Maldocs in 2020
2020-09-24 ⋅ Microsoft ⋅ Ben Koehl, Joe Hannon, Microsoft Identity Security Team
Microsoft Security—detecting empires in the cloud
CACTUSTORCH LazyCat APT40
2020-09-22 ⋅ ⋅ Heise Security ⋅ Olivia von Westernhagen
Uniklinik Düsseldorf: Ransomware "DoppelPaymer" soll hinter dem Angriff stecken
DoppelPaymer
2020-09-17 ⋅ Joe Security's Blog ⋅ Joe Security
GuLoader's VM-Exit Instruction Hammering explained
CloudEyE
2020-09-14 ⋅ US-CERT ⋅ US-CERT
Alert (AA20-258A): Chinese Ministry of State Security-Affiliated Cyber Threat Actor Activity
2020-09-08 ⋅ PTSecurity ⋅ PTSecurity
ShadowPad: new activity from the Winnti group
CCleaner Backdoor Korlia ShadowPad TypeHash
2020-09-04 ⋅ KrabsOnSecurity ⋅ Mr. Krabs
BitRAT pt. 2: Hidden Browser, SOCKS5 proxy, and UnknownProducts Unmasked
BitRAT WebMonitor RAT