ramen0x3f's profile picture. @ramen0x3f.bsky.social

Senior Threat Researcher and Pun Aficionado @Microsoft 
Former research+red team+hand drawn memes @Mandiant

Alyssa (she/her)

@ramen0x3f

@ramen0x3f.bsky.social Senior Threat Researcher and Pun Aficionado @Microsoft Former research+red team+hand drawn memes @Mandiant

مثبتة

Officially my first day as a Senior Security Researcher @Microsoft and I couldn’t be more excited! 🤓


Alyssa (she/her) أعاد

A threat group tracked by Microsoft as DEV-0196 is linked to an Israel-based private sector offensive actor (PSOA) known as QuaDream, which reportedly sells a suite of exploits, malware, and infra. Read our analysis in collaboration with @citizenlab: msft.it/6010gy5fA


Alyssa (she/her) أعاد

If anyone is considering taking the CySA+, CompTIA is doing an open beta for the new version and it’s only $50


Not sure how I missed this one but PSA for red team friends 🚨update Cobalt Strike if you haven’t

Cobalt Strike CVE-2022-39197. Quite easy to repro from the release notes. Red Teamers, patch your Team Servers 🙂 cobaltstrike.com/blog/out-of-ba…

buffaloverflow's tweet image. Cobalt Strike CVE-2022-39197. Quite easy to repro from the release notes.

Red Teamers, patch your Team Servers 🙂

cobaltstrike.com/blog/out-of-ba…


Congrats to my Mandi....uh Google friends! Excited to see what y'all accomplish with that Google ☁️ scale! 🥳

Google completed its acquisition of Mandiant today. We’re excited to get started on our shared mission to create a comprehensive and best-in-class cyber security solution for customers and partners. Read more here: mandiant.com/company/press-…

Mandiant's tweet image. Google completed its acquisition of Mandiant today. We’re excited to get started on our shared mission to create a comprehensive and best-in-class cyber security solution for customers and partners. Read more here: mandiant.com/company/press-…


Alyssa (she/her) أعاد

Microsoft has discovered a post-compromise capability we’re calling MagicWeb, which the threat actor tracked as NOBELIUM is using to maintain persistent access to environments they have compromised. In-depth technical analysis and hunting guidance here: msft.it/6016jeB4i


This looks handy! Started using Jupyter notebooks for research/analysis in the past year and it’s *the best*

forked @_RyanBenson's awesome unfurl tool and patched the library so it can easily be used in a Jupyter Notebook :) #python github.com/Droogy/unfurl_…

0xDroogy's tweet image. forked @_RyanBenson's awesome unfurl tool and patched the library so it can easily be used in a Jupyter Notebook :) #python
github.com/Droogy/unfurl_…


Alyssa (she/her) أعاد

#MSTIC 🛡️ & #DART 👻 are now hiring Hunt Analysts who live at the intersection of incident response and threat intelligence. Have experience in both areas? Come join us! Hunt Analyst 🕵️: careers.microsoft.com/us/en/job/1446… careers.microsoft.com/us/en/job/1439…


This is an awesome blog on attacker VPN usage! 🤩 Come for the walkthrough of @JWilsonSecurity’s fun research and stay for the fantastic list of hunting examples/rules that will get your creative juices flowing 👏🏽

Sometimes you just want to hunt 🔫 Three excellent technologies to investigate are... - VPN Clients - Proxy Services - Localhost Tunneling Read along to further expand the defender’s hunting and detection repertoire against these three troublemakers. mandiant.com/resources/burr…



Alyssa (she/her) أعاد

🎉 SUPER EXCITED to announce I'll be presenting at DEFCON this year! forum.defcon.org/node/242292


One of my favorite malware analysis utilities just got a big update!


Just received my flag* as well for my time at @Mandiant! It was a big deal for me to hit the 5 year mark in my career while doing cool research with AP ❤️🦅 Stoked I have a memento *majestic cat not included

ramen0x3f's tweet image. Just received my flag* as well for my time at @Mandiant! 

It was a big deal for me to hit the 5 year mark in my career while doing cool research with AP ❤️🦅 Stoked I have a memento 

*majestic cat not included
هذه التغريدة لم تعد متوفرة.

Alyssa (she/her) أعاد

I am preparing for an internal talk on career advice learned from working security crises. My notes 🧵


Flying was a (pi)lot of fun! 10/10 recommend 🛫

ramen0x3f's tweet image. Flying was a (pi)lot of fun! 10/10 recommend 🛫

Alyssa (she/her) أعاد

🔥I'm looking for a manager for the @Mandiant #AdvancedPractices Research team! 🦅 If you want to: 1⃣manage high-performing experts 2⃣find evil and codify attacker methodologies 3⃣work on a team at the front lines of security ...this may be for you. jobs.smartrecruiters.com/Mandiant/74399…


Alyssa (she/her) أعاد

Get you a keeper who can save AND score 💪

WashSpirit's tweet image. Get you a keeper who can save AND score 💪

Alyssa (she/her) أعاد

During the Mandiant FLARE team's webinar series "The Sample," you will hear stories of notable #malware samples they have reverse engineered. Tune in this Thursday for the first installment of the series. Register 👉 mndt.info/3LAMFtF

Mandiant's tweet image. During the Mandiant FLARE team's webinar series "The Sample," you will hear stories of notable #malware samples they have reverse engineered. Tune in this Thursday for the first installment of the series.

Register 👉  mndt.info/3LAMFtF

Loading...

Something went wrong.


Something went wrong.