Click here to download all references as Bib-File.

Enter keywords to filter the library entries below or Propose new Entry
2023-01-19MandiantCristiana Kittner, Mark Lechtik, Sarah Hawley, Scott Henderson
Suspected Chinese Threat Actors Exploiting FortiOS Vulnerability (CVE-2022-42475)
BOLDMOVE BOLDMOVE
2022-01-20Kaspersky LabsDenis Legezo, Ilya Borisov, Mark Lechtik, Vasily Berdnikov
Technical details of MoonBounce’s implementation
MoonBounce
2022-01-20KasperskyDenis Legezo, Ilya Borisov, Mark Lechtik, Vasily Berdnikov
MoonBounce: the dark side of UEFI firmware
MoonBounce
2021-10-07KasperskyAseel Kayal, Mark Lechtik, Paul Rascagnères
LYCEUM Reborn: Counterintelligence in the Middle East
danbot LYCEUM
2021-09-30KasperskyAseel Kayal, Mark Lechtik, Paul Rascagnères, Vasily Berdnikov
GhostEmperor: From ProxyLogon to kernel mode
GhostEmperor GhostEmperor
2021-07-14KasperskyAseel Kayal, Mark Lechtik, Paul Rascagnères
LuminousMoth APT: Sweeping attacks for the chosen few
Cobalt Strike
2021-05-06KasperskyGiampaolo Dedola, Mark Lechtik
Operation TunnelSnake
Moriya TunnelSnake
2021-04-05KasperskyIvan Kwiatkowski, Mark Lechtik, Pierre Delcher
The leap of a Cycldek-related threat actor
2020-10-05KasperskyIgor Kuznetsov, Mark Lechtik, Yury Parshin
MosaicRegressor: Lurking in the Shadows of UEFI
2020-10-05Kaspersky LabsIgor Kuznetsov, Mark Lechtik
MosaicRegressor: Lurking in the Shadows of UEFI (Technical Details)
2020-10-05Kaspersky LabsIgor Kuznetsov, Mark Lechtik
MosaicRegressor: Lurking in the Shadows of UEFI
MosaicRegressor
2020-09-24CAROGiampaolo Dedola, Mark Lechtik
Cycldek aka Goblin Panda: Chronicles of the Goblin
NewCore RAT USBCulprit
2020-06-03Kaspersky LabsGiampaolo Dedola, GReAT, Mark Lechtik
Cycldek: Bridging the (air) gap
8.t Dropper NewCore RAT PlugX USBCulprit GOBLIN PANDA Hellsing
2020-05-07AVARAriel Jugnheit, Mark Lechtik
The North Korean AV Anthology: a unique look on DPRK’s Anti-Virus market
Volgmer
2018-06-12Check Point ResearchMark Lechtik
Deep Dive into UPAS Kit vs. Kronos
UPAS
2018-02-04Check PointMark Lechtik
DorkBot: An Investigation
NgrBot