Click here to download all references as Bib-File.•

Enter keywords to filter the library entries below or Propose new Entry
2021-05-25 ⋅ Trend Micro ⋅ David Fiser, Magno Logan
TeamTNT Targets Kubernetes, Nearly 50,000 IPs Compromised in Worm-like Attack
2021-05-25 ⋅ Kaspersky ⋅ Fedor Sinitsyn, Yanis Zinchenko
Evolution of JSWorm ransomware
Nefilim Nemty
2021-05-25 ⋅ lacework ⋅ Lacework Labs
Taking TeamTNT’s Docker Images Offline
2021-05-25 ⋅ Medium s2wlab ⋅ Denise Dasom Kim, Hyunmin Suh, Jungyeon Lim
W4 May | EN | Story of the week: Ransomware on the Darkweb
Babuk REvil
2021-05-25 ⋅ FireEye ⋅ Daniel Kapellmann Zafra, Keith Lunden, Nathan Brubaker
Crimes of Opportunity: Increasing Frequency of Low Sophistication Operational Technology Compromises
2021-05-25 ⋅ DomainTools ⋅ Tim Helming
Indicators Over Cocktails: Exporting Indicators from Iris (UNC1151)
2021-05-25 ⋅ Huntress Labs ⋅ Matthew Brennan
Cobalt Strikes Again: An Analysis of Obfuscated Malware
Cobalt Strike
2021-05-25 ⋅ Chainalysis, Flashpoint
Hydra: Where The Crypto Money Laundering Trail Goes Dark
2021-05-24 ⋅ VinCSS ⋅ m4n0w4r, Trương Quốc Ngân
[RE022] Part 1: Quick analysis of malicious sample forging the official dispatch of the Central Inspection Committee
5.t Downloader
2021-05-24 ⋅ AhnLab ⋅ ASEC Analysis Team
Vidar Info-Stealer Abusing Game Platform
Vidar
2021-05-24 ⋅ Anchored Narratives on Threat Intelligence and Geopolitics ⋅ RJM
Tracking StrongPity with Yara
StrongPity
2021-05-24 ⋅ Atlantic Council ⋅ Sam Blazek
SCOTCH: A framework for rapidly assessing influence operations
2021-05-24 ⋅ ⋅ Medium s2wlab ⋅ Seunghoe Kim
Deep Analysis of Raccoon Stealer
Raccoon
2021-05-24 ⋅ MIT Technology Review ⋅ Daniel Golden, Renee Dudley
The Colonial pipeline ransomware hackers had a secret weapon: self-promoting cybersecurity firms
DarkSide DarkSide
2021-05-24 ⋅ Jamf Blog ⋅ Jaron Bradley
Zero-Day TCC bypass discovered in XCSSET malware
XCSSET
2021-05-23 ⋅ Chuongdong blog ⋅ Chuong Dong
MountLocker Ransomware
Mount Locker
2021-05-22 ⋅ Youtube (ACPEnw) ⋅ YouTube (ACPEnw)
Lessons Learned from a Cyber Attack System Admin Perspective
Ryuk
2021-05-21 ⋅ ⋅ LAC ⋅ Yoshihiro Ishikawa
Targeted attack by 'Cobalt Strike loader' that exploits Microsoft's digital signature-Attacker group APT41
Cobalt Strike DUSTPAN
2021-05-21 ⋅ Twitter (@alberto__segura) ⋅ Alberto Segura
Tweet on Flubot version 4.2 (p.php variant) with new AES strings encryption
FluBot
2021-05-21 ⋅ blackarrow ⋅ Pablo Ambite
Leveraging Microsoft Teams to persist and cover up Cobalt Strike traffic
Cobalt Strike