Click here to download all references as Bib-File.•

Enter keywords to filter the library entries below or Propose new Entry
2021-02-16 ⋅ US Department of Defense ⋅ US Department of Defense
The creation of the 2020 ComRATv4 illustration
Agent.BTZ
2021-02-16 ⋅ Seguranca Informatica ⋅ Pedro Tavares
Latin American Javali trojan weaponizing Avira antivirus legitimate injector to implant malware
2021-02-16 ⋅ FireEye ⋅ Andrew Rector, Matt Bromiley, Robert Wallace
Light in the Dark: Hunting for SUNBURST
SUNBURST
2021-02-16 ⋅ The Wall Street Journal ⋅ Sara Randazzo, Tawnell D. Hobbs
Hacker Claims to Have Stolen Files Belonging to Prominent Law Firm Jones Day
2021-02-16 ⋅ Twitter (@craiu) ⋅ Costin Raiu
Twitter thread on Exaramel Linux backdoor used by Russian Group Sandworm
Exaramel
2021-02-16 ⋅ Cybereason ⋅ Tom Fakterman
Cybereason vs. NetWalker Ransomware
Mailto
2021-02-16 ⋅ Accenture ⋅ Alexandrea Berninger
Hard lessons learned: Threat intel takeaways from the community response to Solarigate
SUNBURST TEARDROP
2021-02-16 ⋅ Check Point ⋅ Check Point Research
ApoMacroSploit: Apocalyptical FUD race
BitRAT
2021-02-16 ⋅ SophosLabs Uncut ⋅ Peter Mackenzie, Tilly Travers
What to expect when you’ve been hit with Conti ransomware
Conti
2021-02-16 ⋅ SophosLabs Uncut ⋅ Anand Ajjan, Andrew Brandt
Conti ransomware: Evasive by nature
Conti
2021-02-16 ⋅ SophosLabs Uncut ⋅ Michael Heller
A Conti ransomware attack day-by-day
Conti
2021-02-16 ⋅ Confiant ⋅ Eliya Stein
Malvertiser “ScamClub” Bypasses Iframe Sandboxing With postMessage() Shenanigans [CVE-2021–1801]
2021-02-16 ⋅ Google ⋅ Google Threat Analysis Group, Shane Huntley
TAG Bulletin: Q1 2021
2021-02-15 ⋅ Silent Push ⋅ Martijn Grooten
More LodaRAT infrastructure targeting Bangladesh uncovered
Loda
2021-02-15 ⋅ Medium s2wlab ⋅ Sojun Ryu
Operation SyncTrek
AbaddonPOS Azorult Clop DoppelDridex DoppelPaymer Dridex PwndLocker
2021-02-15 ⋅ Wired ⋅ Andy Greenberg
France Ties Russia's Sandworm to a Multiyear Hacking Spree
Exaramel Exaramel
2021-02-15 ⋅ Emsisoft ⋅ EmsiSoft Malware Lab
Ransomware Profile: Egregor
Egregor
2021-02-15 ⋅ cyble ⋅ cybleinc
Ngrok Platform Abused by Hackers to Deliver a New Wave of Phishing Attacks
2021-02-15 ⋅ Twitter (@TheDFIRReport) ⋅ The DFIR Report
Tweet on Qakbot post infection discovery activity
QakBot
2021-02-15 ⋅ stan's blog ⋅ Stanislas Arnoud
Analysis of an APT41 rootkit