1.
Germán Fernández
@1ZRR4H
1/ Heads Up! threat actors have started with the mass deployment of Webshells (backdoors) on FortiNAC devices vul… twitter.com/i/web/status/1…
23 Feb 23
copy & paste +upvote -downvote 1/ 🚨 Heads Up! threat actors have started with the mass deployment of Webshells (backdoors) on FortiNAC devices vul… https://t.co/LfnnR6CVjT
2.
Germán Fernández
@1ZRR4H
Zscaler ThreatLabz has observed multiple threat campaigns utilizing the #Snip3 multi-stage remote access trojan (… twitter.com/i/web/status/1…
Retweet of status by @Threatlabz
28 Feb 23
copy & paste +upvote -downvote 🐀 Zscaler ThreatLabz has observed multiple threat campaigns utilizing the #Snip3 multi-stage remote access trojan (… https://t.co/EbUYb6QKVp
3.
4.
5.
6.
7.
Germán Fernández
@1ZRR4H
Continua campaña del malware #URSA aka #Mispadu suplantando a @Superpensiones
Redirector: facturas4[.]click
1st… twitter.com/i/web/status/1…
Redirector: facturas4[.]click
1st… twitter.com/i/web/status/1…
18 Feb 23
copy & paste +upvote -downvote Continua campaña del malware #URSA aka #Mispadu suplantando a @Superpensiones 🇨🇱
Redirector: facturas4[.]click
1st… https://t.co/SSTQsJilTU
Germán Fernández
@1ZRR4H
Here is a hot take - Malspam is tired and Google PPC Ads/Malvertising/SEO Poisoning is inspired for 2023. pic.twitter.com/py129ZxaBt
16 Jan 23
copy & paste +upvote -downvote Here is a hot take🔥 - Malspam is tired and Google PPC Ads/Malvertising/SEO Poisoning is inspired for 2023. https://t.co/py129ZxaBt
Germán Fernández
@1ZRR4H
Ghidra TipsFor Beginner/Intermediate analysts interested in RE.
These tips are aimed at making Ghidra more app… twitter.com/i/web/status/1…
These tips are aimed at making Ghidra more app… twitter.com/i/web/status/1…
Retweet of status by @embee_research
20 Oct 22
copy & paste +upvote -downvote 🐲 Ghidra Tips🐲For Beginner/Intermediate analysts interested in RE.
These tips are aimed at making Ghidra more app… https://t.co/CRtIphQDxL
Germán Fernández
@1ZRR4H
Dep.docx
15fdad64484543b204ca76537542b6cf42b4b6fb9856692c8bf691648d647d88
https://bitbucket[.]org/atlasover/atlas… twitter.com/i/web/status/1…
15fdad64484543b204ca76537542b6cf42b4b6fb9856692c8bf691648d647d88
https://bitbucket[.]org/atlasover/atlas… twitter.com/i/web/status/1…
Retweet of status by @StopMalvertisin
16 Aug 22
copy & paste +upvote -downvote 🤔 Dep.docx
15fdad64484543b204ca76537542b6cf42b4b6fb9856692c8bf691648d647d88
https://bitbucket[.]org/atlasover/atlas… https://t.co/UUNMHx0rGp
Germán Fernández
@1ZRR4H
LEVEL UP!
Ransomware search engines.
Beware, they monitor these platforms (and all of them), what you look f… twitter.com/i/web/status/1…
Ransomware search engines.
Beware, they monitor these platforms (and all of them), what you look f… twitter.com/i/web/status/1…
09 Jul 22
copy & paste +upvote -downvote LEVEL UP! 🔥
Ransomware search engines.
⚠️ Beware, they monitor these platforms (and all of them), what you look f… https://t.co/mvAPvMTkqI
8.
9.
10.
11.
Germán Fernández
@1ZRR4H
Catch new #Emotet sample, Ivan now reuses the #Excel file instead of using .lnk like the previous samples, right?… twitter.com/i/web/status/1…
Retweet of status by @kienbigmummy
10 Jun 22
copy & paste +upvote -downvote 🔥Catch new #Emotet sample, Ivan now reuses the #Excel file instead of using .lnk like the previous samples, right?… https://t.co/DkM63aNKE2
Germán Fernández 🇨🇱
@1ZRR4H
#AsyncRAT RCE vulnerability
[+] brianstadnicki.github.io/posts/vulnerab… by @BrianStadnicki
youtube.com/watch?v=PybRvN…
[+] brianstadnicki.github.io/posts/vulnerab… by @BrianStadnicki
youtube.com/watch?v=PybRvN…
07 Apr 22
copy & paste +upvote -downvote #AsyncRAT RCE vulnerability 🤩
[+] https://t.co/IhttiMT7OQ by @BrianStadnicki 👏
https://t.co/bAc7i2922N
Germán Fernández 🇨🇱
@1ZRR4H
We've just released the free version of our #Sigma-based endpoint agent Aurora
I'm very glad that we can provide… twitter.com/i/web/status/1…
I'm very glad that we can provide… twitter.com/i/web/status/1…
05 Apr 22
copy & paste +upvote -downvote We've just released the free version of our #Sigma-based endpoint agent Aurora 🙌
I'm very glad that we can provide… https://t.co/La7dA5VBzW
Germán Fernández 🇨🇱
@1ZRR4H
Drop all traffic from:
172.241.27.0/24
172.241.29.0/24
139.60.161.0/24
Some tags: #Emotet #BazarLoader… twitter.com/i/web/status/1…
172.241.27.0/24
172.241.29.0/24
139.60.161.0/24
Some tags: #Emotet #BazarLoader… twitter.com/i/web/status/1…
18 Feb 22
copy & paste +upvote -downvote Drop all traffic from:
▪ 172.241.27.0/24
▪ 172.241.29.0/24
▪ 139.60.161.0/24
Some tags: #Emotet #BazarLoader… https://t.co/xA2Lj63Lev
...but wait! There's more!
1.
fakhright
@fakhright
astaghfirullah peng.krim guaaaaaaaa..............a *salto sambil solat*
14 Jan 13
copy & paste +upvote -downvote astaghfirullah peng.krim guaaaaaaaa..............a *salto sambil solat* 🙈🙈🙊