Click here to download all references as Bib-File.•
2024-04-10
⋅
0ffset Blog
⋅
Resolving Stack Strings with Capstone Disassembler & Unicorn in Python Conti |
2024-04-04
⋅
Mandiant
⋅
Cutting Edge, Part 4: Ivanti Connect Secure VPN Post-Exploitation Lateral Movement Case Studies |
2024-03-29
⋅
CISA
⋅
Reported Supply Chain Compromise Affecting XZ Utils Data Compression Library, CVE-2024-3094 xzbot |
2024-03-20
⋅
CISA
⋅
Review of the Summer 2023 Microsoft Exchange Online Intrusion Storm-0558 |
2024-02-07
⋅
CISA
⋅
PRC State-Sponsored Actors Compromise and Maintain Persistent Access to U.S. Critical Infrastructure ScanLine |
2024-02-07
⋅
CISA
⋅
MAR-10448362-1.v1 Volt Typhoon ScanLine |
2024-01-15
⋅
Russian Panda Research Blog
⋅
From Russia With Code: Disarming Atomic Stealer AMOS |
2023-12-30
⋅
Rewterz Information Security
⋅
Rewterz Threat Alert – Widely Abused MSIX App Installer Disabled by Microsoft – Active IOCs HijackLoader Storm-1674 |
2023-12-15
⋅
⋅
Gatewatcher
⋅
Utilisation de faux profils Steam : Vidar Stealer prend les commandes Vidar |
2023-12-13
⋅
CISA
⋅
Russian Foreign Intelligence Service (SVR) Exploiting JetBrains TeamCity CVE Globally GraphDrop |
2023-11-16
⋅
CISA
⋅
Scattered Spider Ave Maria BlackCat Raccoon Vidar |
2023-11-16
⋅
CISA
⋅
Scattered Spider BlackCat Ave Maria Raccoon Vidar |
2023-09-07
⋅
CISA
⋅
Multiple Nation-State Threat Actors Exploit CVE-2022-47966 and CVE-2022-42475 Meterpreter MimiKatz |
2023-09-07
⋅
CISA
⋅
MAR-10454006.r5.v1 SUBMARINE, SKIPJACK, SEASPRAY, WHIRLPOOL, and SALTWATER Backdoors WHIRLPOOL |
2023-07-28
⋅
CISA
⋅
MAR-10454006-r2.v1 SEASPY Backdoor SEASPY |
2023-07-28
⋅
MAR-10454006-r1.v2 SUBMARINE Backdoor |
2023-07-28
⋅
CISA
⋅
CISA Releases Malware Analysis Reports on Barracuda Backdoors SEASPY |
2023-07-24
⋅
Mandiant
⋅
North Korea Leverages SaaS Provider in a Targeted Supply Chain Attack FULLHOUSE STRATOFEAR TraderTraitor |
2023-07-06
⋅
CISA
⋅
Increased Truebot Activity Infects U.S. and Canada Based Networks Silence |
2023-06-15
⋅
Mandiant
⋅
Barracuda ESG Zero-Day Vulnerability (CVE-2023-2868) Exploited Globally by Aggressive and Skilled Actor, Suspected Links to China SALTWATER SEASPY UNC4841 |