Tweetovi
- Tweetovi, trenutna stranica.
- Tweetovi i odgovori
- Medijski sadržaj
Blokirali ste korisnika/cu @viql
Jeste li sigurni da želite vidjeti te tweetove? Time nećete deblokirati korisnika/cu @viql
-
Prikvačeni tweet
I just published a blog post about the virtualized DGA of
#Pitou: https://johannesbader.ch/2019/07/the-dga-of-pitou/ … The malware is ancient, but as@malware_traffic recently showed (https://isc.sans.edu/diary/25068 ), Pitou is still active with the same DGA and seeds as five years ago.pic.twitter.com/0cet2LbsMy
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Johannes Bader proslijedio/la je Tweet
Introducing my newest project: I got phished The goal is to notify IT-security representatives about phishing victims within their constituency
https://igotphished.abuse.ch/
A big thanks to @JayTHL who initiated the project!
For bug reports and feature requests -> DM mepic.twitter.com/PvY4AWtvFt
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
.blackfriday, .tickets and .feedback top-level domains? Of course that's a thing. And they are even used by domain generation algorithms:https://johannesbader.ch/blog/the-dga-of-a-monero-miner-downloader/ …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Johannes Bader proslijedio/la je Tweet
New (active) Emotet botnet C&Cs over the past 12 months
You can clearly see the long vacation Emotet took in June and July
pic.twitter.com/3aYfGCTwbb
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Johannes Bader proslijedio/la je Tweet
Countries
with the most TrickBot infections (commonly used to drop Ryuk Ransomware
). Almost 1/4 of all TrickBot infections are are located in the US
Here's how to mitigate Emotet and TrickBot:
https://feodotracker.abuse.ch/mitigate/ pic.twitter.com/iHrLRu1AJ1
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Johannes Bader proslijedio/la je Tweet
Some interesting figures from
@spamhaus on Emotet: https://www.spamhaus.org/news/article/791/estimating-emotets-size-and-reach …pic.twitter.com/HMnigIn0Nr
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Johannes Bader proslijedio/la je Tweet
Here are the slides for the
#botconf2019 talk by@fxb_b and me on YARA-Signator, a tool for automated generation of code-based YARA signatures for@malpedia! Including some bonus slides on statistics for the 157,806,663 instructions processed. :) -> https://pnx.tf/slides/2019-12-06-Botconf-YaraSignator.pdf …pic.twitter.com/l1HufEWvhj
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Blog Post: The DGAs of
#QSnatch, attacking QNAP-NAS devices.https://bin.re/blog/the-dga-of-qsnatch/ …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Johannes Bader proslijedio/la je Tweet
Attention : envoi par email de documents Word infectés par le cheval de Troie bancaire "Retefe", provenant de correspondants connus mais dont le compte email a été compromis ! Merci d'annoncer les emails suspects sur https://www.antiphishing.ch pic.twitter.com/yWytvSIIVB
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Johannes Bader proslijedio/la je Tweet
FWIW, I've compiled a bunch of "empty" projects in MSVC under different settings. I'll use this data for function similarity matching as isolated groundtruth for lib code that is commonly found in malware. Maybe others will benefit from it as well.
https://github.com/danielplohmann/empty_msvc/ …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Johannes Bader proslijedio/la je Tweet
Ich hasse die neuen Werbescreens in
@BERNMOBIL Trams. Bewegte Werbebilder trüben mein Fahrerlebnis und an gewissen Stellen sind die Infomonitore weniger gut zu sehen. Bitte aufhören mit dem Bödsinn öV abzuwerten.Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Johannes Bader proslijedio/la je Tweet
It is 9am Swiss Time,
@VTeagueAus, Olivier Pereira & I are releasing details of a cryptographic trapdoor that we found in the Swiss Post#evoting system that would allows admins to falsely "prove" mixes that alter votes & undetectably compromise elections: https://people.eng.unimelb.edu.au/vjteague/SwissVote …Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Johannes Bader proslijedio/la je Tweet
Released
#xnumon 0.1.7.2 • bugfix release avoiding deadlock during long-running low-level disk operations such as those executed by Disk Utility or Boot Camp Assistant → https://roe.ch/xnumon → https://github.com/droe/xnumon/blob/0.1.7.2/NEWS.md …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Johannes Bader proslijedio/la je Tweet
As requested by
@bry_campbell, I've integrated@malpedia on URLhaus. Malware tags should now point to the appropriate Malpedia entrypic.twitter.com/fLNgZuKxJ2
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Johannes Bader proslijedio/la je TweetHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
-
Johannes Bader proslijedio/la je TweetHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
-
Johannes Bader proslijedio/la je Tweet
On Monday 11th June, URLhaus will start to notify hosting providers and network owners about active malware download sites (~3,400 at the moment). New additions to URLhaus will automatically be dispatched to the responsible hosting provider too.
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Johannes Bader proslijedio/la je Tweet
Heads up: Spam campaign incoming, pretending to come from
@CompaniesHouse, distributing TrickBot: https://urlhaus.abuse.ch/url/13517/ https://urlhaus.abuse.ch/url/13518/ /cc@NCSCpic.twitter.com/Hylx87VYSI
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
I just published a blog post on a new word-list-based domain generation algorithm of the Nymaim malware: https://johannesbader.ch/2018/04/the-new-domain-generation-algorithm-of-nymaim/ … . The algorithm has already been included in the DGArchive https://dgarchive.caad.fkie.fraunhofer.de/ .
#nymaim#dga.pic.twitter.com/2EKuonK4VQ
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Johannes Bader proslijedio/la je Tweet
AnMAXX, Gerber EDV and the Qrypter connection: https://abuse.ch/blog/anmaxx-gerber-edv-and-the-qrypter-connection … "Fake" VPN services hosting more than 5'000+ RAT botnet controllers. Full list: https://abuse.ch/downloads/blog/adwind_qrypter_c2s_20180409.txt …pic.twitter.com/pWbM00ENB8
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
Čini se da učitavanje traje već neko vrijeme.
Twitter je možda preopterećen ili ima kratkotrajnih poteškoća u radu. Pokušajte ponovno ili potražite dodatne informacije u odjeljku Status Twittera.