Click here to download all references as Bib-File.

Enter keywords to filter the library entries below or Propose new Entry
2022-04-12Twitter (@silascutler)Silas Cutler
Tweet on analysis of CADDYWIPER used alongside with INDUSTROYER2
CaddyWiper INDUSTROYER2
2022-04-12Twitter (@apt773)Section 773
Tween on Lapsus$ (UNC3661) Attack chain of compromise via Sitel (Okta subprocessor)'s systems
2022-04-11Twitter (@3xp0rtblog)3xp0rt
Tweet on Safire Miner
2022-04-07Twitter (@ChicagoCyber)Joshua Miller
Tweet on TA455 (Iranian threat actor) IoCs
2022-04-01Twitter (@3xp0rtblog)3xp0rt
Tweet on 000stealer, written in GO and its panel
000Stealer
2022-03-31Twitter (@3xp0rtblog)3xp0rt
Tweet on Eternity stealer
Eternity Stealer
2022-03-31Twitter (@LukasStefanko)Lukáš Štefanko
Tweet on VajraSpy
VajraSpy
2022-03-30Twitter (@hpsecurity)HP Wolf Security
Tweet on recent Mekotio Banker campaign
Mekotio
2022-03-24Twitter (@ESETresearch)ESET Research
Tweet on PipeMon variants by Winnti Group
PipeMon
2022-03-24Twitter (@struppigel)Karsten Hahn
Tweet on Ginzo Stealer
Ginzo Stealer
2022-03-15Twitter (@HackNPatch)HackNPatch
Tweet on Exploring CaddyWiper API resolution
CaddyWiper
2022-03-14Twitter (@ESETresearch)ESET Research
Tweet on CaddyWiper as 3rd destructive wiper found deployed against Ukraine
CaddyWiper Sunglow Blizzard
2022-03-12Twitter (@ET_Labs)ET Labs
A quick thread examining the network artifacts of the HermeticWizard spreading
HermeticWizard
2022-03-10Twitter (@Katechondic)Katechondic
Tweet on additional computer names "desktop-g1i8n3f" & "desktop-j6llo2k", seen with Crimson RAT C2 infrastructure used by APT36
Crimson RAT
2022-03-10Twitter (@teamcymru_S2)Team Cymru
Tweet on Crimson RAT infrastructure used by APT36
Crimson RAT
2022-03-09Twitter (@struppigel)Karsten Hahn
Tweets detailing NominatusToxicBattery
NominatusToxicBattery
2022-03-09Twitter (@silascutler)Silas Cutler
Tweet on HermeticWizard's self-spreading mechanism
HermeticWizard
2022-03-08Twitter (@CyberJack42)CyberJack
Tweet on ELFSHELF alias for KEYPLUG
KEYPLUG
2022-03-08Twitter (@ShaneHuntley)Google Threat Analysis Group, Shane Huntley
Tweet on APT31 phishing campaign targeting high profile Gmail users affiliated with the U.S. government in February
2022-03-08Twitter (@struppigel)Karsten Hahn
Tweet on KazyLoader
KazyLoader