Click here to download all references as Bib-File.•
2024-10-19
⋅
Elastic
⋅
Tricks and Treats: GHOSTPULSE’s new pixel- level deception HijackLoader |
2024-09-27
⋅
Elastic
⋅
Betting on Bots: Investigating Linux malware, crypto mining, and gambling API abuse Kaiji RudeDevil |
2024-08-15
⋅
Elastic
⋅
Beyond the wail: deconstructing the BANSHEE infostealer BANSHEE |
2024-08-01
⋅
Elastic
⋅
BITS and Bytes: Analyzing BITSLOTH, a newly identified backdoor BITSloth |
2024-06-21
⋅
Elastic
⋅
GrimResource - Microsoft Management Console for initial access and evasion Cobalt Strike |
2024-06-12
⋅
Elastic
⋅
Dipping into Danger: The WARMCOOKIE backdoor WarmCookie |
2024-05-21
⋅
Elastic
⋅
Invisible miners: unveiling GHOSTENGINE’s crypto mining operations win.ghostengine |
2024-05-16
⋅
Elastic
⋅
Spring Cleaning with LATRODECTUS: A Potential Replacement for ICEDID IcedID Latrodectus |
2024-05-10
⋅
Elastic
⋅
Dissecting REMCOS RAT: An in- depth analysis of a widespread 2024 malware, Part Four Remcos |
2024-05-08
⋅
Elastic
⋅
Elastic Security - WarmCookie YARA Rule WarmCookie |
2024-05-07
⋅
Elastic
⋅
Elastic Security - GhostEngine YARA Rule win.ghostengine |
2024-05-03
⋅
Elastic
⋅
Dissecting REMCOS RAT: An in- depth analysis of a widespread 2024 malware, Part Three Remcos |
2024-04-30
⋅
Elastic
⋅
Dissecting REMCOS RAT: An in- depth analysis of a widespread 2024 malware, Part Two Remcos |
2024-04-24
⋅
Elastic
⋅
Dissecting REMCOS RAT: An in- depth analysis of a widespread 2024 malware, Part One Remcos |
2024-03-29
⋅
Elastic
⋅
In- the- Wild Windows LPE 0- days: Insights & Detection Strategies |
2024-02-23
⋅
Elastic
⋅
PIKABOT, I choose you! Pikabot |
2023-12-06
⋅
Elastic
⋅
Getting gooey with GULOADER: deobfuscating the downloader CloudEyE |
2023-10-31
⋅
Elastic
⋅
Elastic catches DPRK passing out KANDYKORN HLOADER KANDYKORN SUGARLOADER |
2023-10-27
⋅
Elastic
⋅
GHOSTPULSE haunts victims using defense evasion bag o' tricks HijackLoader Lumma Stealer NetSupportManager RAT Rhadamanthys SectopRAT Vidar |
2023-10-13
⋅
Elastic
⋅
Disclosing the BLOODALCHEMY backdoor BloodAlchemy REF5961 |