Josiah Smith @JosiahSecurity
San Antonio, TX Joined October 2018-
Tweets172
-
Followers65
-
Following192
-
Likes316
Huge shout out to @petermstewart, @RustyNoob619, and @de3ev for completing the #100DaysOfYARA challenge. We've published an overview post on the second half: inquest.net/blog/100-days-… ICYMI, our first post from the halfway mark can be found here: inquest.net/blog/100-days-……
🚀 InQuest & @ThreatConnect unite to revolutionize threat intelligence and cybersecurity. 🌐✨ bwnews.pr/48sqvVW 🔍 InQuest's unparalleled file-based analysis and unique threat intel now integrates seamlessly with ThreatConnect's TI Ops Platform. This powerful…
The Importance of Email Hygiene #Email hygiene in the world of security has to do with configuring a set of email authentication and verification methods for your domain. Free email hygiene analysis: fdr.inquest.net/automated-hygi… Blog: inquest.net/blog/2022/12/2…
The holidays are here. Be careful what gifts you open! inquest.net/blog/2022/12/1… #ransomware #threatintel
InQuest Labs has observed an uptick in TOAD (Telephone-oriented attack delivery) threat actors targeting personal and business email, presumably in line with the coming holiday shopping season. Blog: inquest.net/blog/2022/11/2… #ThreatIntel #Phishing #cybersecurityawareness
Emotet is back, clever graphical coercion rule pretending to be an official Microsoft yellow "ribbon". Good pivot opportunity for collating samples: labs.inquest.net/dfi/search/ext… Sprinkle a little bash and JQ around github.com/inquest/python… and we can pull a list of payload domains...
Password cracking for the win: labs.inquest.net/dfi/sha256/60c… Arabic language lure uploaded from Palestine. Passwords include "decrypt-zip2022" and "decrypt-office". Zero AV detections. The payload domain 'rep-console[.]com' is unresponsive, potentially geofenced, registered on 7/18.
Excited to show part 4 of the File Detection and Response #FDR blog series from @pedramamini How FDR Helps with the SecOps Staffing Dilemma inquest.net/blog/2022/09/0… #secops #CyberSecurityExpert
Not sure what these bad actors fancy about Jon McGlone, but waves of #maldocs obfuscate stage-two with his website. Read through the attack-chain within this new blog: RTF files, Shellcode and More Shenanigans inquest.net/blog/2022/08/2… #ThreatIntel #malware
File-borne attacks are a mainstay of the threat landscape and InQuest’s @pedramamini takes a deep dive into File Detection and Response (FDR) as a way to prevent such attacks. He describes what automated threat hunting is and how it can make a difference. youtube.com/watch?v=G4rfzA…
Join the Hunt on August, 11th from 5 to 8 at the 1923 Prohibition Bar directly off of Mandalay Bay's casino floor. No projectors, presos, or pitches. Just an informal gathering with industry veterans. Register at inquest.net/blackhat #BlackHat22 #malware #ThreatIntelligence
A few days ago we discovered an interesting document spoofing contract for the supply of services to an energy company from southern Iran. Since this family of #maldocs was not previously known, we call it Green Stone. inquest.net/blog/2022/07/2… #ThreatHunting #ThreatIntel
When examining the modern threat landscape, empowering your security operations and overcoming the limitations inherent with other #Malware prevention solutions is imperative. A recent #Qbot campaign showcases the intricacies of detection. darkreading.com/perimeter/empo… #threatintel
Multistage #Maldoc masquerading as a Ukrainian military payroll document. Obfuscated and geofenced to only infect UA systems. #Gamaredon APT Calling this one GlowSand. inquest.net/blog/2022/06/2… #ThreatIntelligence
🤖 Potentially malicious RTF document found hosted at: hxxps://[email protected]/mee/giv[.]doc SHA256: 3c0c6b9e259384a24123fa8d0f33366b0d6a99de759ac14af0c354a555443339 IOC extracted from sample: labs.inquest.net/dfi/hash/42f0a… (Automated Tweet, maybe a FP)
Microsoft Office has been a long favorite delivery mechanism for malicious payloads, from pen-testers to nation-state threat actor groups, and for good reason. Look back over the years detailing some of the most abused vulnerabilities. inquest.net/blog/2022/06/2… #malware #Follina
A rather interesting obfuscated #maldoc uploaded from the IR country code. InQuest Labs: labs.inquest.net/dfi/hash/2f796… Macro downloads and runs 114f0a73818653616d41cf4380d3d987 from hxxps://windowsupdates.global.ssl.fastly[.]net/README.md #cobaltstrike #malware @DmitriyMelikov 👏
Excited to add YARAify from our friends at @abuse_ch to the Awesome-YARA list. YARAify: yaraify.abuse.ch Awesome-YARA: github.com/InQuest/awesom… #YARA #malware
From a VR student today on our ROP chain lessons. I'm dying 😂: "This week's been like"

Dekeys David @Dekeysdave
408 Followers 3K Following UPDATES $CORE/AIRDROPS & WEB3/TESTNET UPDATES🚀$SUI ARI CHAIN ⛓️🥱🤧
Carmen Quincy @CarmenznQuincy
5 Followers 296 Following Gathered on the site of girls from all US states 😈 They are ready to meet Nudes in profile! Watching this https://t.co/wNIpk281il
Isabelle Quinn @IsabelleQuinn95
14 Followers 54 Following Threat Market Analyst at InQuest, InfoSec afficianado, stumbling programmer (🐍).
Fabian-Denis Borz �... @ThisIsThePolic5
2K Followers 3K Following If you think you are secure, think again! | Penetration Tester | Defender of the Network | Former Blue Teamer | ✞
Curt Hastings @curt7s
205 Followers 424 Following Data Science | AI | Political Economy | Bioinformatics | LBNL | Caltech | Yale | Tweets auto delete
GrowfSec @GrowfSec
237 Followers 5K Following Chief Disinformation Officer. Unemployed, views are exclusively my own and not my non-existent employer.
Michał @MichalSGrobelny
2 Followers 224 Following
Securityblog @Securityblog
12K Followers 14K Following There are 10 types of people in the world. Those who understand binary, and those who don't. All opinions and views are my own. #BsidesDub organizer
tenacrk @tenacrk
240 Followers 2K Following
_Crom_ @_crom_
91 Followers 565 Following
Shadow Chaser Group @ShadowChasing1
11K Followers 568 Following Shadow Chaser Group is a sub-group of the GcowSec team which consists of college students who love it.Shadow Chaser Group focused on APT hunt and analysis
Jammy @jcarndt
861 Followers 214 Following Christian, husband, father, threat intel, Reverse the malware, click the things
lifewithluf @wahluf
6 Followers 2K Following Life is too short to worry about stupid things. Have fun. Fall in love. Regret nothing, and don't let people bring you down. Study, think, create, and grow.
Prym S @yad_sab
207 Followers 5K Following #HINDUMORCHA #INDIA HINDU , HINDUTVA MEANS PEACE , HARMONY LOVE 💕 AND HAPPINESS , JAI SHREE RAM 🙏🙏 , JAI MATA DI , JAI BAJRANGBALI , JAI YOGI ,MODI , SHAH JI
Mario de Sousa Lima @MarioSousaLima
132 Followers 5K Following
Nope @_N0pe00
21 Followers 982 Following
Yatin Wadhwa @yatinwad
816 Followers 652 Following Information Security Professional. Contributor @TheDFIRReport.
D. Moore @dmoore21
616 Followers 3K Following Hockey enthusiast. Threat Hunting and Cyber Threat Intel are my professional hobbies. Recovering SOC monkey. Manager of corporate dumpster fires.
Frost @fr0s7_
5K Followers 1K Following
Emma Kocik @emmakociAk
695 Followers 5K Following (she/her) World traveller, Cybersecurity geek, conference speaker. I love all the countries I visit but one thing I love even more. World peace.
Nick Chalard @Autow00t
71 Followers 544 Following Infosec journeyman, Progressive Trance/House fanatic, always looking for the devil in the details.
Dmitry Melikov @DmitriyMelikov
2K Followers 323 Following Threat Researcher @AWNetworks #cti #apt Former Threat Researcher @BlackBerry, @InQuest
cog @Jason_DFIR
83 Followers 345 Following
Raghav Rastogi @raghav127001
906 Followers 467 Following Threat Analysis Engineer @gendigitalinc |Hunting Malware with a Passion
Mika @cyberMeeks
716 Followers 594 Following DFIR and all things cybersecurity. Enthusiast, the general kind. Views my own.
Vagner Pilar @vagnerpilar
1K Followers 333 Following Cloud Infrastructure Consultant @OracleCloud with passion for #WindowsInternals #Performance and #Debugging {Opinions my own, not my employer sponsored}
David Ledbetter @Ledtech3
4K Followers 291 Following System Repair, Windows system tools ,Security research. IDA Challenged.
ChrisUeland @ChrisUeland
2K Followers 3K Following @HuntIO- Previously: @RecordedFuture , @SecurityTrails, @MaxCDN
Mohsen Ahmadi @pwnslinger
809 Followers 4K Following Security Researcher, MS CS @ASU, @Shellphish, @riscure, @apple, @cisco; Entrepreneur @plugandplaytc 🇮🇷|🇺🇸
Hardik Shah @hardik05
4K Followers 4K Following Principal Security Researcher - Tweets and opinions are my own and not of my employer. #fuzzing #trainings #security YouTube: https://t.co/grWZKdQlqr
#phollibgh @BondziePhollib
144 Followers 706 Following
Aishee @Aishee_Nguyen
329 Followers 2K Following Security Researcher / Bug Hunter / Threat Hunter/ Exploit Writer LawSoul from SentinelX
zhengchaoping @zhengchaoping
71 Followers 2K Following
William MacArthur @Anti_Expl0it
2K Followers 385 Following Director of Threat Research & Intelligence @InQuest: All views expressed are from my own brain. “Sharing is caring”
Pure Reactions @PureReactions
83 Followers 1K Following jamaldacybergawd #BlackTeckTwitter Blah Blah Rah Rah
Ken @icsk3n
680 Followers 398 Following Threat Forager and ICS Malware Nerd 🐺🛡 @Mandiant Intelligence | Sifting signals from the noise | Opinions are my own and not attributable to my employer
Shadow Chaser Group @ShadowChasing1
11K Followers 568 Following Shadow Chaser Group is a sub-group of the GcowSec team which consists of college students who love it.Shadow Chaser Group focused on APT hunt and analysis
Jammy @jcarndt
861 Followers 214 Following Christian, husband, father, threat intel, Reverse the malware, click the things
Steve YARA Synapse Mi... @stvemillertime
17K Followers 1K Following threat intelligence @google writing & sharing on adversary tradecraft, malware, threat detection, AI-nexus intel and all things #yara
Myrtus @Myrtus0x0
8K Followers 707 Following Malware Researcher | Developer | @Cryptolaemus1 | @NVIDIA bsky: [email protected]
Tornado @0xtornado
3K Followers 541 Following Incident Responder & @TheDFIRReport Member • Hunting and dissecting smart creatures called malware, doing forensics between whiles…
Aleks @iiamaleks
709 Followers 116 Following Lifelong Student of Information Security | Contributor to @TheDFIRReport
v3t0_ @v3t0_
774 Followers 406 Following DFIR, Detection Engineering, Threat Hunting and Malware Analysis | Opinions are my own | Analyst @TheDFIRReport
Alessandro Di Carlo @samaritan_o
2K Followers 1K Following Sr. Product Manager, XDR @Malwarebytes ThreatDown - @TheDFIRReport Analyst - 3x @SANSInstitute Lethal Forensicator - GCFA - GASF / Opinions Are My Own
tas_kmanager@infosec.... @tas_kmanager
929 Followers 2K Following ☁️🛡️ opinions are mine. food, music and astrophotography when afk. @TheDFIRReport @CuratedIntel #ThreatHunting #DetectionEngineering #DFIR #CloudSecurity
ICSNick @IcsNick
1K Followers 570 Following Time to leave this platform. If you like to contact me professionally, find me on LinkedIn.
Pierre @pigerlin
746 Followers 133 Following Analyst @TheDFIRReport | Passionate about all things DFIR 🇳🇱
MetallicHack @MetallicHack
839 Followers 380 Following 🇨🇵 Cybersecurity engineer enjoying Windows & AD security, DFIR and detection engineering @TheDFIRReport analyst
Yatin Wadhwa @yatinwad
816 Followers 652 Following Information Security Professional. Contributor @TheDFIRReport.
teddy_ROxPin @RoxpinTeddy
540 Followers 163 Following Incident Response | @TheDFIRReport Analyst | Eat, Sleep, and Breathe Infosec
Kostas @Kostastsale
18K Followers 367 Following @TheDFIRReport | No longer active here – find me on Bluesky: https://t.co/qHzDSxCRfG. 🇬🇷🇨🇦
Will @BushidoToken
36K Followers 3K Following Senior Threat Intel Advisor @TeamCymru | Co-founder @CuratedIntel | Co-author @SANSForensics FOR589 | Co-founder @BSidesBournemth | @darknetdiaries #126: REvil
Frost @fr0s7_
5K Followers 1K Following
Joe Security @joe4security
7K Followers 137 Following Deep Malware and Phishing Analysis for Windows, macOS, Linux and Android
Watad @WatadDigital
849 Followers 12 Following System integrator & solution provider for #Cybersecurity, #AI, ML, Smart Cities, and Industrial Automation
Tommy M (TheAnalyst) @ffforward
14K Followers 195 Following Threat Researcher @proofpoint | @Cryptolaemus1
William Metcalf @node5
1K Followers 392 Following I have been recruited by the Star League to defend the Frontier against Xur and the Ko-dan Armada
𝗛𝟯𝗞𝗧l𝗖 @H3KTlC
42K Followers 2K Following #infosec engineer | all things gaming | void hunter | will shitpost | i like to lift weights & play piano | los angeleno currently in twin cities | fight on✌️
Dodge This Security @shotgunner101
7K Followers 5K Following Computer Security Professional. Tweets are my own. Rooster Teeth Archive Project: https://t.co/gawoj5ZZyG
Nick Chalard @Autow00t
71 Followers 544 Following Infosec journeyman, Progressive Trance/House fanatic, always looking for the devil in the details.
Didier Stevens @DidierStevens
33K Followers 5K Following 5-to-9 security researcher, Microsoft MVP, ISC Handler. Mostly IT security. & programming. & (hardware) hacking. & maldocs PDF/DOC. Avatar: https://t.co/AtaPkdT5g3
Chris Bertsch @beefyspace
2K Followers 363 Following Part bot, part not - I would love to change the world, but they wouldn't give me the source code
1t 1s N0b0dyh 🏴... @1t1sNobody
490 Followers 3K Following Sometimes I tweet something! Fighting and studying #malware in the other time
Dmitry Melikov @DmitriyMelikov
2K Followers 323 Following Threat Researcher @AWNetworks #cti #apt Former Threat Researcher @BlackBerry, @InQuest
David Ledbetter @Ledtech3
4K Followers 291 Following System Repair, Windows system tools ,Security research. IDA Challenged.
cog @Jason_DFIR
83 Followers 345 Following
Donny @dmred1
1K Followers 2K Following Threat hunter |DFIR |Trainer || Mod at https://t.co/nPY5CiRXtA at @nullhyd every view here on my twitter wall is my own ! doesn't represent any entity I associate
ExecuteMalware @executemalware
27K Followers 185 Following #malware hunter & analyst. Opinions are my own.
James @James_inthe_box
22K Followers 464 Following
William MacArthur @Anti_Expl0it
2K Followers 385 Following Director of Threat Research & Intelligence @InQuest: All views expressed are from my own brain. “Sharing is caring”
Kyle Hanslovan @KyleHanslovan
11K Followers 351 Following CEO at @HuntressLabs | Classy but ❤️’s Trap Music
Steve Taylor @Torch02
2K Followers 1K Following Computer geek, Chicago sports nut, and woodworker - in some order. #USAFA02
Dave Kennedy @HackingDave
223K Followers 6K Following Founder @Binary_Defense @TrustedSec Co-Owner https://t.co/HQC75WhdJh. @WeHackHealth Pod. God + Family/Hacker/CSO/USMC/Intel/Fitness. Make the world a better place.