Click here to download all references as Bib-File.•
| 2020-12-07
            
            ⋅
            
            
            ⋅
            
            Qianxin
            ⋅
            
             Analysis of the suspected two-tailed scorpion APT organization using CIA-funded information about Hamas as bait  | 
| 2020-12-07
            
            ⋅
            
            Proofpoint
            ⋅
            
             Commodity .NET Packers use Embedded Images to Hide Payloads Agent Tesla Loki Password Stealer (PWS) Remcos  | 
| 2020-12-03
            
            ⋅
            
            Telsy
            ⋅
            
             When a false flagdoesn’t work: Exploring the digital-crimeunderground at campaign preparation stage Agent Tesla  | 
| 2020-12-02
            
            ⋅
            
            
            ⋅
            
            AhnLab
            ⋅
            
             CLOP Ransomware Report Clop  | 
| 2020-12-02
            
            ⋅
            
            Sansec
            ⋅
            
             Persistent parasite in EOL Magento 2 stores wakes at Black Friday magecart  | 
| 2020-12-02
            
            ⋅
            
            RiskIQ
            ⋅
            
             ‘Shadow Academy’ Targets 20 Universities Worldwide  | 
| 2020-11-30
            
            ⋅
            
            Microsoft
            ⋅
            
             Threat actor leverages coin miner techniques to stay under the radar – here’s how to spot them APT32  | 
| 2020-11-30
            
            ⋅
            
            Microsoft
            ⋅
            
             Threat actor (BISMUTH) leverages coin miner techniques to stay under the radar – here’s how to spot them Cobalt Strike  | 
| 2020-11-27
            
            ⋅
            
            
            ⋅
            
            Microstep Intelligence Bureau
            ⋅
            
             钱包黑洞:Lazarus 组织近期在加密货币方面的隐蔽攻击活动 Manuscrypt  | 
| 2020-11-26
            
            ⋅
            
            Sansec
            ⋅
            
             Payment skimmer hides in social media buttons  | 
| 2020-11-25
            
            ⋅
            
            Avanan
            ⋅
            
             Microsoft Teams: New Attack Form Almost Takes Down Global Financial Institution  | 
| 2020-11-23
            
            ⋅
            
            Proofpoint
            ⋅
            
             TA416 Goes to Ground and Returns with a Golang PlugX Malware Loader PlugX MUSTANG PANDA  | 
| 2020-11-19
            
            ⋅
            
            Telsy
            ⋅
            
             QNodeService stepped up its features while operated in widespread credential-theft campaigns QNodeService  | 
| 2020-11-18
            
            ⋅
            
            VMRay
            ⋅
            
             Malware Analysis Spotlight: AZORult Delivered by GuLoader Azorult CloudEyE  | 
| 2020-11-18
            
            ⋅
            
            CrowdStrike
            ⋅
            
             Hacking Farm to Table: Threat Hunters Uncover Rise in Attacks Against Agriculture  | 
| 2020-11-17
            
            ⋅
            
            Symantec
            ⋅
            
             Japan-Linked Organizations Targeted in Long-Running and Sophisticated Attack Campaign Quasar RAT  | 
| 2020-11-16
            
            ⋅
            
            Malwarebytes
            ⋅
            
             Malsmoke operators abandon exploit kits in favor of social engineering scheme Zloader Malsmoke  | 
| 2020-11-12
            
            ⋅
            
            Blackberry
            ⋅
            
             The CostaRicto Campaign: Cyber-Espionage Outsourced SombRAT CostaRicto  | 
| 2020-11-09
            
            ⋅
            
            Area 1
            ⋅
            
             Phishing Campaign Threatens Job Security, Drops Bazar and Buer Malware BazarBackdoor Buer  | 
| 2020-11-09
            
            ⋅
            
            Bleeping Computer
            ⋅
            
             Fake Microsoft Teams updates lead to Cobalt Strike deployment Cobalt Strike DoppelPaymer NjRAT Predator The Thief Zloader  |