Click here to download all references as Bib-File.•
2020-12-09
⋅
InfoSec Handlers Diary Blog
⋅
Recent Qakbot (Qbot) activity Cobalt Strike QakBot |
2020-12-09
⋅
Cybereason
⋅
New Malware Arsenal Abusing Cloud Platforms in Middle East Espionage Campaign DropBook MoleNet Quasar RAT SharpStage Spark |
2020-12-09
⋅
Trend Micro
⋅
SideWinder Leverages South Asian Territorial Issues for Spear Phishing and Mobile Device Attacks Meterpreter SideWinder RAZOR TIGER |
2020-12-09
⋅
Cisco
⋅
Quarterly Report: Incident Response trends from Fall 2020 Cobalt Strike IcedID Maze RansomEXX Ryuk |
2020-12-08
⋅
Cobalt Strike
⋅
A Red Teamer Plays with JARM Cobalt Strike |
2020-12-08
⋅
Securonix
⋅
Detecting SolarWinds/SUNBURST/ECLIPSER Supply Chain Attacks SUNBURST |
2020-12-08
⋅
FireEye
⋅
Unauthorized Access of FireEye Red Team Tools |
2020-12-08
⋅
⋅
AhnLab
⋅
“「2021 평화∙통일 이야기 공모전」 참가 신청서” 제목의 한글문서 유포 (APT 추정) PoorWeb |
2020-12-08
⋅
DomainTools
⋅
Identifying Critical Infrastructure Targeting through Network Creation |
2020-12-08
⋅
BOLSTER
⋅
Gift Card Scams Explode in Upcoming Holiday Shopping Season |
2020-12-08
⋅
Proofpoint
⋅
Understanding BEC Scams: Supplier Invoicing Fraud |
2020-12-08
⋅
Red Canary
⋅
The why, what, and how of threat research |
2020-12-08
⋅
Palo Alto Networks Unit 42
⋅
Threat Assessment: Egregor Ransomware Egregor |
2020-12-08
⋅
FireEye
⋅
FireEye Shares Details of Recent Cyber Attack, Actions to Protect Community |
2020-12-08
⋅
ZDNet
⋅
Norway says Russian hacking group APT28 is behind August 2020 Parliament hack |
2020-12-08
⋅
Sophos
⋅
Egregor ransomware: Maze’s heir apparent Egregor Maze |
2020-12-07
⋅
Censys
⋅
Advanced Persistent Infrastructure Tracking WellMess |
2020-12-07
⋅
Google
⋅
Spotlight: Malware Lead Generation at Scale |
2020-12-07
⋅
⋅
Qianxin
⋅
Blocking APT: Qi'anxin QOWL engine defeats BITTER's targeted attacks on domestic government and enterprises |
2020-12-07
⋅
⋅
Qianxin
⋅
Analysis of the suspected two-tailed scorpion APT organization using CIA-funded information about Hamas as bait |