Click here to download all references as Bib-File.•

Enter keywords to filter the library entries below or Propose new Entry
2021-03-19 ⋅ Bundesamt für Sicherheit in der Informationstechnik ⋅ CERT-Bund
Microsoft Exchange Schwachstellen Detektion und Reaktion (CVE-2021-26855, CVE-2021-26857, CVE-2021-26858, CVE-2021-27065)
CHINACHOPPER MimiKatz
2021-03-18 ⋅ VinCSS ⋅ m4n0w4r, Tran Trung Kien
[RE021] Qakbot analysis – Dangerous malware has been around for more than a decade
QakBot
2021-03-18 ⋅ lacework ⋅ Chris Hall
The “Kek Security” Network
Kaiten N3Cr0m0rPh
2021-03-18 ⋅ Github (ph4ntonn) ⋅ ph4ntonn
Github repository for STOWAWAY
STOWAWAY
2021-03-18 ⋅ VIPRE ⋅ VIPRE Labs
Buer Loader Found in an Unusual Email Attachment
Buer
2021-03-18 ⋅ ⋅ Poliisi ⋅ Poliisi
Eduskunnan tietojärjestelmiin kohdistuneen tietomurron tutkinnassa selvitetään yhteyttä APT31-toimijaan
APT31
2021-03-18 ⋅ DeepInstinct ⋅ Ben Gross
Cobalt Strike – Post-Exploitation Attackers Toolkit
Cobalt Strike
2021-03-18 ⋅ Ilya Mogilin, Mikhail Kuzin
Convuster: macOS adware now in Rust
Convuster
2021-03-18 ⋅ Kaspersky Labs ⋅ Ilya Mogilin, Mikhail Kuzin
Convuster: macOS adware now in Rust
2021-03-18 ⋅ PRODAFT Threat Intelligence ⋅ PRODAFT
SilverFish GroupThreat Actor Report
Cobalt Strike Dridex Koadic
2021-03-18 ⋅ ESET Research ⋅ Amer Owaida
Beware Android trojan posing as Clubhouse app
2021-03-18 ⋅ Github (lacework) ⋅ lacework-labs
DGA and decoder scripts for n3cr0morph IRC malware
N3Cr0m0rPh
2021-03-18 ⋅ Malwarebytes ⋅ Jovi Umawing
HelloKitty: When Cyberpunk met cy-purr-crime
HelloKitty
2021-03-18 ⋅ SUCURI ⋅ Cesar Anjos
Server Side Data Exfiltration via Telegram API
2021-03-18 ⋅ Varonis ⋅ Snir Ben Shimol
Return of the Darkside: Analysis of a Large-Scale Data Theft Campaign
DarkSide
2021-03-18 ⋅ Cybereason ⋅ Daniel Frank
Cybereason Exposes Campaign Targeting US Taxpayers with NetWire and Remcos Malware
NetWire RC Remcos
2021-03-18 ⋅ SentinelOne ⋅ Phil Stokes
New macOS malware XcodeSpy Targets Xcode Developers with EggShell Backdoor
2021-03-18 ⋅ ⋅ CERT-BR ⋅ CERT-BR
Communiqué de presse: 400 systèmes informatique belges infiltrés dans le cadre d'une vulnérabilité des serveurs Microsoft Exchange
2021-03-18 ⋅ CISA ⋅ US-CERT
Alert (AA21-077A): Detecting Post-Compromise Threat Activity Using the CHIRP IOC Detection Tool
SUNBURST
2021-03-18 ⋅ Github (cisagov) ⋅ CISA
CISA Hunt and Incident Response Program (CHIRP)
SUNBURST