Click here to download all references as Bib-File.•
2023-04-08
⋅
Twitter (@embee_research)
⋅
Dcrat - Manual De-obfuscation of .NET Malware DCRat |
2023-03-21
⋅
Twitter (@splinter_code)
⋅
Tweet on BlackByte ransomware rewrite in C++ BlackByte |
2023-03-10
⋅
Security0wnage
⋅
How Do You Like Dem Eggs? I like Mine Scrambled, Really Scrambled - A Look at Recent more_eggs Samples More_eggs |
2023-02-02
⋅
YouTube (Embee Research)
⋅
Xworm Loader Analysis - Decoding Malware Scripts and Extracting C2's with DnSpy and CyberChef XWorm |
2023-01-09
⋅
YouTube (Embee Research)
⋅
Malware Analysis - VBS Decoding With Cyberchef (Nanocore Loader) Nanocore RAT |
2022-12-24
⋅
Medium (@DCSO_CyTec)
⋅
APT41 — The spy who failed to encrypt me CHINACHOPPER |
2022-12-01
⋅
Malware Analysis and Triage Report : PirateStealer - Discord_beta.exe PirateStealer |
2022-11-19
⋅
Malwarology
⋅
Malicious Packer pkr_ce1a SmokeLoader Vidar |
2022-11-16
⋅
Medium (@DCSO_CyTec)
⋅
HZ RAT goes China HZ RAT |
2022-11-15
⋅
README_SYNACK
⋅
Cybercrime is more of a threat than nation-state hackers Storm-0829 |
2022-11-14
⋅
Twitter (@embee_research)
⋅
Twitter thread on Yara Signatures for Qakbot Encryption Routines IcedID QakBot |
2022-11-02
⋅
Twitter (@_CPResearch_)
⋅
Tweet on Azov Wiper Azov Wiper |
2022-10-12
⋅
Twitter (@embee_research)
⋅
Tweets on detection of Brute Ratel via API Hashes Brute Ratel C4 |
2022-10-11
⋅
Twitter (@embee_research)
⋅
Tweet on Havoc C2 - Static Detection Via Ntdll API Hashes Havoc |
2022-10-11
⋅
Medium (@DCSO_CyTec)
⋅
Tracking down Maggie Maggie |
2022-10-04
⋅
Twitter (@sekoia_io)
⋅
Tweets detailing operation of Erbium stealer Erbium Stealer |
2022-10-04
⋅
Medium (@DCSO_CyTec)
⋅
MSSQL, meet Maggie Maggie |
2022-09-22
⋅
Twitter (@sekoia_io)
⋅
Tweets on Lumma stealer Lumma Stealer |
2022-09-16
⋅
Group-IB
⋅
Tweet on Uber Employees potentially infected with Raccoon and Vidar stealer Raccoon Vidar |
2022-08-30
⋅
Medium the_abjuri5t
⋅
NanoCore RAT Hunting Guide Nanocore RAT |