Click here to download all references as Bib-File.
2023-11-21 ⋅ IBM ⋅ Stealthy WailingCrab Malware misuses MQTT Messaging Protocol Gozi WikiLoader |
2023-11-06 ⋅ Security Intelligence ⋅ GootBot – Gootloader’s new approach to post-exploitation GootLoader |
2023-09-12 ⋅ Security Intelligence ⋅ Email campaigns leverage updated DBatLoader to deliver RATs, stealers DBatLoader |
2023-06-27 ⋅ SecurityIntelligence ⋅ The Trickbot/Conti Crypters: Where Are They Now? Black Basta Conti Mount Locker PhotoLoader Royal Ransom SystemBC TrickBot |
2023-04-14 ⋅ IBM ⋅ Ex-Conti and FIN7 Actors Collaborate with New Domino Backdoor Minodo Nemesis |
2023-04-14 ⋅ Security Intelligence ⋅ Ex-Conti and FIN7 Actors Collaborate with New Domino Backdoor Minodo |
2022-08-18 ⋅ IBM ⋅ From Ramnit To Bumblebee (via NeverQuest): Similarities and Code Overlap Shed Light On Relationships Between Malware Developers BumbleBee Karius Ramnit TrickBot Vawtrak |
2022-07-07 ⋅ IBM ⋅ Unprecedented Shift: The Trickbot Group is Systematically Attacking Ukraine AnchorMail BumbleBee Cobalt Strike IcedID Meterpreter |
2022-05-19 ⋅ IBM ⋅ ITG23 Crypters Highlight Cooperation Between Cybercriminal Groups IcedID ISFB Mount Locker |
2022-02-25 ⋅ IBM ⋅ Trickbot Group’s AnchorDNS Backdoor Upgrades to AnchorMail AnchorDNS AnchorMail |
2021-10-13 ⋅ IBM ⋅ Trickbot Rising — Gang Doubles Down on Infection Efforts to Amass Network Footholds BazarBackdoor TrickBot |
2020-04-07 ⋅ SecurityIntelligence ⋅ ITG08 (aka FIN6) Partners With TrickBot Gang, Uses Anchor Framework More_eggs Anchor TrickBot |
2019-08-29 ⋅ Security Intelligence ⋅ More_eggs, Anyone? Threat Actor ITG08 Strikes Again More_eggs FIN6 |