Itβs that time again, apparently.
28.06.2025 16:52 β π 1 π 2 π¬ 0 π 0
Paul Melson's Brief History of Crime[ware] was a lovely (?!) trip down memory lane. I'm old too, @pmelson.bsky.social
#SLEUTHCON #traumamemories
06.06.2025 13:37 β π 6 π 1 π¬ 0 π 0
a man says i did this to myself in a blue shirt
ALT: a man says i did this to myself in a blue shirt
This was the predictable outcome of this thread. I should have seen it coming.
04.05.2025 19:18 β π 0 π 0 π¬ 0 π 0
It is my position that Chatham House rules and TLP should extend to any trolling that takes place in those channels and venues.
04.05.2025 15:35 β π 3 π 1 π¬ 1 π 0
New keynote drop: Paul Melson is taking the SLEUTHCON stage to dissect the rise of crime[ware]βhow it started, how it scaled, and how we shut it down.
23+ yrs defending networks. ScumBots founder. Now VP @ Capital One.
π€ June 6
πIRL + virtual
ποΈ Tix moving fast - sleuthcon.com
ποΈ CFP closes April 18
14.04.2025 18:02 β π 21 π 8 π¬ 0 π 1
So simple, but what a can of worms. It emphasizes why detection pipelines with multiple, conditional rounds are needed. Ideally youβd catch this with a simple string match for the reg key after itβs been through a generic deobfuscation round that drops non-alphanumeric characters.
08.12.2024 00:55 β π 2 π 0 π¬ 0 π 0
Took this at sunset in Fall in Minnesota:
08.12.2024 00:39 β π 2 π 0 π¬ 0 π 0
Today I am thankful for all of the folks working a shift and watching the wires to keep us safe. I see you and I appreciate you.
28.11.2024 14:58 β π 1 π 0 π¬ 0 π 1
Screenshot of malicious spam (malspam) with malware file attachment.
Traffic from the XLoader (Formbook) infection filtered in Wireshark.
2024-11-22 (Friday) #XLoader / #Formbook: I've been fired by my non-existent HR department. At least I got a "salary-receipt.exe" bazaar.abuse.ch/sample/003b5...
Tria.ge and Any.Run don't identify the malware, but Joe Sandbox does: www.joesandbox.com/analysis/156...
Also runs in my lab just fine
22.11.2024 19:42 β π 17 π 10 π¬ 2 π 0
The largest collection of malware source code, samples, and papers on the internet.
Password: infected
(unofficial, this is a bot! Maintained by @yjb.bsky.social, the bot can't handle retweets, video, and maybe a few other things)
Follow us for the latest blogs and IOCs from Team Cymru's S2 Threat Research team.
Chief Research Officer @ Unit 221B
most reliable way to reach me is my company's outreach form on the website
my other urls:
https://infosec.exchange/@nixonnixoff
https://www.linkedin.com/in/allison-nixon-81822124/
don't bother contacting me on twitter
Founder of The Vertex Project (@vtxproject)
Father of the #APT1 Report @Mandiant.
Inventor of #synapse, #vivisect, UNCs, imphash, ...
DEFCON CTF Champion, Founder of Kenshoto
Craft beer explorer πΊ | Sharing fun reviews, brewery journeys, and must-try pours. Follow for beer pics, ratings, and bucket-list brews. Cheers! #TheBeerAdviser #CraftBeerLife
https://www.sleuthcon.com
A new DC hacker conference: Bringing together builders, breakers, and fixers to do cool shit.
Jan. 24-25, 2026
districtcon.org
@ESET Distinguished Researcher | alum of McAfee, Microsoft MVP, Tribal Voice, Zultys | Mod @Lenovo, @Neowin.Net, Scots Newsletter forums | Intel Insider Council | Repost β endorse
head in the clouds. opinions are my own and not the views of my employer.
oh great, now Iβm on bluesky
The only way out is through | Stringer, Central Intelligence Corporation
work time: defender
fun time: malware hoarder/puzzle solver/capacity tester
member of:
@cryptolaemus.bsky.socialβ¬
fan of:
@hatching_io
@sublime_sec
/* Security & Malware Research | Developer for http://MalBeacon.com | Poking holes in everything & writing about it | Read here: http://fr3d.hk/blog */
Professional writer and talker; sports things & nerd stuff. Feature journalism, NFL analysis, books & stories, and my podcast about old video game magazines: @funfactorpod.com. Partnerships director @rankmivote.bsky.social. He/him. #ADHD
A security firm providing Incident Response, Proactive Threat Assessments, Trusted Advisory, and Threat Intelligence // volexity.com
CYBERWARCON is a one-day conference in Arlington, VA focused on the specter of destruction, disruption, and malicious influence on our society through cyber capabilities.
cyberwarcon.com
Sharing information on malicious network traffic and malware samples at https://www.malware-traffic-analysis.net/