Click here to download all references as Bib-File.•
2021-09-15
⋅
Telsy
⋅
REMCOS and Agent Tesla loaded into memory with Rezer0 loader Agent Tesla Remcos |
2021-09-14
⋅
Fortinet
⋅
More ProxyShell? Web Shells Lead to ZeroLogon and Application Impersonation Attacks |
2021-09-01
⋅
YouTube (Black Hat)
⋅
Mem2Img: Memory-Resident Malware Detection via Convolution Neural Network Cobalt Strike PlugX Waterbear |
2021-08-27
⋅
Morphisec
⋅
ProxyShell Exchange Exploitation Now Leads To An Increasing Amount Of Cobaltstrike Backdoors Cobalt Strike |
2021-08-03
⋅
Sophos
⋅
Trash Panda as a Service: Raccoon Stealer steals cookies, cryptocoins, and more Raccoon |
2021-07-30
⋅
Menlo Security
⋅
ISOMorph Infection: In-Depth Analysis of a New HTML Smuggling Campaign AsyncRAT NjRAT |
2021-07-30
⋅
RiskIQ
⋅
Bear Tracks: Infrastructure Patterns Lead to More Than 30 Active APT29 C2 Servers elf.wellmess WellMess |
2021-07-27
⋅
The Record
⋅
BlackMatter ransomware targets companies with revenue of $100 million and more |
2021-07-27
⋅
SYGNIA
⋅
TG1021: "Praying Mantis" Dissecting an Advanced Memory-Resident Attack |
2021-07-21
⋅
Quick Heal
⋅
FormBook Malware Returns: New Variant Uses Steganography and In-Memory Loading of multiple stages to steal data Formbook |
2021-07-18
⋅
⋅
Lemonde
⋅
From Rabat to Paris, Morocco does not let go of journalists Chrysaor |
2021-07-17
⋅
Eyes on Life
⋅
Candiru's Spyware: How It Works And Attacking Journalists, Activists And Many More |
2021-07-13
⋅
YouTube (John Hammond)
⋅
JScript Deobfuscation - More WSHRAT (Malware Analysis) Houdini |
2021-07-09
⋅
Solarwind
⋅
Serv-U Remote Memory Escape Vulnerability CVE-2021-35211 (exploited in the wild) |
2021-07-08
⋅
Bleeping Computer
⋅
Morgan Stanley reports data breach after vendor Accellion hack |
2021-07-06
⋅
The Record
⋅
Moroccan hacker Dr HeX arrested for phishing attacks, malware distribution |
2021-07-05
⋅
Morphisec
⋅
Real-Time Prevention of the Kaseya VSA Supply Chain REvil Ransomware Attack REvil |
2021-07-01
⋅
Avast Decoded
⋅
Backdoored Client from Mongolian CA MonPass Cobalt Strike Earth Lusca |
2021-07-01
⋅
Avast Decoded
⋅
Backdoored Client from Mongolian CA MonPass Cobalt Strike FishMaster |
2021-06-30
⋅
Guardicore
⋅
SMB Worm “Indexsinas” Uses Lateral Movement to Infect Whole Networks |