Malware Analysis Reports
Unmasking KorPlug: A Technical Breakdown
2025-06-24
Phishing for Codes: Russian Threat Actors Target Microsoft 365 OAuth Workflows
2025-04-22
Author: Charlie Gardner, Josh Duke, Matthew Meltzer, Sean Koessel, Steven Adair, Tom Lancaster
TCCing is Believing! Apple finally adds TCC events to Endpoint Security!
2025-03-27
Author: Patrick Wardle
Multiple Russian Threat Actors Targeting Microsoft Device Code Authentication
2025-02-13
Author: Charlie Gardner, Steven Adair, Tom Lancaster
AI Models for Decompiling Assembly Code
2024-11-16
BrazenBamboo Weaponizes FortiClient Vulnerability to Steal VPN Credentials via DEEPDATA
2024-11-15
Author: Callum Roxan, Charlie Gardner, Paul Rascagneres
Analysis of Evolving Evasion Tradecraft in Commodity Malware and Command-and-Control Frameworks
2024-09-05
StormBamboo Compromises ISP to Abuse Insecure Software Update Mechanisms
2024-08-02
Author: Ankur Saini, Paul Rascagneres, Steven Adair, Thomas Lancaster
MMD-0069-2024 - An old ELF Ransomware pivoted crypto (OpenSSL to PolarSSL) Linux/Encoder.1-2
2024-06-19
Author: unixfreaxjp