Click here to download all references as Bib-File.•
| 2026-02-17
⋅
Google
⋅
From BRICKSTORM to GRIMBOLT: UNC6201 Exploiting a Dell RecoverPoint for Virtual Machines Zero-Day BRICKSTORM GRIMBOLT SLAYSTYLE UNC6201 |
| 2026-02-15
⋅
Github (jrm360seclab)
⋅
AODIN X1BQ Projector — Pre-Installed Vo1d Botnet Malware Void |
| 2026-01-29
⋅
Fortninet
⋅
Interlock Ransomware: New Techniques, Same Old Tricks Interlock |
| 2025-12-18
⋅
HelpNetSecurity
⋅
Clipping Scripted Sparrow’s wings: Tracking a global phishing ring Scripted Sparrow |
| 2025-12-01
⋅
FORTRA
⋅
Unknown Scripted Sparrow |
| 2025-09-24
⋅
Google
⋅
Another BRICKSTORM: Stealthy Backdoor Enabling Espionage into Tech and Legal Sectors BRICKSTORM |
| 2025-08-19
⋅
Red Canary
⋅
Patching for persistence: How DripDropper Linux malware moves through the cloud |
| 2025-06-12
⋅
CitizenLab
⋅
Graphite Caught: First Forensic Confirmation of Paragon’s iOS Mercenary Spyware Finds Journalists Targeted |
| 2025-05-29
⋅
Fortinet
⋅
Deep Dive into a Dumped Malware without a PE Header |
| 2025-05-01
⋅
Fortinet
⋅
FortiGuard Incident Response Team Detects Intrusion into Middle East Critical National Infrastructure Havoc |
| 2025-04-16
⋅
SpyCloud
⋅
Exposed Credentials & Ransomware Operations: Using LLMs to Digest 200K Messages from the Black Basta Chats Black Basta Black Basta |
| 2025-04-03
⋅
Mandiant
⋅
Suspected China-Nexus Threat Actor Actively Exploiting Critical Ivanti Connect Secure Vulnerability (CVE-2025-22457) SPAWNSNARE |
| 2025-03-18
⋅
Trellix
⋅
Analysis of Black Basta Ransomware Chat Leaks Black Basta Black Basta |
| 2025-03-12
⋅
YouTube (John Hammond)
⋅
LEAKED Russian Hackers Internal Chats Black Basta Black Basta |
| 2025-03-11
⋅
Trend Micro
⋅
AI-Assisted Fake GitHub Repositories Fuel SmartLoader and LummaStealer Distribution Lumma Stealer SmartLoader Water Kurita |
| 2025-03-07
⋅
Fortinet
⋅
Investigating Iranian Intrusion into Strategic Middle East Critical Infrastructure Havoc |
| 2025-02-20
⋅
Reliaquest
⋅
48 Minutes: How Fast Phishing Attacks Exploit Weaknesses ReedBed |
| 2024-11-20
⋅
Trellix
⋅
Phobos: Stealthy Ransomware That Operated Under the Radar - Until Now 8Base CryptXXXX Dharma Phobos |
| 2024-11-07
⋅
Cisco Talos
⋅
Unwrapping the emerging Interlock ransomware attack Interlock Rhysida |
| 2024-09-20
⋅
Trend Micro
⋅
How Ransomhub Ransomware Uses EDRKillShifter to Disable EDR and Antivirus Protections RansomHub Water Bakunawa |