• Tools
  • Playbooks
  • Speaking Events
  • About Us

Posts created by: Bryan Lee

26,587
people reacted

OilRig Group Steps Up Attacks with New Delivery Documents and New Injector Trojan

  • By Robert Falcone and Bryan Lee
  • October 9, 2017 at 10:00 AM

2

12 min. read

21,439
people reacted

Striking Oil: A Closer Look at Adversary Infrastructure

  • By Robert Falcone and Bryan Lee
  • September 26, 2017 at 1:00 PM

1

8 min. read

Trending

  • APT41 Using New Speculoos Backdoor to Target Organizations Globally
  • Malicious Attackers Target Government and Medical Organizations With COVID-19 Themed Phishing Campaigns
  • Studying How Cybercriminals Prey on the COVID-19 Pandemic
  • COVID-19: Cloud Threat Landscape
  • SilverTerrier: New COVID-19 Themed Business Email Compromise Schemes
28,150
people reacted

TwoFace Webshell: Persistent Access Point for Lateral Movement

  • By Robert Falcone and Bryan Lee
  • July 31, 2017 at 5:00 AM

2

12 min. read

28,737
people reacted

OilRig Uses ISMDoor Variant; Possibly Linked to Greenbug Threat Group

  • By Robert Falcone and Bryan Lee
  • July 27, 2017 at 5:00 AM

0

14 min. read

50,768
people reacted

Shamoon 2: Delivering Disttrack

  • By Robert Falcone and Bryan Lee
  • March 27, 2017 at 12:01 AM

2

9 min. read

10,967
people reacted

Regional Malware Trends in Latin America: July – December 2016

  • By Bryan Lee
  • March 14, 2017 at 4:00 AM

0

8 min. read

96,234
people reacted

Magic Hound Campaign Attacks Saudi Targets

  • By Bryan Lee and Robert Falcone
  • February 15, 2017 at 9:16 PM

2

23 min. read

30,449
people reacted

Let It Ride: The Sofacy Group’s DealersChoice Attacks Continue

  • By Robert Falcone and Bryan Lee
  • December 15, 2016 at 5:00 AM

0

8 min. read

29,339
people reacted

‘DealersChoice’ is Sofacy’s Flash Player Exploit Platform

  • By Robert Falcone and Bryan Lee
  • October 17, 2016 at 11:00 PM

1

10 min. read

Fresh Baked HOMEKit-made Cookles – With a DarkHotel Overlap

  • By Bryan Lee and Robert Falcone
  • August 12, 2016 at 5:00 AM

0

10 min. read

New Sofacy Attacks Against US Government Agency

  • By Robert Falcone and Bryan Lee
  • June 14, 2016 at 5:00 AM

0

7 min. read

The OilRig Campaign: Attacks on Saudi Arabian Organizations Deliver Helminth Backdoor

  • By Robert Falcone and Bryan Lee
  • May 26, 2016 at 2:05 PM

3

15 min. read

New Wekby Attacks Use DNS Requests As Command and Control Mechanism

  • By Josh Grunzweig, Mike Scott and Bryan Lee
  • May 24, 2016 at 11:30 AM

0

6 min. read

Evolution of SamSa Malware Suggests New Ransomware Tactics In Play

  • By Josh Grunzweig and Bryan Lee
  • March 24, 2016 at 7:47 AM

0

8 min. read

Digital Quartermaster Scenario Demonstrated in Attacks Against the Mongolian Government

  • By Josh Grunzweig, Robert Falcone and Bryan Lee
  • March 14, 2016 at 1:00 PM

1

13 min. read

Popular Resources

  • Resource Center
  • Blog
  • Communities
  • Tech Docs
  • Unit 42
  • Sitemap

Legal Notices

  • Privacy
  • Terms of Use
  • Documents

Account

  • Manage Subscriptions
  •  
  • Report a Vulnerability

© 2020 Palo Alto Networks, Inc. All rights reserved.