Justin Elze
61.5K posts

Justin Elze
@HackingLZ
CTO @TrustedSec | Former Optiv/SecureWorks/Accuvant Labs/Redspin | Race cars



@pcpcats @IceSolst @xpl0itrs the attacker’s budget is irrelevant when your detection is signature-based. $150 or $150M the IOCs won’t match your ruleset either way. this is why we built around intent trajectories, not known indicators. state-sponsored or script kiddie, the kill-chain stages are invariant.




😼New TeamPCP: PyPI package "telnyx" versions 4.87.1 and 4.87.2 contain malware. These versions were uploaded directly to PyPI (no matching GitHub tags/releases). Downgrade to 4.87.0 or earlier immediately. Windows payload appears broken in 4.87.1.






⌨️ New from Censys ARC: Andrew Northern analyzes a previously undocumented “𝗖𝗧𝗥𝗟” .NET access framework — combining phishing, keylogging, RDP hijacking, and reverse tunneling. Active infra. No public intel. Shoutout to @smica83 who identified this activity independently prior to publication. Read the full analysis: hubs.ly/Q048CYV30 #CensysARC




