Olindal3o2 @OIindal3o2
I’m here to read your tweets about DFIR. Joined February 2018-
Tweets756
-
Followers17
-
Following827
-
Likes875
Seems like some #Lumma Stealer panels have started to display a banner of seizure /tsoi-zhiv.com /anna-akhmatova.com
Mandiant released CAPA Explorer, a UI to explore CAPA results! This is pretty cool, well done @williballenthin and all! 👏 👉 mandiant.github.io/capa/explorer#… #malware #infosec #malware
L’association @InterCERTFrance a publié des fiches réflexes sur différentes thématiques (ransomware, DDOS, compromission, défacement), ça pourrait servir :) 👇 github.com/intercert-fran…
TLDR LockBit summary. 1. LockBit bluffed 2. First link leads to Federal Reserve press link from mid June. 3. All the rest of the links all lead to Evolve Bank & Trust's data.
Yesterday Lockbit ransomware group claimed to have ransomed the United States Federal Reserve. 1. Doubt 2. If Lockbit ransomware group actually ransomed the United States Federal Reserve it would be DEFCON 2 and the administrators would need to worry about a drone strike
⚠️ Dropbox “became aware of unauthorized access to the Dropbox Sign (formerly HelloSign) production environment” A threat actor has accessed: — emails, usernames, phone numbers and hashed passwords — As well as API keys and d OAuth tokens sign.dropbox.com/blog/a-recent-… 1/2
The xz package, starting from version 5.6.0 to 5.6.1, was found to contain a backdoor. The impact of this vulnerability affected Kali between March 26th to March 29th. If you updated your Kali installation on or after March 26th, it is crucial to apply the latest updates today.
Kind reminder: DDoS is not a cyberattack.
Lockbit ransomware group administrative staff has confirmed with us their websites have been seized.
🚨NEW: Urging all organizations to review this guidance & take steps to reduce your risk to this widespread vulnerability.🙏Huge Thanks to @Boeing for providing key info for this advisory--a terrific example of operational collaboration in action: go.dhs.gov/oHd.
Dear DFIR colleagues, Always be wary of 404 error codes in web server log files. Some webshells intentionally send this error code to deceive you into thinking the request failed. shadowserver.org/news/technical…
⚠️ Use Microsoft Teams? Watch out for TeamsPhisher! While it is not usually possible to send files to MS Teams users outside your org, by security researchers found a bypass by manipulating Teams web requests 🔥 github.com/Octoberfest7/T… Examples of MS Teams phish lures ⬇️ 1/3
En Angleterre, Lidl rappelle des biscuits « Pat’Patrouille » affichant un lien vers un site pornographique lemonde.fr/pixels/article…
1/ We recently had an interesting #Azure case where the TA, instead of creating a new Inbox Rule, added email addresses of interest to the list of blocked senders and domains. The incoming emails will get flagged as spam and moved to the Junk email folder. 📂 🧵
The MOVEit Transfer exploitation is not just SQL injection(👀) We uncovered the very last stage of the attack chain to drop human2.aspx ultimately ends up gaining remote code execution ‼ We fully recreated the attack chain with a demo achieving a reverse shell & ransomware!
What is the difference between the two urls? one has an @ and one doesn't. But also the first downloads version 15 of postgres from GitHub and the second one resolves to v15 dot zip domain which can also downloads a zip file that sure doesn't have postgres in it. You see,…
Cobalt Strike redirector technique used recently by Russian APT29/Nobellium ⚡️ This is a Red Team technique (T1090.002 External Proxy) attack.mitre.org/techniques/T10… to hide C2 behind a legit website. This could be very useful for Threat Hunters/Intel to set up a hypothesis/monitor…

nalixilan @nalixilan
4 Followers 90 Following
Gwen @gwenantoniou94
262 Followers 3K Following
rapid100x @visionminding
499 Followers 893 Following Sharing AI/Web3/Space visions! Join Rapid100x: #Web3 #SpaceX
Kelly @kelly_xiong_
599 Followers 3K Following
Julien Mongenet -- @t... @tuxpanik
771 Followers 252 Following Head of CERT & PSIRT #infosec #DFIR #malware #pentest #legal #CTI #MISP #OpenCTI #TheHive opinions are my own
Loïc Castel @Dick_Reverse
476 Followers 463 Following DFIR / Security analyst / Pentester Crazy about IoT and ICS security, bug finding (fuzzing, code review), incident response https://t.co/Fk0gsiHEBL
schseb @schseb
88 Followers 2K Following
Félix Herrenschmidt @felix_hrn
79 Followers 127 Following Threat Hunting & Reporting Building Watcher: https://t.co/dckbTwhqgE #infosec 9224abe81c87767664f0712060449d16
Constellation Cyber C... @cyber_securty
71 Followers 312 Following Our experienced team at Constellation Cyber Consultancy completely protects computer networks from cyber threats and malware.
Sean Hastings @whysean
4K Followers 3K Following * Things I've done: https://t.co/zWenOLqUu5 * PreUp transhuman virtual being vi/vim/sed * Father/DM of elf bard daughter * Husband of @jozafiend * Pirate Viking
Raphaël @maisbenillouche
7 Followers 26 Following
Hacktualities @hacktualities
31 Followers 456 Following #IT #cybersecurity #privacy #opensource news | FR & EN
Pradeo @pradeo
3K Followers 4K Following Pradeo is the European mobile security leader. The technology #PradeoSecurity protects mobile devices, apps and data from the wide spectrum of mobile threats
Stephan Berger @malmoeb
28K Followers 1K Following Head of Investigations @InfoGuardAG https://t.co/A5lnFAu7eX
Mr Hamza @MrHamza_Op
260 Followers 14 Following Black Operation Email: [email protected] Channel TG: https://t.co/CdGFG5VRto Contact Bot TG: @mrhamza3bot
Andrew Rathbun @bunsofwrath12
3K Followers 706 Following Husband, Father, #DFIR @ Unit 42, Digital Forensics Discord Admin, AboutDFIR Contributor, Author, #USMC Veteran, Former LE, NHL Fan, Dark Mode, Animals, Music
DFIR Notes @DfirNotes
962 Followers 233 Following design, build, teach threat-informed information security programs and techniques. Also: retweets of interesting classes, tools, research. They/them
ISA Cybersecurity @ISACybersec
394 Followers 122 Following ISA Cybersecurity is one of Canada’s leading cybersecurity services and solutions providers. Proudly Canadian and trusted by over 500 clients.
Taz Wake @tazwake
9K Followers 6K Following #DFIR #ThreatHunting | @SANSInstitute instructor | SANS Course Author | CISSP (etc) holder | https://t.co/00tACAnVLd | Rarely used account.
Kostas @Kostastsale
18K Followers 367 Following @TheDFIRReport | No longer active here – find me on Bluesky: https://t.co/qHzDSxCRfG. 🇬🇷🇨🇦
rapid100x @visionminding
499 Followers 893 Following Sharing AI/Web3/Space visions! Join Rapid100x: #Web3 #SpaceX
Is Now on VT! @Now_on_VT
4K Followers 788 Following Stay ahead of cyber threats. Get real-time alerts on notable APT/FIN/ORB indicators from VirusTotal. A threat intel project by @craiu.
Phill Moore @phillmoore
9K Followers 3K Following This Week in 4n6 // ThinkDFIR // SANS // CyberCX (DFIR) https://t.co/vLyL2sxTuy I might not know much, but I do know how to Google Tweets are mine
Paul Melson @pmelson
14K Followers 1K Following Author/Operator of @ScumBots. Blue Team by day, Blue Team by night. Opinions, typos, and bad grammar do not represent my employer. He/Him
Dark Web Intelligence @DailyDarkWeb
138K Followers 0 Following Daily Dark Web dose from the dark side.
Fox_threatintel @banthisguy9349
14K Followers 261 Following Just a person who is against cyber crime and dictators like Putin
Pol Thill @tr3gleos
132 Followers 181 Following
PRODAFT @PRODAFT
9K Followers 11 Following Proactive Defense Against Future Threats | Pioneering #CyberSec and #ThreatIntelligence in Europe & MENA since ’12. CTI Platform: #USTA Risk Intel: #BLINDSPOT
Félix Aimé @felixaime
6K Followers 2K Following Threat Intel. stakhanovite ⛏️ and proud dad. Former @Kaspersky & @CERT_FR. Principal CTI researcher at @sekoia_io, focused on state-sponsored / hybrid stuff.
Pwned Labs @PwnedLabs
2K Followers 68 Following Pwned Labs delivers fun and immersive cybersecurity training experiences for individuals and businesses. Join the community: https://t.co/kyG413GZDa
Mark @sneakymonk3y
2K Followers 956 Following uber geek blue team cyber commando bad guy annihilator @CrowdStrike OSCP GREM GC|FA/FE/IH #DFIR https://t.co/hyhoN9n1lu
Chad Tilbury @chadtilbury
22K Followers 600 Following Digital forensics and incident response. Ex-AFOSI, Mandiant, and CrowdStrike. SANS Institute Fellow and co-author of #FOR500 and #FOR508 courses.
vx-underground @vxunderground
368K Followers 290 Following The largest collection of malware source code, samples, and papers on the internet. Password: infected
Steve @cybersec_steve1
41 Followers 45 Following 📎 https://t.co/WTUKUmeZQu 🛡 5y+ Defending Companies 🎯 Threat Hunter 🌍 Studying Cyber Attacks
Arnaud@Thurudev @arnaud_thurudev
18K Followers 10K Following Hibou du Web, je veille... Et je partage ma veille Parfois ça prête à rire, parfois, ça donne à réfléchir
Tomtombinary @tomtombinary
1K Followers 102 Following CTF reverser and Pwn at team Aperi'Kube. Security researcher @Synacktiv. What we do in life... echoes in eternity.
Microsoft Threat Inte... @MsftSecIntel
187K Followers 1K Following We are Microsoft's global network of security experts. Follow for security research and threat intelligence.
FalconFeeds.io @FalconFeedsio
59K Followers 784 Following Democratizing Cyber Security. Threat intelligence platform for Cyber Security professionals and business. For API integration contact: [email protected]
Mathieu Feuillet @MathieuFeuillet
829 Followers 273 Following Head of @CERT_FR Head of Operations @ANSSI_FR For contacting CERT-FR, do not send me DMs but check : https://t.co/0pNcJJ6rdW
🌃Zerophage🌌 @Zerophage1337
4K Followers 339 Following Independent researcher focusing on threat intelligence and exploit kits. 😉
Priya Chalakkal @priyachalakkal
1K Followers 244 Following Infosec | Siemens | ShaktiCon | Blackhoodie. My opinions are my own. She/her.
Clandestine @akaclandestine
49K Followers 5K Following | Security | Osint | Threat Research | Opsec | Threat Intelligence | Infosec | Threat Hunting | Humint |
Josh Lemon @joshlemon
2K Followers 1K Following Chief DIFR at @SoteriaSec_io | @SANSInstitute Principal Instructor & Author | Digital Forensics & Incident Response geek
Megantron (@megan@inf... @megan_roddie
6K Followers 4K Following Detection Engineer. Co-Author, SANS FOR509. Author, Practical Detection Engineering. @HackersHealth CFO. Ammy Muay Thai fighter/coach. #ActuallyAutistic.
Pierre Lidome @texaquila
392 Followers 143 Following
scottamoulton @scottamoulton
2K Followers 635 Following Digital Forensic Expert and wrote the Forensic Hard Drive Data Recovery Course as well as Distance Learning for Data Recovery.
derek eiri 👻 @MrEerie
572 Followers 761 Following Chicken herder. Corgi keeper. Digital forensics. I’m here to read your tweets. #dfir
David Cowen @HECFBlog
14K Followers 927 Following Co-Author SANS FOR509, Vice President @ https://t.co/whEvYHKz6R wrote some books a long time ago, fights fires in the cloud. Views expressed are my own.
Mehmet Ergene @Cyb3rMonk
13K Followers 437 Following https://t.co/uAlYlXIpyV Learn #KQL for #ThreatHunting, #DetectionEngineering, and #DFIR @BluRavenSec | Microsoft Security MVP | #DataScience
Leo Alexandru @theleoalexandru
16K Followers 266 Following I use proven strategies and systems to help ambitious professionals thrive in their careers and optimize their lives. Director @Deloitte. Tech Leader since 2010
Dr. Maik Ro ➡️�... @maikroservice
19K Followers 713 Following ☠️ inactive account ☠️ - Training the next generation of Hackers over at bsky / linkedin / youtube 🏴☠️💜
Gerald Auger, Ph.D. @Gerald_Auger
12K Followers 880 Following Passionate About Cybersecurity | Sharing Passion to Help Individuals Discover, Engage, and Level Up A Cyber Career | Tweets Sharing Cyber Tips, Tools, Love💙
Whitney Champion 🍪... @shortxstack
30K Followers 11K Following security architect / cofounder @Recon_InfoSec / cofounder @DDI_training / ♥️♥♥ == @eric_capuano, nerdery, rainbows, sweatpants | she/her 🤍🌿🍄🌈🫶
Eric Capuano - Bsky: ... @eric_capuano
11K Followers 3K Following Co-Founder @recon_infosec | SANS DFIR Instructor | IANS Faculty | https://t.co/yUXCSu2Yso | ⬡ ❤ @shortxstack
Chris Sanders 🔎 �... @chrissanders88
34K Followers 489 Following Ed.D. | Founder @networkdefense @RuralTechFund | Former @Mandiant, DoD | Author: Intrusion Detection Honeypots, Practical Packet Analysis, Applied NSM
Tony Ingesson @tonyingesson
7K Followers 4K Following Assistant Professor of Intelligence Analysis, Lund University. Mad (social) scientist. Likes suits, old tech & obscure video games. Prev. Swedish Armed Forces.
Bogdan BODNAR @bogdandebodnar
2K Followers 2K Following Journaliste spécialisé dans l'IA et la cyber pour @LaTribune 🖥️ Redevable à @lachance_media / Ukrainien / mail pro : [email protected]
Colin Cowie👨🏼�... @th3_protoCOL
3K Followers 889 Following Threat Intelligence 🏹 Malware Research 🧬 Managed Detection and Response @Sophos
lonervamp @lonervamp
1K Followers 1K Following geek, video/tabletop gaming, security, insecurity, hacking, sysadmin, netadmin, oscp, iowa