Malware Analysis
Creator of Debloat, certReport, and https://t.co/w4rAuuB7O0
Want to chat? Join the Debloat discord: https://t.co/ZcWIqa6ZA9squiblydoo.blogJoined November 2020
To the person that keeps running Triage sandbox analysis, and then downloading malware from "dro[.]pm"
Please stop.
There are better ways to do whatever you are doing.
https://tria[.]ge/250825-e59qvabm6w/behavioral1
In the past days I've been observing a malware campaign using X verified accounts affiliated to account @KindleBookVerse (I see +140 accounts, consider each one malicious) running malicious X ads redirecting users to a fake AI website delivering malware.
While the ads redirect…
Added a new #KQL query leveraging #MDE with @SquiblydooBlog 's Cert Central
This is basically a AIO KQL query to find binaries signed with certs in Cert Central.
Can be a hunt or detection based on CertSerialMatchesCertReport.
github.com/SecurityAura/D…
More discussion around AppSuite-PDF, OneStart, PDF Editor, and ManualFinder's ads, websites, and code-signing certificates.
Also glad to see a mention for @struppigel 's write up on JustAskJacky and other apps.
Seems like there is still a lot to publish about all of this.
More discussion around AppSuite-PDF, OneStart, PDF Editor, and ManualFinder's ads, websites, and code-signing certificates.
Also glad to see a mention for @struppigel 's write up on JustAskJacky and other apps.
Seems like there is still a lot to publish about all of this.
13K Followers 310 FollowingThreat Researcher, Blue Team, DFIR, Malware Analysis, and Reverse Engineering.
“⚔️What do we say to God of malware, Not today⚔️”
18K Followers 801 FollowingThreat Intelligence Analyst |
See my Linktree for other socials |
In case I post false intel, contact me!
Support me: https://t.co/5WgDqr0K8p
🇪🇺🇩🇪🇺🇦🌈
55K Followers 3K FollowingDirector of Intel at @redcanary. SANS Certified Instructor for FOR578: CTI. Senior Fellow at @CyberStatecraft. She/her. Mastodon: @[email protected]
8K Followers 2K FollowingJust another OffSec geek. Speaker at Black Hat, IEEE, BSides & RE:HACK. Organizer of BSidesABQ & OWASPCairo. Building @CyberDose_
18K Followers 801 FollowingThreat Intelligence Analyst |
See my Linktree for other socials |
In case I post false intel, contact me!
Support me: https://t.co/5WgDqr0K8p
🇪🇺🇩🇪🇺🇦🌈
55K Followers 3K FollowingDirector of Intel at @redcanary. SANS Certified Instructor for FOR578: CTI. Senior Fellow at @CyberStatecraft. She/her. Mastodon: @[email protected]
10K Followers 462 FollowingThreat Researcher at Check Point @_CPResearch_ #DFIR #Reversing - All opinions expressed here are mine only.
https://t.co/iWvwWF1AnN
240K Followers 200 FollowingBreaking cybersecurity and technology news, guides, and tutorials that help you get the most from your computer. DMs are open, so send us those tips!
284K Followers 71 FollowingPart of @CISAgov, we respond to major incidents, analyze threats, and exchange critical cybersecurity information with partners around the world.
71K Followers 1K FollowingWIRED writer, author of SANDWORM and now TRACERS IN THE DARK: The Global Hunt for the Crime Lords of Cryptocurrency. Andy.01 on Signal. [email protected]
2K Followers 79 FollowingWith "Focused Technical Training for All Levels", JHT has 4 types of hands-on, affordable options by All-Star experts like @_JohnHammond, et al. https://t.co/lyeW4QnALE
630K Followers 209 FollowingCzar for life of all Russians. Master Strategist. . Tea connoisseur. Window installer. Author. YouTuber. Wanted in 123 countries. Parody, apparently.
4K Followers 147 FollowingA #SOCplatform boosted by #AI and #threatintelligence, combining #SIEM, #SOAR, #Automation in a single solution. Used by End-users, MSSP and APIs
1K Followers 95 FollowingDeveloper - Reverse Engineer - CTF player - Scrub.
🔧 I develop #AsmResolver, ✍️ blog at https://t.co/2WDyyrf4Rc, and sometimes 👾 hack with @Shellphish
17K Followers 1K FollowingLoves Jesus, loves others | Husband, father of 4, security solutions architect, love to learn and teach | Microsoft MVP | @TribeOfHackers | 🦋@nathanmcnulty.com
2K Followers 443 FollowingSenior Intelligence Analyst @RedCanary! Former DFIR @Mandiant, former @NetworkDefense intern. Psychology nerd. When I am not computering, I go outside and play!
60K Followers 1K FollowingSecurity information portal, testing and certification body.
Organisers of the annual Virus Bulletin conference. @[email protected]