Tweetovi
- Tweetovi, trenutna stranica.
- Tweetovi i odgovori
- Medijski sadržaj
Blokirali ste korisnika/cu @sysopfb
Jeste li sigurni da želite vidjeti te tweetove? Time nećete deblokirati korisnika/cu @sysopfb
-
Vitali talked me into leaving my malware labhttps://twitter.com/vk_intel/status/1224101133574119424 …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
TrickBot gtag MAN1 if you want the history of why me and THL talk about MAN1 -> https://vixra.org/abs/1902.0257 a paper I wrote using lots data sets that had been gathered over the years!https://twitter.com/JayTHL/status/1222950355778011141 …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
sysopfb proslijedio/la je TweetHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
-
Empire running on 3.15.22[.]188 port 80 and http over port 443 with an open directory...pic.twitter.com/X4ETxJMohw
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Downloader using google drive to download an updated version of Remcos https://github.com/sysopfb/open_mal_analysis_notes/blob/master/3c18ac6d5fbcb89d733d0f281d68584717934c9628b6795ac89d97eb5d117c5b.md … Converted
@jpcert_en from MalConfScan into a static decoder and very minor changes to account for the new varianthttps://gist.github.com/sysopfb/11e6fb8c1377f13ebab09ab717026c87 …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
sysopfb proslijedio/la je Tweet
Archive of http://kernelmode.info is now available | All attachments are public | Note that attachments have PHP file extension but are actually archives | Rename according to its file type (ZIP, RAR, ...) and open it | Thanks for everybody who contributed over those ~10 years!
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Anchor TrickBot has been around for a lot longer than a few months 6500190bf8253c015700eb071416cbe33a1c8f3b84aeb28b7118a6abe96005e3 First Submission 2018-07-26 14:34:19
@VK_IntelHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
sysopfb proslijedio/la je Tweet
2019-12-11: [
#Breaking]
#TrickBot "#Anchor" Project Deployed
#Lazarus#PowerRatankba Tool | Our Discovery:
Probably One of the Biggest Crimeware Story 2019 w/ Technical Evidence of Collaboration | More to Come
cc/story @razhael More -> https://www.reuters.com/article/us-usa-cyber-north-korea/north-korean-hackers-are-working-with-eastern-european-cybercriminals-report-idUSKBN1YF1KA …pic.twitter.com/NusJ2gb1Ha
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
sysopfb proslijedio/la je Tweet
Today we announce
#SentinelLabs, our new threat intelligence division, led by award-winning@VK_Intel & a team of world-renowned researchers. Subscribe to the Labs blog to join us at the cutting edge of the threat landscape. https://lnkd.in/gHHgKuy#ThreatIntel#labs#infosecHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
qakbot domains north[.]drwongandassociates[.]com;inmotion[.]heatherling[.]com;qth[.]w3wvg[.]com
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
"PureLocker"? It's wrapped in the same manner as TerraLoader (84d4902be41e2ffa8ce720a4e5406158) cr1-websmart@protonmail.com YOUR_FILES.txt
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Just casually setting off everyones VT alerts on a Monday morning
@JohnLaTwC ? I like the idea of putting a header in the uploads thoughpic.twitter.com/CNEPmh7jve
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
sysopfb proslijedio/la je Tweet
A lot of code overlap between Maze ransomware and Glupteba Trojan. 100+ shared functions Glupteba - 5486f07cccc300dd939b4936daeb37b83d4c818d1735470bf791b6fd112db25d Maze - 5c9b7224ffd2029b6ce7b82ea40d63b9d4e4f502169bc91de88b4ea577f52353
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Put some of my modified unsafe golang libraries on github https://github.com/sysopfb/UnsafeGolangLibs … for doing things like putting data into the modulus of a public key of a x509 certpic.twitter.com/jquS6WGyYg
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Dumped 8 months of data from my TLS honeypot onto my github, up next is writing a bunch of parsers for the TLS packets to dump into a mineable format.https://github.com/sysopfb/honeypot_tls_research …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
-
DNS based packer that uses resolved IP as a XOR key; used by
#Plurox,#Azorult,#Baldr and Crypto wallet replacer malware campaigns:https://sysopfb.github.io/malware,/crypters/2019/09/23/Plurox-packer-layer-unpacked.html …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Did a quick DOH exfiltration POC while flying back home based on nicely laid out golang code from
@m13253https://sysopfb.github.io/exfiltration,/c2/2019/09/22/DOH-exfiltration.html …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
The SMB portions are hexlified for EB and DP, I copied and pasted the ones from here into a yara and got direct hits https://github.com/jflyup/goMS17-010/blob/master/ms17-010.go#L13 …https://twitter.com/VK_Intel/status/1171848248614670336 …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Excellent writeup and sums up pretty much the reason I've focused on crimeware my entire career is that the threats are real and interesting.https://github.com/Blevene/Crimeware-In-The-Modern-Era/ …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
Čini se da učitavanje traje već neko vrijeme.
Twitter je možda preopterećen ili ima kratkotrajnih poteškoća u radu. Pokušajte ponovno ili potražite dodatne informacije u odjeljku Status Twittera.
[Meetup] I will be in
Tel Aviv, Israel on the first time trip
.
I invite you to join our researher meetup if you're local and/or there for

