Click here to download all references as Bib-File.

Enter keywords to filter the library entries below or Propose new Entry
2021-04-22Twitter (@ET_Labs)ET Labs
Tweet on Lunar Builder exfiltrating data via Discord webhook
2021-04-22xorl %eax, %eaxAnastasios Pingios
A gentle introduction to building a threat intelligence team
2021-04-22The RecordCatalin Cimpanu
Nightmare week for security vendors: Now a Trend Micro bug is being exploited in the wild
2021-04-22Avast DecodedDavid Zimmer
Binary Data Hiding in VB6 Executables
2021-04-22Trend MicroAlfredo Oliveira, David Fiser
Tor-Based Botnet Malware Targets Linux Systems, Abuses Cloud Management Tools
2021-04-22The RecordCatalin Cimpanu
Ransomware gang wants to short the stock price of their victims
DarkSide
2021-04-22splunkDave Herrald, Drew Church, James Brodsky, John Stoner, Katie Brown, Marcus LaFerrera, Michael Natkin, Mick Baccio, Ryan Kovar
SUPERNOVA Redux, with a Generous Portion of Masquerading
SUPERNOVA
2021-04-22BR.DEFlorian Flade, Hakan Tanriverdi
Der Mann in Merkels Rechner - Jagd auf Putins Hacker
2021-04-22Twitter (@AffableKraut)Eric Brandel
A thread on possibly new magecart skimmer
magecart
2021-04-22Check PointOmer Hofman
Turning Telegram toxic: ‘ToxicEye’ RAT is the latest to use Telegram for command & control
ToxicEye
2021-04-22FortinetXiaopeng Zhang
Deep Analysis: FormBook New Variant Delivered in Phishing Campaign – Part II
Formbook
2021-04-22CybereasonLior Rochberger
Prometei Botnet Exploiting Microsoft Exchange Vulnerabilities
Prometei Prometei
2021-04-22SpamhausSpamhaus Malware Labs
Spamhaus Botnet Threat Update Q1 2021
Emotet Ficker Stealer Raccoon
2021-04-22RiskIQRiskIQ
SolarWinds: Advancing the Story
SUNBURST
2021-04-22RiskIQAdam Castleman, Jordan Herman
Stealing All Your Information For Years With Shadow Z118 PayPal Phish Kits
2021-04-22CISAUS-CERT
AR21-112A: CISA Identifies SUPERNOVA Malware During Incident Response
SUPERNOVA
2021-04-22DomainToolsJoe Slowik
An Undersea Royal Road: Exploring Malicious Documents and Associated Malware
2021-04-21CSIRT ItaliaCSIRT Italia
Windigo footprints: an Ebury variant
Ebury
2021-04-21Cybleinccybleinc
Donot Team APT Group Is Back To Using Old Malicious Patterns
KnSpy
2021-04-21Recorded FutureInsikt Group®
Iran-Linked Threat Actor The MABNA Institute’s Operations in 2020