Since the apparition of the #Interlock ransomware, the Sekoia #TDR team observed its operators evolving, improving their toolset (#LummaStealer and #BerserkStealer), and leveraging new techniques such as #ClickFix to deploy the ransomware payload.
blog.sekoia.io/interlock-ra...
16.04.2025 09:13 โ ๐ 2 ๐ 5 ๐ฌ 0 ๐ 1
Sr Technical Threat Researcher - Sekoia.io - CDI - Tรฉlรฉtravail total
Sekoia.io recrute un(e) Sr Technical Threat Researcher !
๐จTo strengthen the #investigation and #detection capabilities of the Sekoia.io Threat Detection & Research (TDR) team, we are looking for a Senior Technical Threat Researcher!
www.welcometothejungle.com/fr/companies...
#CTI #DetectionEngineering
29.01.2025 13:59 โ ๐ 5 ๐ 4 ๐ฌ 0 ๐ 0
Justice Department and FBI Conduct International Operation to Delete Malware Used by China-Backed Hackers
Suite PlugX: 4200 ordinateurs amรฉricains dรฉsinfectรฉs grรขce ร l'entreprise Sekoia et la justice franรงaise, annonce le FBI. www.justice.gov/usao-edpa/pr...
14.01.2025 16:21 โ ๐ 1 ๐ 1 ๐ฌ 1 ๐ 0
Smart move !
18.12.2024 19:43 โ ๐ 1 ๐ 0 ๐ฌ 0 ๐ 0
Unmasking the latest trends of the Financial Cyber Threat Landscape
This report aims at depicting recent trends in cyber threats impacting the financial sector worldwide. It focuses on principal tactics, techniques and procedures used by lucrative and state-sponsored ...
๐ฆ Our latest report provides insights on the cyber threats impacting the #financial sector in 2023. We analysed the trends in lucrative and state-sponsored ecosystems and outlined the most notable evolutions. For more details, check out our blog post: blog.sekoia.io/unmasking-th...
23.11.2023 12:10 โ ๐ 5 ๐ 3 ๐ฌ 1 ๐ 0
#DarkGate gained popularity among threat actors (e.g: #TA577, #DuckTail), our #RE analysis details the internals of the malware, how it implements technique to evade defenses: Union-API, token theft via UpdateProcThreadAttribute, APC injection.
blog.sekoia.io/darkgate-int...
20.11.2023 13:02 โ ๐ 5 ๐ 4 ๐ฌ 1 ๐ 0
World Watch CTI team from Orange Cyberdefense
https://www.orangecyberdefense.com/global/offering/managed-services/threat-and-risk-management/world-watch
Threat Research @ Recorded Future. Previously @ Security Research Labs. He/Him. ๐ณ๏ธโ๐
#InfoSec #Cybersecurity #threatintel and Politics. I try my best.
Also @deepthoughts10@twitter.com
Searchable
[bridged from https://infosec.exchange/@deepthoughts10 on the fediverse by https://fed.brid.gy/ ]
Monitor your external network, search the Internet of Things and perform empirical market research. You can also find us on https://mastodon.shodan.io
Threat Hunting - DFIR - Detection Engineering
๐ https://github.com/mthcht
๐ฆ https://x.com/mthcht
๐ฐ https://mthcht.medium.com
Journaliste pour la cellule enquรชtes de @telerama.bsky.social. Essayiste anxieux. Dernier livre : "Apocalypse Nerds" chez @divergences.bsky.social (19/09).
โ๏ธ Signal : tesq.37
https://linktr.ee/oliviertesquet
DFIR, Dungeon Master, mini painter, drummer, lover of many things... Except cats. Hate cats.
Threat researcher at Trend Micro mostly focused on APT
DFIR. Ex-Lead intelligence. Ex @ANSSI_FR. PhD in intl law. Mostly working on Chinese #APT but also on russian and cybercrime actors #ThreatIntel #Malware #DFIR https://linktr.ee/l_lgde
Founder @ RationalEdge
#ThreatIntel #ICS #DFIR; ''Learning iOS Forensics'' author;
#BSidesZH #PIVOTcon org.
@pivotcon.bsky.social
https://pstirparo.ch
https://rationaledge.io
Related interests/obsessions:
#ThreatHunting #CTI #YARA #CriticalThinking #Books
I fix accepted risks.
Incident Response & Purple Teaming @ CrowdStrike.
Previously DFIR @ANSSI_FR / @CERT_FR. Former @CertSG team leader.
The largest collection of malware source code, samples, and papers on the internet.
Password: infected
(unofficial, this is a bot! Maintained by @yjb.bsky.social, the bot can't handle retweets, video, and maybe a few other things)
Head of CERT & PSIRT
#infosec #DFIR #malware #pentest #legal #CTI #MISP #OpenCTI #TheHive opinions are my own
Cybercrime & Hacktivism @ Recorded Future | Insikt Group | Curated Intelligence | @aejleslie everywhere else.
Running ๐ http://defendpoint.ca | http://edr-telemetry.com | http://detectionstream.com | ๐ฌ๐ท๐จ๐ฆ
๐ต๐น ๐จ๐ญ #DFIR, #malware, #detectionengineering and #python! + ๐ต๐ผ๐คฟ๐
https://github.com/diogo-fernan
Working on finding bad software extensions. More at: https://secureannex.com
Breaker of software, responder of incidents, IANS Faculty, VP R&D Hunter Strategy.
Journaliste @Liberation.fr Enquรชtes
Cyber, surveillance, dรฉsinfo etc.
https://www.liberation.fr/auteur/amaelle-guiton/
Contact sรฉcurisรฉ : amaelle_g(at)protonmail.com