Click here to download all references as Bib-File.•
2024-03-07
⋅
Malware Traffic Analysis
⋅
2024-03-07 (THURSDAY): LATRODECTUS INFECTION LEADS TO LUMMA STEALER Latrodectus Lumma Stealer |
2024-01-19
⋅
paloalto Networks Unit 42
⋅
Parrot TDS: A Persistent and Evolving Malware Campaign Parrot TDS Parrot TDS WebShell |
2023-10-03
⋅
Malware Traffic Analysis
⋅
2023-10-03 (Tuesday) - PikaBot infection with Cobalt Strike Cobalt Strike Pikabot |
2023-06-13
⋅
Mandiant
⋅
VMware ESXi Zero-Day Used by Chinese Espionage Actor to Perform Privileged Guest Operations on Compromised Hypervisors (UNC3886) UNC3886 |
2023-06-05
⋅
Malware Traffic Analysis
⋅
30 DAYS OF FORMBOOK: DAY 1, MONDAY 2023-06-05 Formbook |
2023-05-30
⋅
SANS ISC
⋅
Malspam pushes ModiLoader (DBatLoader) infection for Remcos RAT DBatLoader |
2023-05-30
⋅
Palo Alto Networks Unit 42
⋅
Cold as Ice: Answers to Unit 42 Wireshark Quiz for IcedID IcedID PhotoLoader |
2023-04-21
⋅
Jamf Blog
⋅
BlueNoroff APT group targets macOS with ‘RustBucket’ Malware RustBucket |
2023-04-12
⋅
InfoSec Handlers Diary Blog
⋅
Recent IcedID (Bokbot) activity IcedID PhotoLoader |
2023-04-12
⋅
SANS ISC
⋅
Recent IcedID (Bokbot) activity IcedID |
2023-03-16
⋅
Mandiant
⋅
Fortinet Zero-Day and Custom Malware Used by Suspected Chinese Actor in Espionage Operation UNC3886 |
2023-02-23
⋅
Jamf Blog
⋅
Evasive cryptojacking malware targeting macOS found lurking in pirated applications |
2023-01-18
⋅
SANS ISC
⋅
Malicious Google Ad --> Fake Notepad++ Page --> Aurora Stealer malware Aurora Stealer |
2023-01-03
⋅
Malware Traffic Analysis
⋅
2023-01-03 (TUESDAY) - GOOGLE AD --> FAKE NOTPAD++ PAGE --> RHADAMANTHYS STEALER Rhadamanthys |
2022-12-15
⋅
ISC
⋅
Google ads lead to fake software pages pushing IcedID (Bokbot) IcedID |
2022-09-01
⋅
[redacted]
⋅
BianLian Ransomware Gang Gives It a Go! BianLian BianLian |
2022-08-19
⋅
SANS ISC
⋅
Brazil malspam pushes Astaroth (Guildma) malware Astaroth |
2022-08-12
⋅
SANS ISC
⋅
Monster Libra (TA551/Shathak) pushes IcedID (Bokbot) with Dark VNC and Cobalt Strike Cobalt Strike DarkVNC IcedID |
2022-08-03
⋅
Palo Alto Networks Unit 42
⋅
Flight of the Bumblebee: Email Lures and File Sharing Services Lead to Malware BazarBackdoor BumbleBee Cobalt Strike Conti |
2022-07-27
⋅
SANS ISC
⋅
IcedID (Bokbot) with Dark VNC and Cobalt Strike DarkVNC IcedID |