From cd4abbc3b8201e505fe0802d9ebc415d20e5e18f Mon Sep 17 00:00:00 2001 From: brad-duncan Date: Mon, 8 Apr 2024 13:30:16 -0500 Subject: [PATCH] Updated 2024-Boggy-Serpens-use-of-AutodialDLL.txt --- 2024-Boggy-Serpens-use-of-AutodialDLL.txt | 7 ++++++- 1 file changed, 6 insertions(+), 1 deletion(-) diff --git a/2024-Boggy-Serpens-use-of-AutodialDLL.txt b/2024-Boggy-Serpens-use-of-AutodialDLL.txt index 4279d49..ac788bc 100644 --- a/2024-Boggy-Serpens-use-of-AutodialDLL.txt +++ b/2024-Boggy-Serpens-use-of-AutodialDLL.txt @@ -1,5 +1,10 @@ BOGGY SERPENS (MUDDYWATER) USE OF AUTODIALDLL +REFERENCES: + +- https://www.linkedin.com/posts/unit42_boggyserpens-muddywater-unit42threatintel-activity-7183168477073956864-aNYm +- https://twitter.com/Unit42_Intel/status/1777402805533184107 + INITIAL NOTES: - Boggy Serpens is the name we use to track a state-sponsored Iranian threat actor also known as MuddyWater or TA450. @@ -54,4 +59,4 @@ MORE INFORMATION ON THREAT ACTOR BOGGY SERPENS (MUDDYWATER): MORE INFORMATION ON ABUSING AUTODIALDLL: - https://www.hexacorn.com/blog/2015/01/13/beyond-good-ol-run-key-part-24/ -- https://www.mdsec.co.uk/2022/10/autodialdlling-your-way/ \ No newline at end of file +- https://www.mdsec.co.uk/2022/10/autodialdlling-your-way/