Click here to download all references as Bib-File.•

Enter keywords to filter the library entries below or Propose new Entry
2020-11-03 ⋅ Kaspersky Labs ⋅ GReAT
APT trends report Q3 2020
WellMail EVILNUM Janicab Poet RAT AsyncRAT Ave Maria Cobalt Strike Crimson RAT CROSSWALK Dtrack LODEINFO MoriAgent Okrum PlugX POISONPLUG Rover ShadowPad SoreFang Winnti
2020-11-03 ⋅ ⋅ Gcow-Sec ⋅ Shadow Chaser Group
美人鱼(Infy)APT组织的归来——使用最新的Foudre后门进行攻击活动的分析
Infy
2020-11-02 ⋅ One Night in Norfolk ⋅ Kevin Perlow
TinyPOS and ProLocker: An Odd Relationship
AbaddonPOS PwndLocker
2020-11-02 ⋅ FireEye ⋅ Adrian Pisarczyk, Antonio Monaca, Daniel Caban, Daniel Susin, Justin Moore, Luis Rocha, Sara Rincon, Wojciech Ledzion
Live off the Land? How About Bringing Your Own Island? An Overview of UNC1945
SLAPSTICK STEELCORGI
2020-11-02 ⋅ SUCURI ⋅ Denis Sinegubko
CSS-JS Steganography in Fake Flash Player Update Malware
magecart NetSupportManager RAT
2020-11-02 ⋅ Cybereason ⋅ Assaf Dahan, Daniel Frank, Lior Rochberger, Tom Fakterman
Back to the Future: Inside the Kimsuky KGH Spyware Suite
BabyShark GoldDragon KGH_SPY Kimsuky
2020-11-01 ⋅ Toli Security ⋅ Toli Security
SSH-backdoor Botnet With ‘Research’ Infection Technique
2020-11-01 ⋅ AppRiver ⋅ Chris Lee
Vjw0rm Is Back With New Tactics
Vjw0rm
2020-11-01 ⋅ Vulnerability.ch Blog ⋅ Corsin Camichel
Observed Malware Campaigns – October 2020
2020-10-31 ⋅ splunk ⋅ Ryan Kovar
Ryuk and Splunk Detections
Ryuk
2020-10-30 ⋅ YouTube (Kaspersky Tech) ⋅ Kris McConkey
Around the world in 80 days 4.2bn packets
Cobalt Strike Derusbi HyperBro Poison Ivy ShadowPad Winnti
2020-10-30 ⋅ ⋅ 360 Core Security ⋅ 360
肚脑虫组织( APT-C-35)疑似针对巴基斯坦军事人员的最新攻击活动
KnSpy
2020-10-30 ⋅ Github (ThreatConnect-Inc) ⋅ ThreatConnect
UNC 1878 Indicators from Threatconnect
BazarBackdoor Cobalt Strike Ryuk
2020-10-30 ⋅ US-CERT ⋅ US-CERT
Alert (AA20-304A): Iranian Advanced Persistent Threat Actor Identified Obtaining Voter Registration Data
2020-10-30 ⋅ ⋅ 360 ⋅ Threat Intelligence Center
蓝色魔眼(APT-C-41)组织首次针对我国重要机构定向攻击活动披露
StrongPity
2020-10-30 ⋅ ⋅ Qianxin ⋅ Threat Intelligence Center
攻击武器再升级:Donot组织利用伪造签名样本的攻击活动分析
2020-10-30 ⋅ Cofense ⋅ The Cofense Intelligence Team
The Ryuk Threat: Why BazarBackdoor Matters Most
BazarBackdoor Ryuk
2020-10-30 ⋅ Reuters ⋅ Christopher Bing, Joel Schectman, Raphael Satter
Russian hackers targeted California, Indiana Democratic parties
2020-10-29 ⋅ GitHub (LimerBoy) ⋅ LimerBoy
StormKitty
StormKittyRAT
2020-10-29 ⋅ Cisco Talos ⋅ Paul Rascagnères, Vitor Ventura, Warren Mercer
DoNot’s Firestarter abuses Google Firebase Cloud Messaging to spread
KnSpy