David Ledbetter @Ledtech3
System Repair, Windows system tools ,Security research. IDA Challenged. pcsxcetrasupport3.wordpress.com Joined December 2015-
Tweets31K
-
Followers4K
-
Following291
-
Likes17K
As others have mentioned, the "presidents" #qakbot #qbot distribution (obama221) is back to using "DLL Search Order Hijacking" today (see screenshot). Here are the IOCs: github.com/executemalware…
Anyone seeing #Socgholish using localsys-shield[.]com today?
#IcedID mixing it up today with CHM files BotID: 1609463178 Loader C2: trolspeaksunt\.com pw-protected, zipped ISO attachments tria.ge/221114-xg9eaad… bazaar.abuse.ch/sample/0306e59…
I added my solution for the Task 8: hshrzd.wordpress.com/2022/11/12/fla… // #FlareOn9
I added my solution for the Task 8: hshrzd.wordpress.com/2022/11/12/fla… // #FlareOn9
so, #FlareOn9 is over! congrats to all the finishers! you can find some of my solution here: hshrzd.wordpress.com/tag/flareon9/ (work-in-progress, I will be adding more)
New #socgholish stage 3 C2 seen today. Block all *[.]rate[.]coinangel[.]online .
Malware dirigido a empresas en Perú 🇵🇪 email > html > zip +password > vbs Descarga desde (#geofenced): /sunat-mail.xyz/2/ /easynsecureinvest.com/cobr/?id=1 Payloads/C2 desde: /gringox1.chickenkiller.com/g1/ +Header: UA-CPU Samples: bazaar.abuse.ch/browse/tag/gri… Sin atribución 🤔
Here are some #icedid #bokbot IOCs from today. Arrived via email with a password protected .zip file attachment. github.com/executemalware…
new Emotet E5 urls detected. [DLL] (1/2) hxxp://www[.]muyehuayi[.]com/cmp/8asA99KPsyA/v6lUsWbLen/ hxxps://wijsneusmedia[.]nl/cgi-bin/kFB/ hxxp://concivilpa[.]com[.]py/wp-admin/i3CQu9dzDrMW/
#Bumblebee HTML Attachments rolling in. general pattern: Document_[0-9]{4]_Scan_(Nov8)\.html Looks like some updated evasion in this sample. bazaar.abuse.ch/sample/99deeff…
Also an few #Emotet today. @James_inthe_box @pr0xylife @0xToxin @0n315 @Cryptolaemus1 @JRoosen All of the sheets are visible in this one and each is the same as sheet 1? Did Ivan do a drunk again? tria.ge/221107-xd7raac…
#TA551 HTML Attachments incoming ID 1559130321 #IcedID Loader C2: anisamnatyrel\.com bazaar.abuse.ch/sample/8df3333… tria.ge/221107-whz2kaa…
🏭 In May, SentinelLabs has investigated a supply-chain attack against the Rust development community that we refer to as ‘CrateDepression’. Learn more sentinelone.com/labs/cratedepr… @LabsSentinel #infosec #cybersecurity #supplychain
[UPDATE] Here's a #maldoc with (still) live C2 that is quite evasive and shows the detection capability ex-OSINT. Download URL has a "ski" gTLD. Download the sample with a user account (it's not on VT) for free: filescan.io/uploads/636586… // #DFIR #malware #analysis
anyone know of companies hiring director level folks? ideally mobile/web work? i have a good friend looking and he'd be an epic hire.
Noticed an interesting registry export with powershell loader working completely on data stored in the registry Reg export hastebin.com/jadunepoke.pro… Sample virustotal.com/gui/file/67021…
Saw a couple of Emotet messages land here this afternoon. First from this recent revival. Thread hijacking. XLM4.0 maldoc attachment. Epoch4 botnet. Sample: tria.ge/221104-m3qtyse…
I also received a handful of #emotet (E4) emails today. I saw traffic to the same C2 as yesterday. Here are the IOCs: github.com/executemalware…

Florian Roth ⚡️ @cyb3rops
206K Followers 3K Following Head of Research @nextronsystems #DFIR #YARA #Sigma | detection engineer | creator of @thor_scanner, Aurora, Sigma, LOKI, YARA-Forge | always busy ⌚️🐇 | vi/vim
James @James_inthe_box
22K Followers 464 Following
Karsten Hahn @struppigel
24K Followers 757 Following MalwareAnalysisForHedgehogs, Principal Malware Researcher at GDATA, he/him 🦔🌈🏳️⚧️
Max_Malyutin @Max_Mal_
13K Followers 310 Following Threat Researcher, Blue Team, DFIR, Malware Analysis, and Reverse Engineering. “⚔️What do we say to God of malware, Not today⚔️”
Germán Fernández @1ZRR4H
35K Followers 461 Following 🏴☠️ OFFENSIVE-INTEL 🏴☠️ Cyber Threat Intelligence by Hackers | Security Researcher en https://t.co/rDrSxZASB3 | @CuratedIntel Member | 🥷🧠🇨🇱
Michael Koczwara @MichalKoczwara
23K Followers 2K Following Threat Researcher/Founder @Intel_Ops_io Threat Intelligence, Adversary Infrastructure Hunting, Curated TI Feed (Coming Soon) https://t.co/VQWaze6gaF
John Hammond @_JohnHammond
298K Followers 3K Following Cybersecurity Researcher @HuntressLabs || Just Hacking Training @JustHackingHQ w/ @ethicalhacker || https://t.co/UtsNJiyQtS || https://t.co/narO3sz7y6
Justin Elze @HackingLZ
65K Followers 5K Following CTO @TrustedSec | Former Optiv/SecureWorks/Accuvant Labs/Redspin | Race cars
Samir @SBousseaden
25K Followers 1K Following Detection Engineering | Elastic Security Mastodon: @[email protected]
Kostas @Kostastsale
18K Followers 367 Following @TheDFIRReport | No longer active here – find me on Bluesky: https://t.co/qHzDSxCRfG. 🇬🇷🇨🇦
Grzegorz Tworek @0gtweet
36K Followers 2K Following My own research, unless stated otherwise. Not necessarily "safe when taken as directed". GIT d- s+: a+ C++++ !U !L !M w++++$ b++++ G-
Kimberly @StopMalvertisin
16K Followers 624 Following Security Researcher | Cyber Threat / Malware Analyst | Ex Sr. Threat Analyst @ Proofpoint | Founder of Stop Malvertising
Katie Nickels @likethecoins
55K Followers 3K Following Director of Intel at @redcanary. SANS Certified Instructor for FOR578: CTI. Senior Fellow at @CyberStatecraft. She/her. Mastodon: @[email protected]
hasherezade @hasherezade
89K Followers 910 Following Programmer, #malware analyst. Author of #PEbear, #PEsieve, #TinyTracer. Private account. All opinions expressed here are mine only (not of my employer etc)
Gi7w0rm @Gi7w0rm
18K Followers 801 Following Threat Intelligence Analyst | See my Linktree for other socials | In case I post false intel, contact me! Support me: https://t.co/5WgDqr0K8p 🇪🇺🇩🇪🇺🇦🌈
Ankit Anubhav @ankit_anubhav
8K Followers 397 Following Voice of IoT Security & awareness. I make the world of IoT a safer place. Ex- McAfee / FireEye / NewSky
Norbert @NB1r0
58 Followers 3K Following
Patience Turcotte @PatienceTu75831
62 Followers 3K Following
annonymous .pk @TahaQureshi2b
27 Followers 2K Following Curious mind 🌍 | Lifelong learner 📚 | Exploring the intersections of technology, culture, and human experience
JIAFU @JIAFU009
11 Followers 428 Following
thedecemberBoozer @ThedecemberB
37 Followers 250 Following
0x55555 @0x555551
13 Followers 386 Following
Itay Gabbay @ItayGabbay
7 Followers 92 Following
Andy Morales @Andy2002a
58 Followers 276 Following
amineonline @amineonlinec21
76 Followers 1K Following Passionate about algorithms and computers and I want to learn whatever I can even security and robotics and artificial intelligence
Zöe @Zoe_r_Jay
816 Followers 6K Following Economist. Techie. Geek. 🏳️⚧️ https://t.co/ORywUXz1ZI @CyberSec916
skydrop @23Skydrop
25 Followers 1K Following professional webshell engineer | “computer shenanigans”
尚长森 @chang_sen520
2 Followers 22 Following
Phonefix @Phoebe94572967
470 Followers 3K Following China PHONEFIX, Cell Phone Repair Tools Online Shop- https://t.co/Bd5gUbI5Io 👉👉Whatsapp: +86 13392845625
despiMe @UI7JRcDpA0XVzb5
2 Followers 468 Following
Damion Stephens @DamionStep87695
0 Followers 18 Following
Stanley Arthur @BORNFREEGH
62 Followers 877 Following
Leo9108 @Leo910825
57 Followers 1K Following
I//uS!0nS @c03rci0n
177 Followers 7K Following
Li Li @LiLi13223166092
0 Followers 461 Following
Mehmet Göksu @goksumehmettt
0 Followers 305 Following
saber @cartiyessireee
1 Followers 87 Following
Moad Akhraz @mdakh404_
78 Followers 2K Following I like computers, security and everything in between.
Jinto Antony @Arimb00R
99 Followers 833 Following Trying to figure out how to make things simple so anyone can understand. 🤔
simon simonsen @ssimonsen0202
339 Followers 2K Following Without (log)data you’re just another person with an opinion. 4688+cmdLine, or it Did’nt happen. The IT Security guy @meethumio tweets are mine
Laura @shoemakelaura63
269 Followers 3K Following
... @useroftwt
0 Followers 169 Following
_____ @___0__10
3 Followers 88 Following
Albert Johnson @Orfus7
100 Followers 799 Following In the dime stores and bus stations People talk of situations Read books, repeat quotations Draw conclusions on the wall.
Chris @cbcyb3r
91 Followers 857 Following
Akira Nishii @nichii_a
2K Followers 4K Following SOC / SIRT / Security / デジタルフォレンジック / EDR•NDR 関連の記事備忘録
Ximena Rodriguez @xim_rodri
4 Followers 52 Following
Snodig @Snodig1
60 Followers 2K Following
IjustlurkhereOK @IjustlurkhereOK
6 Followers 89 Following
Saf Mo @SafMo1034301
8 Followers 96 Following
Julio T @tabilo_julio
23 Followers 209 Following
Kristian Sndoval @Kristian_337
40 Followers 563 Following Whatever you hear about me, please believe every word.
shane @user79384053
5 Followers 197 Following
Mike Manrod @CroodSolutions
2K Followers 2K Following CISO and faculty by day, adversary emulation/tools by night, bad jokes and memes all the time. Profile photo image credit to Tib3rius. My dog disapproves.
Michael R @nahamike01
1K Followers 3K Following Threat (Adversary Infrastructure) Researcher | Python Development | Long-time Japan resident
ayoub @Chb_ay
3 Followers 223 Following
Florian Roth ⚡️ @cyb3rops
206K Followers 3K Following Head of Research @nextronsystems #DFIR #YARA #Sigma | detection engineer | creator of @thor_scanner, Aurora, Sigma, LOKI, YARA-Forge | always busy ⌚️🐇 | vi/vim
MalwareHunterTeam @malwrhunterteam
244K Followers 38 Following Official MHT Twitter account. Check out ID Ransomware (created by @demonslay335). More photos & gifs, less malware.
James @James_inthe_box
22K Followers 464 Following
BleepingComputer @BleepinComputer
240K Followers 200 Following Breaking cybersecurity and technology news, guides, and tutorials that help you get the most from your computer. DMs are open, so send us those tips!
Karsten Hahn @struppigel
24K Followers 757 Following MalwareAnalysisForHedgehogs, Principal Malware Researcher at GDATA, he/him 🦔🌈🏳️⚧️
ςεяβεяμs - м�... @c3rb3ru5d3d53c
25K Followers 243 Following 💕 Malware Hunter Killer 💕 #binlex & #mwcfg Developer 📽️ YouTuber 👩💻 She/Her 💍@DravenSwiftbow Support my work 👇 ☕️ https://t.co/NoM1TXq00P
Max_Malyutin @Max_Mal_
13K Followers 310 Following Threat Researcher, Blue Team, DFIR, Malware Analysis, and Reverse Engineering. “⚔️What do we say to God of malware, Not today⚔️”
Germán Fernández @1ZRR4H
35K Followers 461 Following 🏴☠️ OFFENSIVE-INTEL 🏴☠️ Cyber Threat Intelligence by Hackers | Security Researcher en https://t.co/rDrSxZASB3 | @CuratedIntel Member | 🥷🧠🇨🇱
JAMESWT @JAMESWT_WT
37K Followers 507 Following #Independent #Malware #Hunter #CyberSecurity #InfoSec https://t.co/KCFBJcHHcW https://t.co/WODUKncjFy
Samir @SBousseaden
25K Followers 1K Following Detection Engineering | Elastic Security Mastodon: @[email protected]
Jiří Vinopal @vinopaljiri
10K Followers 462 Following Threat Researcher at Check Point @_CPResearch_ #DFIR #Reversing - All opinions expressed here are mine only. https://t.co/iWvwWF1AnN
Kostas @Kostastsale
18K Followers 367 Following @TheDFIRReport | No longer active here – find me on Bluesky: https://t.co/qHzDSxCRfG. 🇬🇷🇨🇦
Grzegorz Tworek @0gtweet
36K Followers 2K Following My own research, unless stated otherwise. Not necessarily "safe when taken as directed". GIT d- s+: a+ C++++ !U !L !M w++++$ b++++ G-
Kimberly @StopMalvertisin
16K Followers 624 Following Security Researcher | Cyber Threat / Malware Analyst | Ex Sr. Threat Analyst @ Proofpoint | Founder of Stop Malvertising
hasherezade @hasherezade
89K Followers 910 Following Programmer, #malware analyst. Author of #PEbear, #PEsieve, #TinyTracer. Private account. All opinions expressed here are mine only (not of my employer etc)
Alexandre Borges @ale_sp_brazil
28K Followers 147 Following Vulnerability Researcher and Exploit Developer.
Josh Stroschein | The... @jstrosch
12K Followers 1K Following Reverse engineer at FLARE/@Google | @pluralsight author | 😱 1M+ views on YT | 🎙️ Host of Behind the Binary podcast 👇
Joe Roosen @JRoosen
8K Followers 1K Following SpyCloud - Director of Security Research, Cryptolaemus Coordinator, Emotet(Ivan)/QBot(Boris) Destroyer, gold prospector & former sysadmin.
French @notareverser
900 Followers 99 Following Malware reversing | Software development | Nonsensemonger https://t.co/TJt0Vb4e3I Cocktails at @NULLphoenix ⚜💻🍸.y.at
ET Labs @ET_Labs
6K Followers 219 Following ET Labs is the research team of Emerging Threats - Bionic threat intelligence specialists from Fantasia.
Andrew Northern 𓅓 @ex_raritas
5K Followers 1K Following 🔮 Senior Threat Researcher at @proofpoint 🔮 | Knowledge Piñata 🪅 | Attack Chain Connoisseur | Epicurean
Gi7w0rm @Gi7w0rm
18K Followers 801 Following Threat Intelligence Analyst | See my Linktree for other socials | In case I post false intel, contact me! Support me: https://t.co/5WgDqr0K8p 🇪🇺🇩🇪🇺🇦🌈
Brent Murphy @brent_murphy
846 Followers 693 Following detection engineering @sentinelone | former @todylsecurity @elastic @endgameinc | oscp | cissp | news @blueteamsec1
gnawshark @gnawshark
25 Followers 333 Following Network defender w/ a former life as a pentester. Interested in hardening and detecting all-the-things.
rootsecdev @rootsecdev
26K Followers 1K Following Senior Security Consultant @TrustedSec | Military grade meme poster, researcher, cloud penetration tester, voider of warranties. My thoughts are my own.
Ankit Anubhav @ankit_anubhav
8K Followers 397 Following Voice of IoT Security & awareness. I make the world of IoT a safer place. Ex- McAfee / FireEye / NewSky
Jan Miller @miller_itsec
244 Followers 89 Following Founder & former CEO of FileScan (acquired by OPSWAT in 2022) and Payload Security (acquired by CrowdStrike in 2017). Innovator in malware analysis tech.
Nick Chalard @Autow00t
71 Followers 544 Following Infosec journeyman, Progressive Trance/House fanatic, always looking for the devil in the details.
Chris Beckett @cbecks_2
805 Followers 2K Following Infosec and the Green Bay Packers. Interested in all things DFIR, Detection Engineering, Purple, and CTI. Opinions are mine, certainly not those of my employer.
avallach (@xorhex@inf... @xorhex
1K Followers 1K Following 🇺🇦Malware Researcher 🇺🇦 Tweets are my own and do not reflect my employer. On Mastodon as @[email protected] Creator of https://t.co/woQLhjSmV0
Filescan.io @filescan_itsec
2K Followers 34 Following https://t.co/7eeFPFSU7m is a next-gen sandbox and malware analysis service. Operating at 10x speed vs traditional, it is the best choice for in-depth malware assessment
Tony Lambert @ForensicITGuy
6K Followers 1K Following Recovering sysadmin that now chases adversaries instead of uptime. Sr Malware Analyst @redcanary
💻 Sherrod DeGrippo... @sherrod_im
36K Followers 7K Following Weird security voyeur. Vibe merchant. CISO of your 🩷 Official USPS fan account. 🎉 Host of THE Microsoft Threat Intelligence Podcast. I like crime actors.
Matt @mattnotmax
3K Followers 592 Following Hooked on hunting espressos & drinking malware. Or something like that. | Too much #CyberChef | https://t.co/GzzzLPqpvJ
markus neis @markus_neis
3K Followers 1K Following Principal Threat Intelligence Researcher at Arctic Wolf Labs | Opinions are my own
Frost @fr0s7_
5K Followers 1K Following
ThreatDown @Threat_Down
18K Followers 95 Following No complexity, just security. We overpower threats and empower IT to cover every stage of an attack, and every size of business.
stoerchl @stoerchl
2K Followers 102 Following Malware Analyst @HPSecurity | cycling enthusiast and blue jays fan!
TomU | I'm still here... @c_APT_ure
8K Followers 6K Following #InfoSec professional, husband & father of two (in random order). #BlueTeam #DFIR #APT #CTI #RedTeaming #BSidesZH (RT/Likes ≠ endorsement) 👀➡️#MalwareChallenge
Nick Beede @nbd33
379 Followers 269 Following Security Analyst @Microsoft Threat Intelligence Center (MSTIC) | tweets are my own
OSINT_CYN @CynOsint
2K Followers 1K Following OSINT, Python, Data, InfoSec, Cyber, Attribution. Doing stuff with things
Squiblydoo @SquiblydooBlog
4K Followers 76 Following Malware Analysis Creator of Debloat, certReport, and https://t.co/w4rAuuB7O0 Want to chat? Join the Debloat discord: https://t.co/ZcWIqa6ZA9
Costin Raiu @craiu
39K Followers 7K Following Cybersecurity researcher focused on threat intel & APTs. Breaking down attacks, hunting threats, and crafting YARA rules. 🛡️💻 #ThreatIntel #CTI #Crypto #YARA
Nadav Lorber @LNadav
533 Followers 227 Following Security Researcher & Team Leader | Ex. Morphisec & IronSource & Verint
Ryan "Chaps" Chapman @rj_chap
8K Followers 3K Following DFIR & malware analyst. @sansforensics FOR528 Author & FOR610 Instructor. @CactusCon crew. Husband & father. Comments = own.
Thomas Reed @thomasareed
5K Followers 56 Following Director of Core Technology at Malwarebytes, self-taught security researcher, Mac fan since 1984, @[email protected] on Mastodon
a̵c̵c̸i̵d̷e̵n̷... @accidentalrebel
961 Followers 81 Following SOC Team Lead | Content engineer at TryHackMe | Malware Reverse Engineer
Stephan (@FirehaK@inf... @_FirehaK
313 Followers 393 Following Malware reverse engineer, Cryptolaemus member Mastodon: @[email protected]
Hari Charan @grep_security
554 Followers 141 Following threat research • threat Intelligence • cloud security• supplychain security & random | Director of security research @Loginsoft_Inc - Opinions are my own