eremit4

138 posts

eremit4 banner
eremit4

eremit4

@_eremit4

Katılım Şubat 2022
166 Takip Edilen376 Takipçiler
vx-underground
vx-underground@vxunderground·
Mark Zuckerberg a/k/a shape shifting lizard man, has patented spooky internet ghost technology. Amazing. By training off your data, AI can emulate your existence on social media after you've died. Ever miss Grandmas schizo racist posts? Your heroin addict cousin getting into arguments with family members because he owes them money? Want to be constantly reminded of your friend tragic death? With Meta spooky internet ghost technology this is possible! Yay!
English
48
69
991
31.6K
eremit4 retweetledi
Mandiant (part of Google Cloud)
North Korean actor UNC1069 is targeting the crypto sector with AI-enabled social engineering, deepfakes, and 7 new malware families. Get the details on their TTPs and tooling, as well as IOCs to detect and hunt for the activity detailed in our post 👇 bit.ly/4ckI3rD
Mandiant (part of Google Cloud) tweet media
English
1
71
218
16.4K
eremit4 retweetledi
Clandestine
Clandestine@akaclandestine·
Large phishing campaign aimed at Brazil, impersonating jusbrasil @Jusbrasil , using legitimate Microsoft @MsftSecIntel C2 tocadistribuidora./net translogvinece./net telefonesapple./com smartdistburstcn./net speedroutenetrixwb./net
Clandestine tweet mediaClandestine tweet mediaClandestine tweet mediaClandestine tweet media
English
0
11
60
4.2K
eremit4 retweetledi
Zscaler ThreatLabz
Zscaler ThreatLabz@Threatlabz·
Zscaler ThreatLabz has published a technical analysis of Marco Stealer, an information stealer that our team discovered that harvests sensitive information including browser data and cryptocurrency wallets. Marco Stealer uses HTTP-based C2 communication with AES encrypted payloads. Read the full analysis here: zscaler.com/blogs/security…
Zscaler ThreatLabz tweet media
English
1
17
51
5.6K
eremit4 retweetledi
Group-IB Global
Group-IB Global@GroupIB·
🚨 Tracking the Rise of Chinese Tap-to-Pay Android Malware Tap-to-pay fraud is no longer limited to stolen cards or physical proximity. Threat actors are now abusing NFC-enabled #Androidmalware to relay #paymentdata in real time, enabling remote, contactless fraud at scale. Our latest research uncovers how Chinese #cybercrime communities are industrializing this technique and turning it into a fully operational fraud ecosystem. Key Highlights: 🔹 Over 54 NFC-enabled Android malware samples identified, designed to relay payment APDUs remotely 🔹 Multiple Telegram-based vendors offering tap-to-pay malware as a service, complete with subscriptions, support, and custom regional builds 🔹 At least $355,000 in fraudulent transactions linked to a single illicit POS vendor between Nov 2024 and Aug 2025 🔹 #Smishing and #vishing campaigns actively used to trick victims into installing malware and tapping their cards 🔹 Mule networks and compromised mobile wallets enabling global, card-present fraud without physical cards Alongside these findings, the research provides in-depth technical analysis of TX-NFC, #NFU, and related variants, examining code overlaps, cash-out infrastructure, and key defensive considerations for #financialinstitutions and payment networks. Read the full research now: link.group-ib.com/3Li56bI
Group-IB Global tweet media
English
0
11
26
2.3K
eremit4 retweetledi
Catturd ™
Catturd ™@catturd2·
Good morning X.
Catturd ™ tweet media
English
3.7K
18.3K
149.4K
2.9M
eremit4
eremit4@_eremit4·
Over the past months, I've been tracking a #phishing campaign targeting Spanish-speaking users. The operation relies on #Telegram and #Discord for exfiltration and #C2, shows indicators of AI-assisted development, and employs anti-analysis techniques in the wild.
eremit4 tweet media
English
1
2
4
2K
eremit4 retweetledi
Clandestine
Clandestine@akaclandestine·
The Mycelial Mage: Tracing a Spanish-Speaking Credential Theft Operation · The Sage Hollow #I recommend reading it; incredible research conducted by my friend. sagehollow.world/posts/adversar…
English
1
2
8
1.3K
eremit4 retweetledi
P4nd3m1cb0y
P4nd3m1cb0y@P4nd3m1cb0y·
[1/4] Script obfuscation isn’t the problem people think it is. At runtime, everything must become readable and that’s where AMSI quietly does the heavy lifting. #CyberSecurity #CyberSec #InfoSec #Malware
P4nd3m1cb0y tweet mediaP4nd3m1cb0y tweet media
English
2
3
11
877
eremit4
eremit4@_eremit4·
IOCs: onlinechatmatrix․/xyz onlinechatmatrix./store onlinechatmatrix./online onlinesupportmatrix․/support onlinesupportmatrix./org onlinesupportmatrix./xyz supportstreamonline/.com @abuse_ch @ValidinLLC @P4nd3m1cb0y
Deutsch
1
2
4
987
eremit4
eremit4@_eremit4·
A Magecart campaign targeting LATAM e-commerces via GTM side-loading. Actors compromise CMS blocks to inject a secondary container, establishing a persistent WebSocket (WSS) tunnel for stealthy exfiltration. [+] #CTI #Magecart #InfoSec #LATAM #Skimming
eremit4 tweet media
Source Defense Research@sdcyberresearch

Next-gen #Magecart attack spotted: 👉 Loaded via GTM (K698P9G2), 👉 Opens two parallel WebSockets (onlinechatmatrix․\xyz & onlinesupportmatrix․\support) 👉 Alternates between a fake checkout form + silent DOM skimmer. #WebSkimming #FormJacking #PCIDSS #clientsidesecurity

English
1
1
3
522
vx-underground
vx-underground@vxunderground·
I have 500 @cyberwarfarelab vouchers. I've given away 17. It is really, really, really hard to coordinate 500 vouchers to random people. I'm tired.
vx-underground tweet media
English
98
18
635
22.7K