Przemek Skowron

1.6K posts

Przemek Skowron banner
Przemek Skowron

Przemek Skowron

@evilrez

Move && Eat && Hunt && Repeat. My tweets are my own.

Poland Sumali Mayıs 2009
2.1K Sinusundan935 Mga Tagasunod
Przemek Skowron nag-retweet
· ᴀᴅᴀᴍ ʟᴀɴɢᴇ ·
Wrzuciliśmy taki raporcik :) polecam lekturę bo chyba czegoś takiego jeszcze w .pl nie opublikowano :)
RIFFSEC@getriffsec

💎 RS raport: Fałszywe inwestycje Fałszywe inwestycje to nie pojedynczy scam i przypadkowy telefon. To pełny, wieloetapowy model działania, który zaczyna się od reklamy, a kończy na call center, zdalnym dostępie do urządzenia i próbą ponownego oszukania tej samej ofiary. Właśnie opublikowaliśmy raport pokazujący ten schemat od środka: ➡️ Reklama / clickbait ➡️ Zbieranie leadów (formularze, fake landing pages) ➡️ Call center / „broker” ➡️ Zdalny dostęp do urządzenia (AnyDesk, TeamViewer, etc.) ➡️ Retargeting ofiary (ponowne próby wyłudzenia) 👉 Po polsku, do pobrania za darmo. 👉 riffsec.com/fake-invest202… W środku jest 47 stron materiału CTI opartego na danych z kanałów przestępczych, dark webu i zamkniętych grup Telegram. Są screeny, tłumaczenia, przykłady deepfake, analiza sprzedaży leadów, przestępczych CRMów, call center i nadużyć legalnych narzędzi takich jak TeamViewer, AnyDesk czy screen share w WhatsApp. Raport wyszedł spod ręki @Ags76042421 oraz @AdamLangePL. W środku komentarze: Agnieszki Gryszczyńskiej, @TomaszJaroszek, @adamhaertle, @mjbroniarz, oraz @KrzysztofZelin1 To nie jest raport o samych reklamach. To raport o infrastrukturze, procesach i skali. Czyli o tym, jak działają „korporacje leadowe”, jak wygląda rynek danych ofiar i jak przestępcy skalują ten model w różnych krajach Europy. 👉 Po polsku, do pobrania za darmo. 👉 riffsec.com/fake-invest202… Źródła: RIFFSEC

Polski
0
1
6
1.8K
Przemek Skowron
Przemek Skowron@evilrez·
@SquiblydooBlog Hi there! I would like to say thank you for your amazing and rich in details threads on using Yara for various purposes! Are you considering publishing the entire content in one place later? - not just Yara rules but context, workflow around building them. Thanks!
English
1
0
0
68
Squiblydoo
Squiblydoo@SquiblydooBlog·
#100DaysofYara - day 10 There are a few lines of thinking around automatic YARA generation. I'm exploring these as part of this challenge. Today's we'll look at MCRIT. MCRIT asks what do we learn by comparing samples? Can we find functions unique to the family? rule at end 1/5
Squiblydoo tweet media
English
3
6
14
1K
Tony/Humpty
Tony/Humpty@cyb3rjerry·
I GOT IN TOUCH WITH SOMEONE AT @virustotal GANG. Lessons learned: do NOT use the contact us form on VT as it seems ro go straight to /dev/null, go through GTI instead! Thank you @evilrez and thank you Dingus!
English
1
0
4
816
Przemek Skowron
Przemek Skowron@evilrez·
@craiu 💯! What do you think on sharing more information about the overlap nature? - like the overlap is based on TTPs, infrastructure used for conducting intrusions, specific patterns of activity or in malware strains observed in particular campaigns.
English
1
0
4
436
Costin Raiu
Costin Raiu@craiu·
Every public CTI blog should start like this - by linking it to other companies’ or researchers work on the same threat actor / cluster.
Costin Raiu tweet media
English
5
21
119
13.7K
Alexandre Borges
Alexandre Borges@ale_sp_brazil·
@kienbigmummy Since I went back to working on my true passion, my dear friend, my life has changed, and that is truly priceless, because this life is too valuable to do anything else.
English
1
0
4
438
Alexandre Borges
Alexandre Borges@ale_sp_brazil·
I took this photo (MAY 24, 2025) a few minutes ago. After some difficult and challenging years, I have grown my hair back and I am ready to return to speaking at conferences in the near future. Every day is worth it, and having time is being lucky. #personal
Alexandre Borges tweet media
English
8
0
54
4.4K
Przemek Skowron
Przemek Skowron@evilrez·
@dnak0v Sometimes silence is better than saying anything - I’m not saying it to you Daniel.
English
0
0
1
41
Rustam Mirkasymov
Rustam Mirkasymov@Ta1ien·
Cybersecurity is full of exceptional people - and true friends. Don’t miss them while drowning in alerts.
Rustam Mirkasymov tweet media
English
1
0
2
214
Przemek Skowron
Przemek Skowron@evilrez·
Who else is joining? :)
/ˈziːf-kɒn/@x33fcon

🔒 Blue Teamers, unlock the power of #GenAI for #ThreatIntel! Learn from the best - @fr0gger_- at "Generative AI for Threat Intelligence" , #x33fcon 2025. This 2-day hands-on course builds real-world skills. Automate your TI workflows, master advanced prompt engineering, and build your own AI-powered CTI system with Python 🐍 Key Wins🏆: Unlock GenAI’s value with practical CTI use cases, wield techniques like RAG & multi-agent systems, and craft a custom TI system to boost your edge. Spots are limited! 👉 Learn more: x33fcon.com/#!t/GenAIforTI… 👉 Register: #Training_Registration" target="_blank" rel="nofollow noopener">x33fcon.com/#!training.md#… #cybersec #BlueTeam #training

English
0
1
6
728
Przemek Skowron
Przemek Skowron@evilrez·
@mrexodia @dnak0v I respect your opinion and thanks for sharing this. We have different expectations and needs :) that’s totally fine
GIF
English
0
0
2
75
Przemek Skowron
Przemek Skowron@evilrez·
@mrexodia @dnak0v Yes, it’s not for everybody, however makes people happy without extra costs or requirements for having graphic view and work on relatively exotic architectures as well.
English
1
0
0
71
Przemek Skowron
Przemek Skowron@evilrez·
@mrexodia @dnak0v Hi Duncan! I’m sorry guys for interrupting you. Could you please share your thoughts regarding the UX of r2? - I’m curious what is not good or good enough from your standpoint :) I know, this is subjective but I’m interested in what do you mean by that. Thanks!
English
1
0
1
165
Duncan Ogilvie 🍍
Duncan Ogilvie 🍍@mrexodia·
@dnak0v Been following r2 for ~10 years, so I’m well aware of what it can do 🙂 I was the person who ported Cutter to Windows, so definitely not making statements from a position of ignorance The UX of r2 is just not good in my opinion 🤷‍♂️ Doesn’t mean I don’t want it to succeed though!
English
1
0
7
196
Przemek Skowron
Przemek Skowron@evilrez·
@Glacius_ Furthermore, a clustering formula would be appreciated as well - to understand how you connect the dots 😎
English
1
0
1
55
The Brofessor
The Brofessor@Glacius_·
Since it's a new year, it's always good to remind people to share their confidence level, while attributing an attack. You'll save a lot of time for others 😁
English
1
0
3
346
Przemek Skowron
Przemek Skowron@evilrez·
@c_APT_ure Use a name that resonates with you personally. It should align with your goals rather than be a one-size-fits-all solution. Consider adding a transparent explanation of how you connect the dots, allowing others to assess how these activities relate to what they are tracking. BOOM
GIF
English
0
0
1
40
Przemek Skowron nag-retweet
Intel 471
Intel 471@Intel471Inc·
Tomorrow: Out of the Woods LIVE (Dec. 5, 12–1:30 PM ET). Explore how to achieve impactful results in threat hunting. Join the discussion on tools, strategies, and skills—or just listen in. Sign up here: hubs.la/Q02-dHl10
English
0
4
2
621
Przemek Skowron
Przemek Skowron@evilrez·
@jackcr All the best Jack! You are strong, kind and from the bottom of my heart I wish you happy thanksgiving! Thank you.
English
0
0
1
80
Jack Crook
Jack Crook@jackcr·
4 months ago I had my second heart attack. Today I’m thankful for everyday that I’m still upright. Here’s to many many more. Happy thanksgiving everyone.
English
3
0
21
1.1K