View the latest
DFIR Report
X
Public Reports
Products
Products Overview
Threat Intel
Threat Feed
Private DFIR Reports
All Intel
Active Defense
DFIR Labs
Case Artifacts
-
Detection Pack
AI Training Ground
-
bruteratel
From a Single Click: How Lunar Spider Enabled a Near Two-Month Intrusion
Read More
-
dragonforce
Blurring the Lines: Intrusion Shows Connection With Three Major Ransomware Gangs
Read More
Services
Services Overview
Training
Threat Hunting
-
Professional Services
Integration
CTI Program Advisory
Incident Response Playbook
Company
About us
Contact Us
Collaboration
Careers
Analysts
Access DFIR Labs
Get in Touch
Public Reports
Products
Products Overview
Threat Intel
Threat intel Overview
Threat Feed
Private DFIR Reports
All Intel
Active Defense
DFIR Labs
Case Artifacts
Detection Pack
AI Training Ground
Services
Service Overview
Training
Threat Hunting
Professional Services
Integration
CTI Program Advisory
Incident Response Playbook
Company
Company Overview
About us
Contact Us
Careers
Analyst
SQL Brute Force Leads to BlueSky Ransomware
From OneNote to RansomNote: An Ice Cold Intrusion
UC3
Back to Analysts
Reports by UC3
Exfiltrate Data
ransomware
rdp
Buzzing on Christmas Eve: Trigona Ransomware in 3 Hours
Year in Review
2022 Year in Review
adfind
cobaltstrike
icedid
IcedID and Cobalt Strike vs Antivirus
trickbot
Trickbot Brief: Creds and Beacons