Stef Rand

801 posts

Stef Rand banner
Stef Rand

Stef Rand

@techieStef

Senior Intelligence Analyst @RedCanary! Former DFIR @Mandiant, former @NetworkDefense intern. Psychology nerd. When I am not computering, I go outside and play!

Atlanta, GA Katılım Ağustos 2018
437 Takip Edilen1.8K Takipçiler
Sabitlenmiş Tweet
Stef Rand
Stef Rand@techieStef·
Super excited to introduce Tangerine Turkey! Tangerine Turkey is @redcanary's name for a VBS worm that is delivered via an infected USB and uses a printui DLL hijack to deliver a cryptomining payload. This was a fascinating rabbit hole to go down! redcanary.com/blog/threat-in…
English
0
9
25
2.8K
Stef Rand retweetledi
Red Canary, a Zscaler company
📈 After ranking first for the whole year in our newly released Threat Detection Report, SocGholish takes the number one spot in our 10 top threat list for the month as well. Learn more about fake browser updates and worms in this month's edition of Intelligence Insights. redcanary.com/blog/threat-in…
English
0
2
6
800
Stef Rand retweetledi
Red Canary, a Zscaler company
📣 The 2025 Threat Detection Report is here! Dive into our analysis of 93,000 threats our customers' security controls missed, with actionable guidance on every page. Read the ungated report here: redcanary.com/threat-detecti…
English
0
10
24
1.7K
Stef Rand retweetledi
Red Canary, a Zscaler company
🆕 Two emerging threats make their debuts in our top 10 list: Infrared Ibis and Saffron Starling Get detection opportunities and more in this month's edition of Intelligence Insights. redcanary.com/blog/threat-in…
English
0
11
38
2.6K
Stef Rand
Stef Rand@techieStef·
Exciting update to our blog! As part of our ongoing research we identified some public Github repos being leveraged that, I'm happy to say, are no longer active! More details--plus some IOCs for still-active sites--in the update.
Red Canary, a Zscaler company@redcanary

🗞️ Just in, from Red Canary Intel: After discovering that Tangerine Turkey’s operators pull down miner configuration files from remote resources, we reported some of their public GitHub repos, which have now been taken down. Read our updated blog for IOCs and more. redcanary.com/blog/threat-in…

English
0
0
2
221
Stef Rand retweetledi
Red Canary, a Zscaler company
HijackLoader—a newcomer to our monthly top 10 list—is fond of renaming executables, which presents a detection opportunity. Learn more in this month's edition of Intelligence Insights. redcanary.com/blog/threat-in…
English
1
8
13
1.3K
Stef Rand retweetledi
Red Canary, a Zscaler company
ChromeLoader and SocGholish remained our top threats in September, but a new technique stood out, tricking users into copying a PowerShell script, pasting it into Windows Run, and executing malicious code that leads to LummaC2: redcanary.com/blog/threat-in…
English
0
6
10
981
Stef Rand retweetledi
Red Canary, a Zscaler company
This month's newcomers: 🏵️ Amber Albatross, which starts with a potentially unwanted program and ultimately leads to a pyInstaller executable with stealer capabilities 💸 dllFake, a malware family that primarily targets browsers and crypto wallets redcanary.com/blog/threat-in…
English
0
2
6
900
DepressedBergman
DepressedBergman@DannyDrinksWine·
What's the best "Technicolor" movie you've ever seen?
English
197
494
5.9K
768.7K
Stef Rand
Stef Rand@techieStef·
@chrissanders88 😆 Thanks for the shout out! What can I say, malware jerks getting up to their jerky shenanigans makes me grumpy
English
0
0
2
156
Chris Sanders 🔎 🧠
Chris Sanders 🔎 🧠@chrissanders88·
Investigation Scenario 🔎 You’ve discovered regsvr32.exe running from the C:\Users\Username\Appdata\Roaming directory on a Windows system. What do you look for to investigate whether an incident occurred? #InvestigationPath #DFIR #SOC
English
15
26
164
52.3K
Stef Rand retweetledi
Red Canary, a Zscaler company
Keeping up with threats and trends can feel like navigating a labyrinth in the dark. @techieStef & @ForensicITGuy explore topics from our 2024 Threat Detection Report, including initial access tradecraft, cloud abuse, identity attacks, and more. 🎬 🍿 youtu.be/4HTd6boLPDc
YouTube video
YouTube
English
0
8
17
2.1K
Stef Rand
Stef Rand@techieStef·
I do not have words for how much this delights me. These loud little birds are one of my favorite things in the world. Look ye upon this glorious wrendering that captures their noisy bossy chaos. Absolutely wonderful, @thepacketrat
English
0
0
5
517
Stef Rand
Stef Rand@techieStef·
TDR Day 🥳🎉 also means it’s Threat Sounds release day!!! Vol. 4 has dropped and it’s epic, y’all! 🔥 redcanary.com/threat-sounds/
English
0
0
5
247