Click here to download all references as Bib-File.•
2022-09-28
⋅
Twitter (@ESETresearch)
⋅
Twitter Thread linking CloudMensis to RokRAT / ScarCruft CloudMensis RokRAT |
2022-09-22
⋅
Twitter (@sekoia_io)
⋅
Tweets on Lumma stealer Lumma Stealer |
2022-09-21
⋅
Twitter (@0xToxin)
⋅
doenerium phishing campaign doenerium |
2022-09-17
⋅
Twitter (@MsftSecIntel)
⋅
Tweet on click fraud activity DEV-0796 Phlox Tempest |
2022-09-16
⋅
Group-IB
⋅
Tweet on Uber Employees potentially infected with Raccoon and Vidar stealer Raccoon Vidar |
2022-08-16
⋅
Twitter (@ESETresearch)
⋅
Twitter thread about Operation In(ter)ception for macOS Interception |
2022-08-16
⋅
Twitter (@ESETresearch)
⋅
Twitter thread about Operation In(ter)ception for macOS Interception |
2022-08-16
⋅
Twitter (@fumik0_)
⋅
Tweet on Lumma Stealer based on Mars Stealer Lumma Stealer |
2022-08-09
⋅
Twitter (@Katechondic)
⋅
Tweet on malware, suspected to be from China based actor, targeting Taiwan Unidentified 094 |
2022-08-09
⋅
SUCURI
⋅
Fake Instagram Verification & Twitter Badge Phishing |
2022-08-05
⋅
0xIvan
⋅
LokiBot Analysis Loki Password Stealer (PWS) |
2022-08-01
⋅
Twitter (@sekoia_io)
⋅
Tweet on Turla's CyberAzov activity CyberAzov |
2022-07-11
⋅
Twitter (@cglyer)
⋅
Tweet on LAPSUS$/DEV-0537 Storm-0829 |
2022-07-08
⋅
Twitter (@billyleonard)
⋅
Twiiter thread about some recent Turla activity spoofing the Azov Regiment ... but targeting Android users. |
2022-06-28
⋅
Twitter (@_CPResearch_)
⋅
Tweet on malware used against Steel Industry in Iran Meteor Predatory Sparrow |
2022-06-28
⋅
Twitter (@_icebre4ker_)
⋅
Revive and Coper are using similar phishing template and app Coper |
2022-06-17
⋅
Github (NtQuerySystemInformation)
⋅
A reverse engineer primer on Qakbot Dll Stager: From initial execution to multithreading. QakBot |
2022-06-14
⋅
Twitter (@3xp0rtblog)
⋅
Tweet on Keona Clipper Keona |
2022-06-11
⋅
Twitter (@MsftSecIntel)
⋅
Tweet on DEV-0401, DEV-0234 exploiting Confluence RCE CVE-2022-26134 Kinsing Mirai Cobalt Strike Lilac Typhoon |
2022-06-02
⋅
Twitter (@sysopfb)
⋅
Tweets on UpdateAgent - GolangVersion UpdateAgent |