Click here to download all references as Bib-File.•
2024-08-27
⋅
SonicWall
⋅
AutoIT Bot Targets Gmail Accounts First |
2024-08-26
⋅
Netskope
⋅
Static Unpacker for Latrodectus Latrodectus |
2024-08-26
⋅
The DFIR Report
⋅
BlackSuit Ransomware BlackSuit Cobalt Strike SystemBC |
2024-08-24
⋅
YouTube (Black Hat)
⋅
Chinese APT: A Master of Exploiting Edge Devices (Video) SEASPY UNC4841 |
2024-08-23
⋅
ITOCHU
⋅
Pirates of The Nang Hai: Follow the Artifacts No One Know Cobalt Strike Xiangoop |
2024-08-23
⋅
TEAMT5
⋅
Sailing the Seven SEAs: Deep Dive into Polaris' Arsenal and Intelligence Insights Cobalt Strike Hodur PlugX TONESHELL |
2024-08-23
⋅
DailyDarkWeb
⋅
A Threat Actor Alleged Breach of Sri Lankan Farmers Community Database SILKFIN AGENCY |
2024-08-22
⋅
S2W Inc.
⋅
Analysis of the North Korea-backed puNK-003’s Lilith RAT ported to AutoIt Script Lilith puNK-003 |
2024-08-22
⋅
Mandiant
⋅
PEAKLIGHT: Decoding the Stealthy Memory-Only Malware CryptBot Emmenhtal HijackLoader Lumma Stealer |
2024-08-22
⋅
DFIR.ch
⋅
Botnet Fenix Fenix |
2024-08-22
⋅
Github (X-ZIGZAG)
⋅
Github Repository for X-ZIGZAG X-ZIGZAG |
2024-08-22
⋅
⋅
NTT
⋅
AppDomainManager Injectionを悪用したマルウェアによる攻撃について Cobalt Strike Earth Baxia |
2024-08-22
⋅
NTT Security
⋅
Attacks by malware abusing AppDomainManager Injection |
2024-08-21
⋅
Cisco Talos
⋅
MoonPeak malware from North Korean actors unveils new details on attacker infrastructure MoonPeak XenoRAT UAT-5394 |
2024-08-21
⋅
OODA Loop
⋅
Toyota Customer, Employee Data Leaked in Confirmed Data Breach ZeroSevenGroup |
2024-08-21
⋅
TG Soft
⋅
Chinese APT abuses MSC files with GrimResource vulnerability Cobalt Strike Earth Baxia |
2024-08-21
⋅
Zscaler
⋅
Technical Analysis of Copybara Copybara |
2024-08-20
⋅
Kroll
⋅
FOG Ransomware Targets Higher Education Fog |
2024-08-20
⋅
SiliconAngle
⋅
Toyota alleges stolen customer data published on hacking site came from outside supplier ZeroSevenGroup |
2024-08-20
⋅
DailyDarkWeb
⋅
Threat Actor Claims Breach of Siam Cement Group Database SILKFIN AGENCY |