Click here to download all references as Bib-File.

Enter keywords to filter the library entries below or Propose new Entry
2020-12-02Red Canarytwitter (@redcanary)
Tweet on increased #Qbot activity delivering Cobalt Strike & #Egregor ransomware
Cobalt Strike Egregor QakBot
2020-12-02GoSecureMasarah Paquet-Clouston
Deep Dive into an Obfuscation-as-a-Service for Android Malware
Geost
2020-12-02SentinelOnePhil Stokes
APT32 Multi-stage macOS Trojan Innovates on Crimeware Scripting Technique
OceanLotus
2020-12-02RiskIQTeam RiskIQ
‘Shadow Academy’ Targets 20 Universities Worldwide
2020-12-02Kryptos LogicJamie Hankins
Automated string de-gobfuscation
Blackrota
2020-12-02DomainToolsJoe Slowik
Identifying Network Infrastructure Related to a World Health Organization Spoofing Campaign
Azorult Glupteba
2020-12-02AquaAssaf Morag, Idan Revivo
Threat Alert: Fileless Malware Executing in Containers
Tsunami
2020-12-02ESET ResearchMatthieu Faou
Turla Crutch: Keeping the “back door” open
Crutch Gazer Turla
2020-12-01LACYoshihiro Ishikawa
[Urgent Report] Targeted attack by "SigLoader" that exploits Microsoft's digital signature file confirmed
SigLoader
2020-12-01QianxinQi Anxin Threat Intelligence Center
Blade Eagle Group - Targeted attack group activities circling the Middle East and West Asia's cyberspace revealed
SpyNote BladeHawk
2020-12-01JuniperPaul Kimayong
DarkIRC bot exploits recent Oracle WebLogic vulnerability
DarkIRC
2020-12-01FireEyeFireEye
Solarwinds Breach Resource Center
SUNBURST
2020-12-01Group-IBGroup-IB, Oleg Skulkin, Roman Rezvukhin, Semyon Rogachev
Egregor ransomware: The legacy of Maze lives on
Egregor QakBot
2020-12-01360.cnjindanlong
Hunting Beacons
Cobalt Strike
2020-12-01Intel 471Intel 471
Steal, then strike: Access merchants are first clues to future ransomware attacks
DoppelPaymer
2020-12-01FireEyeJames T. Bennett
Using Speakeasy Emulation Framework Programmatically to Unpack Malware
2020-12-01FREE RUSSIA FOUNDATIONCatherine A. Fitzpatrick, Michael Weiss
Aquarium Leaks. Inside the GRU’S Psychological Warfare Program
2020-12-01mez0.ccmez0
Cobalt Strike PowerShell Execution
Cobalt Strike
2020-12-01sonatypeAx Sharma
There’s a RAT in my code: new npm malware with Bladabindi trojan spotted
NjRAT
2020-12-01TalosAdam Pridgen, Vanja Svajcer
Xanthe - Docker aware miner
Xanthe