Infoblox

12.3K posts

Infoblox banner
Infoblox

Infoblox

@Infoblox

Infoblox is the company that unites networking and security to deliver better performance and protection.

Santa Clara, CA Katılım Aralık 2008
3.3K Takip Edilen11.3K Takipçiler
Infoblox
Infoblox@Infoblox·
From call scripts and scams to command and control—Southeast Asia’s scam centres are levelling up. In our latest research with Chong Lua Dao, we track a sophisticated Android banking trojan directly to the K99 Triumph City scam compound in Sihanoukville, Cambodia, 🧵
Infoblox tweet mediaInfoblox tweet mediaInfoblox tweet media
English
3
15
25
2.8K
Infoblox retweetledi
The Economist
The Economist@TheEconomist·
For years the online-fraud industry has mostly relied on slow, labour-intensive methods. Advances in technology have enabled a change of approach economist.com/interactive/as…
English
1
5
8
16K
Infoblox
Infoblox@Infoblox·
and 15 languages. What’s more, we have found that there is significant overlap with the infrastructure and business networks attributed to the DNS threat actors Vigorish Viper and Vault Viper, highlighting the continued evolution of the regional cyber threat landscape.
English
1
1
2
164
Infoblox
Infoblox@Infoblox·
Here are some examples: asakusubinitohas[.]com bmw320ikaka[.]co cpusx[.]com newoneazu[.]com ratmail[.]pro rato[.]page rato[.]to ratodemo[.]pro sesrecipt[.]com silk-gen[.]com sunostart[.]com viewyourstatementonline[.]com
English
0
0
1
54
Infoblox
Infoblox@Infoblox·
RATO infrastructure shows strong ties to Indonesia including Indonesian IP addresses in passive DNS and domains within the same Cloudflare account used for serving online gambling to Indonesian-speaking users. Collectively RATO and its customers operate a large number of domains.
English
1
0
1
101
Infoblox
Infoblox@Infoblox·
💬 Telegram plays an important role in many underground businesses. Threat actors commonly stand up channels to market and support malicious activities such as malware-as-a-service (MaaS) subscriptions. 🧵
Infoblox tweet mediaInfoblox tweet media
English
1
2
5
230
Infoblox
Infoblox@Infoblox·
(we observed some with suspicious Romanian LLC names). These recently-registered domains are mostly Cloudflare-hosted, spread across various TLDs, and consistently abuse FIFA branding. If it’s a suspicious domain in your inbox or feed, assume it’s not official.
English
1
1
0
117
Infoblox
Infoblox@Infoblox·
⚽Threat actors are warming up for the 2026 World Cup—and they’re targeting fans early. We’ve observed FIFA ticket phishing pages on domains such as fifa[.]bio and ww-fifa[.]com, distributed through malicious spam emails and Facebook ad campaigns. 🧵
Infoblox tweet mediaInfoblox tweet mediaInfoblox tweet media
English
1
1
1
187