csirtiocs's profile picture.

csirtiocs

@csirtiocs

csirtiocs reposted

⭐️GIVEAWAY!⭐️ I'm giving away 10 digital copies of Digital Forensics and Incident Response, 3rd Edition by @GERARDJOHANSEN @PacktPublishing Winners will be announced Friday, @ 12pm EST 🥳 Enter by liking, sharing, and commenting 😊

4n6lady's tweet image. ⭐️GIVEAWAY!⭐️
I'm giving away 10 digital copies of Digital Forensics and Incident Response, 3rd Edition by @GERARDJOHANSEN @PacktPublishing 

Winners will be announced Friday, @ 12pm EST 🥳
Enter by liking, sharing, and commenting 😊

csirtiocs reposted

#IcedID "3131022508" dropped via PDFs with payloads hosted on firebasestorage\.googleapis\.com.* Thread-hijacked email -> PDF Attachment -> payload download -> Password-Protected Zip -> ISO -> LNK -> CMD -> DLL c2: wagringamuk\.com bazaar.abuse.ch/sample/173e5b0…

k3dg3's tweet image. #IcedID "3131022508" dropped via PDFs with payloads hosted on firebasestorage\.googleapis\.com.*

Thread-hijacked email -> PDF Attachment -> payload download -> Password-Protected Zip -> ISO -> LNK -> CMD -> DLL
c2: wagringamuk\.com

bazaar.abuse.ch/sample/173e5b0…

csirtiocs reposted

#bitter #APT b7a9407b47baf7442e0baf94a3b4cc8b7420cb01364fc8e6a3c622b7ae39301f kryoblockbind.]net threatbook.io/domain/kryoblo… #cyber #CyberSec #opendir #CyberAttack

ThreatBookLabs's tweet image. #bitter #APT
b7a9407b47baf7442e0baf94a3b4cc8b7420cb01364fc8e6a3c622b7ae39301f
kryoblockbind.]net threatbook.io/domain/kryoblo…
#cyber #CyberSec  #opendir #CyberAttack

csirtiocs reposted

#opendir http://rk13125.bomj.]one/ spread #RedLine #Stealer H/T @malwrhunterteam Payload 660MB bazaar.abuse.ch/sample/d86b71e… >themocca[.xyz 157.90.24.]27:3306 - 28786

JAMESWT_WT's tweet image. #opendir http://rk13125.bomj.]one/ 
spread #RedLine #Stealer
H/T @malwrhunterteam 

Payload 660MB
bazaar.abuse.ch/sample/d86b71e…
>themocca[.xyz 157.90.24.]27:3306 - 28786
JAMESWT_WT's tweet image. #opendir http://rk13125.bomj.]one/ 
spread #RedLine #Stealer
H/T @malwrhunterteam 

Payload 660MB
bazaar.abuse.ch/sample/d86b71e…
>themocca[.xyz 157.90.24.]27:3306 - 28786

csirtiocs reposted

#KONNI #APT 5225df55b1d1be397012e9823cd936766c6dcecdbd3dab79d07691db33ce81e8 http://word2022.c1.]biz/template.dotm contacted domain: word2022.c1.]biz threatbook.io/domain/word202… #CyberSec #CyberAttack #threatintel #infosec #opendir

ThreatBookLabs's tweet image. #KONNI #APT 
5225df55b1d1be397012e9823cd936766c6dcecdbd3dab79d07691db33ce81e8
http://word2022.c1.]biz/template.dotm
contacted domain: word2022.c1.]biz threatbook.io/domain/word202…
#CyberSec #CyberAttack #threatintel #infosec #opendir
ThreatBookLabs's tweet image. #KONNI #APT 
5225df55b1d1be397012e9823cd936766c6dcecdbd3dab79d07691db33ce81e8
http://word2022.c1.]biz/template.dotm
contacted domain: word2022.c1.]biz threatbook.io/domain/word202…
#CyberSec #CyberAttack #threatintel #infosec #opendir

csirtiocs reposted

#opendir #malware #amadey #Rhadamanthys 95.111.230[.]118/system/download/falcon/

ViriBack's tweet image. #opendir #malware #amadey  #Rhadamanthys 

95.111.230[.]118/system/download/falcon/

csirtiocs reposted

#opendir ransomware, lots of #cobaltstrike and other EXEs/scripts/etc... hxxp://45.139.105[.]143/d/ @JAMESWT_MHT @James_inthe_box @executemalware

jstrosch's tweet image. #opendir ransomware, lots of #cobaltstrike and other EXEs/scripts/etc...

hxxp://45.139.105[.]143/d/

@JAMESWT_MHT @James_inthe_box @executemalware

This account does not have any followers

United States Trends

Loading...

Something went wrong.


Something went wrong.