Dmitry Bestuzhev

10.2K posts

Dmitry Bestuzhev banner
Dmitry Bestuzhev

Dmitry Bestuzhev

@dimitribest

#CTI #Trainer #Speaker Former Senior Director CTI at BlackBerry, Former GReAT team Director in LatAm

Katılım Mayıs 2008
728 Takip Edilen15.7K Takipçiler
Sabitlenmiş Tweet
Dmitry Bestuzhev
Dmitry Bestuzhev@dimitribest·
Foolish is the man who never reads a newspaper; even more foolish is the man who believes what he reads just because it is in the newspaper.
English
4
73
190
0
Dmitry Bestuzhev retweetledi
Florian Roth ⚡️
Florian Roth ⚡️@cyb3rops·
Great finally meeting Ismael and @dimitribest in person. We’ve only known each other through chats and calls so far, but meeting face to face felt surprisingly natural - like catching up with old friends, just for the first time in real life
Ismael Valenzuela@aboutsecurity

So great catching up with our friends and partners at @nextronresearch at @OneRSAC! Thanks @cyb3rops & team for the continued partnership with @AWNetworks Labs. Always a pleasure working with fellow practitioners who keep pushing the #cyberdefense community forward and make life a little more painful for attackers every day 💪🏼 #ThinkRedActBlue 🔴🔵 nextron-systems.com/2025/08/28/adv…

English
0
2
25
3.6K
Dmitry Bestuzhev retweetledi
BANRED
BANRED@BANREDec·
Es un honor dar la bienvenida a @dimitribest , como expositor del ESIS 2026, experto global en ciberseguridad e investigador líder en cibercrimen y ciberespionaje. Su presencia y experiencia contribuirá con la innovación, la seguridad y el desarrollo del ecosistema.
BANRED tweet media
Español
0
1
1
192
Dmitry Bestuzhev retweetledi
blackorbird
blackorbird@blackorbird·
#APT28 open directory on 203.161.50[.]145 that contained what appears to be a complete Roundcube exploitation toolkit. hunt.io/blog/operation…
blackorbird tweet mediablackorbird tweet mediablackorbird tweet media
English
0
24
84
21K
Dmitry Bestuzhev retweetledi
nad
nad@Nadsec11·
Reverse-engineered Coruna - a nation-state iOS exploit kit - from raw JavaScript. 28 modules, 500+ XOR strings decoded, 6,596-line teardown. PAC bypass, JIT cage escape, PACDB hash forgery. nadsec.online/blog/coruna nadsec.online/blog/coruna-te… (technical analysis more interesting, read coruna blog post first, technical analysis looks better on github, link on-site)
English
10
66
329
44.6K
Dmitry Bestuzhev retweetledi
Mandiant (part of Google Cloud)
GTIG has released its 2025 zero-day review! We tracked 90 zero-days exploited in the wild. Enterprise targeting hit a record 48%, while commercial surveillance vendors overtook state-sponsored groups in attribution volume for the first time. Learn more: bit.ly/409Z8gX
Mandiant (part of Google Cloud) tweet media
English
2
15
36
4.3K
Dmitry Bestuzhev retweetledi
Mandiant (part of Google Cloud)
Coruna exploit kit is targeting iOS. Coruna leverages 23 exploits against Apple devices running iOS 13-17.2.1. It is being used for espionage, and by financially motivated actors to steal crypto. Update your iOS devices, and learn more about this threat: bit.ly/4rbeltc
Mandiant (part of Google Cloud) tweet media
English
7
119
358
117.5K
Dmitry Bestuzhev retweetledi
Andy Greenberg (@agreenberg at the other places)
A full iOS exploit toolkit, "Coruna," has been found in the wild, hacking iPhones that visited infected websites, used by Russian spies targeting Ukrainians and thieves targeting Chinese crypto holders. And it may have been created for the US government. wired.com/story/coruna-i…
English
8
313
725
99.9K
Dmitry Bestuzhev retweetledi
GrapheneOS
GrapheneOS@GrapheneOS·
We're happy to announce a long-term partnership with Motorola. We're collaborating on future devices meeting our privacy and security standards with official GrapheneOS support. motorolanews.com/motorola-three…
English
577
1.8K
11.5K
760.1K
Dmitry Bestuzhev retweetledi
Rob Joyce
Rob Joyce@RGB_Lights·
Everyone building an @openclaw instance that pushes all your interaction and some of your data through Telegram should think about this… what have you exposed through that channel?
Sabrina Halper@SabrinaHalper

Founder of @signalapp, @moxie Marlinspike on Telegram:   "Telegrams not a private messenger. There's nothing private about it. It's the opposite. It's a cloud messenger where every message you've ever sent or received is in plain text in a database that telegram the organization controls and has access to it" "It's like 'Russian oligarch starts unencrypted version of WhatsApp', a pixel for pixel clone of WhatsApp. That should be kind of a difficult brand to operate. And somehow, they've done a really amazing job of convincing the whole world that this is an encrypted messaging app and that the founder is some kind of Russian dissident, even though he goes there once a month, the whole team lives there, and their families are there." " What happened in France is they just chose not to respond to the subpoena. And so that's in violation of the law. And, he gets arrested in France, right? And everyone's like, oh, France, but I think the key point is they have the data, like they can respond to the subpoenas where as Signal, for instance, doesn't have access to the data and couldn't respond to that same request.  To me it's very obvious that Russia would've had a much less polite version of that conversation with Pavel Durov and the telegram team before this moment. "

English
4
11
46
5.8K
Dmitry Bestuzhev retweetledi
Lenny Zeltser
Lenny Zeltser@lennyzeltser·
The new @REMnux MCP server lets AI analyze malware using the REMnux toolkit. I was surprised at the depth of investigation it delivers. Most of my time went into capturing how I approach malware analysis and providing AI the right guidance at the right time, so it can think and adapt as it works. zeltser.com/ai-malware-ana…
English
6
81
291
24.8K
Dmitry Bestuzhev retweetledi
Bernardo Quintero
Bernardo Quintero@bquintero·
AI + Binary Ninja + Ghidra + IDA + radare2 + ...
Bernardo Quintero tweet media
Indonesia
14
104
823
101.1K
Dmitry Bestuzhev retweetledi
SANS DFIR
SANS DFIR@sansforensics·
Join us at #CTISummit in January when we dive into real adversary operations shaping today’s threat landscape — from dismantling a global PhaaS empire to uncovering NK supply chain attacks, regional campaigns, & private-sector #OffensiveOps. Register: sans.org/u/1CtB
SANS DFIR tweet mediaSANS DFIR tweet mediaSANS DFIR tweet mediaSANS DFIR tweet media
English
0
1
4
1.5K
Dmitry Bestuzhev retweetledi
Tom's Hardware
Tom's Hardware@tomshardware·
North Korean infiltrator caught working in Amazon IT department thanks to lag — 110ms keystroke input raises red flags over true location tomshardware.com/tech-industry/…
English
30
403
2.1K
801.6K
Dmitry Bestuzhev retweetledi
FBI
FBI@FBI·
Today we’re announcing the indictments of over fifty Tren De Aragua (TdA) gang members. These gang members conspired and deployed malware to steal millions of dollars from ATMs (aka ATM jackpotting) in the US. Learn more about these indictments here: justice.gov/usao-ne/pr/tre…
FBI tweet media
English
173
2.2K
7.3K
157.5K