Click here to download all references as Bib-File.•

Enter keywords to filter the library entries below or Propose new Entry
2020-09-13 ⋅ Twitter (@bartblaze) ⋅ BartBlaze
Tweet on Cryakl 2.0.0.0
Cryakl
2020-09-11 ⋅ VinCSS ⋅ m4n0w4r
[RE016] Malware Analysis: ModiLoader
DBatLoader
2020-09-11 ⋅ RSA Conference (YouTube) ⋅ Brook Chelmo
Two weeks with a Russian Ransomware Cell
HILDACRYPT
2020-09-11 ⋅ Twitter (@Arkbird_SOLG) ⋅ Arkbird
Tweet on discovery of a sample
Turla SilentMoon
2020-09-11 ⋅ ThreatConnect ⋅ ThreatConnect Research Team
Research Roundup: Activity on Previously Identified APT33 Domains
Emotet PlugX APT33
2020-09-11 ⋅ ⋅ KISA ⋅ KrCERT
Analysis of attacker's strategy of using malicious code
2020-09-10 ⋅ QuoSec GmbH ⋅ Quosec Blog
grap: Automating QakBot strings decryption
QakBot
2020-09-10 ⋅ Kaspersky Labs ⋅ GReAT
An overview of targeted attacks and APTs on Linux
Cloud Snooper Dacls DoubleFantasy MESSAGETAP Penquin Turla Tsunami elf.wellmess X-Agent
2020-09-10 ⋅ FBI ⋅ FBI, National Cyber Investigative Joint Task Force (NCIJTF)
FBI PIN NUMBER 20200910-001: Cyber Actors Conduct CredentialStuffing Attacks Against US Financial Sector
2020-09-10 ⋅ Microsoft ⋅ Microsoft Threat Intelligence Center (MSTIC)
STRONTIUM: Detecting new patterns in credential harvesting
APT28
2020-09-10 ⋅ Group-IB ⋅ Oleg Skulkin, Semyon Rogachev
Lock Like a Pro: Dive in Recent ProLock's Big Game Hunting
PwndLocker QakBot
2020-09-10 ⋅ ESET Research ⋅ Anton Cherepanov
Who is calling? CDRThief targets Linux VoIP softswitches
CDRThief
2020-09-10 ⋅ SANS ISC InfoSec Forums ⋅ Brad Duncan
Recent Dridex activity
Dridex
2020-09-10 ⋅ Medium mariohenkel ⋅ Mario Henkel
Decrypting NanoCore config and dump all plugins
Nanocore RAT
2020-09-10 ⋅ Microsoft ⋅ Tom Burt
New cyberattacks targeting U.S. elections
2020-09-09 ⋅ Malwarebytes ⋅ Threat Intelligence Team
Malvertising campaigns come back in full swing
Raccoon SmokeLoader Malsmoke
2020-09-09 ⋅ Malwarebytes ⋅ Threat Intelligence Team
Malvertising campaigns come back in full swing
Raccoon SmokeLoader
2020-09-08 ⋅ MALWATION ⋅ malwation
Malware Config Extraction Diaries #1 – GuLoader
CloudEyE
2020-09-08 ⋅ PTSecurity ⋅ PTSecurity
ShadowPad: new activity from the Winnti group
CCleaner Backdoor Korlia ShadowPad TypeHash
2020-09-08 ⋅ Trend Micro ⋅ Augusto Remillano II
Exposed Docker Server Abused to Drop Cryptominer, DDoS Bot
Kaiten