Click here to download all references as Bib-File.

Enter keywords to filter the library entries below or Propose new Entry
2025-09-04Twitter (@Laughing_Mantis)Greg Linares
Tweet on similarity between GONEPOSTAL/NotDoor and Cordyceps
GONEPOSTAL
2025-09-04SeqriteSubhajeet Singha
Operation BarrelFire: NoisyBear targets entities linked to Kazakhstan’s Oil & Gas Sector.
Meterpreter
2025-09-03DarkrymDarkrym
PXA Stealers Evolution to PureRAT: Part 6 - Finally, the Final Stage PureRAT (Stage 9)
PureRAT
2025-09-03Lab52Lab52
Analyzing NotDoor: Inside APT28’s Expanding Arsenal
GONEPOSTAL
2025-09-03Reverse The MalwareDiyar Saadi
Dropper and Downloader : What is the difference ?
2025-09-02At-BayAaron Smith, Laurie Iacono, MC, Ricardo Vazquez, Rohit Pappali, Will Botto, Yiwei Guo
Rhysida: Evading Detection, One Service at a Time
Rhysida
2025-09-02Hunt.ioHunt.io
From Panel to Payload: Inside the TinyLoader Malware Operation
XTinyLoader
2025-09-02BitSightPedro Umbelino
RapperBot: From Infection to DDoS in a Split Second
RapperBot
2025-09-02Reverse The MalwareDiyar Saadi
Agent and Malware: What is the difference?
2025-09-01cocomelonccocomelonc
MacOS hacking part 11: bind shell for ARM (M1). Simple Assembly (M1) and C (run shellcode) examples
2025-08-31DarkrymDarkrym
PXA Stealers Evolution to PureRAT: Part 3 - Weaponised Python Stage (Stage 5)
PXA Stealer
2025-08-29AmazonCJ Moses
Amazon disrupts watering hole campaign by Russia’s APT29
2025-08-29Nextron SystemsPezier Pierre-Henri
Sindoor Dropper: New Phishing Campaign
Sindoor
2025-08-29ShindanPaul Viard
GodFather - Part 1 - A multistage dropper
Godfather
2025-08-28cocomelonccocomelonc
Malware development trick 51: steal data via legit Bitbucket API. Simple C example.
2025-08-28GdataKarsten Hahn, Louis Sorita
AppSuite PDF Editor Backdoor: A Detailed Technical Analysis
TamperedChef
2025-08-28Trend MicroNick Dai, Pierre Lee
TAOTH Campaign Exploits End-of-Support Software to Target Traditional Chinese Users and Dissidents
Cobalt Strike Merlin
2025-08-28CheckpointCheckpoint Research
Chasing the Silver Fox: Cat & Mouse in Kernel Shadows
ValleyRAT
2025-08-28Aryaka Networksbikash dash, varadharajan krishnasamy
Vidar Infostealer in Action From API Hooking to Covert Data Exfiltration
Vidar
2025-08-28IntrinsecDavid Sardinha
VAIZ, FDN3, TK-NET: A nebula of Ukrainian networks engaged in brute force and password spraying attacks
Amadey