Click here to download all references as Bib-File.•
| 2025-09-04
⋅
eSentire
⋅
New Botnet Emerges from the Shadows: NightshadeC2 NightshadeC2 NightshadeC2 |
| 2025-09-04
⋅
Twitter (@Laughing_Mantis)
⋅
Tweet on similarity between GONEPOSTAL/NotDoor and Cordyceps GONEPOSTAL |
| 2025-09-04
⋅
Seqrite
⋅
Operation BarrelFire: NoisyBear targets entities linked to Kazakhstan’s Oil & Gas Sector. Meterpreter |
| 2025-09-03
⋅
Darkrym
⋅
PXA Stealers Evolution to PureRAT: Part 6 - Finally, the Final Stage PureRAT (Stage 9) PureRAT |
| 2025-09-03
⋅
Lab52
⋅
Analyzing NotDoor: Inside APT28’s Expanding Arsenal GONEPOSTAL |
| 2025-09-03
⋅
Reverse The Malware
⋅
Dropper and Downloader : What is the difference ? |
| 2025-09-02
⋅
At-Bay
⋅
Rhysida: Evading Detection, One Service at a Time Rhysida |
| 2025-09-02
⋅
Hunt.io
⋅
From Panel to Payload: Inside the TinyLoader Malware Operation XTinyLoader |
| 2025-09-02
⋅
BitSight
⋅
RapperBot: From Infection to DDoS in a Split Second RapperBot |
| 2025-09-02
⋅
Reverse The Malware
⋅
Agent and Malware: What is the difference? |
| 2025-09-01
⋅
cocomelonc
⋅
MacOS hacking part 11: bind shell for ARM (M1). Simple Assembly (M1) and C (run shellcode) examples |
| 2025-08-31
⋅
Darkrym
⋅
PXA Stealers Evolution to PureRAT: Part 3 - Weaponised Python Stage (Stage 5) PXA Stealer |
| 2025-08-29
⋅
Amazon
⋅
Amazon disrupts watering hole campaign by Russia’s APT29 |
| 2025-08-29
⋅
Nextron Systems
⋅
Sindoor Dropper: New Phishing Campaign Sindoor |
| 2025-08-29
⋅
Shindan
⋅
GodFather - Part 1 - A multistage dropper Godfather |
| 2025-08-28
⋅
cocomelonc
⋅
Malware development trick 51: steal data via legit Bitbucket API. Simple C example. |
| 2025-08-28
⋅
Gdata
⋅
AppSuite PDF Editor Backdoor: A Detailed Technical Analysis TamperedChef |
| 2025-08-28
⋅
Trend Micro
⋅
TAOTH Campaign Exploits End-of-Support Software to Target Traditional Chinese Users and Dissidents Cobalt Strike Merlin |
| 2025-08-28
⋅
Checkpoint
⋅
Chasing the Silver Fox: Cat & Mouse in Kernel Shadows ValleyRAT |
| 2025-08-28
⋅
Aryaka Networks
⋅
Vidar Infostealer in Action From API Hooking to Covert Data Exfiltration Vidar |