Click here to download all references as Bib-File.

Enter keywords to filter the library entries below or Propose new Entry
2022-03-25Github (@swagkarna)
Rafel Rat GitHub repository
Rafel RAT
2022-03-21Github (trendmicro)Trend Micro Research
Python script to check a Cyclops Blink C&C
CyclopsBlink
2022-03-17Github (eln0ty)Abdallah Elnoty
IcedID Analysis
IcedID
2022-03-16Github (XZB-1248)XZB-1248
Github Repository for Spark RAT
SparkRAT
2022-03-16Github (MidSpike)Tyler Resch
CVE-2022-23812: RIAEvangelist/node-ipc is malware / protestware
PeaceNotWar
2022-03-08Github (whichbuffer)Arda Büyükkaya
Conti-Ransomware-IOC
Conti
2022-03-07ElasticAndrew Pease, Cyril François, Daniel Stepanic, Derek Ditch, Github (@1337-42), Joe Desimone, Samir Bousseaden
PHOREAL Malware Targets the Southeast Asian Financial Sector
PHOREAL
2022-03-04Github (eln0ty)Abdallah Elnoty
HermeticWiper/FoxBlade Analysis (in-depth)
HermeticWiper
2022-03-01Github (usualsuspect)Johann Aydinbas
Python script to decrypt embedded driver used in Daxin
Daxin
2022-03-01Github (0xZuk0)Dipankar Lama
Malware Analysis Report: WannaCry Ransomware
WannaCryptor
2022-03-01ElasticAndrew Pease, Cyril François, Daniel Stepanic, Github (@1337-42), Github (@ayfaouzi), Github (@jtnk), Mark Mager, Samir Bousseaden
Elastic protects against data wiper malware targeting Ukraine: HERMETICWIPER
HermeticWiper
2022-02-28Github (TheParmak)TheParmak
conti-leaks-englished
Conti
2022-02-19Github (Casperinous)Casperinous
IDA scripts for analysis of Colibri Loader
Colibri Loader
2022-02-17Github (albertzsigovits)Albert Zsigovits
Ransomware Windows DarkBit
DarkBit
2022-02-17Github (Finch4)Finch
GoSteal Analysis
2022-02-17Github (shhoya)Shh0ya Security Lab
VMProtect Analysis 1.0: VMP Mutation Fix
2022-02-14Github (Finch4)Finch
SnowFlake Stealer
SnowFlake Stealer
2022-02-11Github (0x00-0x7f)Sadia Bashir
Netwalker: from Powershell reflective loader to injected dll
Mailto
2022-02-06Github (eln0ty)Abdallah Elnoty
Deep Analysis of Vidar Information Stealer
Vidar
2022-01-27Malwarebytes LabsAnkur Saini, Hossein Jazi
North Korea’s Lazarus APT leverages Windows Update client, GitHub in latest campaign