Click here to download all references as Bib-File.•
2023-12-06
⋅
splunk
⋅
Unmasking the Enigma: A Historical Dive into the World of PlugX Malware PlugX |
2023-12-06
⋅
Twitter (@embee_research)
⋅
Ghidra Basics - Identifying, Decoding and Fixing Encrypted Strings Vidar |
2023-12-05
⋅
Proofpoint
⋅
TA422’s Dedicated Exploitation Loop—the Same Week After Week |
2023-11-30
⋅
Blackberry
⋅
AeroBlade on the Hunt Targeting the U.S. Aerospace Industry AeroBlade |
2023-11-30
⋅
Twitter (@embee_research)
⋅
Advanced Threat Intel Queries - Catching 83 Qakbot Servers with Regex, Censys and TLS Certificates QakBot |
2023-11-27
⋅
Twitter (@embee_research)
⋅
Building Threat Intel Queries Utilising Regex and TLS Certificates - (BianLian) BianLian |
2023-11-26
⋅
Twitter (@embee_research)
⋅
Identifying Suspected PrivateLoader Servers with Censys PrivateLoader |
2023-11-23
⋅
Check Point Research
⋅
Israel-Hamas War Spotlight: Shaking the Rust Off SysJoker SysJoker |
2023-11-22
⋅
Twitter (@embee_research)
⋅
Practical Queries for Malware Infrastructure - Part 3 (Advanced Examples) BianLian Xtreme RAT NjRAT QakBot RedLine Stealer Remcos |
2023-11-20
⋅
Russian Panda Research Blog
⋅
MetaStealer - Redline's Doppelgänger MetaStealer RedLine Stealer |
2023-11-19
⋅
Twitter (@embee_research)
⋅
Combining Pivot Points to Identify Malware Infrastructure - Redline, Smokeloader and Cobalt Strike Amadey Cobalt Strike RedLine Stealer SmokeLoader |
2023-11-17
⋅
Check Point Software Technologies Ltd
⋅
Malware Spotlight – Into the Trash: Analyzing LitterDrifter LitterDrifter |
2023-11-15
⋅
Twitter (@embee_research)
⋅
Identifying Simple Pivot Points in Malware Infrastructure - RisePro Stealer RedLine Stealer RisePro |
2023-11-06
⋅
Twitter (@embee_research)
⋅
Unpacking Malware With Hardware Breakpoints - Cobalt Strike Cobalt Strike |
2023-11-03
⋅
Uptycs
⋅
GhostSec: From Fighting ISIS to Possibly Targeting Israel with RaaS GhostLocker GhostSec |
2023-11-01
⋅
Twitter (@embee_research)
⋅
Malware Unpacking With Memory Dumps - Intermediate Methods (Pe-Sieve, Process Hacker, Hxd and Pe-bear) AsyncRAT |
2023-11-01
⋅
nccgroup
⋅
Popping Blisters for research: An overview of past payloads and exploring recent developments Blister Cobalt Strike |
2023-10-31
⋅
Check Point Research
⋅
From Albania to the Middle East: The Scarred Manticore is Listening Tunna LIONTAIL Scarred Manticore |
2023-10-30
⋅
Check Point Research
⋅
Evolving Cyber Dynamics Amidst the Israel-Hamas Conflict SYLHET GANG-SG |
2023-10-30
⋅
Twitter (@embee_research)
⋅
Unpacking .NET Malware With Process Hacker and Dnspy AsyncRAT |