Click here to download all references as Bib-File.•
2023-04-13
⋅
Microsoft
⋅
Threat actors strive to cause Tax Day headaches CloudEyE Remcos |
2023-04-13
⋅
Sublime
⋅
Detecting QakBot: WSF attachments, OneNote files, and generic attack surface reduction QakBot |
2023-04-13
⋅
Yoroi
⋅
Money Ransomware: The Latest Double Extortion Group Money Message |
2023-04-12
⋅
Kaspersky Labs
⋅
Following the Lazarus group by tracking DeathNote campaign Bankshot BLINDINGCAN ForestTiger LambLoad LPEClient MimiKatz NedDnLoader Racket Downloader Volgmer |
2023-04-12
⋅
Akamai
⋅
Investigating the resurgence of the Mexals campaign |
2023-04-12
⋅
Gridinsoft
⋅
XMRig is one of the most widespread malicious miners, that exploits hardware to mine Monero xmrig |
2023-04-12
⋅
Spamhaus
⋅
Spamhaus Botnet Threat Update Q1 2023 FluBot Amadey AsyncRAT Aurora Ave Maria BumbleBee Cobalt Strike DCRat Emotet IcedID ISFB NjRAT QakBot RecordBreaker RedLine Stealer Remcos Rhadamanthys Sliver Tofsee Vidar |
2023-04-12
⋅
loginsoft
⋅
Maximizing Threat Detections of Qakbot with Osquery QakBot |
2023-04-11
⋅
CitizenLab
⋅
Sweet QuaDreams: A First Look at Spyware Vendor QuaDream’s Exploits, Victims, and Customers Carmine Tsunami |
2023-04-11
⋅
China Cybersecurity Industry Alliance
⋅
Review of Cyberattacks from US Intelligence Agencies - Based on Global Cybersecurity Communities' Analyses DuQu Flame Gauss Stuxnet |
2023-04-11
⋅
Microsoft
⋅
DEV-0196: QuaDream’s “KingsPawn” malware used to target civil society in Europe, North America, the Middle East, and Southeast Asia Carmine Tsunami |
2023-04-11
⋅
Microsoft
⋅
Guidance for investigating attacks using CVE-2022-21894: The BlackLotus campaign BlackLotus |
2023-04-10
⋅
Twitter (@embee_research)
⋅
Redline Stealer - Static Analysis and C2 Extraction Amadey RedLine Stealer |
2023-04-08
⋅
Twitter (@embee_research)
⋅
Dcrat - Manual De-obfuscation of .NET Malware DCRat |
2023-04-08
⋅
Team Cymru
⋅
Deriving Insight from Threat Actor Infrastructure Raccoon |
2023-04-08
⋅
cocomelonc
⋅
Malware AV/VM evasion - part 15: WinAPI GetModuleHandle implementation. Simple C++ example. |
2023-04-07
⋅
Elastic
⋅
Attack chain leads to XWORM and AGENTTESLA Agent Tesla XWorm |
2023-04-07
⋅
Microsoft
⋅
MERCURY and DEV-1084: Destructive attack on hybrid environment DarkBit Storm-1084 |
2023-04-06
⋅
Spamhaus
⋅
Neutralizing Tofsee Spambot – Part 3 | Network-based kill switch Tofsee |
2023-04-06
⋅
Spamhaus
⋅
Neutralizing Tofsee Spambot – Part 2 | InMemoryConfig store vaccine Tofsee |