Click here to download all references as Bib-File.•
2020-06-17
⋅
SentinelOne
⋅
A Click from the Backyard | Analysis of CVE-2020-9332, a Vulnerable USB Redirection Software |
2020-06-17
⋅
Youtube (Red Canary)
⋅
Threat Detection: Blue Mockingbird |
2020-06-17
⋅
Youtube (Red Canary)
⋅
ATT&CK® Deep Dive: Process Injection ISFB Ramnit TrickBot |
2020-06-17
⋅
Twitter (@Timele9527)
⋅
Tweet on MoriAgent uesd by MuddyWater (incl YARA rule) MoriAgent |
2020-06-17
⋅
Kaspersky Labs
⋅
Targeted attacks on industrial companies using Snake ransomware Snake |
2020-06-17
⋅
⋅
Der Spiegel
⋅
Die erste Cyberwaffe und ihre Folgen Stuxnet |
2020-06-17
⋅
Nettitude Labs
⋅
Detecting PoshC2 – Indicators of Compromise PoshC2 |
2020-06-17
⋅
Cognizant
⋅
Notice of Data Breach Maze |
2020-06-17
⋅
Twitter (@MsftSecIntel)
⋅
A tweet thread on TA505 using CAPTCHA to avoid detection and infecting victims with FlawedGrace FlawedGrace |
2020-06-17
⋅
Twitter (@VK_intel)
⋅
Tweet on signed Tinymet payload (V.02) used by TA505 TinyMet |
2020-06-17
⋅
Github (f0wl)
⋅
deICEr: A Go tool for extracting config from IcedID second stage Loaders IcedID |
2020-06-17
⋅
paloalto Networks Unit 42
⋅
AcidBox: Rare Malware Repurposing Turla Group Exploit Targeted Russian Organizations AcidBox |
2020-06-17
⋅
ESET Research
⋅
Operation In(ter)ception: Targeted Attacks against European Aerospace and Military Companies Interception |
2020-06-16
⋅
Hornetsecurity
⋅
QakBot malspam leading to ProLock: Nothing personal just business PwndLocker QakBot |
2020-06-16
⋅
New Zealand CERT
⋅
Active ransomware campaign leveraging remote access technologies Nefilim |
2020-06-16
⋅
Telekom
⋅
TA505 returns with a new bag of tricks Clop Get2 SDBbot TA505 |
2020-06-16
⋅
Graphika
⋅
Secondary Infektion |
2020-06-16
⋅
Microsoft
⋅
Exploiting a crisis: How cybercriminals behaved during the outbreak |
2020-06-16
⋅
BleepingComputer
⋅
Chipmaker MaxLinear reports data breach after Maze Ransomware attack Maze |
2020-06-16
⋅
IBM
⋅
Cloud ThreatLandscape Report 2020 QNAPCrypt RokRAT |