Fred HK

595 posts

Fred HK banner
Fred HK

Fred HK

@fr3dhk

/* Security & Malware Research | Poking holes in everything & writing about it | Read here: https://t.co/pw6Fny0k27 */

Katılım Nisan 2015
265 Takip Edilen2.6K Takipçiler
Sabitlenmiş Tweet
Fred HK
Fred HK@fr3dhk·
Indtroducing: What is this stealer? A new repository that allows for you to identify Stealer malware by the system information text file format commonly included in stealer malware exfiltration. We encourage everyone to check it out and contribute! github.com/MalBeacon/what…
English
8
144
466
38.3K
Fred HK
Fred HK@fr3dhk·
@vxunderground Betabot 1.8 still has to be one of the best MaaS I’ve see
English
0
0
2
703
vx-underground
vx-underground@vxunderground·
A or A+ malware is exceptionally rare. Also, the A or A+ category kind of depends on the timeline. For example, A+ malware from the 90's may not be A+ malware in 2026. Regardless, here is some malware I consider A or A+ - ZMist - Stuxnet - Operation Triangulation - BlackEnergy 3 - Pegasus Spyware (not PegasusRAT) - SUNBURST - Linux/Kobalos - GrayFish - Drovorub - ShadowPad ... There is more, but this is off the top of my head. There is a lot of malware that truly blew my mind.
C:/5ah3@ThmsOne

@vxunderground Ok now you got me interested. In your opinion which malware is A or A+?

English
43
86
1.4K
92.1K
Fred HK
Fred HK@fr3dhk·
When the eCrime forum doesn’t have paid access
Fred HK tweet media
English
0
0
1
193
Fred HK retweetledi
LoaderInsightAgency
LoaderInsightAgency@LIA_Intel·
On May 1st LIA turned 1 year 🥳🎂 The first official task was from an Amadey botnet to download & execute Lumma Stealer: loaderinsight.agency/?p=task_view&f… LIA has since received >9300 tasks from botnets, netting 51327 payloads. Big thanks to everyone who has contributed to the project!
LoaderInsightAgency tweet media
English
0
5
15
2K
DaveTheResearcher
DaveTheResearcher@DaveLikesMalwre·
🚫Fake HMRC Self Assessment -> ScreenConnect 🎮 🌐URLs: hxxp[://]86[.]54[.]42[.]88/Downloads/HMRC_Self_Assessment[.]pdf[.]lnk hxxps[://]apps-actions[.]com/HMRC_Self_Assessment Noted that the above "apps-actions" domain has a login with the host title of "Magic" where I pivoted off the @ValidinLLC body hash leading to additional domains with a similar login page.... (Pic 2+3) Anyone seen this login page before? I'm not sure if they correlate as it could be a generic login page so any insight is welcome. 🔎Validin Query: d8dfe22c8569a8260d310010956bda1d39a67f38 @anyrun_app Analysis: https://app.any[.]run/tasks/7b88537c-fd48-409c-9e0a-949647e36037 CC: @500mk500
DaveTheResearcher tweet mediaDaveTheResearcher tweet mediaDaveTheResearcher tweet media
English
2
8
30
4.2K
Fred HK retweetledi
Squiblydoo
Squiblydoo@SquiblydooBlog·
Cert Central .org is live! We track and report abused code-signing certs. By submitting to the website, you contribute to the DB of >800 certs—a DB you can access and view. Want to get more involved? Check out the Training and Research pages to learn more. 1/2
Squiblydoo tweet mediaSquiblydoo tweet media
English
1
51
160
17K
xiu
xiu@osint_barbie·
4/5: Digging deeper, I discovered a login panel at http://85[.]209[.]11.155/compremo. The /assets and /assets2 directories contain logos for 🇪🇪 🇩🇪 🇺🇸 🇲🇩 🇰🇷 flags. Several scripts hint at how the panel functions. One detail stands out: a logousericon with the FSB (🇷🇺) abbreviation
xiu tweet mediaxiu tweet mediaxiu tweet mediaxiu tweet media
English
2
1
4
1.6K
RussianPanda 🐼 🇺🇦
RussianPanda 🐼 🇺🇦@RussianPanda9xx·
Would you use my Panda MDR service? I offer 24/7 365 protection at a very low cost; all I need is sushi and Korean hot pot & bbq dinners 😅
RussianPanda 🐼 🇺🇦 tweet mediaRussianPanda 🐼 🇺🇦 tweet media
English
8
3
42
5.9K
Fred HK retweetledi
MalBeacon
MalBeacon@malbeacon·
Introducing: What is this stealer? A new repository that allows you to identify Stealer malware by the system information text file format commonly included in stealer malware exfiltration. Yara Rules included! Check it out and contribute! github.com/MalBeacon/what…
English
0
2
10
1.6K
Fred HK
Fred HK@fr3dhk·
@RussianPanda9xx I don't think the stealers feel the same way towards you 😂
English
1
0
6
272
Fred HK retweetledi
Lena
Lena@LambdaMamba·
I’ve designed a few more new Malmons, and here’s the latest list! ✍️ Gen 1 Malmons: - GaboonGrabber - Raspberry Robin - Noodle RAT - LitterDrifter - Gh0st RAT - Stuxnet - FakeBat - PoisonIvy - WannaCry - Slammer - Petya - NotPetya - ILOVEYOU - SugarGh0st RAT - Rhadamanthys - Flame - BFOD (Blue Falcon of Death) - Olympic Destroyer Gen 2 Malmons: - Sick Anubis (Inspired by @likethekings MARC I submission!) - WhiteSnake - TrickBot - Raccoon - BootKitty - WarmCookie - PurpleFox - Industroyer - Pegasus The Gen 1 Malmons merch is now available on the @MalwareVillage store! 🛍️ malwarevillage.myshopify.com Malmons aka Malware Monsters © 2024 Lena Yu aka LambdaMamba. All rights reserved. #malmons #malwaremonsters
Lena tweet media
English
1
7
22
2.8K