vaber

95 posts

vaber

vaber

@vaber_b

Threat researcher APT Hunter

Katılım Mayıs 2015
294 Takip Edilen289 Takipçiler
vaber retweetledi
Georgy Kucherin
Georgy Kucherin@kucher1n·
Together with @bzvr_, @2igosha and Anton Kargin, we identified that the DAEMON Tools software has been compromised in a complex supply chain attack since April 8. We see thousands of infections across 100+ countries. If you use DAEMON Tools, run a malware scan immediately! [1/7]
Georgy Kucherin tweet media
English
24
359
1.1K
177.6K
vaber retweetledi
Boris Larin
Boris Larin@oct0xor·
Heartbroken to hear about the passing of @Skvern0. He was one of the best threat hunters in the industry - even APTs were afraid of him. I’m grateful for the time we worked together and for everything I learned from him. Rest in peace.
Boris Larin tweet media
English
27
49
561
78.9K
vaber retweetledi
Georgy Kucherin
Georgy Kucherin@kucher1n·
It turned out there are many more payloads used in the Notepad++ attack! To stay undetected, its masterminds were COMPLETELY changing execution chains about every month. Here are more IPs used in the attack: 45.76.155[.]202 45.32.144[.]255 Read below for many other IoCs! [1/8]
Georgy Kucherin tweet media
English
19
233
1.1K
107.2K
vaber retweetledi
Costin Raiu
Costin Raiu@craiu·
APT41 relying on unusual method for persistence @kucher1n speech at #defcamp
Costin Raiu tweet media
English
3
23
199
55.8K
vaber retweetledi
TheSAS2026
TheSAS2026@TheSAScon·
🚀 If you plan to join @kaspersky #CTF and want advice from a seasoned player, check out the webinar recording from yesterday! @bzvr_, one of the CTF organizers, shares the basics and practical examples to help you win in Kaspersky{CTF}. 🌴 Winners of the five regional competitions will receive a complimentary #TheSAS2025 invitation to the CTF finals! The webinar recording is available without registration: lp.kaspersky.com/ctf/
TheSAS2026 tweet media
English
0
2
11
3.1K
vaber retweetledi
TheSAS2026
TheSAS2026@TheSAScon·
#CFP extended — your last chance to rock the floor at #TheSAS2025! Just 10 days left to propose your research for the BIG stage and share your findings with peers from world-class cybersecurity organizations. If you research: ▪️ Transportation and smart city vulnerabilities ▪️ New tactics and tricks from notorious #APTs ▪️ Ransomware ▪️ Best incident response practices ▪️ Supply chain and #OSS security ▪️ OT and critical infrastructure security ▪️ Vulnerabilities and fixes then our program committee is waiting for you! ⚠️ Submit your topic by August 10th ⏩ kas.pr/6rx9
English
0
12
18
8.4K
vaber retweetledi
Leonid Bezvershenko
Leonid Bezvershenko@bzvr_·
🚨 Less than 10 days until the SAS CTF 2025 Quals kick off! 🚨 Register your team now and claim the spot in the top 8 to compete for a share of the $18,000 prize pot at the on-site finals at the SAS conference in Thailand. Register: ctf.thesascon.com
Leonid Bezvershenko tweet media
English
0
14
25
7.2K
vaber retweetledi
Leonid Bezvershenko
Leonid Bezvershenko@bzvr_·
⚡ We discovered a malicious campaign distributing a #SilentCryptoMiner disguised as a restriction bypass tool. Attackers, who pose as tool developers, blackmail YouTubers creating videos about bypassing blocks. Threatened with copyright strikes, content creators were being pressured to share a malicious link to an infected archive. #Malware #Miner #YouTube 🧵 Check more details below…
Leonid Bezvershenko tweet media
English
3
27
49
12.1K
vaber retweetledi
Georgy Kucherin
Georgy Kucherin@kucher1n·
Malware developers don't necessarily have to invent something innovative to earn lots of money. Check out how this actor managed to steal almost $485,000 with the help of a dozen GitHub accounts, AI, and a bit of luck: securelist.com/gitvenom-campa…
English
1
19
88
7.6K
vaber retweetledi
Saurabh Sharma
Saurabh Sharma@SaurabhSha15·
EAGERBEE backdoor has been used in targeted attacks in APAC region. We (myself and @vaber_b) released a blog post about its recent activity in Middle East region, where it was being deployed at ISP and governmental entities in Middle East. securelist.com/eagerbee-backd…
English
1
9
27
2.6K
vaber
vaber@vaber_b·
@k_sec Next time should be bench press!)
English
0
0
1
41
Kurt Baumgartner
Kurt Baumgartner@k_sec·
no powerlifter here. But spent a morning session with Zack McChesney and picked up 335 pounds easy with decent form. Next time we'll put more on the bar!
English
3
0
14
2.3K
vaber retweetledi
hypen
hypen@hypen1117·
My first #Lazarus report at #Kaspersky is out ! The newly discovered #CookiePlus is a plugin-based malware that has the ability to download both DLL and shellcode. It was a great experience working with great coworkers and learning a lot. securelist.com/lazarus-new-ma…
English
0
70
181
12.1K
vaber retweetledi
Eugene Kaspersky
Eugene Kaspersky@e_kaspersky·
#Lazarus APT evolves its infection chain with old and new malware, targets nuclear-related organization 👉 kas.pr/x83u
Eugene Kaspersky tweet mediaEugene Kaspersky tweet mediaEugene Kaspersky tweet media
English
3
14
28
5.6K
vaber retweetledi
Leonid Bezvershenko
Leonid Bezvershenko@bzvr_·
🚨 We discovered two malicious Python packages in #PyPI repository that remained undetected for over a year. These packages mimicked tools for working with popular AI language models (#ChatGPT and #Claude), silently exfiltrating data and compromising developer environments. Full details and IOCs in the thread 👇
Leonid Bezvershenko tweet media
English
15
270
959
164.5K
Ivan Kwiatkowski
Ivan Kwiatkowski@JusticeRage·
Some personal news: I will be joining @Meta's security team (focusing on WhatsApp) starting next week. This is a big life change, I'm also moving to London permanently. I took this opportunity to reflect on the state of threat intel: blog.kwiatkowski.fr/threat-intel-t… LMK if it resonates!
English
23
44
355
23.1K