William Largent's Avatar

William Largent

@securitywill.bsky.social

Cisco Talos Threat Research

64 Followers  |  72 Following  |  12 Posts  |  Joined: 24.07.2023  |  1.6329

Latest posts by securitywill.bsky.social on Bluesky

Ozzy Osbourne visited my magic shop. He said he'd like to buy some stink bombs. How many? All of them. I had to go through drawers finding every last one. He bought 900 of them. To sign the credit card slip I handed him a shock pen, which he thought was hilarious and bought that too. RIP

22.07.2025 18:29 β€” πŸ‘ 16547    πŸ” 3250    πŸ’¬ 91    πŸ“Œ 97

This. Read this and repeat it over and over to yourself if you need to do so.

22.07.2025 20:35 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

Look, I'm not going to say that this is a personal attack ...

... it is. This is a personal attack.

11.07.2025 14:44 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Post image

We’re halfway through 2025, and vulnerability reporting is evolving fast. Check out the latest Threat Source newsletter as Thorsten breaks down record CVE volumes and new reporting challenges: blog.talosintelligence.com/patch-track-...

10.07.2025 18:07 β€” πŸ‘ 2    πŸ” 2    πŸ’¬ 0    πŸ“Œ 0
Preview
A Marco Rubio impostor is using AI voice to call high-level officials An imposter using AI to pose as Secretary of State Marco Rubio contacted three foreign ministers, a U.S. governor and a member of Congress, according to a State Department cable.

Threat actor deepfakes Marco Rubio's voice to approach foreign officials on Signal

www.washingtonpost.com/national-sec...

08.07.2025 11:43 β€” πŸ‘ 20    πŸ” 10    πŸ’¬ 1    πŸ“Œ 2
Post image

Join us for a deep dive into how Cisco Talos uncovered two critical vulnerabilities in the AsIO3.sys driver powering ASUS Armory Crate: blog.talosintelligence.com/decrement-by...

26.06.2025 13:45 β€” πŸ‘ 4    πŸ” 3    πŸ’¬ 0    πŸ“Œ 0
Post image

Cisco Talos uncovered zero-day vulnerabilities in catdoc, plus vulnerabilities in Parallel, NVIDIA, and High-Logic FontCreator 15β€”all now patched:
blog.talosintelligence.com/catdoc-zero-...

11.06.2025 16:44 β€” πŸ‘ 3    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0
Preview
GitHub - dest-3/Chronos: Time-Based Detection and Response for Safety-Critical Real-Time Embedded Systems - EDR Kernel Extension for FreeRTOS Time-Based Detection and Response for Safety-Critical Real-Time Embedded Systems - EDR Kernel Extension for FreeRTOS - dest-3/Chronos

Security researcher Michalis Antoniades has released Chronos, a kernel extension to support EDR-like capabilities on RTOS embedded systems

github.com/dest-3/Chronos

01.05.2025 15:01 β€” πŸ‘ 5    πŸ” 4    πŸ’¬ 0    πŸ“Œ 0
Video thumbnail

Cisco Talos’ 2024 Year in Review is available now! With visibility into more than 886 billion security events per day, the report features our key insights. Read the full report here: http://cs.co/63320FzuMG

31.03.2025 12:05 β€” πŸ‘ 7    πŸ” 4    πŸ’¬ 1    πŸ“Œ 1
Preview
Why We Need More Women and Intersectional Diversity in Cyber (And How to Get There) Representation matters in cybersecurity. Here’s whyβ€”and what we can do about it.

I really hate this archaic nonsense is still a part of the community - but this is a really good post from a couple of Splunk/SURGe folks.

I am so lucky to work on a team that is very diverse across the board but I am very aware that we are flying in the face of the norm.

28.03.2025 20:41 β€” πŸ‘ 1    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Video thumbnail

From threat hunting, detection building, vulnerability discoveries and incident response, Cisco Talos shows up every day to try and make the internet a safer place. Watch our full overview here: http://cs.co/633280m3rs

19.03.2025 16:13 β€” πŸ‘ 7    πŸ” 3    πŸ’¬ 0    πŸ“Œ 1

"The PureCrypter malware found in this intrusion is a Windows dynamic-link library obfuscated with Eziriz’s .NET Reactor obfuscator. It has resources of encrypted binaries of legitimate DLLs, including Protobuf-net and Microsoft task scheduler DLL along with the TorNet backdoor. "

28.01.2025 15:45 β€” πŸ‘ 1    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

the accuracy

20.12.2024 17:46 β€” πŸ‘ 1    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Preview
Supply Chain Attack Detected in Solana's web3.js Library - S... A supply chain attack has been detected in versions 1.95.6 and 1.95.7 of the popular @solana/web3.js library.

Supply Chain Attack Detected in Solana's web3.js Library:
socket.dev/blog/supply-...

Solana blamed it on a phishing attack: github.com/solana-labs/...

04.12.2024 21:55 β€” πŸ‘ 19    πŸ” 6    πŸ’¬ 1    πŸ“Œ 0

<Bangs drum like Animal on a bender>

04.12.2024 15:41 β€” πŸ‘ 4    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0

Ack.

02.12.2024 19:04 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Post image

FBI confirms that despite the Chinese-sounding name, the BianLian ransomware gang and its affiliates operate out of Russia

PDF: www.ic3.gov/CSA/2024/241...

21.11.2024 11:40 β€” πŸ‘ 272    πŸ” 85    πŸ’¬ 6    πŸ“Œ 5
Preview
Talos Speed Dating (the episode we never set out to make but did anyway) - Beers with Talos Podcast Mitch, Matt and Lurene were almost about to be in the same physical space at the same time to record an episode, and then Lurene couldn't make it...so we made this instead! Mitch is joined by Azim Kho...

Want to actually know what it's like to work at Talos? Like truly understand? Listen to the podcast linked here - you get A LOT of Talos people from disparate groups and in listening you can understand the Talos culture isn't buzzword bullshit. I fucking love my team. Ride or die.

20.12.2023 16:04 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Preview
Arid Viper disguising mobile spyware as updates for non-malicious Android applications Since April 2022, Cisco Talos has been tracking a malicious campaign operated by the espionage-motivated Arid Viper advanced persistent threat (APT) group targeting Arabic-speaking Android users.

A threat actor known as #AridViper (likely operating out of #Gaza) has been targeting users in the #MiddleEast with #spyware disguised as dating apps, dating back to November 2022.

blog.talosintelligence.com/arid-viper-m...

31.10.2023 15:34 β€” πŸ‘ 1    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0
Preview
UT Mourns Pioneer of Computational Mechanics and Founder of Oden Institute - UT News AUSTIN, Texas β€” J. Tinsley Oden, who is widely known as the founder of computational mechanics and the first director of what is now known as the Oden

Just hearing that Tinsley Oden died - the massive impact that this guy had on our day-to-day is insane. </3

01.09.2023 14:48 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Preview
What's in a name? Strange behaviors at top-level domains creates uncertainty in DNS Google introduced the new β€œ.zip” Top Level Domain (TLD) on May 3, 2023, igniting a firestorm of controversy as security organizations warned against the confusion that was certain to occur. When ...

Not all Top Level Domains are created equal. Some TLDs do some pretty strange things in DNS.

blog.talosintelligence.com/whats-in-a-n...

29.08.2023 14:31 β€” πŸ‘ 4    πŸ” 2    πŸ’¬ 0    πŸ“Œ 0
Plugin focus: Generating signatures for Nim and other non-C programming languages – Hex Rays

Holger wrote an amazing blog over on hexrays - digging in to generating signatures for Nim and other non-C programming languages.

22.08.2023 14:11 β€” πŸ‘ 0    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0
Preview
Dentist donates time so former addicts can 'smile without shame' Retired Perth dentist Richard Slattery gets a kick out of helping former addicts smile again, boostΒ their confidence, and secureΒ jobs β€” all through getting their teeth fixed.

What a wonderful man https://www.abc.net.au/news/2023-07-30/pro-bono-perth-retired-dentist-helping-former-addicts-recovery/102662118?utm_source=abc_news_web&utm_medium=content_shared&utm_campaign=abc_news_web

30.07.2023 01:51 β€” πŸ‘ 23    πŸ” 6    πŸ’¬ 0    πŸ“Œ 0

I just looked at the upcoming movies list and I just don't know that anything will make the perfect trilogy. there are contenders - things that look interesting - but to "complete Cocaine Bear/Barbie/___.

idk man. I feel like you might win by not playing the game.

27.07.2023 19:16 β€” πŸ‘ 1    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Preview
Code Kept Secret for Years Reveals Its Flawβ€”a Backdoor A secret encryption cipher baked into radio systems used by critical infrastructure workers, police, and others around the world is finally seeing sunlight. Researchers say it isn’t pretty.

For 25+ yrs police, military, intel agencies and critical infrastructure around the world relied on the TETRA radio standard to secure critical communications. But now Dutch researchers have examined secret algorithms used in TETRA and found something startling - an intentional backdoor, and more

24.07.2023 10:17 β€” πŸ‘ 33    πŸ” 20    πŸ’¬ 0    πŸ“Œ 3

"I prefer my wisdom over my youth."

<3

by fucking miles. I can't even remember when my last fuck left me but it's the best.

24.07.2023 15:57 β€” πŸ‘ 1    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

*looks around*

24.07.2023 15:40 β€” πŸ‘ 1    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

@securitywill is following 20 prominent accounts