Malware Noob Month Post #3
The easiest malware to develop is information stealer malware.
Of course any malware can get really crazy, all the buzzwords and mumbo jumbo, but an information stealer is extremely basic in concept.
All your code needs to do is copy everything from…
Hey guys, I'll be racing a very short tri with a bmx and sandals to raise some funds for a local travel soccer team for folks with IDD. I'll match what donations I can :) Reshares appreciated, but I completely understand if folks don't trust randoms.
gofundme.com/f/support-one-…
Malware sandbox bypass and Windows Defender exclusion PoC! I made it after discovering a simple yet effective technique being used by a loader in the wild dropping what we are calling #NightshadeC2 (blog coming soon!) PoC -> github.com/eSentire/iocs/…youtube.com/watch?v=_0-IMM…
🚨 Alert: Undetected signed DLL delivers ValleyRAT
🧩 We discovered a DLL file named "PerceptionSimulationInput.dll" that has remained undetected by AV engines on VirusTotal for a week. The DLL is signed with a valid certificate and hides malicious code within one of its more…
Thanks to the awesome work by our team we can finally announce our official urlscan cli tool: urlscan.io/blog/2025/09/0… - Submit scans, run searches, find domains, get creative. Feel free to share your use-cases with us on X! Download on Github or homebrew.
Epic Windows Misconfigs webinar last week. If you missed it, here's the summary of what we talked about:
This will be posted to YouTube along with slides soon. For now...
Watch the recording here 👇
Passcode: P3yGQ+1y
go.spenceralessi.com/windowsmisconf…
🐧 Know what is a nice addition to the FLARE-VM? The Windows Subsystem for Linux (WSL) - learn how easy it is to install from the command-line in this Short 👇
youtube.com/shorts/32_kU8f…
In light of the new course, I created a Discord server for MalwareAnalysisForHedghogs to discuss malware analysis related topics.
You can join here--this is for every malware enthusiast, not only course members:
discord.gg/3evhC4cj
Every Monday I send a free newsletter that delivers one specific and actionable tip for securing environments. Read time 1-5 minutes. If you'd like tips, tools & advice from someone who keeps a pulse on the ever-changing cyber threat landscape, this newsletter is for you.
Sign…
G DATA Security Lab's Karsten Hahn (@struppigel) & Louis Sorita found a backdoor in AppSuite PDF Editor after threat actors submitted their own malware as a false positive & demanded removal of the detection. The case was initially flagged as a PUP. gdatasoftware.com/blog/2025/08/3…
I'm hiring a Principal Security Researcher with rock-solid knowledge in Active Directory, Entra ID, and security research. Interested in working with me? Go apply here: ats.rippling.com/netwrix-corpor…
⏰ Miss the stream featuring the latest updates to x64dbg, such as it's new type system? Catch the stream with the creator Duncan Ogilvie 👇
youtube.com/live/eODAI3Z1d…
🏹 𝐍𝐞𝐰 #𝐊𝐐𝐋 𝐪𝐮𝐞𝐫𝐲!
➡️ 𝐅𝐞𝐭𝐜𝐡 𝐝𝐲𝐧𝐚𝐦𝐢𝐜 𝐚𝐧𝐝 𝐦𝐚𝐧𝐮𝐚𝐥 𝐭𝐚𝐠𝐬 𝐟𝐨𝐫 𝐚𝐜𝐭𝐢𝐯𝐞 𝐝𝐞𝐯𝐢𝐜𝐞𝐬
🔗 github.com/cyb3rmik3/KQL-…
💡 This query takes into account the 𝐃𝐞𝐯𝐢𝐜𝐞𝐈𝐧𝐟𝐨 table and will provide the devices based on OSPlatform value…
🐚 Speed up your malware analysis with Speakeasy! This YouTube Short shows how to emulate shellcode & extract key IOCs without diving into disassembly 🤔 Perfect for malware analysts seeking a fast, efficient workflow!
youtube.com/shorts/SVmn_15…
One thing I continue to hate about most security tooling is that they often show me data without helping me understand what it means, with context to things like prevalence and relationships. *This* is not just the future of strings, but the future of analysis tooling.
One thing I continue to hate about most security tooling is that they often show me data without helping me understand what it means, with context to things like prevalence and relationships. *This* is not just the future of strings, but the future of analysis tooling.
3K Followers 3K FollowingCTO Principal Cyber Security Consultant at @BaseVISION | building cyber defenses to protect the enterprise | Microsoft security MVP | Host of https://t.co/3JotWNK5gX
23 Followers 181 FollowingExperienced Detection Engineer, hobby dev. The more I know, the more I realize I don't know anything. ++ A firm believer in the existence of UAP/NHI (UFOs)
2K Followers 1K FollowingCybersecurity Enthusiast | Ethical Hacker | Bug Hunter | Entrepreneur | IG @iShowCybersecurity (49k) |
May the Encryption be with you
12K Followers 14K FollowingThere are 10 types of people in the world. Those who understand binary, and those who don't. All opinions and views are my own. #BsidesDub organizer
4K Followers 5K FollowingСлава Україні! Most important job: being Dad; I also love to help people deny attackers the opportunity to break and steal all the things. Pronouns: He/him
2K Followers 4K FollowingI grew up in the entertainment business in Hollywood. Moved to Oregon to raise my daughter. Producer-Memberships: SAG,AFTRA, ASCAP US Army Veteran🇺🇸🇺🇸🇺🇸
8K Followers 550 FollowingHelping AI founders launch securely & others join AI cyber. Cybersecurity SME with 35+ years. Lead author of Gray Hat Hacking. Many startups, lessons learned.
3K Followers 917 Followinghttps://t.co/9I6nRUiFjm is a service that provides threat intelligence data about observed network scanning and cyber attacks.
4K Followers 3K Following3rd class technician on the Jupiter Mining Corporation ship Red Dwarf, registration number RD 52 169. Eventually I became the last human being in the universe.
39 Followers 133 Following🛡️🥷🏻⌘🎗🎸 GISF, GSEC, GCIH, GPYC, GCIA, GCWN
Information Security Researcher and Geek At Large.
I tend to Break_ things. Some I even fix.
90K Followers 161 FollowingCome join us as we go on the adventure of giving visibility into scammers and how they operate. [email protected] (Business ONLY, no investigations)
468 Followers 2K FollowingUnited States Army Veteran | Security Researcher | macOS and Linux Hunt/IR/Malware Analysis | Simracing, oh lord the simracing...
4K Followers 1K FollowingHacker, security research architect for @Microsoft Defender.
Member of @thegooniesctf. Linux, Windows, Android, MacOS, iOS, ChromeOS, bare metal.
日本語オーケーです👌
11K Followers 716 Following// principal cybersecurity anarchist
// unethical hacker
// ex aws, wn, else
// @redteamvillage_ & @sec_defcon daemon
// take sincerely at your own risk
5K Followers 474 FollowingOffensive Services Team Lead of Web & Mobile Applications at @FRSecure. Co-lead for @ProjectHyphae. Birds of Prey Rehab Volunteer.
2K Followers 413 FollowingThreat Intel Specialist and Incident Responder. Private account. All opinions expressed here are mine only.
https://t.co/7dQQO1JwUd
918 Followers 84 FollowingPresident / CEO Pacific Software Publishing, Inc.
Internet Software Development / Web & Email Hosting / Web Development
https://t.co/EaDtbuEKpH
23 Followers 181 FollowingExperienced Detection Engineer, hobby dev. The more I know, the more I realize I don't know anything. ++ A firm believer in the existence of UAP/NHI (UFOs)
1K Followers 3K FollowingEntrepreneur, Libéral, Vie Privée, Privacy 'Be yourself, everyone else is already taken' Oscar Wilde. Extrêmement contre tous les extrêmes.
19K Followers 537 FollowingThreat Hunting & DFIR, Hacker, Geek, DEF CON & Black Hat CFP Review Board Member, DEF CON Contest/Events/Demo Labs Dept. Head, Black Hat Staff, DC801 Founder
5K Followers 95 FollowingChatGPT says I'm a cyber researcher :) | donate 💸 to g0njxa.eth 💖 | Bad student, enthusiast, defo not an expert
DMs are open, feel free to reach!
😼☂️🟣
12K Followers 14K FollowingThere are 10 types of people in the world. Those who understand binary, and those who don't. All opinions and views are my own. #BsidesDub organizer
6K Followers 525 FollowingAnimal liberation activist 🌟 Forbes 30 Under 30 • Sr. Principal Security Researcher @ Unit 42 •
Maintainer of Cutter and Rizin •
I don't eat animals.
4K Followers 5K FollowingСлава Україні! Most important job: being Dad; I also love to help people deny attackers the opportunity to break and steal all the things. Pronouns: He/him
805 Followers 2K FollowingInfosec and the Green Bay Packers. Interested in all things DFIR, Detection Engineering, Purple, and CTI. Opinions are mine, certainly not those of my employer.