Click here to download all references as Bib-File.•
2024-07-24
⋅
Google
⋅
APT45: North Korea’s Digital Military Machine SHATTEREDGLASS APT45 |
2024-04-16
⋅
Mandiant
⋅
APT44: Unearthing Sandworm VPNFilter BlackEnergy CaddyWiper EternalPetya HermeticWiper Industroyer INDUSTROYER2 Olympic Destroyer PartyTicket RoarBAT Sandworm |
2024-04-04
⋅
Mandiant
⋅
Cutting Edge, Part 4: Ivanti Connect Secure VPN Post-Exploitation Lateral Movement Case Studies TONERJAM |
2024-04-04
⋅
InfoSec Handlers Diary Blog
⋅
Slicing up DoNex with Binary Ninja Donex |
2024-02-29
⋅
SANS ISC
⋅
Dissecting DarkGate: Modular Malware Delivery and Persistence as a Service DarkGate |
2024-02-05
⋅
YouTube (John Hammond)
⋅
PikaBot Malware Analysis: Debugging in Visual Studio Pikabot |
2024-01-12
⋅
Mandiant
⋅
Cutting Edge: Suspected APT Targets Ivanti Connect Secure VPN in New Zero-Day Exploitation UTA0178 |
2024-01-09
⋅
Trend Micro
⋅
Black Basta-Affiliated Water Curupira’s Pikabot Spam Campaign Pikabot Water Curupira |
2023-12-14
⋅
Imperva
⋅
Imperva Detects Undocumented 8220 Gang Activities Water Sigbin |
2023-12-13
⋅
Fortinet
⋅
TeamCity Intrusion Saga: APT29 Suspected Among the Attackers Exploiting CVE-2023-42793 GraphDrop |
2023-11-15
⋅
Fortinet
⋅
Investigating the New Rhysida Ransomware Rhysida |
2023-11-09
⋅
Mandiant
⋅
Sandworm Disrupts Power in Ukraine Using a Novel Attack Against Operational Technology CaddyWiper |
2023-10-23
⋅
SarlackLab
⋅
Advice For Catching a RedLine Stealer RedLine Stealer |
2023-10-10
⋅
Mandiant
⋅
Assessed Cyber Structure and Alignments of North Korea in 2023 TraderTraitor |
2023-09-28
⋅
Ransomware.org
⋅
The Scattered Spider Ransomware Group’s Secret Weapons? Social Engineering and Fluent English |
2023-08-29
⋅
Mandiant
⋅
Diving Deep into UNC4841 Operations Following Barracuda ESG Zero-Day Remediation (CVE-2023-2868) GhostEmperor |
2023-06-15
⋅
Mandiant
⋅
Barracuda ESG Zero-Day Vulnerability (CVE-2023-2868) Exploited Globally by Aggressive and Skilled Actor, Suspected Links to China SALTWATER SEASPY UNC4841 |
2023-05-26
⋅
Trend Micro
⋅
New Info Stealer Bandit Stealer Targets Browsers, Wallets Bandit Stealer |
2023-04-20
⋅
Mandiant
⋅
3CX Software Supply Chain Compromise Initiated by a Prior Software Supply Chain Compromise; Suspected North Korean Actor Responsible POOLRAT IconicStealer UNC4736 |
2023-04-18
⋅
CitizenLab
⋅
Triple Threat: NSO Group’s Pegasus Spyware Returns in 2022 with a Trio of iOS 15 and iOS 16 Zero-Click Exploit Chains |