๐ฃ Oops!... They did it again!!!
61 Talks submitted and so many too good that, once again, we had to increase a bit the number of accepted talks.๐ฅ
#PIVOTcon25 Agenda is finally here, and the caliber is insane!!! Check it outโก๏ธ pivotcon.org/agenda-2025/
#CTI #ThreatIntel
Talks and presenters in๐งตโฌ๏ธ 1/18
07.03.2025 14:42 โ ๐ 20 ๐ 14 ๐ฌ 1 ๐ 5
"Edge Devices Investigation"
Paul Rascagneres, Principal Threat Researcher, Volexity (@r00tbsd , @r00tbsd.bsky.social , @r00tbsd@infosec.exchange)
5/18
07.03.2025 14:42 โ ๐ 8 ๐ 3 ๐ฌ 1 ๐ 0
This talk is a great way to watch/listen to the details behind the work @stevenadair.bsky.social, @5ck.bsky.social, @tlansec.bsky.social + Volexityโs #threatintel & IR teams did to investigate the Nearest Neighbor Attack. The related blog post is here: www.volexity.com/blog/2024/11...
13.12.2024 13:58 โ ๐ 8 ๐ 6 ๐ฌ 0 ๐ 0
We were happy to have @volexity.com's @stevenadair.bsky.social & @5ck.bsky.social present โThe Nearest Neighbor Attack: How A Russian APT Weaponized Nearby Wi-Fi Networks for Covert Accessโ for the #FTSCon Keynote in October. The video of their talk is available here: youtu.be/qSNlDCg-IOM.
#dfir
13.12.2024 13:38 โ ๐ 9 ๐ 6 ๐ฌ 0 ๐ 2
Attack chain showing attacker generating link on Moonshine, then sending it through targeted application to the victim, which after clicking the links gets compromised and delivered the DarkNimbus backdoor
Validation flow that fingerprints the target by looking at user agent and delivering the proper exploit
multiple Chrome vulnerabilities exploited in the third-party applications
List of Android applications being targeted
Most are very popular in South East Asia
Our latest report presents Earth Minotaur, a threat actor targeting Tibetans and Uyghurs using Moonshine, an exploitation framework for Android apps described in 2019 by
@citizenlab.ca
leveraging vulnerabilities in applications embedding old versions of Chromium trendmicro.com/en_us/resear...
05.12.2024 08:48 โ ๐ 12 ๐ 7 ๐ฌ 0 ๐ 2
#PIVOTcon25 #CfP is open and you can submit your proposals till 7 FEB 2025
Remember
- one track,30m
- no recording/streaming/tweeting. U should feel comfy to share more
- No TLP:WHITE
- Original content only
Let us guide u through with a little meme-thread
#CTI #ThreatIntel 1/10
27.11.2024 15:11 โ ๐ 31 ๐ 18 ๐ฌ 1 ๐ 4
GitHub - volexity/hwp-extract: A library and cli tool to extract HWP files.
A library and cli tool to extract HWP files. Contribute to volexity/hwp-extract development by creating an account on GitHub.
@Volexity.com has developed a new open-source tool, โHWP Extractโ, a lightweight Python library & CLI for interacting with Hangul Word Processor files. It also supports object extraction from password-protected HWP files. Download here: github.com/volexity/hwp...
27.11.2024 11:53 โ ๐ 13 ๐ 6 ๐ฌ 0 ๐ 0
two men are standing next to each other with the words " we open it up " on the screen
ALT: two men are standing next to each other with the words " we open it up " on the screen
#PIVOTcon25 registration is now OPEN ๐ค๐ฅ๐ฅ๐ฅ
pivotcon.org
#CTI #ThreatResearch #ThreatIntel
Please read carefully the whole ๐งต for the rules about invite -> registration (1/5)
19.11.2024 14:00 โ ๐ 42 ๐ 22 ๐ฌ 2 ๐ 11
Letโs try here and see how it goes ;)
24.11.2024 20:29 โ ๐ 3 ๐ 0 ๐ฌ 0 ๐ 0
Malware Researcher @ @esetresearch.bsky.social
Threat researcher at Trend Micro mostly focused on APT
@DistrictCon Founder. Harvard & Georgetown MPP/JD candidate. @CyberStatecraft / @BelferCenter fellow, ex-Google threat research. Dog mom. Opinions=my own ๐ฉ๐ปโ๐ป
Cybersecurity weather person and award winning shitposter. Shitposting is an anagram of Top Insights. You may be surprised to know I am not representing [โฆ]
[bridged from https://cyberplace.social/@GossiTheDog on the fediverse by https://fed.brid.gy/ ]
Irish cybersecurity pro, author, speaker, and commentator.
CEO of BH Consulting, Head of Ireland's first CSIRT - IRISSCERT, member of ENISA Advisory Group, & former Special Advisor on CyberSecurity to Europol.
PGP ID 0xF1B5CF7D
Hacking/crime/privacy journalist. Author of DARK WIRE, buy here: https://www.hachettebookgroup.com/titles/joseph-cox/dark-wire/9781541702691/#preorder Co-founder of 404 Media. Signal: joseph.404 Email: joseph@404media.co
I teach cryptography at Johns Hopkins. https://blog.cryptographyengineering.com
Open source privacy and security focused mobile OS with Android app compatibility.
https://grapheneos.org/
Interests:
๐ถ Doggos
๐ฉ๐พโ๐ป Cybersecurity & sysadmin stuff
๐ Delicious food
๐ฑ Health and sleep
๐ฉ๏ธ Traveling
๐ชด Houseplants
๐ Fitness
๐ฐ Finance
I am eminently qualified to speak from experience about a variety of dumpster fires.
ICS DFIR at Dragos, martial artist, marksman, humanist, level 14 Neutral Good rogue, USAF retired. I post *very serious* things about infosec. Thoughts my own. Enby. ๐ณ๏ธโ๐
Awarded author, journalist: cybersecurity, privacy, digital human rights, Covid. WIRED, PopSci, Spinoff, Engadget, FT, IFJ. Visiting Scholar at Stout Research Centre, NZ.
Bio: about.me/violetblue
Pod: linktr.ee/raisedbyhorror
News: patreon.com/violetblue
Journaliste @Liberation.fr Enquรชtes
Cyber, surveillance, dรฉsinfo etc.
https://www.liberation.fr/auteur/amaelle-guiton/
Contact sรฉcurisรฉ : amaelle_g(at)protonmail.com
Journaliste, aux manettes de la newsletter cybercrime Pwned | gabrielthierry@protonmail.com https://linktr.ee/gabrielthierry
Red Team, Hacking, Purple Teaming, AI, Stocks, Metaphysics, Plant Medicine, cryptocurrency
Cyber Threat Intelligence
Ex-Flashpoint, DoD, currently enjoying finance.
Cincinnati
DFIR, DE&TH, and CTI professional. Former USIC. A2 #MiSEC chapter lead. Shameless LoTR meme proliferator.
Incident Response @ Mandiant
Leads Malicious Infrastructure Discovery @ Recorded Future | Views my own
Cybersecurity and Intelligence Professional