Daniel's Avatar

Daniel

@dansomware.bsky.social

threat research @ proofpoint

204 Followers  |  446 Following  |  34 Posts  |  Joined: 15.11.2024  |  2.0026

Latest posts by dansomware.bsky.social on Bluesky

RIP Nate Dogg

10.01.2025 03:17 โ€” ๐Ÿ‘ 1    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

Hey, that garbage game let Lamar drop a 30-burger for me in my fantasy championship. So everyone's spoiled Christmas viewing was worth it.

26.12.2024 18:55 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

Pittsburgh is the New York city of Allegheny county ... so in a way, when I watch the Steelers it's like I'm supporting the Knicks.

26.12.2024 18:47 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Preview
Hackers, Heists, and Heroes: The Evolving Ransomware Game

New episode of DISCARDED, and it's a banger with @ransomwaresommelier.com! We make jokes, talk about comic books and ransomware, and learn the best wine to pair with Op Endgame!
Apple: podcasts.apple.com/us/podcast/d...
Spotify: open.spotify.com/episode/645S...
Web: www.spreaker.com/episode/hack...

18.12.2024 15:56 โ€” ๐Ÿ‘ 21    ๐Ÿ” 3    ๐Ÿ’ฌ 2    ๐Ÿ“Œ 1

People find hope in all kinds of places. Herschel Walker is going to be named ambassador to the Bahamas in place of being in charge of US missile defense.

18.12.2024 04:06 โ€” ๐Ÿ‘ 2    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Preview
Hidden in Plain Sight: TA397โ€™s New Attack Chain Delivers Espionage RATs | Proofpoint US Key findingsย  Proofpoint observed advanced persistent threat (APT) TA397 targeting a Turkish defense sector organization with a lure about public infrastructure projects in Madagascar.ย ย  The attack...

Dropping some new research on TA397/Bitter ๐Ÿšจ

Hidden in Plain Sight | TA397โ€™s New Attack Chain Delivers Espionage RATs

Report:
www.proofpoint.com/us/blog/thre...

17.12.2024 12:10 โ€” ๐Ÿ‘ 16    ๐Ÿ” 13    ๐Ÿ’ฌ 2    ๐Ÿ“Œ 1

I think you misspelled the SW Holiday Special.

18.12.2024 03:22 โ€” ๐Ÿ‘ 1    ๐Ÿ” 0    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0

Aiuranian

17.12.2024 05:46 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

Hope you're enjoying your *checks notes* romp through the jungle that is incredibly dangerous but also filled with wacky hijinx.

14.12.2024 03:07 โ€” ๐Ÿ‘ 2    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

In December 11 and 12, 2024, a spearphishing campaign targeted at least 20 Autonomous System (AS) owners, predominantly Internet Service Providers (ISPs), and purported to come from the Network Operations Center (NOC) of a prominent European ISP.

๐Ÿงตโคต๏ธ

12.12.2024 21:18 โ€” ๐Ÿ‘ 17    ๐Ÿ” 11    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 5

We can commission our German speakers to create a single word that embodies the concept.

12.12.2024 05:11 โ€” ๐Ÿ‘ 2    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

I was mostly referring to PA as a whole (because assassins and Altoona), Philly has awesome bread. It is a challenge to get Philly quality bread outside of greater Philly area. Pizza is still a mess statewide.

09.12.2024 20:43 โ€” ๐Ÿ‘ 1    ๐Ÿ” 0    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0

Merely saying that with the proximity to NY it shouldn't be so hard to get quality bread, even if we don't have the classic NYC tap water. This is not a complaint about the amount of cheese involved with said bread.

09.12.2024 19:04 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0

But also, fuck the Yankees and Knicks. And, uh, the Mets? I guess?

09.12.2024 19:02 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0

And STFU Philly, it's ok to be like NY when they obviously have a superior (pizza) culture.

09.12.2024 18:59 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0

I will confirm that PA has no idea wtf it's doing with pizza. "Pile enough cheese and toppings on it that it slides off on the first bite" is barely a "style". Similar problem with bagels/bread, you REALLY have to hunt for the good spots.

09.12.2024 18:58 โ€” ๐Ÿ‘ 1    ๐Ÿ” 0    ๐Ÿ’ฌ 2    ๐Ÿ“Œ 0

Catch @greg-l.bsky.social and I talking about Mach-O binary similarity methods, YARA-X, and all the cool APT malware we pulled apart at #OBTS v7 today at 11:50am HST ๐ŸŒบ

06.12.2024 20:43 โ€” ๐Ÿ‘ 7    ๐Ÿ” 5    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0

Sign of the apocalypse

06.12.2024 05:22 โ€” ๐Ÿ‘ 1    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

bakulamirror.gif

05.12.2024 18:42 โ€” ๐Ÿ‘ 1    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

Trying to paint it as simple or senseless is your cognitive dissonance showing. It happened for a reason and that reason must be acknowledged. Public response is what it is for a reason too, this is obviously a unique case and for whatever personal reason you're running from that.

05.12.2024 18:26 โ€” ๐Ÿ‘ 1    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

Those things aren't mutually exclusive

05.12.2024 18:00 โ€” ๐Ÿ‘ 1    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

I can't deny it

04.12.2024 17:49 โ€” ๐Ÿ‘ 1    ๐Ÿ” 0    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0
DISCARDED | Proofpoint | Proofpoint US

New episode of DISCARDED where we sit down with the ๐Ÿ Mark Kelly, our lead China analyst, to talk all things China APT! Tune in wherever you get your podcasts. ๐Ÿ”ฎ

Web: www.proofpoint.com/us/podcasts/...

Apple: podcasts.apple.com/us/podcast/d...

Spotify: open.spotify.com/episode/2AtJ...

04.12.2024 00:38 โ€” ๐Ÿ‘ 24    ๐Ÿ” 10    ๐Ÿ’ฌ 2    ๐Ÿ“Œ 0

Completely unanimous vote by the legislature to oppose martial law? Must be the deep state.

03.12.2024 22:45 โ€” ๐Ÿ‘ 1    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

Plus you get a stat upgrade!

03.12.2024 03:58 โ€” ๐Ÿ‘ 2    ๐Ÿ” 0    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0

Bait used to be believable

03.12.2024 00:33 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

Officially naming my next startup Gewgul

02.12.2024 04:16 โ€” ๐Ÿ‘ 5    ๐Ÿ” 0    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0

Recently finished The Penguin, guess I know what I'm watching next.

02.12.2024 04:01 โ€” ๐Ÿ‘ 2    ๐Ÿ” 0    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0
Post image

"The flow uses a documented execution hijack of IE4uinit. By supplying a โ€œside-loadedโ€ .inf file to IE4uinit, it can be used to load and execute COM scriptlets..."

๐ŸŒŸNew report out Monday, December 2nd by
@_pete_0, @svch0st and guest contributor @k3dg3 from
@proofpoint!

01.12.2024 14:44 โ€” ๐Ÿ‘ 5    ๐Ÿ” 4    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

Would have been super cool if something had been done about them in the last four years. Appreciate the historical documentation, though. Future generations can learn from our mistakes.

01.12.2024 17:40 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

@dansomware is following 20 prominent accounts