Tweetovi
- Tweetovi, trenutna stranica.
- Tweetovi i odgovori
- Medijski sadržaj
Blokirali ste korisnika/cu @matthieu_faou
Jeste li sigurni da želite vidjeti te tweetove? Time nećete deblokirati korisnika/cu @matthieu_faou
-
Prikvačeni tweet
New
@ESET Research: We analyzed#LightNeuron, a#Turla malware targeting Microsoft Exchange servers - Abuses the Transport Agent feature - Can read/modify/block any email - Backdoor controlled by email attachments Full WP: https://www.welivesecurity.com/wp-content/uploads/2019/05/ESET-LightNeuron.pdf … Blogpost: https://www.welivesecurity.com/2019/05/07/turla-lightneuron-email-too-far/ …pic.twitter.com/4Uoir6wxiC
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
__mat__ proslijedio/la je Tweet
Campaign IDs and C&C URLs from the samples found at 2 universities contain the universities names indicating a targeted attack. At least 5 Hong Kong universities may have been compromised. 3/3
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
__mat__ proslijedio/la je Tweet
#ESETresearch uncovered a new campaign of the#Winnti Group targeting#HongKong universities with ShadowPad and Winnti.@mathieutartare https://www.welivesecurity.com/2020/01/31/winnti-group-targeting-universities-hong-kong/ … 1/3pic.twitter.com/d57V1rhBR1
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
__mat__ proslijedio/la je Tweet
However, considering the possible targets that the domains spoof and given the aforementioned non-definitive consistencies, we assess with moderate confidence that the domains probably are associated with APT28 operations.
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
__mat__ proslijedio/la je Tweet
Ultimately, none of these characteristics are definitively indicative of APT28 activity and we don't have any specific information on how the domains have been operationalized.
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
__mat__ proslijedio/la je Tweet
So just to be explicit about our research
@ThreatConnect, we initially came across the cubenergy-my-sharepoint[.]com by exploiting some consistencies that we've seen in previous Fancy Bear infrastructure.https://twitter.com/kyleehmke/status/1206573157261414405 …
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
__mat__ proslijedio/la je Tweet
Un must si vous vous demandez à quoi ça ressemble un stage en reverse engineering chez ESET!https://twitter.com/montrehack/status/1215447238165565440 …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
__mat__ proslijedio/la je Tweet
MontréHack's first of the year is happening next Wednesday on the 15th! See the details on http://montrehack.ca . Registration :https://www.eventbrite.ca/e/windows-malware-reversing-tickets-89183166251 …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
__mat__ proslijedio/la je Tweet
REcon 2019
@jebdec "The (Long) Journey To A Multi-Architecture Disassembler" video is out:https://youtu.be/2XNBIu8-72YHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
__mat__ proslijedio/la je Tweet
The
#BronzeUnion/#LuckyMouse/#APT27 infection checker. Possibly from http://cert.ir MD5: 86c9e95dcf69f6eca2a176407dcb99ff RahaSecIOC-x86.exepic.twitter.com/dthcwWUB2M
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
__mat__ proslijedio/la je Tweet
Yikes! A top iOS app in
@Apple's App Store, was a government spy tool!?


"...used by the govt. of the United Arab Emirates to try to track every conversation, movement ...of those who install it on their phones" -@nytimes Our technical analysis:https://objective-see.com/blog/blog_0x52.html …Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
__mat__ proslijedio/la je Tweet
Iran is one of the APT27 targets, such as other countries in the region, that’s true. Anyway, don’t draw any hasty conclusion as their backdoors such as HyperBro are vulnerable to 4th party collection. Can be interesting to have more IOCs from the IR CERT.https://twitter.com/azarijahromi/status/1206071513222467585 …
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
__mat__ proslijedio/la je Tweet
The dev of the TinyNuke Banker and Varenyky spambot has been arrestedhttps://twitter.com/le_parisien/status/1205927998135902208 …
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
__mat__ proslijedio/la je Tweet
Thanks to
@marc_etienne_ and other fine folks from ESET,#FIDL works in IDA 7.4 and Python 3! https://github.com/fireeye/FIDL pic.twitter.com/qq9NSv8Y8z
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
__mat__ proslijedio/la je Tweet
My CDS presentation with Anders on Exchange transport agents is online. We cover 3 malicious samples, ideas for detection, and some (fun) ideas we had when developing our own sample to stay under the radar. Check it out here, along with other talks:https://summit.fireeye.com/learn/tracks.html#technical …
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
__mat__ proslijedio/la je Tweet
Mapping all the related components and confirming what was clean/adware/malware took us quite a long time too. Some components were so prevalent that we went way past typical analysis to determine maliciousness beyond the shadow of a doubt.pic.twitter.com/2303DA3OdA
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
__mat__ proslijedio/la je Tweet
If you haven’t read the original
@ESETresearch Stantinko paper then you should https://www.welivesecurity.com/wp-content/uploads/2017/07/Stantinko.pdf … This malware family stands out to me for its subtle yet extensive modularity and subversive techniques. In 2017 this family had few if any detections by any security vendor.Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
__mat__ proslijedio/la je Tweet
After years of relying on click fraud, ad injection, social network fraud and credential stealing,
#Stantinko botnet has started to mine#Monero. Today,#ESETresearch dives deeper into Stantinko's new#cryptomining business model. https://www.welivesecurity.com/2019/11/26/stantinko-botnet-adds-cryptomining-criminal-activities/ …pic.twitter.com/od7rBMxyeO
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
__mat__ proslijedio/la je Tweet
An exciting project, I hope it will simplify writing decompiler plugins. We at Hex-Rays probably care too much about all minute details while you guys want a more general view of things. FIDL is a promising bridge.https://www.fireeye.com/blog/threat-research/2019/11/fidl-flare-ida-decompiler-library.html …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
__mat__ proslijedio/la je Tweet
Investigating a
#cyberattack in Central Europe and the Middle East,#ESETresearch discovered a highly unusual downloader. Apart from other nontraditional techniques, the#DePriMon#malware also poses as a default print monitor.https://www.welivesecurity.com/2019/11/21/deprimon-default-print-monitor-malicious-downloader/ …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
__mat__ proslijedio/la je Tweet
I don’t endorse the vocabulary in this tweet but I’d like to share our side of things and perhaps set the records straight. We never really wanted to (and still don’t want to) discredit Dragos publicly, there is really no point. 1/xhttps://twitter.com/osxreverser/status/1195750979876085766 …
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
Čini se da učitavanje traje već neko vrijeme.
Twitter je možda preopterećen ili ima kratkotrajnih poteškoća u radu. Pokušajte ponovno ili potražite dodatne informacije u odjeljku Status Twittera.