Click here to download all references as Bib-File.
|2021-09-16 ⋅ Twitter (@GossiTheDog) ⋅ |
Tweet on some unknown threat actor dropping Mgbot, custom IIS modular backdoor and cobalstrike using exploiting ProxyShell
Cobalt Strike MgBot
|2021-06-27 ⋅ Twitter (@GossiTheDog) ⋅ |
Tweet on babuk ransomware builder
|2020-12-19 ⋅ Twitter (@GossiTheDog) ⋅ |
A twitter thread on Azure sentinel hunting queries for detecting UNC2452 activity