05/16

The Dragon Who Sold His Camaro: Analyzing Custom Router Implant - Check Point Research

https://research.checkpoint.com/2023/the-dragon-who-sold-his-camaro-analyzing-custom-router-implant/
The Dragon Who Sold His Camaro: Analyzing Custom Router Implant - Check Point Research

Attacking and Defending Azure & M365

https://training.xintra.org/attacking-and-defending-azure-m365
Attacking and Defending Azure & M365

Cobalt Strike and YARA: Can I Have Your Signature? | Cobalt Strike

https://www.cobaltstrike.com/blog/cobalt-strike-and-yara-can-i-have-your-signature/
Cobalt Strike and YARA: Can I Have Your Signature? | Cobalt Strike

Hunting Malicious Infrastructure using JARM and HTTP Response | by Michael Koczwara | May, 2023 | Medium

https://medium.com/@michaelkoczwara/hunting-malicious-infrastructure-using-jarm-and-http-response-bb4a039d4119
Hunting Malicious Infrastructure using JARM and HTTP Response | by Michael Koczwara | May, 2023 | Medium

Microsoft is scanning the inside of password-protected zip files for malware | Ars Technica

https://arstechnica.com/information-technology/2023/05/microsoft-is-scanning-the-inside-of-password-protected-zip-files-for-malware/
Microsoft is scanning the inside of password-protected zip files for malware | Ars Technica

AS-23-Yuanzhen-A-new-attack-interface-in-Java.pdf

https://i.blackhat.com/Asia-23/AS-23-Yuanzhen-A-new-attack-interface-in-Java.pdf
AS-23-Yuanzhen-A-new-attack-interface-in-Java.pdf

Qakbot/Qakbot_BB28_16.05.2023.txt at main · pr0xylife/Qakbot · GitHub

https://github.com/pr0xylife/Qakbot/blob/main/Qakbot_BB28_16.05.2023.txt
Qakbot/Qakbot_BB28_16.05.2023.txt at main · pr0xylife/Qakbot · GitHub

Hackers Using Golang Variant of Cobalt Strike to Target Apple macOS Systems

https://thehackernews.com/2023/05/hackers-using-golang-variant-of-cobalt.html
Hackers Using Golang Variant of Cobalt Strike to Target Apple macOS Systems

Open-source Cobalt Strike port 'Geacon' used in macOS attacks

https://www.bleepingcomputer.com/news/security/open-source-cobalt-strike-port-geacon-used-in-macos-attacks/
Open-source Cobalt Strike port 'Geacon' used in macOS attacks

MIKHAIL PAVLOVICH MATVEEV — FBI

https://www.fbi.gov/wanted/cyber/mikhail-pavlovich-matveev
MIKHAIL PAVLOVICH MATVEEV — FBI

Russian National Charged with Ransomware Attacks Against Critical Infrastructure | OPA | Department of Justice

https://www.justice.gov/opa/pr/russian-national-charged-ransomware-attacks-against-critical-infrastructure
Russian National Charged with Ransomware Attacks Against Critical Infrastructure | OPA | Department of Justice

Cyber-related Designation | Office of Foreign Assets Control

https://ofac.treasury.gov/recent-actions/20230516
Cyber-related Designation | Office of Foreign Assets Control

An interview with initial access broker Wazawaka: \'There is no such money anywhere as there is in ransomware\'

https://therecord.media/an-interview-with-initial-access-broker-wazawaka-there-is-no-such-money-anywhere-as-there-is-in-ransomware
An interview with initial access broker Wazawaka: \'There is no such money anywhere as there is in ransomware\'