💻 Security Analyst with an interest in both #redteam and #blueteam operations | Hobbyist software developer 👨💻
https://t.co/PB8ulCww3Kgithub.com/SecurityJosh 🇬🇧Joined January 2020
I've just published an update to the Native Messaging Host for my Download Blocker browser extension.
This update gives much improved performance when extracting filenames from zip archives.
github.com/SecurityJosh/D…
V1.0.3 of DownloadBlocker contains improvements and new features. This includes Native Messaging Host support, which enables download metadata to be calculated for files not downloaded via HTML Smuggling and in more HTML Smuggled file scenarios.
github.com/SecurityJosh/D…
To help investigate HTML Smuggling attacks and other malicious downloads, Download Blocker can now also send the user's hostname and username when a download matches a rule.
github.com/SecurityJosh/D…
The latest version of DownloadBlocker (0.2.0) is able to extract metadata (SHA256, macro existence) from HTML smuggled files that use this iframe technique.
github.com/SecurityJosh/D…
The latest version of DownloadBlocker (0.2.0) is able to extract metadata (SHA256, macro existence) from HTML smuggled files that use this iframe technique.
github.com/SecurityJosh/D…
Looks like #TA570 are using HTML Smuggling as part of their infection chain.
My chromium extension can block the download of these smuggled files.
github.com/SecurityJosh/D…
Looks like #TA570 are using HTML Smuggling as part of their infection chain.
My chromium extension can block the download of these smuggled files.
github.com/SecurityJosh/D…
I've set up an AWS Lambda function to regularly push the list of domain IOCs (as needed) from KasperskyLab's TinyCheck to a GitHub gist so they can be imported into a Pi-hole block list.
gist.githubusercontent.com/SecurityJosh/0…#Pihole#TinyCheck
The latest release of Download Blocker has the ability to detect and block the download of HTML smuggled binary office documents based on the presence of macros.
#blueteam#infosec#socchrome.google.com/webstore/detai…
The latest version of DownloadBlocker (0.1.1) is now available on the Chrome web store. New features include file hash retrieval, an audit mode (for testing) and customisable notification content.
github.com/SecurityJosh/D…#htmlsmuggling#blueteam
💰GIVEAWAY!💰 From forensics to hunting, incident response to security ops, are you ready for our labs?
🥇= 6 Months PRO
🥈= 3 Months PRO
🥉= 1 Month PRO
1)👋 Follow Us
2)🔄 Retweet This
3)📢 Winners Announced @ Launch
#dfir#blueteam#soc#infosec#cybersecurity#labs
Take charge of your career this year! We're giving away a free Battle Path every day for the rest of January!
To enter, retweet this post and follow us on Twitter.
Learn more about RangeForce Battle Paths: hubs.la/H0DhBQP0#cybersecuritytraining#SOC#OWASP
14 Followers 10 FollowingAd-hoc cyber threat intel from our team of active hunters at @lab539. We mainly track Adversary in The Middle infrastructure and share indicators of attack.
1K Followers 422 FollowingThreat Intel Researcher.
Opinions are mine.
Special thanks to @censysio , @ValidinLLC & @ReversingLabs for making my research easier.
16K Followers 8K FollowingMumblings of a perpetual n00b| Xoogler/mandiant| #Hacker @binaryhansolo == ❤️| mama of THE amazing #actuallyautistic Bubbs| @infosecwhiskey @hackerhaussec
67K Followers 8K FollowingHacker, Researcher, Podcast Producer (Tribe of Hackers, Darknet Diaries). Proud dad of the fastest climber in the world. Ever. “Ut scandis, alios subleva”
144 Followers 3K FollowingProgramming for fun.
Learning everything that interests me :)
Overwhelmed by my wide area of interests ;)
Wannabe the best hacker and programmer🤞🤞
8K Followers 6K Following#InfoSec professional, husband & father of two (in random order). #BlueTeam #DFIR #APT #CTI #RedTeaming #BSidesZH (RT/Likes ≠ endorsement) 👀➡️#MalwareChallenge
9K Followers 6K Followingpast solutions for present problems since 2009 // on traditional territories of the Arapaho, Cheyenne, & Ute Nations
✉️: mediaarchaeology @ colorado dot edu
260 Followers 1K FollowingFrame Informer sources images from retro video game magazines so you can preserve your favorite pieces of gaming history
https://t.co/SY3rCJUcKI
14 Followers 10 FollowingAd-hoc cyber threat intel from our team of active hunters at @lab539. We mainly track Adversary in The Middle infrastructure and share indicators of attack.
75 Followers 168 FollowingSecurity research/detection, also writing for https://t.co/8C74RVZYox.
Base64 Enjoyer. Clippy is a threat actor. BSKY https://t.co/JoPhPt9VcN
1K Followers 422 FollowingThreat Intel Researcher.
Opinions are mine.
Special thanks to @censysio , @ValidinLLC & @ReversingLabs for making my research easier.
18K Followers 801 FollowingThreat Intelligence Analyst |
See my Linktree for other socials |
In case I post false intel, contact me!
Support me: https://t.co/5WgDqr0K8p
🇪🇺🇩🇪🇺🇦🌈
11K Followers 316 FollowingAgentless Linux security. No endpoint agents and no drama. Linux malware, forensics, intrusion detection, and hacking. Founder @SandflySecurity.
4K Followers 788 FollowingStay ahead of cyber threats. Get real-time alerts on notable APT/FIN/ORB indicators from VirusTotal. A threat intel project by @craiu.