SwitchToThread's profile picture.

unpack64

@SwitchToThread

Recents: 10sertareceberseunome[.]shop 1sertareceberseunome[.]shop 21ndayareceberseunome[.]shop 22ndayareceberseunome[.]shop 23ndayareceberseunome[.]shop 24ndayareceberseunome[.]shop 25ndayareceberseunome[.]shop 2sertareceberseunome[.]shop 3sertareceberseunome[.]shop…

Another braziliam PIX SCAM abusing @github Pages + Typebot AI: GitHub Profile: github[.]com/hmeconsultarnome 10gvestbrareceberseunomerasa[.]shop 10nareceberseunome[.]shop 10ndayareceberseunome[.]shop 10ngreceberseunome[.]shop 10pgreceberseunome[.]shop…

SwitchToThread's tweet image. Another braziliam PIX SCAM abusing @github  Pages + Typebot AI:

GitHub Profile: github[.]com/hmeconsultarnome

10gvestbrareceberseunomerasa[.]shop
10nareceberseunome[.]shop
10ndayareceberseunome[.]shop
10ngreceberseunome[.]shop
10pgreceberseunome[.]shop…
SwitchToThread's tweet image. Another braziliam PIX SCAM abusing @github  Pages + Typebot AI:

GitHub Profile: github[.]com/hmeconsultarnome

10gvestbrareceberseunomerasa[.]shop
10nareceberseunome[.]shop
10ndayareceberseunome[.]shop
10ngreceberseunome[.]shop
10pgreceberseunome[.]shop…


brazilian SCAM impersonating Vakinha asking for PIX donations supposedly for victims in Rio Bonito do Iguaçu. https://vakinhasalveriobonito[.]shop/#

SwitchToThread's tweet image. brazilian SCAM impersonating Vakinha asking for PIX donations supposedly for victims in Rio Bonito do Iguaçu.

https://vakinhasalveriobonito[.]shop/#

Another braziliam PIX SCAM abusing @github Pages + Typebot AI: GitHub Profile: github[.]com/hmeconsultarnome 10gvestbrareceberseunomerasa[.]shop 10nareceberseunome[.]shop 10ndayareceberseunome[.]shop 10ngreceberseunome[.]shop 10pgreceberseunome[.]shop…

SwitchToThread's tweet image. Another braziliam PIX SCAM abusing @github  Pages + Typebot AI:

GitHub Profile: github[.]com/hmeconsultarnome

10gvestbrareceberseunomerasa[.]shop
10nareceberseunome[.]shop
10ndayareceberseunome[.]shop
10ngreceberseunome[.]shop
10pgreceberseunome[.]shop…
SwitchToThread's tweet image. Another braziliam PIX SCAM abusing @github  Pages + Typebot AI:

GitHub Profile: github[.]com/hmeconsultarnome

10gvestbrareceberseunomerasa[.]shop
10nareceberseunome[.]shop
10ndayareceberseunome[.]shop
10ngreceberseunome[.]shop
10pgreceberseunome[.]shop…

The Anatomy of Persistent Android NFC Malware in Brazil: How a malicious services achieve 24/7 background NFC fraud operation debugactiveprocess.medium.com/the-anatomy-of…

SwitchToThread's tweet image. The Anatomy of Persistent Android NFC Malware in Brazil: How a malicious services achieve 24/7 background NFC fraud operation
debugactiveprocess.medium.com/the-anatomy-of…

brazilian PIX Scam using #COP30 lucrandonacop30[.]online➡️pay[.kiwify.com.br/ZqO9KGV #phishing

SwitchToThread's tweet image. brazilian PIX Scam using #COP30 
lucrandonacop30[.]online➡️pay[.kiwify.com.br/ZqO9KGV #phishing
SwitchToThread's tweet image. brazilian PIX Scam using #COP30 
lucrandonacop30[.]online➡️pay[.kiwify.com.br/ZqO9KGV #phishing
SwitchToThread's tweet image. brazilian PIX Scam using #COP30 
lucrandonacop30[.]online➡️pay[.kiwify.com.br/ZqO9KGV #phishing

I see NFC fraud apps in Brazil. How often? All the time 👻👻

#ESETresearch identified an active campaign distributing #NGate – Android NFC relay malware used for contactless payment fraud – targeting Brazilian users. It is available for download via fake Google Play sites mimicking 4 major banks and 1 e-commerce app. 1/4

ESETresearch's tweet image. #ESETresearch identified an active campaign distributing #NGate – Android NFC relay malware used for contactless payment fraud – targeting Brazilian users.
It is available for download via fake Google Play sites mimicking 4 major banks and 1 e-commerce app. 1/4


Miner dropper: detects CPU (armeabi-v7a vs arm64), builds payload name libmine-*.so, rotates through 3 URLs (pages\.dev, GitHub raw, uasecurity\.org) to download into app files, then marks it in SharedPrefs and reuses it to prepping a native cryptominer:…

SwitchToThread's tweet image. Miner dropper: detects CPU (armeabi-v7a vs arm64), builds payload name libmine-*.so, rotates through 3 URLs (pages\.dev, GitHub raw, uasecurity\.org) to download into app files, then marks it in SharedPrefs and reuses it to prepping a native cryptominer:…

#GhostGrab is a new Android malware merging crypto mining with banking credential theft It hijacks SMS OTPs, harvests PII, and runs a Monero miner— while stealing funds. It compromised over 30 devices and C&C server leaks over 2800 victim SMS cyfirma.com/research/ghost…

androidmalware2's tweet image. #GhostGrab is a new Android malware merging crypto mining with banking credential theft

It hijacks SMS OTPs, harvests PII, and runs a Monero miner— while stealing funds.
It compromised over 30 devices and C&C server leaks over 2800 victim SMS
cyfirma.com/research/ghost…
androidmalware2's tweet image. #GhostGrab is a new Android malware merging crypto mining with banking credential theft

It hijacks SMS OTPs, harvests PII, and runs a Monero miner— while stealing funds.
It compromised over 30 devices and C&C server leaks over 2800 victim SMS
cyfirma.com/research/ghost…
androidmalware2's tweet image. #GhostGrab is a new Android malware merging crypto mining with banking credential theft

It hijacks SMS OTPs, harvests PII, and runs a Monero miner— while stealing funds.
It compromised over 30 devices and C&C server leaks over 2800 victim SMS
cyfirma.com/research/ghost…


unpack64 reposted

A #magecart attack on a Brazilian #ecommerce website sends the stolen #payment data to a @discord channel: discord.\com/api/webhooks/1354279778441629867/... #WebSkimming #FormJacking #PCIDSS

sdcyberresearch's tweet image. A #magecart attack on a Brazilian #ecommerce website sends the stolen #payment data to a @discord channel: discord.\com/api/webhooks/1354279778441629867/...
#WebSkimming #FormJacking #PCIDSS

unpack64 reposted

Today @radareorg #r2con2025 starts! → radare.org/con/2025/ Tomorrow @ulexec and @Seecoalba will present our new radare2 plugins for @solana sBPF analysis, as way to give back to the community! Join us!

inversive_xyz's tweet image. Today @radareorg #r2con2025 starts! → radare.org/con/2025/

Tomorrow @ulexec and @Seecoalba  will present our new radare2 plugins for @solana sBPF analysis, as way to give back to the community! 

Join us!
inversive_xyz's tweet image. Today @radareorg #r2con2025 starts! → radare.org/con/2025/

Tomorrow @ulexec and @Seecoalba  will present our new radare2 plugins for @solana sBPF analysis, as way to give back to the community! 

Join us!

Loading...

Something went wrong.


Something went wrong.