Adam

2.5K posts

Adam

Adam

@digivector

Analyst @ Google TAG

USA 加入时间 Kasım 2011
277 关注832 粉丝
Adam 已转推
Shane Huntley
Shane Huntley@ShaneHuntley·
North Korea 🇰🇵 thinks it's easier to steal 0day from researchers than to find it themselves. If you are doing security research or have privileged access you have to assume you could be targeted at some point by a nation state.
Maddie Stone@maddiestone

North Korean actors 🇰🇵 are targeting security researchers again including use of at least one 0-day. IOCs in the blog ⬇️ If you've been in contact, please reach out blog.google/threat-analysi…

English
0
21
55
8.4K
Adam
Adam@digivector·
Check if you've communicated with Paul091_! Outside of the 0-day, they also pushed their github project, GetSymbol - meant to help researchers download symbols. But it contains an update channel that could allow them to run arbitrary exes on machines of interest!
Adam tweet media
billy leonard@billyleonard

🚨 DPRK 🇰🇵 campaign against security researchers - new from @Google TAGs @maddiestone @_clem1 @digivector on new 0day ITW and potential infection through a tool aimed at helping the research community. as wu said protect ya neck kids 🦇 blog.google/threat-analysi…

English
0
22
41
14.4K
Adam 已转推
Ilya · イリア
Ilya · イリア@ilyamiskov·
This is peak UI design.
Ilya · イリア tweet media
English
850
7.4K
56.7K
3.6M
Adam 已转推
Steven Adair
Steven Adair@stevenadair·
@Volexity @Microsoft365 @Microsoft It turns out our investigation turned up nothing because there was nothing for us to find. The incident was invisible to us with the data at our disposal and this was due to the customer's M365 license level: E3. This is likely the most common license level for most orgs. 3/7
English
2
15
52
17.9K
French
French@notareverser·
Fair warning to all friends old and new I'm basically blind at a distance now so if you see me in the next few days come say hi Cause I certainly didn't see you ❤️
English
1
0
5
329
Adam 已转推
Brian Bartholomew
Brian Bartholomew@Mao_Ware·
Officially on the job market today. Anyone looking for an old TI guy with a "smidge" of years under his belt, let me know. Happy to have a chat.
English
5
47
90
43.2K
Adam 已转推
Pete Markowsky
Pete Markowsky@PeteMarkowsky·
So finally feel like I can talk about this. Santa as in github.com/google/santa now supports file access authorization. This means that we can authorize if a binary should be able to open a file/path and leverage code signing for targeting/filtering.
English
8
90
311
71.3K
Adam 已转推
Shane Huntley
Shane Huntley@ShaneHuntley·
“Litigation was filed against several of CryptBot’s major distributors who we believe are based in Pakistan and operate a worldwide criminal enterprise.” @pmbureau and the team taking on cybercrime on a number of fronts. blog.google/technology/saf…
English
0
9
34
5.2K
Adam 已转推
visi stark
visi stark@invisig0th·
@vtxproject is looking for non-profit orgs with an intelligence use case that would benefit from having #synapse. We plan to select a few with compelling missions and donate #synapse enterprise licenses/support. Reply, DM, or join slack v.vtx.lk/slack if you have ideas!
English
7
20
34
10.1K
Adam 已转推
billy leonard
billy leonard@billyleonard·
In a previous life, Alex found more APT campaigns in a day than most vendors did in a year. If you want to increase positive coverage of your flashy new widget, no better person to help you do it!
English
0
5
22
5.3K
Adam 已转推
John Hultquist
John Hultquist@JohnHultquist·
The likely DPRK 3CX incident was part of a DOUBLE supply chain incident (access from one supply chain compromise was used to create another). Leapfrogging this way allows the actor to create a vicious cycle that expands their footholds exponentially. mandiant.com/resources/blog…
English
4
59
114
43K
Adam 已转推
billy leonard
billy leonard@billyleonard·
🆕 Updates from @Google TAG on recent APT, IO and Crime from 🇷🇺🇧🇾 actors against 🇺🇦 and regionally. 🎣 and more from 🇷🇺GRU, 👻🖊️, 🇨🇺💰 looking like APT and IO from the once adored 👨‍🍳. 1/🧵 blog.google/threat-analysi…
English
2
60
112
31.4K