Click here to download all references as Bib-File.•
2023-07-12
⋅
Sekoia
⋅
CustomerLoader: a new malware distributing a wide variety of payloads CustomerLoader |
2023-07-12
⋅
Dragos
⋅
Mitigating CVE-2023-3595 and CVE-2023-3596 Impacting Rockwell Automation ControlLogix Firmware |
2023-07-05
⋅
Aqua Nautilus
⋅
Threat Alert: Anatomy of Silentbob’s Cloud Attack TeamTNT Tsunami |
2023-06-15
⋅
Google
⋅
Barracuda ESG Zero-Day Vulnerability (CVE-2023-2868) Exploited Globally by Aggressive and Skilled Actor, Suspected Links to China SALTWATER SEASPY WHIRLPOOL UNC4841 |
2023-05-17
⋅
ANY.RUN
⋅
Deobfuscating the Latest GuLoader: Automating Analysis with Ghidra Scripting CloudEyE |
2023-05-16
⋅
Check Point Research
⋅
The Dragon Who Sold his Camaro: Analyzing a Custom Router Implant Horse Shell Camaro Dragon |
2023-05-15
⋅
Symantec
⋅
Lancefly: Group Uses Custom Backdoor to Target Orgs in Government, Aviation, Other Sectors Merdoor PlugX ShadowPad ZXShell Lancefly |
2023-05-12
⋅
YouTube (BSides Prishtina)
⋅
Automating Threat Detection and Response at Scale - Egxona Ferati |
2023-05-04
⋅
SentinelOne
⋅
Kimsuky Evolves Reconnaissance Capabilities in New Global Campaign BabyShark |
2023-05-01
⋅
JPCERT/CC
⋅
Attack trends related to the attack campaign DangerousPassword RustBucket CageyChameleon Cur1Downloader SnatchCrypto |
2023-04-26
⋅
cyble
⋅
Threat Actor Selling New Atomic macOS (AMOS) Stealer on Telegram AMOS |
2023-04-24
⋅
Kaspersky Labs
⋅
Tomiris called, they want their Turla malware back KopiLuwak Andromeda Ave Maria GoldMax JLORAT Kazuar Meterpreter QUIETCANARY RATel Roopy Telemiris tomiris Topinambour Storm-0473 |
2023-04-19
⋅
Symantec
⋅
Play Ransomware Group Using New Custom Data-Gathering Tools PLAY SystemBC |
2023-04-18
⋅
Rapid7 Labs
⋅
Automating Qakbot Detection at Scale With Velociraptor QakBot |
2023-04-11
⋅
CitizenLab
⋅
Sweet QuaDreams: A First Look at Spyware Vendor QuaDream’s Exploits, Victims, and Customers Carmine Tsunami |
2023-04-05
⋅
velociraptor
⋅
Automating Qakbot Decode At Scale QakBot |
2023-03-30
⋅
K7 Security
⋅
GoatRAT Attacks Automated Payment Systems GoatRAT |
2023-03-30
⋅
CrowdStrike
⋅
2023-03-29 // SITUATIONAL AWARENESS // CrowdStrike Tracking Active Intrusion Campaign Targeting 3CX Customers 3CX Backdoor |
2023-03-29
⋅
CrowdStrike
⋅
CrowdStrike Falcon Platform Detects and Prevents Active Intrusion Campaign Targeting 3CXDesktopApp Customers 3CX Backdoor |
2023-03-23
⋅
Mandiant
⋅
UNC961 in the Multiverse of Mandiant: Three Encounters with a Financially Motivated Threat Actor HOLERUN LIGHTBUNNY Prophet Spider |