Click here to download all references as Bib-File.•
2020-12-14
⋅
Trend Micro
⋅
Egregor Ransomware Launches String of High-Profile Attacks to End 2020 Egregor |
2020-12-14
⋅
Sophos
⋅
Incident response playbook for responding to SolarWinds Orion compromise SUNBURST |
2020-12-14
⋅
Palo Alto Networks Unit 42
⋅
Threat Brief: SolarStorm and SUNBURST Customer Coverage Cobalt Strike SUNBURST |
2020-12-14
⋅
Volexity
⋅
Dark Halo Leverages SolarWinds Compromise to Breach Organizations SUNBURST |
2020-12-14
⋅
DomainTools
⋅
Unraveling Network Infrastructure Linked to the SolarWinds Hack SUNBURST |
2020-12-14
⋅
splunk
⋅
Using Splunk to Detect Sunburst Backdoor SUNBURST |
2020-12-14
⋅
Palo Alto Networks Unit 42
⋅
PyMICROPSIA: New Information-Stealing Trojan from AridViper |
2020-12-14
⋅
Intezer
⋅
Tweet on linux variant of Prometei botnet Prometei |
2020-12-14
⋅
FireEye Sunburst KQL Detections SUNBURST |
2020-12-14
⋅
Twitter (@lordx64)
⋅
Tweet on a one liner to decrypt SUNBURST backdoor SUNBURST |
2020-12-14
⋅
Sophos
⋅
Sophos-ReversingLabs (SOREL) 20 Million sample malware dataset |
2020-12-14
⋅
Twitter (@ItsReallyNick)
⋅
Tweet on summarizing post-compromise actvity of UNC2452 SUNBURST |
2020-12-14
⋅
Cado Security
⋅
Responding to Solarigate SUNBURST |
2020-12-14
⋅
Twitter (@KimZetter)
⋅
Tweet thread on microsoft report on Solarwind supply chain attack by UNC2452 SUNBURST |
2020-12-13
⋅
HITBSecConf
⋅
The Work of Cyber in the Age of Mechanical Reproduction Hopscotch |
2020-12-13
⋅
FireEye
⋅
Highly Evasive Attacker Leverages SolarWinds Supply Chain to Compromise Multiple Global Victims With SUNBURST Backdoor SUNBURST SUPERNOVA TEARDROP UNC2452 |
2020-12-13
⋅
Github (fireeye)
⋅
SUNBURST Countermeasures SUNBURST SUPERNOVA TEARDROP UNC2452 |
2020-12-13
⋅
Medium (Cryptax)
⋅
Decrypting strings with a JEB script |
2020-12-13
⋅
SlideShare (ChiEnAshleyShen)
⋅
From ThreatHunting to Campaign Tracking Xtreme RAT |
2020-12-13
⋅
CISA
⋅
Active Exploitation of SolarWinds Software SUNBURST |