Click here to download all references as Bib-File.•
2022-06-02
⋅
Mandiant
⋅
To HADES and Back: UNC2165 Shifts to LOCKBIT to Evade Sanctions FAKEUPDATES Blister Cobalt Strike DoppelPaymer Dridex FriedEx Hades LockBit Macaw MimiKatz Phoenix Locker WastedLocker |
2022-06-02
⋅
Microsoft
⋅
Exposing POLONIUM activity and infrastructure targeting Israeli organizations POLONIUM |
2022-06-02
⋅
Microsoft
⋅
Complaint filed by Microsoft Digital Crimes Unit against BOHRIUM, a Iranian threat actor |
2022-06-01
⋅
Avertium
⋅
An In-Depth Look At Black Basta Ransomware Black Basta |
2022-06-01
⋅
Deep instinct
⋅
Iranian Threat Actor Continues to Develop Mass Exploitation Tools CobaltMirage FRP |
2022-06-01
⋅
Qianxin Threat Intelligence Center
⋅
Analysis of the attack activities of the Maha grass group using the documents of relevant government agencies in Pakistan as bait BadNews QUILTED TIGER |
2022-06-01
⋅
Avast
⋅
SMSFactory Android Trojan producing high costs for victims |
2022-06-01
⋅
Group-IB
⋅
SideWinder.AntiBot.Script Analysis of SideWinder's new infrastructure and tool that narrows their reach to Pakistan |
2022-05-30
⋅
⋅
NSFOCUS
⋅
Operation DarkCasino: In-Depth Analysis of Recent Attacks by APT Group EVILNUM DarkMe |
2022-05-30
⋅
Automatically Unpacking IcedID Stage 1 with Angr IcedID |
2022-05-28
⋅
Bleeping Computer
⋅
Clop ransomware gang is back, hits 21 victims in a single month Clop |
2022-05-27
⋅
Malwarology
⋅
Janicab Series: The Core Artifact Janicab |
2022-05-27
⋅
⋅
PTSecurity
⋅
How bootkits are implemented in modern firmware and how UEFI differs from Legacy BIOS LoJax MoonBounce |
2022-05-26
⋅
Darktrace
⋅
Worm-like propagation of Sysrv-hello crypto-jacking botnet: Network traffic analysis and latest TTPs Sysrv-hello Sysrv-hello |
2022-05-26
⋅
Trustwave
⋅
Grandoreiro Banking Malware Resurfaces for Tax Season Grandoreiro |
2022-05-26
⋅
IBM
⋅
Black Basta Besting Your Network? Black Basta |
2022-05-25
⋅
Medium walmartglobaltech
⋅
SocGholish Campaigns and Initial Access Kit FAKEUPDATES Blister Cobalt Strike NetSupportManager RAT |
2022-05-25
⋅
Team Cymru
⋅
Bablosoft; Lowering the Barrier of Entry for Malicious Actors BlackGuard BumbleBee RedLine Stealer |
2022-05-25
⋅
cyble
⋅
ERMAC Back In Action: Latest Version Of Android Banking Trojan Targets Over 400 Applications ERMAC |
2022-05-25
⋅
Reuters
⋅
Russian hackers are linked to new Brexit leak website, Google says |