Click here to download all references as Bib-File.•

Enter keywords to filter the library entries below or Propose new Entry
2021-07-02 ⋅ Group-IB ⋅ Albert Priego
The Brothers Grim - The reversing tale of GrimAgent malware used by Ryuk
GRIMAGENT
2021-07-01 ⋅ Avast Decoded ⋅ Igor Morgenstern, Jan Vojtěšek, Luigino Camastra
Backdoored Client from Mongolian CA MonPass
Cobalt Strike Earth Lusca
2021-07-01 ⋅ Avast Decoded ⋅ Igor Morgenstern, Jan Vojtěšek, Luigino Camastra
Backdoored Client from Mongolian CA MonPass
Cobalt Strike FishMaster
2021-07-01 ⋅ Fortinet ⋅ Asaf Rubinfeld, Dor Neemani
Diavol - A New Ransomware Used By Wizard Spider?
Conti Diavol
2021-07-01 ⋅ Check Point ⋅ Check Point Research
IndigoZebra APT continues to attack Central Asia with evolving tools
BoxCaon xCaon IndigoZebra
2021-07-01 ⋅ Anheng Threat Intelligence Center ⋅ Anheng Threat Intelligence Center
Suspected HADES organization launched an attack on Ukraine with military themes
2021-07-01 ⋅ DomainTools ⋅ Chad Anderson
The Most Prolific Ransomware Families: A Defenders Guide
REvil Conti Egregor Maze REvil
2021-07-01 ⋅ Quick Heal ⋅ Ayush Puri
WARZONE RAT – Beware Of The Trojan Malware Stealing Data Triggering From Various Office Documents
Ave Maria
2021-07-01 ⋅ Kryptos Logic ⋅ Kryptos Logic Vantage Team
TrickBot and Zeus
TrickBot Zeus
2021-07-01 ⋅ 360 netlab ⋅ Alex.Turing, Chai Linyuan, houliuyang, Hui Wang, Jinye
Mirai_ptea Botnet is Exploiting Undisclosed KGUARD DVR Vulnerability
Mirai
2021-07-01 ⋅ Proofpoint ⋅ Bryan Campbell, Selena Larson
Malware Masquerades as Privacy Tool
2021-07-01 ⋅ Dr.Web ⋅ Dr.Web
Android trojans steal Facebook users’ logins and passwords
2021-07-01 ⋅ CISA, FBI, NCSC UK, NSA
Russian GRU (APT28) Conducting Global Brute Force Campaign to Compromise Enterprise and Cloud Environments
reGeorg
2021-07-01 ⋅ The Record ⋅ Catalin Cimpanu
Mongolian certificate authority hacked eight times, compromised with malware
Cobalt Strike
2021-07-01 ⋅ AT&T Cybersecurity ⋅ Fernando Martinez, Ofer Caspi
REvil’s new Linux version
REvil REvil
2021-07-01 ⋅ Threatpost ⋅ Tom Spring
Linux Variant of REvil Ransomware Targets VMware’s ESXi, NAS Devices
REvil
2021-07-01 ⋅ BleepingComputer ⋅ Ionut Ilascu
Babuk ransomware is back, uses new version on corporate networks
Babuk
2021-07-01 ⋅ Trend Micro ⋅ William Gamazo Sanchez
PurpleFox Using WPAD to Target Indonesian Users
PurpleFox
2021-06-30 ⋅ Sophos SecOps ⋅ Tilly Travers
What to expect when you’ve been hit with REvil ransomware
REvil
2021-06-30 ⋅ Cynet ⋅ Max Malyutin
Shelob Moonlight – Spinning a Larger Web From IcedID to CONTI, a Trojan and Ransomware collaboration
Conti IcedID