This commit is contained in:
blackorbird
2019-04-08 16:00:38 +08:00
2 changed files with 22 additions and 12 deletions

22
APT28/README.MD Normal file
View File

@@ -0,0 +1,22 @@
### RELATED REPORT
[1] https://www.welivesecurity.com/wp-content/uploads/2016/10/eset-sednit-full.pdf
[2] https://www.welivesecurity.com/2017/05/09/sednit-adds-two-zero-day-exploits-using-trumps-attack-syria-decoy/
[3] https://www.emanueledelucia.net/apt28-targeting-military-institutions/
[4] https://www.emanueledelucia.net/apt28-sofacy-seduploader-under-the-christmas-tree/
[5] https://unit42.paloaltonetworks.com/unit42-sofacy-continues-global-attacks-wheels-new-cannon-trojan/
[6] https://unit42.paloaltonetworks.com/dear-joohn-sofacy-groups-global-campaign/
[7] https://unit42.paloaltonetworks.com/sofacy-creates-new-go-variant-of-zebrocy-tool/
[8] https://blog.trendmicro.co.jp/archives/19829
[9] https://www.welivesecurity.com/2018/11/20/sednit-whats-going-zebrocy/

View File

@@ -1,12 +0,0 @@
https://www.welivesecurity.com/wp-content/uploads/2016/10/eset-sednit-full.pdf
https://www.welivesecurity.com/2017/05/09/sednit-adds-two-zero-day-exploits-using-trumps-attack-syria-decoy/
https://www.emanueledelucia.net/apt28-targeting-military-institutions/
https://www.emanueledelucia.net/apt28-sofacy-seduploader-under-the-christmas-tree/
https://unit42.paloaltonetworks.com/unit42-sofacy-continues-global-attacks-wheels-new-cannon-trojan/
https://unit42.paloaltonetworks.com/dear-joohn-sofacy-groups-global-campaign/
https://unit42.paloaltonetworks.com/sofacy-creates-new-go-variant-of-zebrocy-tool/
https://blog.trendmicro.co.jp/archives/19829
https://www.welivesecurity.com/2018/11/20/sednit-whats-going-zebrocy/
https://twitter.com/DrunkBinary
https://github.com/williballenthin/idawilli/blob/master/scripts/yara_fn/yara_fn.py
https://twitter.com/r0ny_123