ladislav_b's profile picture. Malware Analysis & Reversing, Network DFIR, Threat Hunting, Threat Intelligence, Trainings, Conferences. Tips&tricks: @malwarelab_eu Opinions are my own. @ESET

Ladislav B

@ladislav_b

Malware Analysis & Reversing, Network DFIR, Threat Hunting, Threat Intelligence, Trainings, Conferences. Tips&tricks: @malwarelab_eu Opinions are my own. @ESET

Pinned

My #EsetLogParser is referenced in @SANSInstitute #Windows Third Party Apps #Forensics #Poster 🖼️ sans.org/posters/window… 🛠️ github.com/laciKE/EsetLog… I am happy that my #Python script for parsing @ESET #antivirus logs helps the #DFIR community 🙂 @sansforensics @SANSDefense

ladislav_b's tweet image. My #EsetLogParser is referenced in @SANSInstitute #Windows Third Party Apps #Forensics #Poster

🖼️ sans.org/posters/window…

🛠️ github.com/laciKE/EsetLog…

I am happy that my #Python script for parsing @ESET #antivirus logs helps the #DFIR community 🙂 @sansforensics @SANSDefense
ladislav_b's tweet image. My #EsetLogParser is referenced in @SANSInstitute #Windows Third Party Apps #Forensics #Poster

🖼️ sans.org/posters/window…

🛠️ github.com/laciKE/EsetLog…

I am happy that my #Python script for parsing @ESET #antivirus logs helps the #DFIR community 🙂 @sansforensics @SANSDefense

Last week I participated in @SANSInstitute Veterans Day #CTF🚩 After two days of competition, I solved 43 of 45 challenges and luckily won this contest. As a #network analyst, I especially enjoyed the challenge fx01 (File analysis eXtreme level): a PCAP with a custom protocol

ladislav_b's tweet image. Last week I participated in @SANSInstitute Veterans Day #CTF🚩

After two days of competition, I solved 43 of 45 challenges and luckily won this contest.

As a #network analyst, I especially enjoyed the challenge fx01 (File analysis eXtreme level): a PCAP with  a custom protocol

Introduction to Network Threat Detection with @Suricata_IDS by @LukasSismis at @OpenAlt in Brno. Perfect start of the conference day with analysis of #pcap from @anyrun_app and #malwaretrafficanalysis #weekend #education #networkforensics #BlueTeam

ladislav_b's tweet image. Introduction to Network Threat Detection with @Suricata_IDS by @LukasSismis at @OpenAlt in Brno. 

Perfect start of the conference day with analysis of #pcap from @anyrun_app and #malwaretrafficanalysis
 
#weekend #education #networkforensics #BlueTeam
ladislav_b's tweet image. Introduction to Network Threat Detection with @Suricata_IDS by @LukasSismis at @OpenAlt in Brno. 

Perfect start of the conference day with analysis of #pcap from @anyrun_app and #malwaretrafficanalysis
 
#weekend #education #networkforensics #BlueTeam

Highlights from #LinuxDays conference in Prague. Thanks for this great community event and opportunity to give a talk about #Linux #Malware. #LinuxDays2025 @LinuxDaysCZ


Yesterday I had a talk about #Linux #malware at #LinuxDays conference in Prague. It covered the history of Linux malware and more in depth analysis of some families. Thanks to @LinuxDaysCZ for a wonderful and very enjoyable community event. Credit for the 2nd photo to @Rootcz

ladislav_b's tweet image. Yesterday I had a talk about #Linux #malware at #LinuxDays conference in Prague. It covered the history of Linux malware and more in depth analysis of some families.
Thanks to @LinuxDaysCZ for a wonderful and very enjoyable community event.

Credit for the 2nd photo to @Rootcz
ladislav_b's tweet image. Yesterday I had a talk about #Linux #malware at #LinuxDays conference in Prague. It covered the history of Linux malware and more in depth analysis of some families.
Thanks to @LinuxDaysCZ for a wonderful and very enjoyable community event.

Credit for the 2nd photo to @Rootcz

Ladislav B reposted

Yesterday I attended #SOC #DetectionEngineering Crash Course with Hayden Covington by @KilobyteTheDust of @Antisy_Training antisyphontraining.com/product/worksh… In overall, it was very good workshop and I am happy for opportunity to attend it. More in the thread.

malwarelab_eu's tweet image. Yesterday I attended #SOC #DetectionEngineering Crash Course with Hayden Covington by @KilobyteTheDust of @Antisy_Training 

antisyphontraining.com/product/worksh…

In overall, it was very good workshop and I am happy for opportunity to  attend it. More in the thread.

Ladislav B reposted

During the #SharkBytes session at #SharkFest conference I had an opportunity to present a short talk about my pet project IDS Lab. The lab infra is deployable as #docker containers, used for attack simulations and detections. github.com/SecurityDungeo… #sf24eu @wiresharkfest

malwarelab_eu's tweet image. During the #SharkBytes session at #SharkFest conference I had an opportunity to present a short talk about my pet project IDS Lab.
The lab infra is deployable as #docker containers, used for attack simulations and detections.

github.com/SecurityDungeo…

#sf24eu @wiresharkfest
malwarelab_eu's tweet image. During the #SharkBytes session at #SharkFest conference I had an opportunity to present a short talk about my pet project IDS Lab.
The lab infra is deployable as #docker containers, used for attack simulations and detections.

github.com/SecurityDungeo…

#sf24eu @wiresharkfest
malwarelab_eu's tweet image. During the #SharkBytes session at #SharkFest conference I had an opportunity to present a short talk about my pet project IDS Lab.
The lab infra is deployable as #docker containers, used for attack simulations and detections.

github.com/SecurityDungeo…

#sf24eu @wiresharkfest
malwarelab_eu's tweet image. During the #SharkBytes session at #SharkFest conference I had an opportunity to present a short talk about my pet project IDS Lab.
The lab infra is deployable as #docker containers, used for attack simulations and detections.

github.com/SecurityDungeo…

#sf24eu @wiresharkfest

This Wednesday I will give a short talk about incident response at #CassoviaCode #meetup. Location: @kulturpark facebook.com/events/8321561… The event is free, but registration is needed. docs.google.com/forms/d/e/1FAI… #incidentresponse #dfir #cybersecurity #cyberawareness

Meetup: BEYOND HACKING | Aktuálne hrozby & legislatívne trendy v cyber security V stredu 22. máj 2024 od 17:30 bude prednáška o reakcii na bezpečnostný incident. Priblížime si, ako vyzerajú bezpečnostné incidenty a čo môžeme očakávať, keď sa staneme terčom útoku. #cassoviacode

SecurityDungeon's tweet image. Meetup: BEYOND HACKING | Aktuálne hrozby & legislatívne trendy v cyber security

V stredu 22. máj 2024 od 17:30 bude prednáška o reakcii na bezpečnostný incident.

Priblížime si, ako vyzerajú bezpečnostné incidenty a čo môžeme očakávať, keď sa staneme terčom útoku.

#cassoviacode


Analysis of #infostealer #malware pretending to be a hack for #roblox anticheat. 45-minutes malware analysis workshop with @anyrun_app and #cyberchef for high school students. #Education #CyberSecurity #blueteam #dfir #sandbox

Prednáška o útokoch a workshopy o ich analýze počas Dňa bezpečnosti na Obchodnej akadémii v Rožňave v spolupráci s UPJŠ. securitydungeon.sk/blog/2024-oarv… #SecurityDay #Education #workshop #CyberSecurity #roblox #infostealer #cyberchef

SecurityDungeon's tweet image. Prednáška o útokoch a workshopy o ich analýze počas Dňa bezpečnosti na Obchodnej akadémii v Rožňave v spolupráci s UPJŠ.

securitydungeon.sk/blog/2024-oarv…

#SecurityDay #Education #workshop #CyberSecurity #roblox #infostealer #cyberchef
SecurityDungeon's tweet image. Prednáška o útokoch a workshopy o ich analýze počas Dňa bezpečnosti na Obchodnej akadémii v Rožňave v spolupráci s UPJŠ.

securitydungeon.sk/blog/2024-oarv…

#SecurityDay #Education #workshop #CyberSecurity #roblox #infostealer #cyberchef


Pleasant afternoon at @parallelpoliske with interesting discussions related to #Maths, #linux, #crypto, tea and more. On top of that, the great talk about communities by @maltman23 was the highlight of the event. Thank you for sharing your experiences. #hackerspace #CryptoParty

ladislav_b's tweet image. Pleasant afternoon at @parallelpoliske with interesting discussions related to #Maths, #linux, #crypto, tea and more.
On top of that, the great talk about communities by @maltman23 was the highlight of the event. Thank you for sharing your experiences.

#hackerspace #CryptoParty

Ladislav B reposted

My write-up for the @kaspersky challenge from @ekoparty #CTF is online. This was very nice challenge - #network traffic analysis, exploitation, #malware, #reverseengineering and #crypto malwarelab.eu/posts/ekoparty… #EKOPARTYCTF #networksecurity #malwareanalysis #cyberchef

malwarelab_eu's tweet image. My write-up for the @kaspersky challenge from @ekoparty #CTF is online. This was very nice challenge - #network traffic analysis, exploitation, #malware, #reverseengineering and #crypto

malwarelab.eu/posts/ekoparty…

#EKOPARTYCTF #networksecurity #malwareanalysis #cyberchef
malwarelab_eu's tweet image. My write-up for the @kaspersky challenge from @ekoparty #CTF is online. This was very nice challenge - #network traffic analysis, exploitation, #malware, #reverseengineering and #crypto

malwarelab.eu/posts/ekoparty…

#EKOPARTYCTF #networksecurity #malwareanalysis #cyberchef
malwarelab_eu's tweet image. My write-up for the @kaspersky challenge from @ekoparty #CTF is online. This was very nice challenge - #network traffic analysis, exploitation, #malware, #reverseengineering and #crypto

malwarelab.eu/posts/ekoparty…

#EKOPARTYCTF #networksecurity #malwareanalysis #cyberchef
malwarelab_eu's tweet image. My write-up for the @kaspersky challenge from @ekoparty #CTF is online. This was very nice challenge - #network traffic analysis, exploitation, #malware, #reverseengineering and #crypto

malwarelab.eu/posts/ekoparty…

#EKOPARTYCTF #networksecurity #malwareanalysis #cyberchef

Yesterday #CyberSecurityDay in Kosice, Slovakia. It was honor for me to meet so many excited students who decided to spent their Saturday with #CyberSecurity #education. I lectured a workshop about #CTF competitions, where the students solved several tasks about suspicious files.

Na #CyberSecurityDay bol aj workshop venovaný #CTF súťažiam. Analyzovali sme podivný obrázok, ktorý nebol iba obrázkom, pozreli sme sa na podozrivý PowerShell aj sme si skúsili jedno CrackMe. Viac si o tom môžete prečítať na našom blogu securitydungeon.sk/blog/cybersecd…

SecurityDungeon's tweet image. Na #CyberSecurityDay bol aj workshop venovaný #CTF súťažiam. Analyzovali sme podivný obrázok, ktorý nebol iba obrázkom, pozreli sme sa na podozrivý PowerShell aj sme si skúsili jedno CrackMe. Viac si o tom môžete prečítať na našom blogu
securitydungeon.sk/blog/cybersecd…


Last week, I had an opportunity to participate in #CyberSecDay for elementary schools with the workshop about #OSInt. We discussed what we can find about ourselves on the Internet, if we do not care about our privacy securitydungeon.sk/blog/cybersecd… #ecsm #education #Cybersec #GKMKE

ladislav_b's tweet image. Last week, I had an opportunity to participate in #CyberSecDay for elementary schools with the workshop about #OSInt. We discussed what we can find about ourselves on the Internet, if we do not care about our privacy

securitydungeon.sk/blog/cybersecd…

#ecsm #education #Cybersec #GKMKE

My write-ups for this very good #CTF by @HuntressLabs . Thank you @HuntressLabs, @_JohnHammond, @HuskyHacksMK and others for this event and nice challenges :-) #CybersecurityAwarenessMonth #Contest #education #CyberSecurity

My write-ups from the #HuntressCTF by @HuntressLabs. I really enjoyed this #CTF, there were plenty of nice challenges, various categories, etc. malwarelab.eu/posts/huntress… #CybersecurityAwarenessMonth #contest #reverseengineering #education

malwarelab_eu's tweet image. My write-ups from the #HuntressCTF by @HuntressLabs. I really enjoyed this #CTF, there were plenty of nice challenges, various categories, etc.

malwarelab.eu/posts/huntress…

#CybersecurityAwarenessMonth #contest #reverseengineering #education


Ladislav B reposted

Decryption of strings from #AsyncRAT/#DcRat/#VenomRAT configuration with #CyberChef. Little bit of #Dotnet #reversing and commented recipe with usage of registers for PBKDF2 and AES decryption Blog post: malwarelab.eu/posts/asyncrat… Recipe with example input: tinyurl.com/AsyncRatConfig…

malwarelab_eu's tweet image. Decryption of strings from #AsyncRAT/#DcRat/#VenomRAT configuration with #CyberChef. Little bit of #Dotnet  #reversing and commented recipe with usage of registers for PBKDF2 and AES decryption

Blog post: malwarelab.eu/posts/asyncrat…
Recipe with example input: tinyurl.com/AsyncRatConfig…

I used this docker image with Minecraft #Log4shell demonstration during my lectures about #cyberattacks at #gamefair2023 conference. Moreover, for victim machine, I used @ReactOS with #Java and #Minecraft server, it worked fine for proof of concept attack with calc execution.

ladislav_b's tweet image. I used this docker image with Minecraft #Log4shell demonstration during my lectures about #cyberattacks  at #gamefair2023 conference. Moreover, for victim machine, I used @ReactOS with #Java and #Minecraft server, it worked fine for proof of concept attack with calc execution.
ladislav_b's tweet image. I used this docker image with Minecraft #Log4shell demonstration during my lectures about #cyberattacks  at #gamefair2023 conference. Moreover, for victim machine, I used @ReactOS with #Java and #Minecraft server, it worked fine for proof of concept attack with calc execution.
ladislav_b's tweet image. I used this docker image with Minecraft #Log4shell demonstration during my lectures about #cyberattacks  at #gamefair2023 conference. Moreover, for victim machine, I used @ReactOS with #Java and #Minecraft server, it worked fine for proof of concept attack with calc execution.
ladislav_b's tweet image. I used this docker image with Minecraft #Log4shell demonstration during my lectures about #cyberattacks  at #gamefair2023 conference. Moreover, for victim machine, I used @ReactOS with #Java and #Minecraft server, it worked fine for proof of concept attack with calc execution.

Two years ago #Log4j (CVE-2021-44228) #vulnerability was present in many products, incl. #Minecraft. Recently, I prepared the #Docker image with vulnerable Minecraft server for demonstration of #Log4shell #exploit during my lectures malwarelab.eu/posts/log4shel… #Education #Java



Yeah, I made it 😀 1000 consecutive days with @RealTryHackMe 🔥 Lot of practical hands-on labs and content to discover, learn and try on my own 💻👨‍🎓

ladislav_b's tweet image. Yeah, I made it 😀
1000 consecutive days with @RealTryHackMe 🔥
Lot of practical hands-on labs and content to discover, learn and try on my own 💻👨‍🎓
ladislav_b's tweet image. Yeah, I made it 😀
1000 consecutive days with @RealTryHackMe 🔥
Lot of practical hands-on labs and content to discover, learn and try on my own 💻👨‍🎓

Ladislav B reposted

Are you ready to uncover the secret art of the CSI of the #cyber world? Learn how to track and collect evidence and correctly acquire and interpret data in a practical hands-on Digital Forensics 101 Training at #QubitConPrague23. #cybersec #cybersec2023 #infosec #Qubit

QuBitCon's tweet image. Are you ready to uncover the secret art of the CSI of the #cyber world?

Learn how to track and collect evidence and correctly acquire and interpret data in a practical hands-on Digital Forensics 101 Training at #QubitConPrague23.

#cybersec #cybersec2023 #infosec #Qubit

Ladislav B reposted

Check out this exciting talk from @ladislav_b on How Vigilant Researchers can Uncover APT attacks for fun and non-profit 🤓👩‍💻 Hear more insights: 🔗youtube.com/watch?v=HMpePk… #ReconVillage #defcon #DataSecurity #APTattacks 🔐

ReconVillage's tweet card. How Vigilant Researchers Can Uncover APT Attacks for Fun and Non-Pr...

youtube.com

YouTube

How Vigilant Researchers Can Uncover APT Attacks for Fun and Non-Pr...


Today I attended #ThreatHunting #workshop about #Execution by @ArchinalLee and @CyborgSecInc. As before, there was a lot of technical content in one hour delivered by an experienced lecturer. I like the handson #ELK challenge + opportunity to earn a #badge info.cyborgsecurity.com/en-us/threat-h…

ladislav_b's tweet image. Today I attended #ThreatHunting #workshop about #Execution by @ArchinalLee and @CyborgSecInc.
As before, there was a lot of technical content in one hour delivered by an experienced lecturer. I like the handson #ELK challenge + opportunity to earn a #badge
info.cyborgsecurity.com/en-us/threat-h…
ladislav_b's tweet image. Today I attended #ThreatHunting #workshop about #Execution by @ArchinalLee and @CyborgSecInc.
As before, there was a lot of technical content in one hour delivered by an experienced lecturer. I like the handson #ELK challenge + opportunity to earn a #badge
info.cyborgsecurity.com/en-us/threat-h…

Loading...

Something went wrong.


Something went wrong.