Click here to download all references as Bib-File.•
2022-08-02
⋅
Cisco Talos
⋅
Manjusaka: A Chinese sibling of Sliver and Cobalt Strike Manjusaka Cobalt Strike Manjusaka |
2022-07-28
⋅
Kaspersky Labs
⋅
LofyLife: malicious npm packages steal Discord tokens and bank card data Lofy |
2022-07-28
⋅
Kaspersky
⋅
LofyLife: malicious npm packages steal Discord tokens and bank card data |
2022-07-27
⋅
SANS ISC
⋅
IcedID (Bokbot) with Dark VNC and Cobalt Strike DarkVNC IcedID |
2022-07-25
⋅
Kaspersky
⋅
CosmicStrand: the discovery of a sophisticated UEFI firmware rootkit |
2022-07-21
⋅
Censys
⋅
Russian Ransomware C2 Network Discovered in Censys Data DeimosC2 PoshC2 |
2022-07-20
⋅
U.S. Cyber Command
⋅
Cyber National Mission Force discloses IOCs from Ukrainian networks Cobalt Strike GraphSteel GrimPlant MicroBackdoor |
2022-07-18
⋅
Censys
⋅
Russian Ransomware C2 Network Discovered in Censys Data Cobalt Strike DeimosC2 MimiKatz PoshC2 |
2022-07-18
⋅
Palo Alto Networks Unit 42
⋅
Moldy Pisces RokRAT APT37 |
2022-07-13
⋅
Cisco
⋅
Transparent Tribe begins targeting education sector in latest campaign Crimson RAT Oblique RAT |
2022-07-08
⋅
Sekoia
⋅
Vice Society: a discreet but steady double extortion ransomware group HelloKitty Zeppelin |
2022-07-08
⋅
Sekoia
⋅
Vice Society: a discreet but steady double extortion ransomware group HelloKitty |
2022-07-07
⋅
SANS ISC
⋅
Emotet infection with Cobalt Strike Cobalt Strike Emotet |
2022-07-06
⋅
Fortinet
⋅
From Follina to Rozena - Leveraging Discord to Distribute a Backdoor Rozena |
2022-06-30
⋅
CYBER GEEKS All Things Infosec
⋅
How to Expose a Potential Cybercriminal due to Misconfigurations Loki Password Stealer (PWS) |
2022-06-30
⋅
Cyber Geeks (CyberMasterV)
⋅
How to Expose a Potential Cybercriminal due to Misconfigurations Loki Password Stealer (PWS) |
2022-06-21
⋅
Cisco Talos
⋅
Avos ransomware group expands with new attack arsenal AvosLocker Cobalt Strike DarkComet MimiKatz |
2022-06-17
⋅
SANS ISC
⋅
Malspam pushes Matanbuchus malware, leads to Cobalt Strike Cobalt Strike Matanbuchus |
2022-06-16
⋅
SANS ISC
⋅
Houdini is Back Delivered Through a JavaScript Dropper Houdini |
2022-06-13
⋅
SANS ISC
⋅
Translating Saitama's DNS tunneling messages Saitama Backdoor |