Click here to download all references as Bib-File.•
2024-02-28
⋅
Avast Decoded
⋅
Lazarus and the FudModule Rootkit: Beyond BYOVD with an Admin-to-Kernel Zero-Day FudModule |
2024-02-02
⋅
Cyber Kendra
⋅
FritzFrog Botnet Expands Attack Arsenal with Log4Shell Exploits FritzFrog |
2024-01-30
⋅
DCSO
⋅
Reporting on Volt Typhoon’s “JDY” Botnet Administration Via Tor Sparks Questions |
2023-10-10
⋅
Qianxin
⋅
Sand Cat Group - Attacks on Kurdistan Democratic Party (KDP) Activists MOrder RAT Caracal Kitten |
2022-09-14
⋅
KISA
⋅
TTPs#7: Analysis on Lateral Movement Strategy Using SMB/Admin Share |
2022-08-08
⋅
The DFIR Report
⋅
BumbleBee Roasts Its Way to Domain Admin BumbleBee Cobalt Strike |
2022-04-05
⋅
US Department of Justice
⋅
Indictment of Dmitry Olegovich Pavlov in connection with his operation and administration of the servers used to run Hydra |
2022-03-29
⋅
⋅
NCSC Switzerland
⋅
Woche 12: Schadsoftware «FluBot» in der Schweiz wieder aktiv und Web-Administratoren erhalten Drohmails von angeblich ukrainischen Hackern FluBot |
2022-02-23
⋅
AdvIntel
⋅
24 Hours From Log4Shell to Local Admin: Deep-Dive Into Conti Gang Attack on Fortune 500 (DFIR) Cobalt Strike Conti |
2021-11-29
⋅
Trend Micro
⋅
Campaign Abusing Legitimate Remote Administrator Tools Uses Fake Cryptocurrency Websites AsyncRAT Azorult Nanocore RAT NjRAT RedLine Stealer Remcos |
2021-11-16
⋅
Intezer
⋅
New Type of Supply Chain Attack Could Put Popular Admin Tools at Risk |
2021-11-03
⋅
Team Cymru
⋅
Webinject Panel Administration: A Vantage Point into Multiple Threat Actor Campaigns - A Case Study on the Value of Threat Reconnaisance DoppelDridex IcedID QakBot Zloader |
2021-11-01
⋅
The DFIR Report
⋅
From Zero to Domain Admin Cobalt Strike Hancitor |
2021-10-25
⋅
Microsoft
⋅
NOBELIUM targeting delegated administrative privileges to facilitate broader attacks |
2021-06-17
⋅
⋅
Norwegian Police Security Service (PST)
⋅
The investigation of the computer network operation (by APT31) against public administration offices is closed |
2021-06-10
⋅
HUNT & HACKETT
⋅
REvil: the usage of legitimate remote admin tooling REvil |
2021-05-22
⋅
Youtube (ACPEnw)
⋅
Lessons Learned from a Cyber Attack System Admin Perspective Ryuk |
2021-04-27
⋅
Vice
⋅
'Cock.li' Admin Says He’s Not Surprised Russian Intelligence Uses His Site |
2020-12-22
⋅
Bleeping Computer
⋅
Biden blasts Trump administration over SolarWinds attack response |
2020-06-26
⋅
BleepingComputer
⋅
Admin of carding portal behind $568M in losses pleads guilty |