-
Tweets245
-
Followers742
-
Following39
-
Likes416
#Arkei #Stealer malware C2 panel using a login page that mimics the #WordPress login page but is actually connected to the C2 panel's database. Used to evade detection so the panel can stay active on compromised websites for longer. #malware #cybersecurity #C2
#JavaScript #skimmer overlayed onto payment page of an infected #Magento ecommerce store to steal payment card data from visitors exfils to united81[.]com #magecart #infosec #cybersecurity #malware lukeleal.com/research/posts…
It will be interesting to see how retailer's return policy changes will impact the existing #refunding service groups that charge users a fee for their #socialengineering skills that they use to obtain the #refund for the user. cnn.com/2022/06/26/bus… #cybercrime #cyberfraud
[Tech blog] A cure for the obscure! PerimeterX researcher @ctrl__esc created a new open source #Javascript deobfuscator. Learn how it works. #infosec #supplychainattacks #magecart bit.ly/3v3hilm
Fake GTM tag loads #JavaScript #skimmer from jsdelivr[.]at on a hacked #magento store's checkout page to steal credit card data. Skimmer URL: jsdelivr[.]at/js/jquery.ba.min.js lukeleal.com/research/posts… #infosec #cybersecurity #malware
cdn-fonts[.]com used as the exfil for a #JavaScript #skimmer injected into the database on #hacked #Magento websites URL: cdn-fonts[.]com/skin/loading.gif lukeleal.com/research/posts… #infosec #cybersecurity #malware
staticounter[.]net injected into #magento db and loading #JavaScript on a hacked store's checkout page. Can't seem to identify a #skimmer in the loaded JS... URL: js[.]staticounter[.]net/static/counter.js lukeleal.com/research/posts… #infosec #cybersecurity #malware
#AnonymousFox 🦊 #FoxEx tool attempts LFIs on 80+ #WordPress plugin w known vulns. If the wp-config.php gets read then it's a huge problem if the host allows remote #SQL connections (but also problem for local only). #infosec #cybersecurity #cybercrime #webhosting
#AnonymousFox 🦊 #FoxEx tool attempts LFIs on 80+ #WordPress plugin w known vulns. If the wp-config.php gets read then it's a huge problem if the host allows remote #SQL connections (but also problem for local only). #infosec #cybersecurity #cybercrime #webhosting https://t.co/ZIKG6AfUFe
An overview of #AnonymousFox and their #PHP and #Python tools (e.g #FoxAuto) used for automating website exploits en masse & selling access to them on websites like #olux or #xleet. #malware #infosec #cybersecurity #cybercrime #wordpress #webhosting lukeleal.com/research/posts…
Don't use root login for #WordPress wp-config.php (or any website config)! If someone is able to read the file (e.g vulns) then you've just made it much easier for them to get root access on the server. #infosec #cybersecuritytips #iamroot #opsec #webhosting
Obfuscated #JavaScript found on legit bank login pages reveal a countermeasure that uses a tracking pixel to detect #phishing pages created from content scraping images-cdn[.]info content-cdn[.]com lukeleal.com/research/posts… #infosec #cybersecurity #cybercrime
#JavaScript #skimmer found on infected #Prestashop websites and targeting Stripe payment data exfiltrates stolen data to ccfresh[.]co (currently 0 detections on VT) lukeleal.com/research/posts… #infosec #cybersecurity #malware
#javascript skimmer targeting #Magento websites and #psigate payment fields exfil URL: dyneff[.]fr/health_check.php lukeleal.com/research/posts… @Dyneff_ES #Dyneff #magecart #infosec #cybersecurity #malware big ups @liamsmith86 for sample
Large wave of recent #JavaScript #malware on #WordPress websites are grabbing their payload from trainresistor[.]cc which hides within img class tags instead of traditional <script> tags lukeleal.com/research/posts… #infosec #cybersecurity #webdeveloper #webhosting
wtf() #skimmer continues to be used in-the-wild, targeting #WooCommerce #WordPress websites 💰 💳 ☠️ exfil: convert-server[.]com #magecart #infosec #cybersecurity #malware #javascript
#S4LIM #phishing kit targets @n26 users w/ a multi-stage kit used for account takeover. Uses @PushoverApp API to send push notifications to attacker whenever a victim submits the first stage @veehaitch @ActorExpose #infosec #cybersecurity #cybercrime lukeleal.com/research/posts…

Catalin Cimpanu @campuscodi
107K Followers 2K Following Parked account. I don't usually post here on a regular basis. Cybersecurity reporter. Check me out on BlueSky and Mastodon.
Jake | JCyberSec_ @JCyberSec_
10K Followers 67 Following Expert in Credential Phishing and Phishing Kit Research. Working in Cyber Security - Threat Intelligence #Phishing
Clandestine @akaclandestine
49K Followers 5K Following | Security | Osint | Threat Research | Opsec | Threat Intelligence | Infosec | Threat Hunting | Humint |
Joe Roosen @JRoosen
8K Followers 1K Following SpyCloud - Director of Security Research, Cryptolaemus Coordinator, Emotet(Ivan)/QBot(Boris) Destroyer, gold prospector & former sysadmin.
nullcookies @nullcookies
10K Followers 3K Following
Frost @fr0s7_
5K Followers 1K Following
Gizmo @TeamDreier
1K Followers 411 Following Graph based Threat Hunting based on ~1.4mia/day DNS records from SIE Europe, ICANN CZDS, Certstream, urlscan, urlhaus, rapid7 sonar and more.
Nawaf Alzadjali @nnnnnN80822
2 Followers 87 Following
Burns_Flipper @Burns_Flipper
17 Followers 491 Following I'm the king of the datastreams, the emperor of the feed, baby. What kind of information do you need?
Amanda Kennedy @amandakennedyuk
2K Followers 827 Following Freelance Writer and Author 📝 | Book Blogger at https://t.co/kOG1YBHb0t | Lifelong Learner 📖 | Former Blogger guru
abcxzy1234 @abcxzy12346762
20 Followers 253 Following
Eugene Nigel @Street_Gamee
1 Followers 44 Following
𝟎𝐱𝐅𝐚𝐙�... @fazemrx1
10 Followers 89 Following
Mohit Chaudhary @mkmohit257
263 Followers 3K Following Just a random person trying to achieve something 🙄
Bakitta @bakitta258995
0 Followers 37 Following
arjuna 902 @902Arjuna
1 Followers 34 Following
Salah Eldin Fikri (Mr... @EldinFikri35028
1 Followers 82 Following Malware Analyst and reverse engineer
SalahEldin (Mr_MaTriX... @FikriMatrix
378 Followers 778 Following Malware Analyst - CTF Player @0xL4ugh (Reverse Engineering) -
obfuscatedworld @obfuscatedworld
0 Followers 7 Following
math @mathityhau
8 Followers 274 Following
Ivan @Ivan1957700
0 Followers 54 Following
vinayak shendge @vinayak_114
70 Followers 478 Following
R54 @RodrigoAragon54
283 Followers 1K Following
a solitary soul thriv... @0xsuperdemon
90 Followers 2K Following Unreadiness to following, reluctant to followers. A visionary path treader, rethinker, and on a second thought life overwhelms me, I do not know anything, AMA!
Moul_internet @InternetMoul
0 Followers 16 Following
David Alves @DMMCA
34 Followers 665 Following
Kaleb @AdAstra247
258 Followers 394 Following
DazeTrades @dazetradez
87 Followers 168 Following
Sheighveet @sheighveet56799
22 Followers 1K Following
Marcelo Bemyea @MBemyea
6 Followers 61 Following
steve.jnr @stevejnr_
762 Followers 3K Following I share insights on AI, productivity, and tech | 💻 Software Engineer | Passionate about artificial intelligence and machine learning. | 📩[email protected]
Nicolai van Veen @Nicolai_85747
4 Followers 765 Following Interested in Cybersecurity, Tech, Gaming, OSINT, Politics and (Military) History. ❤️ pannenkoeken and motorcycles. I am here to learn.
RedPanda @RedPanda_x
9 Followers 73 Following
Moe @ProMoody
28 Followers 515 Following IT Security Analyst Is it really necessary to say that my opinions are mine and nobody else's? :)
0xLite@Ha @AzyzChayeb
887 Followers 7K Following
TheSecMaster @TheSecMaster1
59K Followers 4K Following The #cybersecurity blog https://t.co/JXrP7659ks helps people learn #vulnerabilities #infosec #devsecops #hacking #IoT, #AIML and other technologies.
Blank @Blankhollo
9 Followers 251 Following
MACFTD @MACFTD
170 Followers 1K Following Find your weaknesses, before the bad guys do It is not a warning phrase, nor an ordinary phrase, but it remains our message to all the inhabitants of the earth
Jake | JCyberSec_ @JCyberSec_
10K Followers 67 Following Expert in Credential Phishing and Phishing Kit Research. Working in Cyber Security - Threat Intelligence #Phishing
urlscan.io @urlscanio
13K Followers 137 Following A sandbox for websites - Find malicious websites and phishing - https://t.co/LfPJPBGXFV - https://t.co/XjI4zJaBBp - #threatintel #cybercrime #infosec #web #phishing
nullcookies @nullcookies
10K Followers 3K Following
Gizmo @TeamDreier
1K Followers 411 Following Graph based Threat Hunting based on ~1.4mia/day DNS records from SIE Europe, ICANN CZDS, Certstream, urlscan, urlhaus, rapid7 sonar and more.
ChrisUeland @ChrisUeland
2K Followers 3K Following @HuntIO- Previously: @RecordedFuture , @SecurityTrails, @MaxCDN
Justin Grosfelt @jgrosfelt
190 Followers 497 Following Love/hate relationship with malware that leads to drinking a lot of bourbon. Thoughts are my own and you won't want them anyways.
Lindsay Kaye @TheQueenofELF
1K Followers 270 Following VP of Threat Intelligence @SecurewithHUMAN | Reverse Engineer | Conference Speaker | Ransomware Columnist
Offensive OSINT @the_wojciech
8K Followers 149 Following Pentester/Security Analyst/OSINT Researcher doing cyber security art brut. https://t.co/5bGCU6UuZO https://t.co/GzHh2JDJR5
Calwarez @calwarez
181 Followers 347 Following Leads Malicious Infrastructure Discovery @ Recorded Future | Views my own
Emil Stahl @emilstahl
1K Followers 2K Following Cyber Security Specialist at @teambluedk / @teamblue. Security, privacy, fraud, abuse & much more.. ✉️: [email protected] | Signal: emil.112
Julian-Ferdinand @JulianVoeg
826 Followers 410 Following Threat Research @RecordedFuture. Formerly @SecReLabs. He/Him. 🏳️🌈 [email protected]
Bobby Preston @Bobby_Presto
532 Followers 2K Following
Steven @keritzy
334 Followers 2K Following Independent Programmer / Security and Threat Researcher uid=0(root) gid=0(root) groups=0(root) reporting, exposing and crafting!
Keith Starling @yoerayo
25 Followers 119 Following I live in Las Vegas and write code that does stuff.
Maelström (meɪlstr�... @MaelSecurity
1K Followers 49 Following Hello Friend. I'm here to protect you. Be kind.
Fio Cavallari 🍻�... @fiocavallari
979 Followers 242 Following Perfil fake de @fiocavallari; Tweets in pt-br and en-br; Malware, beer and bad jokes.
ET Labs @ET_Labs
6K Followers 219 Following ET Labs is the research team of Emerging Threats - Bionic threat intelligence specialists from Fantasia.
Phishing AI @PhishingAi
9K Followers 398 Following I spot real phishing attacks and notify brands to protect their customers. If my results are accurate, like my tweets and I will learn. powered by @Lookout.
Baryo @ctrl__esc
93 Followers 265 Following My chief interest is Python. Python and JS... JS and Python... My TWO main interests are JS, Python, and security research... My THREE mai- I'll come in again
Mikhail Kasimov @500mk500
5K Followers 596 Following Malicious traffic detection system: @maltrail; Maltrail Demo Page: https://t.co/eimXdZvjWo; Maltrail FAQ: https://t.co/Kne9lewPHT
Allison Nixon @nixonnixoff
3K Followers 614 Following Chief Research Officer at Unit 221B -- if you need to get ahold of me use Linkedin or my company's outreach form, not this website
Sal Aguilar // WPSecu... @riper81
2K Followers 3K Following I fight #Malware and bad actors at @Kinsta & run https://t.co/5ZvsLnMDeS // I talk about WordPress, Web Security, WAF, CDNs and DevOps.
Cazanova Haxor @0xCaZaNoVa163
55 Followers 94 Following
Antony Garand @AntoGarand
214 Followers 407 Following SDE @ Amazon, making https://t.co/qMvp7H4h5S and other random projects.
Tommy M (TheAnalyst) @ffforward
14K Followers 195 Following Threat Researcher @proofpoint | @Cryptolaemus1
IPAE! @ActorExpose
5K Followers 4K Following Expose phishing pages and sometimes malware on domain to either to get reported or exposed out public. Majority of these criminals are part of the underground.
Eric Brandel @AffableKraut
914 Followers 625 Following The only way out is through | Stringer, Central Intelligence Corporation | @affablekraut.bsky.social
AnonymousFOX scriptki... @tekgurl_kayla
1K Followers 5K Following Wannabe; SOC Analyst; THM Top 1%; eJPT; GCFE