Click here to download all references as Bib-File.•

Enter keywords to filter the library entries below or Propose new Entry
2020-03-23 ⋅ Microsoft ⋅ Microsoft Defender ATP Research Team
Latest Astaroth living-off-the-land attacks are even more invisible but not less observable
Astaroth
2020-01-21 ⋅ Microsoft ⋅ Microsoft Defender ATP Research Team
sLoad launches version 2.0, Starslord
sLoad
2019-11-26 ⋅ Microsoft ⋅ Microsoft Defender ATP Research Team
Insights from one year of tracking a polymorphic threat
Dexphot
2019-09-26 ⋅ Microsoft ⋅ Microsoft Defender ATP Research Team
Bring your own LOLBin: Multi-stage, fileless Nodersok campaign delivers rare Node.js-based malware
Divergent
2019-07-08 ⋅ Microsoft ⋅ Microsoft Defender ATP Research Team
Dismantling a fileless campaign: Microsoft Defender ATP’s Antivirus exposes Astaroth attack
Astaroth
2018-12-03 ⋅ Microsoft ⋅ Microsoft Defender ATP Research Team
Analysis of cyberattack on U.S. think tanks, non-profits, public sector by unidentified attackers
APT29
2018-04-04 ⋅ Microsoft ⋅ Microsoft Defender ATP Research Team
Hunting down Dofoil with Windows Defender ATP
SmokeLoader
2018-03-01 ⋅ Microsoft ⋅ Microsoft Defender ATP Research Team, Office 365 Threat Research Team
FinFisher exposed: A researcher’s tale of defeating traps, tricks, and complex virtual machines
FinFisher RAT
2017-12-04 ⋅ Microsoft ⋅ Microsoft Defender ATP Research Team, Microsoft Digital Crimes Unit
Microsoft teams up with law enforcement and other partners to disrupt Gamarue (Andromeda)
Andromeda
2017-11-06 ⋅ Microsoft ⋅ Microsoft Defender ATP Research Team
Mitigating and eliminating info-stealing Qakbot and Emotet in corporate networks
Emotet QakBot
2017-11-06 ⋅ Microsoft ⋅ Microsoft Defender ATP Research Team
Mitigating and eliminating info-stealing Qakbot and Emotet in corporate networks
Emotet
2017-06-29 ⋅ Microsoft ⋅ Microsoft Defender ATP Research Team
Windows 10 platform resilience against the Petya ransomware attack
EternalPetya
2017-06-27 ⋅ Microsoft ⋅ Microsoft Defender ATP Research Team
New ransomware, old techniques: Petya adds worm capabilities
Petya
2017-06-07 ⋅ Microsoft ⋅ Microsoft Defender ATP Research Team
PLATINUM continues to evolve, find ways to maintain invisibility
AMTsol
2017-03-27 ⋅ Microsoft ⋅ Microsoft Defender ATP Research Team
Detecting and mitigating elevation-of-privilege exploit for CVE-2017-0005
APT31
2017-01-25 ⋅ Microsoft ⋅ Microsoft Defender ATP Research Team
Detecting threat actors in recent German industrial attacks with Windows Defender ATP
APT41
2016-12-14 ⋅ Microsoft ⋅ Microsoft Defender ATP Research Team
Twin zero-day attacks: PROMETHIUM and NEODYMIUM target individuals in Europe
PROMETHIUM
2016-12-14 ⋅ Microsoft ⋅ Microsoft Defender ATP Research Team
Twin zero-day attacks: PROMETHIUM and NEODYMIUM target individuals in Europe
NEODYMIUM
2016-12-09 ⋅ Microsoft ⋅ Microsoft Defender ATP Research Team
Windows 10: protection, detection, and response against recent Depriz malware attacks
TERBIUM
2016-07-13 ⋅ Microsoft ⋅ Microsoft Defender ATP Research Team
Troldesh ransomware influenced by (the) Da Vinci code
Troldesh
2016-06-09 ⋅ Microsoft ⋅ Microsoft Defender ATP Research Team
Reverse-engineering DUBNIUM
DarkHotel
2016-04-26 ⋅ Microsoft ⋅ Microsoft Defender ATP Research Team
Digging deep for PLATINUM
PLATINUM