Click here to download all references as Bib-File.•
2021-05-11
⋅
Sophos
⋅
A defender’s view inside a DarkSide ransomware attack DarkSide |
2021-05-06
⋅
Sophos Labs
⋅
MTR in Real Time: Pirates pave way for Ryuk ransomware Ryuk |
2021-05-05
⋅
SophosLabs Uncut
⋅
Intervention halts a ProxyLogon-enabled attack Cobalt Strike |
2021-04-22
⋅
Twitter (@AltShiftPrtScn)
⋅
Twwet On TTPs seen in IR used by DOPPEL SPIDER Cobalt Strike DoppelPaymer |
2021-04-20
⋅
Elastic
⋅
How attackers abuse Access Token Manipulation (ATT&CK T1134) |
2021-04-20
⋅
Intezer
⋅
HabitsRAT Used to Target Linux and Windows Servers HabitsRAT |
2021-04-20
⋅
Intezer
⋅
HabitsRAT Used to Target Linux and Windows Servers HabitsRAT |
2021-04-15
⋅
U.S. Department of State
⋅
Holding Russia To Account |
2021-04-09
⋅
Trend Micro
⋅
Iron Tiger APT Updates Toolkit With Evolved SysUpdate Malware HyperBro HyperSSL APT27 |
2021-04-08
⋅
Palo Alto Networks Unit 42
⋅
Attackers Conducting Cryptojacking Operation Against U.S. Education Organizations |
2021-04-01
⋅
Medium mikko-kenttala
⋅
Zero click vulnerability in Apple’s macOS Mail |
2021-03-10
⋅
Intezer
⋅
New Linux Backdoor RedXOR Likely Operated by Chinese Nation-State Actor RedXOR XOR DDoS |
2021-03-02
⋅
Intezer
⋅
When Viruses Mutate: Did SunCrypt Ransomware Evolve from QNAPCrypt? QNAPCrypt SunCrypt |
2021-02-25
⋅
JPCERT/CC
⋅
Emotet Disruption and Outreach to Affected Users Emotet |
2021-02-16
⋅
SophosLabs Uncut
⋅
What to expect when you’ve been hit with Conti ransomware Conti |
2021-02-05
⋅
Silent Push
⋅
Behavior Clustering just got easier using new characteristics. |
2021-01-26
⋅
SophosLabs Uncut
⋅
Nefilim Ransomware Attack Uses “Ghost” Credentials Nefilim |
2021-01-17
⋅
Twitter (@AltShiftPrtScn)
⋅
Tweet on Conti Ransomware group exploiting FortiGate VPNs to drop in CobaltStrike loaders Cobalt Strike Conti |
2021-01-04
⋅
Cisco Talos
⋅
Interview with a LockBit ransomware operator LockBit |
2020-12-22
⋅
Prevasio
⋅
Sunburst Backdoor, Part III: DGA & Security Software (Broken Link) SUNBURST |