Click here to download all references as Bib-File.•
| 2023-02-02
⋅
Elastic
⋅
Update to the REF2924 intrusion set and related campaigns DoorMe ShadowPad SiestaGraph |
| 2023-02-02
⋅
ThreatMon
⋅
DoNot Team (APT-C-35) Analysis of Latest Campaign: Sophisticated Excel Macro Attack Targeting Pakistan |
| 2023-01-26
⋅
US Department of Justice
⋅
Alleged French cybercriminal to appear in Seattle on indictment for conspiracy, computer intrusion, wire fraud and aggravated identity theft ShinyHunters |
| 2023-01-05
⋅
AttackIQ
⋅
Emulating the Highly Sophisticated North Korean Adversary Lazarus Group MagicRAT Tiger RAT |
| 2022-12-16
⋅
Elastic
⋅
SiestaGraph: New implant uncovered in ASEAN member foreign ministry DoorMe SiestaGraph |
| 2022-10-31
⋅
Elastic
⋅
ICEDIDs network infrastructure is alive and well IcedID |
| 2022-10-28
⋅
Elastic
⋅
EMOTET dynamic config extraction Emotet |
| 2022-10-25
⋅
Microsoft
⋅
DEV-0832 (Vice Society) opportunistic ransomware campaigns impacting US education sector BlackCat Mount Locker PortStarter Zeppelin Vanilla Tempest |
| 2022-10-25
⋅
Newly Unsealed Indictment Charges Ukrainian National with International Cybercrime Operation Raccoon |
| 2022-10-10
⋅
RiskIQ
⋅
DEV-0832 Leverages Commodity Tools in Opportunistic Ransomware Campaigns BlackCat Mount Locker SystemBC Zeppelin |
| 2022-09-15
⋅
DuskRise
⋅
Erbium InfoStealer Enters the Scene: Characteristics and Origins Erbium Stealer |
| 2022-09-09
⋅
Elastic
⋅
BUGHATCH Malware Analysis BUGHATCH |
| 2022-08-25
⋅
Microsoft
⋅
MERCURY leveraging Log4j 2 vulnerabilities in unpatched systems to target Israeli organizations MimiKatz |
| 2022-08-24
⋅
Elastic
⋅
QBOT Malware Analysis QakBot |
| 2022-08-24
⋅
Microsoft
⋅
MagicWeb: NOBELIUM’s post-compromise trick to authenticate as anyone |
| 2022-08-18
⋅
DomainTools
⋅
A Sticky Situation Part 2 |
| 2022-08-15
⋅
Microsoft
⋅
Disrupting SEABORGIUM’s ongoing phishing operations Callisto |
| 2022-08-15
⋅
⋅
Weixin
⋅
Analysis of the characteristics of new activities organized by Patchwork APT in South Asia |
| 2022-08-15
⋅
Microsoft
⋅
Disrupting SEABORGIUM’s ongoing phishing operations |
| 2022-07-27
⋅
Microsoft
⋅
Untangling KNOTWEED: European private-sector offensive actor using 0-day exploits Subzero Denim Tsunami |