
Adam
2.5K posts

Adam đã retweet
Don't miss @tlansec's talk at 12:00 BST tomorrow, Oct 5, at #VB2023 in London! He will share @Volexity's research + observations of a North Korean #apt using unique, persistent #socialengineering techniques to target victims. More here: virusbulletin.com/conference/vb2…
#threatintel #dfir

English
Adam đã retweet
North Korea 🇰🇵 thinks it's easier to steal 0day from researchers than to find it themselves.
If you are doing security research or have privileged access you have to assume you could be targeted at some point by a nation state.
@
North Korean actors 🇰🇵 are targeting security researchers again including use of at least one 0-day. IOCs in the blog ⬇️ If you've been in contact, please reach out blog.google/threat-analysi…
English

Check if you've communicated with Paul091_! Outside of the 0-day, they also pushed their github project, GetSymbol - meant to help researchers download symbols. But it contains an update channel that could allow them to run arbitrary exes on machines of interest!

billy leonard@billyleonard
🚨 DPRK 🇰🇵 campaign against security researchers - new from @Google TAGs @maddiestone @_clem1 @digivector on new 0day ITW and potential infection through a tool aimed at helping the research community. as wu said protect ya neck kids 🦇 blog.google/threat-analysi…
English
Adam đã retweet
Adam đã retweet
@Volexity @Microsoft365 @Microsoft It turns out our investigation turned up nothing because there was nothing for us to find. The incident was invisible to us with the data at our disposal and this was due to the customer's M365 license level: E3. This is likely the most common license level for most orgs. 3/7
English
Adam đã retweet
3 vacantes abiertas en Google Malaga
Software Engineer, Backend, VirusTotal, Google Cloud
google.com/about/careers/…
Solutions Consultant, VirusTotal
google.com/about/careers/…
Security Engineer, VirusTotal
google.com/about/careers/…

English
Adam đã retweet
Snap is hiring security engineers for D&R and threat intel roles in Switzerland (we have offices in Zurich and Yverdon-les-Bains): wd1.myworkdaysite.com/recruiting/sna… & wd1.myworkdaysite.com/recruiting/sna…
Retweets for visibility are much appreciated!
English
Adam đã retweet
The legend of @moranned coming to present research at BlueHat Israel 🎉
@
It's on! BlueHat IL Nights is returning on June 22nd. Join us for the ultimate security bash with renowned Microsoft researcher Ned Moran, as he unveils the untold secrets of Iranian cyber operators like never before. Register now! microsoftrnd.co.il/bluehatil/Blue…
English
Adam đã retweet

We are hurtling towards our finale. Join us to meet the character who helped us reach an assessment of Xiaoruizhi's APT affiliation. intrusiontruth.wordpress.com/2023/05/16/int…
English
Adam đã retweet

Introducing our main character of this investigation... Wuhan Xiaoruizhi Science and Technology Company intrusiontruth.wordpress.com/2023/05/13/all…
English
Adam đã retweet
Google Málaga += 2 vacantes
Software Engineer, Infrastructure Integrator, VirusTotal, Google Cloud
careers.google.com/jobs/results/1…
Security Engineer, VirusTotal
careers.google.com/jobs/results/1…

Català
Adam đã retweet
Adam đã retweet
So finally feel like I can talk about this. Santa as in github.com/google/santa now supports file access authorization. This means that we can authorize if a binary should be able to open a file/path and leverage code signing for targeting/filtering.
English
Adam đã retweet
“Litigation was filed against several of CryptBot’s major distributors who we believe are based in Pakistan and operate a worldwide criminal enterprise.”
@pmbureau and the team taking on cybercrime on a number of fronts.
blog.google/technology/saf…
English
Adam đã retweet
@vtxproject is looking for non-profit orgs with an intelligence use case that would benefit from having #synapse. We plan to select a few with compelling missions and donate #synapse enterprise licenses/support.
Reply, DM, or join slack v.vtx.lk/slack if you have ideas!
English
Adam đã retweet
Adam đã retweet
The likely DPRK 3CX incident was part of a DOUBLE supply chain incident (access from one supply chain compromise was used to create another). Leapfrogging this way allows the actor to create a vicious cycle that expands their footholds exponentially. mandiant.com/resources/blog…
English
Adam đã retweet

🆕 Updates from @Google TAG on recent APT, IO and Crime from 🇷🇺🇧🇾 actors against 🇺🇦 and regionally. 🎣 and more from 🇷🇺GRU, 👻🖊️, 🇨🇺💰 looking like APT and IO from the once adored 👨🍳.
1/🧵
blog.google/threat-analysi…
English
Adam đã retweet
7 Apr: iOS/Mac 0day in the wild patched
support.apple.com/en-us/HT213720
14 Apr: Chrome 0day in the wild patched
chromereleases.googleblog.com/2023/04/stable…
Both found by @_clem1 (TAG). Two different surveillance vendors.
Great finds! Great fast patching! 👍
Wish these weren't so common though. 😔
English

