Click here to download all references as Bib-File.•
2020-05-27
⋅
NCC Group
⋅
Detecting Rclone – An Effective Tool for Exfiltration |
2020-05-27
⋅
FBI
⋅
Alert Number MI-000148-MW: APT Actors Exploiting Fortinet Vulnerabilities to Gain Access for Malicious Activity MimiKatz |
2020-05-27
⋅
GAIS-CERT
⋅
Dridex Banking Trojan Technical Analysis Report Dridex |
2020-05-27
⋅
SophosLabs
⋅
Netwalker ransomware tools give insight into threat actor Mailto |
2020-05-26
⋅
CrowdStrike
⋅
Falcon Complete Disrupts Malvertising Campaign Targeting AnyDesk |
2020-05-26
⋅
CrowdStrike
⋅
Know Your Enemy: Exploiting the Dell BIOS Driver Vulnerability to Defend Against It |
2020-05-26
⋅
CISA
⋅
Alert (AA21-116A): Russian Foreign Intelligence Service (SVR) Cyber Operations: Trends and Best Practices for Network Defenders elf.wellmess WellMess |
2020-05-26
⋅
Council on Foreign Relations
⋅
The EU’s Response to SolarWinds |
2020-05-26
⋅
DataBreaches.net
⋅
A former DarkSide listing shows up on REvil’s leak site DarkSide REvil |
2020-05-26
⋅
Youtube (GRIMM Cyber)
⋅
Passive DNS for Threat Detection & Hunting (Discussing some infrastructure related to APT32) METALJACK |
2020-05-26
⋅
EpicTurla
⋅
ACIDBOX Clustering AcidBox |
2020-05-26
⋅
Bleeping Computer
⋅
New [F]Unicorn ransomware hits Italy via fake COVID-19 infection map HiddenTear |
2020-05-26
⋅
CrowdStrike
⋅
Weaponized Disk Image Files: Analysis, Trends and Remediation Nanocore RAT |
2020-05-26
⋅
Seguranca Informatica
⋅
The updated Grandoreiro Malware equipped with latenbot-C2 features in Q2 2020 now extended to Portuguese banks Grandoreiro |
2020-05-26
⋅
ESET Research
⋅
From Agent.BTZ to ComRAT v4: A ten‑year journey (White Paper) Agent.BTZ |
2020-05-26
⋅
ESET Research
⋅
From Agent.BTZ to ComRAT v4: A ten‑year journey Agent.BTZ |
2020-05-25
⋅
Twitter (@JAMESWT_MHT)
⋅
Tweet on FuckUnicorn instance of HiddenTear HiddenTear |
2020-05-25
⋅
Elastic
⋅
The Elastic Guide to Threat Hunting |
2020-05-25
⋅
⋅
CERT-FR
⋅
INDICATEURS DE COMPROMISSION DU CERT-FR - Objet: Le code malveillant Dridex Dridex |
2020-05-25
⋅
⋅
CERT-FR
⋅
Le Code Malveillant Dridex: Origines et Usages Dridex |