Topic
Initial-access and execution tradecraft using password-protected archives, macro-enabled Office documents and attacker-supplied signed binaries paired with rogue DLLs.
No current published clusters are mapped here yet.