OSINT Shepherd

907 posts

OSINT Shepherd banner
OSINT Shepherd

OSINT Shepherd

@Automatron_

I like to find things. Blue team freak TI nerd. Happy Hunting, PSY-Op connoisseur

Katılım Mart 2010
4.1K Takip Edilen666 Takipçiler
Moshe Siman Tov Bustan
I analyzed the latest Megalodon campaign spreading on GitHub, big thanks to @abh1sek from @safedepio for uncovering and originally reporting it! Attackers spray-attack GitHub with fake pull requests targeting CI workflows, if the victim accepts the pull request, his CI/CD environment is directly compromised. The malware has a Base64 encoded bash payload, which steal cloud configurations, keys, credentials and tokens, and sends them to 216[.]126[.]225[.]129 It seems that threat actors would use any trick to infect developers and steal sensitive information. Complete analysis - ox.security/blog/megalodon…
Moshe Siman Tov Bustan tweet media
English
8
34
137
13.7K
box turtle / shai-huturtle
box turtle / shai-huturtle@xploitrsturtle2·
Github knew for hours, they delayed telling you and they wont be honest in the future. what an amazing run, its been an honor to play around with the cats over the past few months. #teamPCP #github
box turtle / shai-huturtle tweet media
English
61
236
1.7K
269.5K
Dark Web Informer
Dark Web Informer@DarkWebInformer·
‼️ Instructure has updated their security incident page with further information. instructure.com/incident_update They state ShinyHunters exploited an issue related to their Free-For-Teacher accounts and have shut it down temporarily.
Dark Web Informer tweet media
English
1
12
132
74.3K
vx-underground
vx-underground@vxunderground·
ShinyHunters has successfully hit the big leagues. ShinyHunters successfully disrupting exams, schooling, grading, government funded research projects, dissertation work, graduations, financial aid, financial loss, potentially immigration complications, and more, has elevated this from "a silly shenanigan" to "major national security incident" and being labeled as an attack on United States critical infrastructure. If I had to guess, the FBI, NSA, CIA, DIA, CISA, ICE, and DOE are all involved due to the disruption of this. This isn't the largest extortion campaign I've seen, but this is definitely in the top ten. This is what the kids call a "Certified Hood Classic".
English
68
319
4.4K
238.1K