Click here to download all references as Bib-File.•

Enter keywords to filter the library entries below or Propose new Entry
2026-08-30 ⋅ Medium 0xzyadelzyat ⋅ Zyad Elzyat
Reverse Engineering the Auto-Color Linux Backdoor
Auto-Color
2026-07-31 ⋅ Medium @prtheus ⋅ Prtheus
1337_GTWK Linux Malware Analysis
1337_GTWK
2026-07-27 ⋅ Medium (@billmarczak) ⋅ Bill Marczak
An Angry Spark, or a Triangle in Disguise?
TriangleDB
2026-07-20 ⋅ Medium Ireneusz Tarnowski ⋅ Ireneusz Tarnowski
INC Ransom: Infrastructure Analysis, Operational Tradecraft, and Detection Opportunities
INC INC
2026-06-17 ⋅ Medium ⋅ Jason Reaves, Joshua Platt
MetaStealer traffic, new DGAs and analyzing the “tracker” backdoor DGA with AI
Potemkin
2026-06-15 ⋅ Medium (@mrtiepolo) ⋅ Gianluca Tiepolo
Operation Turb00 — Part 1: Analyzing and Hunting a Vidar Campaign
Vidar
2026-05-10 ⋅ Medium RaghavtiResearch ⋅ BeGoodToAll
Industrialized Smishing Infrastructure Targeting the UAE and Singapore Transportation, Government, and Logistics Sectors
2026-05-03 ⋅ Medium Ireneusz Tarnowski ⋅ Ireneusz Tarnowski
Multi-stage malware delivery campaign using SEO poisoning and serverless infrastructure
AMOS
2026-01-27 ⋅ Medium mk7912 ⋅ Manoj Kshirsagar
From XLoader to Phantom Stealer: A DHL-Themed multi-stage Infection Chain
Xloader Phantom Stealer
2026-01-23 ⋅ Medium Ireneusz Tarnowski ⋅ Ireneusz Tarnowski
SpyNote: Comprehensive Analysis of an Android Remote Access Trojan
SpyNote
2026-01-13 ⋅ Medium @0xOZ ⋅ OZ
How to Get Scammed (by DPRK Hackers)
JADESNOW
2026-01-11 ⋅ Medium APOPHIS ⋅ Michelle Khalil
ValleyRAT_S2 Chinese campaign
ValleyRAT
2025-12-22 ⋅ Medium Ireneusz Tarnowski ⋅ Ireneusz Tarnowski
Operational Analysis of Communication Channels in Mobile RCS
SpyFRPTunnel
2025-10-20 ⋅ Medium Deriv-Tech ⋅ Shantanu Ghumade
How a fake AI recruiter delivers five staged malware disguised as a dream job
BeaverTail OtterCookie InvisibleFerret
2025-10-18 ⋅ Medium 0xzyadelzyat ⋅ Zyad Elzyat
PureLogs Stealer: Complete Malware Analysis & CTF Walkthrough
PureLogs Stealer
2025-10-02 ⋅ Medium BI.ZONE ⋅ BI.ZONE
Cavalry Werewolf raids Russia’s public sector with trusted relationship attacks
FoalShell StallionRAT YoroTrooper
2025-09-22 ⋅ Medium Mr.AnyThink ⋅ Mr.AnyThink
Hunting For TamperedChef Infostealer
TamperedChef
2025-09-12 ⋅ Medium (@zyadlzyatsoc) ⋅ Zyad Elzyat
XWorm Malware Analysis: SOC & IR Perspective on Persistence, C2, and Anti-Analysis Tactics
XWorm
2025-08-18 ⋅ Medium RaghavtiResearch ⋅ BeGoodToAll
Qilin Ransomware-as-a-Service: Threat Analysis and Strategic Outlook
Qilin AgendaCrypt
2025-08-01 ⋅ Medium RaghavtiResearch ⋅ BeGoodToAll
https://medium.com/p/862eea4a2db4