Nick Biasini

1.2K posts

Nick Biasini

Nick Biasini

@infosec_nick

Head of Outreach at Cisco Talos. These are my views not my employers. @[email protected]

Austin, TX Katılım Ocak 2015
1K Takip Edilen2.3K Takipçiler
Nick Biasini
Nick Biasini@infosec_nick·
One of, if not the biggest issue, with the mercenary spyware / PSOA space is the lack of sharing of actionable intelligence and IOCs. Until we fix it, its not going to get any better. We need to shine a light on how this technology works.
Jessica Lyons@JessicaHrdcstle

"There is almost zero data being shared across the industry on this particular threat, and that is a massive problem," @TalosSecurity @infosec_nick said. The #spyware business is booming despite government crackdowns theregister.com/2024/02/07/spy… via @theregister

English
1
2
3
542
Nick Biasini retweetledi
Cisco Talos Intelligence Group
Cisco Talos Intelligence Group@TalosSecurity·
Our 2023 Year in Review report is live now! Check out our never-before-seen data on attacker trends, the most popular malware of the past year, and breakdowns on specific state-sponsored actors cs.co/6017RyREP
Cisco Talos Intelligence Group tweet media
English
0
25
18
7.4K
Nick Biasini
Nick Biasini@infosec_nick·
Latest research from our team. Great work as always uncovering the network of dating apps that are seemingly related in addition to the overtly malicious apps we found. #AridViper
Cisco Talos Intelligence Group@TalosSecurity

We're releasing details of a threat actor called #AridViper targeting users in the #MiddleEast with #spyware. Although it is likely based out of Gaza, Talos has no evidence indicating or refuting this campaign is related in any way to the Israel-Hamas war. cs.co/6017uYU33

English
0
2
7
764
Nick Biasini retweetledi
Cisco Talos Intelligence Group
Cisco Talos Intelligence Group@TalosSecurity·
An actor we're calling "ShroudedSnooper" is actively targeting telecommunications companies in the Middle East using a previously undiscovered #malware family. More details on this threat and how users can stay protected cs.co/6015PCxv1
Cisco Talos Intelligence Group tweet media
English
0
14
16
4.8K
Nick Biasini retweetledi
Cisco Talos Intelligence Group
Cisco Talos Intelligence Group@TalosSecurity·
We just published new research on an adversary conducting several campaigns against government entities, military organizations and civilian users in #Ukraine and #Poland. These campaigns primarily start with #spam emails and malicious Office attachments cs.co/6013P3RD1
Cisco Talos Intelligence Group tweet media
English
0
8
10
7.2K
Nick Biasini
Nick Biasini@infosec_nick·
Latest from our team. Great research from @g0jirasan. Check out the follow up blog on additional malicious activity as well - blog.talosintelligence.com/undocumented-r…
Cisco Talos Intelligence Group@TalosSecurity

We recently saw threat actors exploiting a #Windows policy loophole that allows the signing and loading of cross-signed kernel-mode drivers with older signature timestamps. #Microsoft just released an advisory on this activity, but more on our blog here: cs.co/6011PzaVd

English
0
4
3
683
Nick Biasini
Nick Biasini@infosec_nick·
Latest blog I worked on with Talos Incident Response. Vendor and contractor account abuse is a pervasive form of supply chain attack that organizations need to account and prepare for, details and recommendations. 👇
Cisco Talos Intelligence Group@TalosSecurity

Adversaries are increasingly using compromised third-party accounts to infiltrate the software supply chain. We have more on this threat and the trends around vendor account compromise over on the Talos blog cs.co/6010Oa0Gg

English
0
0
0
265
Nick Biasini retweetledi
Cisco Talos Intelligence Group
Cisco Talos Intelligence Group@TalosSecurity·
This week's episode of Talos Takes covers the #Predator spyware and the rise of "mercenary" groups. This is a quick overview of why spyware is so dangerous and what we recently learned about the Predator tool specifically cs.co/6010OQXw2
Cisco Talos Intelligence Group tweet media
English
0
3
2
2K
Nick Biasini
Nick Biasini@infosec_nick·
I was out in the desert last week when this dropped. Great research from my team. A lot went into this and I'm super proud of the results. Mercenary spyware is a major problem, one we intend on covering more widely. One of the best technical analyses to date. Details 👇
Cisco Talos Intelligence Group@TalosSecurity

We have new details on a #spyware tool called #Predator that's actively being sold and used to unknowingly track targeted users. Here's the full technical breakdown of how this tool works and why the use of "mercenary" spyware is on the rise cs.co/6016OWk3A

English
0
1
2
479