PowerShell静态分析(Part I)
https://www.freebuf.com/articles/network/218399.html
YARA寻找代码重用:以“Dridex”恶意软件家族为例
https://www.sentinelone.com/blog/yara-hunting-for-code-reuse-doppelpaymer-ransomware-dridex-families/
网络设备也是端点
https://medium.com/@c2defense/man-in-the-network-network-devices-are-endpoints-too-d5bd4a279e37