Click here to download all references as Bib-File.

Enter keywords to filter the library entries below or Propose new Entry
2023-02-28UptycsUptycs Threat Research
@online{research:20230228:cryptocurrency:11d4475, author = {Uptycs Threat Research}, title = {{Cryptocurrency Entities at Risk: Threat Actor Uses Parallax RAT for Infiltration}}, date = {2023-02-28}, organization = {Uptycs}, url = {https://www.uptycs.com/blog/cryptocurrency-entities-at-risk-threat-actor-uses-parallax-rat-for-infiltration}, language = {English}, urldate = {2023-03-04} } Cryptocurrency Entities at Risk: Threat Actor Uses Parallax RAT for Infiltration
Parallax RAT
2023-01-23UptycsKarthickkumar Kathiresan, Shilpesh Trivedi
@online{kathiresan:20230123:titan:2ea755f, author = {Karthickkumar Kathiresan and Shilpesh Trivedi}, title = {{The Titan Stealer: Notorious Telegram Malware Campaign - Uptycs}}, date = {2023-01-23}, organization = {Uptycs}, url = {https://www.uptycs.com/blog/titan-stealer-telegram-malware-campaign}, language = {English}, urldate = {2023-01-26} } The Titan Stealer: Notorious Telegram Malware Campaign - Uptycs
TitanStealer
2022-08-19UptycsSiddharth Sharma, Nischay Hedge
@online{sharma:20220819:is:59a2562, author = {Siddharth Sharma and Nischay Hedge}, title = {{Is Tox The New C&C Method For Coinminers?}}, date = {2022-08-19}, organization = {Uptycs}, url = {https://www.uptycs.com/blog/is-tox-the-new-cc-method-for-coinminers}, language = {English}, urldate = {2022-08-26} } Is Tox The New C&C Method For Coinminers?
Unidentified ELF 006 (Tox Backdoor)
2022-05-31UptycsPritam Salunkhe, Shilpesh Trivedi
@online{salunkhe:20220531:warzonerat:2f3eeae, author = {Pritam Salunkhe and Shilpesh Trivedi}, title = {{WarzoneRAT Can Now Evade Detection With Process Hollowing}}, date = {2022-05-31}, organization = {Uptycs}, url = {https://www.uptycs.com/blog/warzonerat-can-now-evade-with-process-hollowing}, language = {English}, urldate = {2022-06-08} } WarzoneRAT Can Now Evade Detection With Process Hollowing
Ave Maria
2022-05-12UptycsUptycs Threat Research
@online{research:20220512:kuraystealer:18931e5, author = {Uptycs Threat Research}, title = {{KurayStealer: A Bandit Using Discord Webhooks}}, date = {2022-05-12}, organization = {Uptycs}, url = {https://www.uptycs.com/blog/kuraystealer-a-bandit-using-discord-webhooks}, language = {English}, urldate = {2022-05-17} } KurayStealer: A Bandit Using Discord Webhooks
2021-10-07UptycsSiddharth Sharma
@online{sharma:20211007:team:50e3c4d, author = {Siddharth Sharma}, title = {{Team TNT Deploys Malicious Docker Image On Docker Hub}}, date = {2021-10-07}, organization = {Uptycs}, url = {https://www.uptycs.com/blog/team-tnt-deploys-malicious-docker-image-on-docker-hub-with-pentesting-tools}, language = {English}, urldate = {2021-10-11} } Team TNT Deploys Malicious Docker Image On Docker Hub
TeamTNT
2021-09-01UptycsPritam Salunkhe, Shilpesh Trivedi
@online{salunkhe:20210901:lolbins:10a5d13, author = {Pritam Salunkhe and Shilpesh Trivedi}, title = {{LOLBins Are No Laughing Matter: How Attackers Operate Quietly}}, date = {2021-09-01}, organization = {Uptycs}, url = {https://www.uptycs.com/blog/lolbins-are-no-laughing-matter}, language = {English}, urldate = {2021-09-06} } LOLBins Are No Laughing Matter: How Attackers Operate Quietly
2021-08-05UptycsSiddharth Sharma
@online{sharma:20210805:cryptominer:6cbb416, author = {Siddharth Sharma}, title = {{Cryptominer ELFs Using MSR to Boost Mining Process}}, date = {2021-08-05}, organization = {Uptycs}, url = {https://www.uptycs.com/blog/cryptominer-elfs-using-msr-to-boost-mining-process}, language = {English}, urldate = {2021-08-06} } Cryptominer ELFs Using MSR to Boost Mining Process
2021-05-17UptycsSiddartha Sharma, Ashwin Vamshi
@online{sharma:20210517:discovery:1cd5315, author = {Siddartha Sharma and Ashwin Vamshi}, title = {{Discovery of Simps Botnet Leads To Ties to Keksec Group}}, date = {2021-05-17}, organization = {Uptycs}, url = {https://www.uptycs.com/blog/discovery-of-simps-botnet-leads-ties-to-keksec-group}, language = {English}, urldate = {2021-05-25} } Discovery of Simps Botnet Leads To Ties to Keksec Group
Bashlite Mirai
2021-04-15UptycsSiddharth Sharma
@online{sharma:20210415:mirai:9db8c55, author = {Siddharth Sharma}, title = {{Mirai code re-use in Gafgyt}}, date = {2021-04-15}, organization = {Uptycs}, url = {https://www.uptycs.com/blog/mirai-code-re-use-in-gafgyt}, language = {English}, urldate = {2021-04-19} } Mirai code re-use in Gafgyt
Bashlite Mirai
2021-04-07UptycsAshwin Vamshi, Abhijit Mohanta
@online{vamshi:20210407:icedid:bbda303, author = {Ashwin Vamshi and Abhijit Mohanta}, title = {{IcedID campaign spotted being spiced with Excel 4 Macros}}, date = {2021-04-07}, organization = {Uptycs}, url = {https://www.uptycs.com/blog/icedid-campaign-spotted-being-spiced-with-excel-4-macros}, language = {English}, urldate = {2021-04-09} } IcedID campaign spotted being spiced with Excel 4 Macros
IcedID
2021-01-12UptycsAbhijit Mohanta, Ashwin Vamshi
@online{mohanta:20210112:confucius:865bcc8, author = {Abhijit Mohanta and Ashwin Vamshi}, title = {{Confucius APT deploys Warzone RAT}}, date = {2021-01-12}, organization = {Uptycs}, url = {https://www.uptycs.com/blog/confucius-apt-deploys-warzone-rat}, language = {English}, urldate = {2021-01-13} } Confucius APT deploys Warzone RAT
Ave Maria Confucius
2020-12-29UptycsAbhijit Mohanta
@online{mohanta:20201229:revenge:7c79587, author = {Abhijit Mohanta}, title = {{Revenge RAT targeting users in South America}}, date = {2020-12-29}, organization = {Uptycs}, url = {https://www.uptycs.com/blog/revenge-rat-targeting-users-in-south-america}, language = {English}, urldate = {2021-01-25} } Revenge RAT targeting users in South America
Revenge RAT
2020-11-25UptycsShilpesh Trivedi, Abhijit Mohanta
@online{trivedi:20201125:warzone:bb2219a, author = {Shilpesh Trivedi and Abhijit Mohanta}, title = {{Warzone RAT comes with UAC bypass technique}}, date = {2020-11-25}, organization = {Uptycs}, url = {https://www.uptycs.com/blog/warzone-rat-comes-with-uac-bypass-technique}, language = {English}, urldate = {2020-12-16} } Warzone RAT comes with UAC bypass technique
Ave Maria