Click here to download all references as Bib-File.•
| 2024-09-30
⋅
X (@GenThreatLabs)
⋅
Tweet on FAKEUPDATES pushing WARMCOOKIE backdoor via compromised websites targeting France FAKEUPDATES WarmCookie |
| 2024-09-30
⋅
The DFIR Report
⋅
Nitrogen Campaign Drops Sliver and Ends With BlackCat Ransomware BlackCat Nitrogen Loader Sliver |
| 2024-09-27
⋅
Virus Bulletin
⋅
CrackedCantil: A Malware Symphony Delivered By Cracked Software; Performed By Loaders, Infostealers, Ransomware, Et Al. CrackedCantil |
| 2024-09-26
⋅
cyble
⋅
Nexe Backdoor Unleashed: Patchwork APT Group’s Sophisticated Evasion of Defenses |
| 2024-09-26
⋅
The Wall Street Journal
⋅
China-Linked Hackers Breach U.S. Internet Providers in New ‘Salt Typhoon’ Cyberattack GhostEmperor |
| 2024-09-26
⋅
Microsoft
⋅
Storm-0501: Ransomware attacks expanding to hybrid cloud environments Storm-0501 |
| 2024-09-25
⋅
Cloudflare
⋅
Unraveling SloppyLemming’s Operations Across South Asia SloppyLemming |
| 2024-09-24
⋅
Trend Micro
⋅
Earth Preta Evolves its Attacks with New Malware and Strategies FDMTP |
| 2024-09-24
⋅
ThreatFabric
⋅
Octo2: European Banks Already Under Attack by New Malware Variant Coper |
| 2024-09-20
⋅
CISO Series
⋅
Cybersecurity News: INC targets healthcare, Providence schools cyberattack, Apple iPads bricked INC Storm-0494 |
| 2024-09-19
⋅
PWC
⋅
COLDWASTREL of space Callisto |
| 2024-09-19
⋅
Trend Micro
⋅
Earth Baxia Uses Spear-Phishing and GeoServer Exploit to Target APAC Cobalt Strike Earth Baxia |
| 2024-09-19
⋅
Trend Micro
⋅
Earth Baxia Uses Spear-Phishing and GeoServer Exploit to Target APAC (IoCs) Cobalt Strike Earth Baxia |
| 2024-09-18
⋅
loginsoft
⋅
Medusa Ransomware: Evolving Tactics in Modern Cyber Extortion Medusa |
| 2024-09-18
⋅
Twitter (@MsftSecIntel)
⋅
Tweet about threat actor Vanilla Tempest INC GootLoader Storm-0494 |
| 2024-09-18
⋅
People’s Republic of China-Linked Actors Compromise Routers and IoT Devices for Botnet Operations Nosedive |
| 2024-09-18
⋅
Lumen
⋅
Derailing the Raptor Train Nosedive |
| 2024-09-18
⋅
Court-Authorized Operation Disrupts Worldwide Botnet Used by People’s Republic of China State-Sponsored Hackers Nosedive |
| 2024-09-18
⋅
Lumen
⋅
Derailing The Raptor Train Nosedive |
| 2024-09-17
⋅
Mandiant
⋅
An Offer You Can Refuse: UNC2970 Backdoor Deployment Using Trojanized PDF Reader BURNBOOK MISTPEN |