Click here to download all references as Bib-File.

Enter keywords to filter the library entries below or Propose new Entry
2020-12-30Recorded FutureJohn Wetzel
SOLARWINDS ATTRIBUTION: Are We Getting Ahead of Ourselves? An Analysis of UNC2452 Attribution
SUNBURST
2020-12-29UptycsAbhijit Mohanta
Revenge RAT targeting users in South America
Revenge RAT
2020-12-29Youtube (Guided Hacking)Guided Hacking
How to Unpack Ramnit Dropper - Malware Unpacking Tutorial 2
Ramnit
2020-12-29IntezerAvigayil Mechtinger
Early Bird Catches the Worm: New Golang Worm Drops XMRig Miner on Servers
2020-12-29CyberArkShaked Reiner
Golden SAML Revisited: The Solorigate Connection
SUNBURST
2020-12-29NetresecErik Hjelmvik
Extracting Security Products from SUNBURST DNS Beacons
SUNBURST
2020-12-28SwanscanPierguido Iezzi, Swascan Cyber Incident Response Team
Avaddon Ransomware: Incident Response Analysis
Avaddon
2020-12-28Antiy CERTAntiy CERT
"Civerids" organization vs. Middle East area attack activity analysis report
Quasar RAT
2020-12-28MicrosoftMicrosoft 365 Defender Team
Using Microsoft 365 Defender to protect against Solorigate
SUNBURST TEARDROP
2020-12-280xC0DECAFEThomas Barabosch
Never upload ransomware samples to the Internet
Ryuk
2020-12-28Bleeping ComputerLawrence Abrams
Home appliance giant Whirlpool hit in Nefilim ransomware attack
Nefilim
2020-12-27Github (arsium)arsium
HorusEyesRat
HorusEyes RAT
2020-12-26CYBER GEEKS All Things InfosecCyberMasterV
Analyzing APT19 malware using a step-by-step method
Derusbi
2020-12-26CERT.orgSolarwind
SolarWinds Orion API authentication bypass allows remote comand execution (CVE-2020-10148)
2020-12-26Twitter (@MalwareRE)Ramin Nafisi
Tweet on active exploitation of 0day vulnerability in the SolarWinds Orion
SUPERNOVA
2020-12-26The Washington PostEllen Nakashima
Russian hackers compromised Microsoft cloud customers through third party, putting emails and other data at risk
2020-12-26Medium grimminckStefan Grimminck
Spoofing JARM signatures. I am the Cobalt Strike server now!
Cobalt Strike
2020-12-25VinCSSTrương Quốc Ngân
[RE018-2] Analyzing new malware of China Panda hacker group used to attack supply chain against Vietnam Government Certification Authority - Part 2
SManager
2020-12-25ComaeMatt Suiche
SUNBURST & Memory Analysis
SUNBURST
2020-12-24InfoSec Handlers Diary BlogXavier Mertens
Malicious Word Document Delivering an Octopus Backdoor
Octopus