Click here to download all references as Bib-File.

Enter keywords to filter the library entries below or Propose new Entry
2021-09-17Medium inteloperatorIntel Operator
The default: 63 6f 62 61 6c 74 strike
Cobalt Strike
2021-09-16Medium ShabarkinPavel Shabarkin
Pointer: Hunting Cobalt Strike globally
Cobalt Strike
2021-09-12Medium michaelkoczwaraMichael Koczwara
Mapping and Pivoting from Cobalt Strike C2 Infrastructure Attributed to CVE-2021-40444
Cobalt Strike
2021-09-09Medium s2wlabS2W TALON
Case Analysis of Suncrypt Ransomware Negotiation and Bitcoin Transaction
SunCrypt
2021-09-08Medium s2wlabS2W TALON
Groove’s thoughts on Blackmatter, Babuk, and cheese shortages in the Netherlands
Babuk BlackMatter Babuk BlackMatter
2021-09-07Medium michaelkoczwaraMichael Koczwara
Cobalt Strike C2 Hunting with Shodan
Cobalt Strike
2021-09-07Medium walmartglobaltechJason Reaves
Decoding SmartAssembly strings, a Haron ransomware case study
Haron Ransomware
2021-09-02Medium michaelkoczwaraMichael Koczwara
Cobalt Strike PowerShell Payload Analysis
Cobalt Strike
2021-09-01Medium s2wlabChaewon Moon, Denise Dasom Kim, Jungyeon Lim, S2W LAB INTELLIGENCE TEAM, Sujin Lim, Yeonghyeon Jeong
BlackMatter x Babuk : Using the same web server for sharing leaked files
Babuk BlackMatter Babuk BlackMatter
2021-08-29Medium Asuna AmawakaAsuna Amawaka
Quarians, Turians and…QuickHeal
QuickHeal
2021-08-21Medium CrovaxCrovax
Panda Banker Analysis Part 1
PandaBanker
2021-08-20Medium Berhan BingölBerhan Bingöl
VirtualBox Detection, Anti-Detection
2021-08-19Medium walmartglobaltechJason Reaves
Looking at the new Krypton crypter and recent Data Exfiltrator Samples
2021-08-17Medium amgedwagehAmged Wageh
LockBit Ransomware Analysis Notes
LockBit
2021-08-17Medium michaelkoczwaraMichael Koczwara
Cobalt Strike Hunting — DLL Hijacking/Attack Analysis
Cobalt Strike
2021-07-30Medium walmartglobaltechJason Reaves
Decrypting BazarLoader strings with a Unicorn
BazarBackdoor
2021-07-25Medium svch0stsvch0st
Guide to Named Pipes and Hunting for Cobalt Strike Pipes
Cobalt Strike
2021-07-22Medium michaelkoczwaraMichael Koczwara
Cobalt Strike Hunting — simple PCAP and Beacon Analysis
Cobalt Strike
2021-07-14Medium TowardsDataScienceJohn “Turbo” Conwell
Domain Blooms: Identifying Domain Name Themes Targeted By Threat Actors
2021-07-14Medium s2wlabJaeki Kim
Matryoshka : Variant of ROKRAT, APT37 (Scarcruft)
RokRAT