

The Banshee Queen👑
3K posts

@cyberoverdrive
#threatintel @RecordedFuture but views are mine only. Ex @PwC_uk. Malware & infrastructure analysis with a side of cyberpunk 🌃🌌 She/her, support 🏳️🌈🏳️⚧️✨






NEW: You may remember that on the same day last year Pres. Trump announced H200s could be sold to China, the DOJ announced it had broken up a chip smuggling ring. I dug into the court docs that detail how the U.S. smugglers did it, and have identified the🇨🇳buyer:



The decline of commercial cyber threat intelligence, coinciding with the utter collapse of employee screening (with DPRK IT workers being the most prominent public example), both almost certainly stem from the same root cause. management that cannot properly evaluate risk, and relies on performative bureaucracy that becomes fixated on entirely the wrong things. But those things do not require hard decisions or uncomfortable conversations; unlike effective and forward leaning programs.







@0dongfeng Book flight to DPRK Take propaganda posters and pictures Try to leave DPRK with them Enjoy life with DPRK frenz







⚠️ New payload in the relation to #ToolShell . Attackers now don't need the static file anymore, leaking keys from memory without leaving the file. This means the existence of a file is not a reliable IoC anymore.