Paul Melson

16.9K posts

Paul Melson banner
Paul Melson

Paul Melson

@pmelson

Author/Operator of @ScumBots. Blue Team by day, Blue Team by night. Opinions, typos, and bad grammar do not represent my employer. He/Him

✋👈 Katılım Şubat 2008
1.4K Takip Edilen14.3K Takipçiler
Sabitlenmiş Tweet
Paul Melson
Paul Melson@pmelson·
Rather than continue to bang my head against the increasing frequency of nonsense errors and timeouts coming from Twitter’s APIs, I’ve decided just to move ScumBots. You can now follow it here on infosec.exchange: @ScumBots" target="_blank" rel="nofollow noopener">infosec.exchange/@ScumBots
English
3
9
37
8.9K
Andrew Thompson
Andrew Thompson@ImposeCost·
I guess cargo pants are back in?
English
10
0
23
3.1K
Paul Melson retweetledi
SLEUTHCON
SLEUTHCON@SLEUTHCON·
Paul Melson joined us this year as our keynote speaker to talk about the history of crimeware and its evolution through the years. In his keynote he also gives some good advice to those who are in the field and creating their professional network. Check out what he had to say!
English
2
3
11
1.2K
Paul Melson retweetledi
TomU | I'm still here... til the end 🕊️🇨🇭
TomU | I'm still here... til the end 🕊️🇨🇭@c_APT_ure

#MalwareChallenge Looks like Base64 markers changed from <<BASE64_START>> / <<BASE64_END>> to 'BaseStart-(.*?)-BaseEnd' for b64-encoded payloads embedded in images 5879d31ba880a8bf0825ed666ce82913b53830be8ab8f20ea22702f4202ff789 #RemcosRAT

English
2
3
14
1.8K
ryanlrussell
ryanlrussell@ryanlrussell·
@pmelson @vxunderground @abuse_ch @mal_share Since I’m specifically trying to share the example, VT isn’t suitable. I did end up using GitHub, turns out they explicitly allow it. See my last couple tweets for an example of what I’m talking about if you’re curious.
English
1
0
1
57
ryanlrussell
ryanlrussell@ryanlrussell·
What do people do for hosting malware analysis work product, such as a deobfuscated sample? I DO see some on GitHub, but that seems like a bad long-term solution? Are the sample hosting sites cool with me posting a bundle of analysis work? @vxunderground @abuse_ch ?
English
3
0
2
2.2K
Paul Melson
Paul Melson@pmelson·
@0xtomflow follow back for DM? it’s about your testing on webhook[.]site this weekend
English
0
0
0
29
Andrew Thompson
Andrew Thompson@ImposeCost·
Man I know I need to get some higher socks to be hip, but how much longer until ankle socks and lower are back? Can't be that long...
English
5
0
15
2.1K
Andy Piazza
Andy Piazza@klrgrz·
Highlight of today was the multiple people that approached me at @SLEUTHCON to ask if I was the guy in @pmelson last slide. Absolutely YES, that’s my dumb face and I’m honored to be recognized in association with THE Known Hottie Paul Melson
Andy Piazza tweet media
English
1
3
29
1.4K
Paul Melson retweetledi
Tom
Tom@human_decoded·
@SLEUTHCON off to a great start. My lesson learned from @pmelson is: make friends, they probably know something you don’t, and the Intel space is all about not not knowing things #sharingIsScaring #CTI
English
0
3
8
634
Paul Melson retweetledi
Andrew Thompson
Andrew Thompson@ImposeCost·
We're kicked off at #SLEUTHCON with @pmelson discussing the importance of networking in cyber, not for packet routing or job hunting, but disruption opportunities by pooling our collective access. I agree. Collectively, we're actually more powerful than state actors in many ways.
English
3
9
52
3K
Paul Melson retweetledi
💻 Sherrod DeGrippo
💻 Sherrod DeGrippo@sherrod_im·
Get ready for this year's Sleuthcon by listening to the episode of THE Microsoft Threat Intelligence podcast all about ScumBots with Paul Melson! thecyberwire.com/podcasts/micro…
SLEUTHCON@SLEUTHCON

We are excited to announce our 2025 SLEUTHCON keynote speaker: @pmelson, VP of Cybersecurity at Capital One and author/operator of @ScumBots With over two decades of experience defending networks and disrupting adversaries, Paul brings unmatched insight into the economics of cybercrime. His talk, A Brief History of Crime[ware], traces the evolution of monetized malware and explores how we can stop attackers by targeting what they care about most: profit.  📍 June 6 | Arlington, VA + Virtual  🎟️ Early bird pricing ends soon  🗓️ CFP closes April 18  ⚠️ This event will sell out REGISTER TODAY: sleuthcon.com/registration

English
1
14
46
8.3K
Paul Melson retweetledi
SLEUTHCON
SLEUTHCON@SLEUTHCON·
We are excited to announce our 2025 SLEUTHCON keynote speaker: @pmelson, VP of Cybersecurity at Capital One and author/operator of @ScumBots With over two decades of experience defending networks and disrupting adversaries, Paul brings unmatched insight into the economics of cybercrime. His talk, A Brief History of Crime[ware], traces the evolution of monetized malware and explores how we can stop attackers by targeting what they care about most: profit.  📍 June 6 | Arlington, VA + Virtual  🎟️ Early bird pricing ends soon  🗓️ CFP closes April 18  ⚠️ This event will sell out REGISTER TODAY: sleuthcon.com/registration
SLEUTHCON tweet media
English
1
12
36
13.4K
Paul Melson
Paul Melson@pmelson·
@jamieantisocial There was a time 8-9yrs ago when this gap was closing, but with the rise of ransomware / extortion, persistence is of low importance to crimeware actors and scale is more important than targeting, so the gap has widened by a lot.
English
1
0
2
186
J⩜⃝mie Williams
J⩜⃝mie Williams@jamieantisocial·
when will cybercrime exceed nation-state threat actors regarding being "advanced" && "persistent"?
English
10
0
14
2.1K
Andy Dormire
Andy Dormire@AndyDormire·
@ImposeCost @sherrod_im Sherrod once publicly shamed me on X (via quote tweet) because I expressed how I felt about OpSec preventing us from fully discussing our jobs. Not the person I'd care to respect on their opinion about this topic.
English
3
1
3
2.1K
Nick Carr
Nick Carr@ItsReallyNick·
POV: what are you buying at these prices (in NJ?)
Nick Carr tweet media
English
20
0
13
11.6K
Paul Melson
Paul Melson@pmelson·
Today I am thankful for all of the folks working a shift and watching the wires to keep us safe. I see you and I appreciate you.
English
0
3
13
2K
Paul Melson retweetledi
Michael Schwartz
Michael Schwartz@schwartzonsec·
@censysio Censys has many open positions open right now across the company: sales, marketing, product, engineering, and research. Come join the team building the next generation of Internet scanning technology, the Internet Intelligence Platform. censys.com/careers/
English
1
9
10
2.9K