Click here to download all references as Bib-File.

Enter keywords to filter the library entries below or Propose new Entry
2023-12-07Palo Alto Networks Unit 42Unit 42
Fighting Ursa Aka APT28: Illuminating a Covert Campaign
2023-12-06NCSC UKNCSC UK
Russian FSB cyber actor Star Blizzard continues worldwide spear-phishing campaigns: Updated and new research, updated vulnerabilities, security updates and revised actors.
Callisto
2023-12-06FortgaleFortgale
Nebula Broker: offensive operations made in Italy
Vetta Loader
2023-12-06cyber.wtf blogHendrik Eckardt
The csharp-streamer RAT
csharp-streamer RAT
2023-12-06splunkSplunk Threat Research Team
Unmasking the Enigma: A Historical Dive into the World of PlugX Malware
PlugX
2023-12-06Carmelo Ragusa, Luigi Martire
Unveiling “Vetta Loader”: A custom loader hitting Italy and spread through infected USB Drives
Vetta Loader
2023-12-06ElasticDaniel Stepanic
Getting gooey with GULOADER: deobfuscating the downloader
CloudEyE
2023-12-06Twitter (@embee_research)Embee_research
Ghidra Basics - Identifying, Decoding and Fixing Encrypted Strings
Vidar
2023-12-05US District Court Northern District of California San FranciscoIsmail J. Ramsey
CR23-00447CRB: United States of America vs RUSLAN ALEKSANDROVICH PERETYATKO and ANDREY STANISLAVOVICH KORINETS
Callisto
2023-12-05YouTube (SecureWorks)Austin Graham
Emulating Qakbot with Austin Graham
QakBot
2023-12-05PWCPwC Threat Intelligence
The Tortoise and The Malwahare
SnappyTCP
2023-12-05Kaspersky LabsSergey Puzan
BlueNoroff: new Trojan attacking macOS users
RustBucket
2023-12-05Medium g0njxag0njxa
Approaching stealers devs : a brief interview with StealC
Stealc
2023-12-05ProofpointCrista Giering, Greg Lesnewich, Proofpoint Threat Research Team
TA422’s Dedicated Exploitation Loop—the Same Week After Week
2023-12-04cybleCyble
TrickMo's Return: Banking Trojan Resurgence With New Features
TrickMo
2023-12-04Cado SecurityMatt Muir
P2Pinfect - New Variant Targets MIPS Devices
P2Pinfect
2023-12-04The RecordJonathan Greig
Florida water agency latest to confirm cyber incident as feds warn of nation-state attacks
2023-12-04The DFIR ReportThe DFIR Report
SQL Brute Force leads to Bluesky Ransomware
BlueSky Cobalt Strike
2023-12-03Medium OSINT TeamCriminal IP
SkidSec Hacker Group Announces Plans to Spread North Korean Propaganda Through Hacked Printers in South Korea
SkidSec
2023-12-03Bleeping ComputerLawrence Abrams
Linux version of Qilin ransomware focuses on VMware ESXi
Qilin