Click here to download all references as Bib-File.•
| 2025-02-27
            
            ⋅
            
            BushidoToken
            ⋅ BlackBasta Leaks: Lessons from the Ascension Health attack Black Basta | 
| 2024-09-10
            
            ⋅
            
            Palo Alto Networks Unit 42
            ⋅ Threat Assessment: Repellent Scorpius, Distributors of Cicada3301 Ransomware Cicada3301 | 
| 2024-08-02
            
            ⋅
            
            Volexity
            ⋅ StormBamboo Compromises ISP to Abuse Insecure Software Update Mechanisms CDDS DUSTPAN MgBot | 
| 2024-05-10
            
            ⋅
            
            Rapid7 Labs
            ⋅ Ongoing Social Engineering Campaign Linked to Black Basta Ransomware Operators Black Basta Black Basta Cobalt Strike NetSupportManager RAT | 
| 2024-03-31
            
            ⋅
            
            Twitter (@fr0gger)
            ⋅ Tweet with visual summary of the execution flow xzbot | 
| 2024-01-10
            
            ⋅
            
            Volexity
            ⋅ Active Exploitation of Two Zero-Day Vulnerabilities in Ivanti Connect Secure VPN UTA0178 | 
| 2023-11-21
            
            ⋅
            
            Trellix
            ⋅ The Continued Evolution of the DarkGate Malware-as-a-Service DarkGate | 
| 2023-08-31
            
            ⋅
            
            Rapid7 Labs
            ⋅ Fake Update Utilizes New IDAT Loader To Execute StealC and Lumma Infostealers FAKEUPDATES Amadey HijackLoader Lumma Stealer SectopRAT | 
| 2023-08-30
            
            ⋅
            
            Forbes
            ⋅ A Fake Signal App Was Planted On Google Play By China-Linked Hackers | 
| 2023-05-14
            
            ⋅
            
            unfinished.bike
            ⋅ Fun with the new bpfdoor (2023) BPFDoor | 
| 2023-05-10
            
            ⋅
            
            Github (MythicAgents)
            ⋅ Github Repository for Nimplant Nimplant | 
| 2023-05-10
            
            ⋅
            
            Github (MythicAgents)
            ⋅ Github Repository for Poseidon Poseidon Poseidon | 
| 2023-03-30
            
            ⋅
            
            Volexity
            ⋅ 3CX Supply Chain Compromise Leads to ICONIC Incident 3CX Backdoor IconicStealer | 
| 2022-12-05
            
            ⋅
            
            Accenture
            ⋅ Popularity spikes for information stealer malware on the dark web MetaStealer Rhadamanthys | 
| 2022-11-21
            
            ⋅
            
            BSides Sydney
            ⋅ X-Ray of Malware Evasion Techniques - Analysis, Dissection, Cure? Emotet | 
| 2022-06-15
            
            ⋅
            
            Volexity
            ⋅ DriftingCloud: Zero-Day Sophos Firewall Exploitation and an Insidious Breach pupy Sliver DriftingCloud | 
| 2022-03-22
            
            ⋅
            
            Volexity
            ⋅ Storm Cloud on the Horizon: GIMMICK Malware Strikes at macOS GIMMICK GIMMICK | 
| 2022-02-25
            
            ⋅
            
            CrowdStrike
            ⋅ CrowdStrike Falcon Protects from New Wiper Malware Used in Ukraine Cyberattacks HermeticWiper | 
| 2022-02-25
            
            ⋅
            
            EnglertOne
            ⋅ Reverse Engineering | Hermetic Wiper HermeticWiper | 
| 2022-02-25
            
            ⋅
            
            Twitter (@fr0gger)
            ⋅ Tweets with an overview of HermeticWiper HermeticWiper |