sempersecurus's profile picture. Researcher w/ DeepEnd Research == DFIR, cybercrime, threat intelligence, malware & exploit studies.
1:Thess. 5:15 ✝ 
Open DMs

Andre M. DiMino

@sempersecurus

Researcher w/ DeepEnd Research == DFIR, cybercrime, threat intelligence, malware & exploit studies. 1:Thess. 5:15 ✝ Open DMs

"Prosecutors allege incident response pros used ALPHV/BlackCat to commit string of ransomware attacks" The trio are accused of carrying out the conspiracy from May 2023 through April 2025 cyberscoop.com/incident-respo…


The Smishing Triad's extensive, global phishing campaign exploits SMS messages to impersonate critical sectors - Campaign targets U.S. residents, expanding globally since April 2024. - Over 194,000 malicious domains identified, using decentralized infrastructure. - Aims to…


Andre M. DiMino 已轉發

A quarterly reminder that ransomware threat landscape is still growing and the 🇺🇸USA is the primary target of such attacks. 🧵1/4

ddd1ms's tweet image. A quarterly reminder that ransomware threat landscape is still growing and the 🇺🇸USA is the primary target of such attacks. 🧵1/4

Andre M. DiMino 已轉發

Today, the @SecretService announced the dismantling of a network of electronic devices—located within 35 miles of the United Nations General Assembly—used to carry out a wide range of telecommunications attacks. The potential for disruption to our country’s telecommunications…


Andre M. DiMino 已轉發

The Secret Service dismantled a network of more than 300 SIM servers and 100,000 SIM cards in the New York-area that were capable of crippling telecom systems and carrying out anonymous telephonic attacks, disrupting the threat before world leaders arrived for the UN General…

SecretService's tweet image. The Secret Service dismantled a network of more than 300 SIM servers and 100,000 SIM cards in the New York-area that were capable of crippling telecom systems and carrying out anonymous telephonic attacks, disrupting the threat before world leaders arrived for the UN General…
SecretService's tweet image. The Secret Service dismantled a network of more than 300 SIM servers and 100,000 SIM cards in the New York-area that were capable of crippling telecom systems and carrying out anonymous telephonic attacks, disrupting the threat before world leaders arrived for the UN General…
SecretService's tweet image. The Secret Service dismantled a network of more than 300 SIM servers and 100,000 SIM cards in the New York-area that were capable of crippling telecom systems and carrying out anonymous telephonic attacks, disrupting the threat before world leaders arrived for the UN General…

Andre M. DiMino 已轉發

As we do every year, it is with a heavy heart that we pause to honor the lives lost and the families forever changed September 11, 2001. However, we are always grateful for the courage of first responders and the unity of our Nation in the face of unthinkable tragedy.…

SecretService's tweet image. As we do every year, it is with a heavy heart that we pause to honor the lives lost and the families forever changed September 11, 2001. However, we are always grateful for the courage of first responders and the unity of our Nation in the face of unthinkable tragedy.…

Andre M. DiMino 已轉發

People on here act like someone decides not to patch. Like there’s a guy who knows the service is vulnerable, knows it runs in prod, and just shrugs. That’s maybe 1% of the cases. The rest is messier: - No idea the service exists (no inventory) - No idea it’s vulnerable (no vuln…


Andre M. DiMino 已轉發

A few days back at #DEFCON, I released the Garuda Threat Hunting Framework — crafted for manual threat hunting & detection. Here is the link: github.com/monnappa22/Gar… When integrated with LLMs, it enables AI-powered autonomous threat hunting. youtu.be/Sk_c5w1CEiY

monnappa22's tweet card. AI-Powered Threat Hunting Using Garuda Framework

youtube.com

YouTube

AI-Powered Threat Hunting Using Garuda Framework


Andre M. DiMino 已轉發

Write-up on our perspective at #Censys on ToolShell / CVE-2025-53770 exploit in SharePoint: censys.com/advisory/cve-2…

silascutler's tweet image. Write-up on our perspective at #Censys on ToolShell / CVE-2025-53770 exploit in SharePoint: censys.com/advisory/cve-2…

Andre M. DiMino 已轉發

Alert: SharePoint CVE-2025-53770 incidents! In collaboration with @eyesecurity & @watchtowrcyber we are notifying compromised parties. Read: research.eye.security/sharepoint-und… ~9300 Sharepoint IPs seen exposed daily (just population, no vulnerability assessment): dashboard.shadowserver.org/statistics/iot…

Shadowserver's tweet image. Alert: SharePoint CVE-2025-53770 incidents! In collaboration with @eyesecurity & @watchtowrcyber we are notifying compromised parties. Read: research.eye.security/sharepoint-und…

~9300 Sharepoint IPs seen exposed daily (just population, no vulnerability assessment): dashboard.shadowserver.org/statistics/iot…

"How China’s Patriotic ‘Honkers’ Became the Nation’s Elite Cyberspies" A new report traces the history of the early wave of Chinese hackers who became the backbone of the state's espionage apparatus. wired.com/story/china-ho…


If I were a threat actor, I'd live in Linux audio and video drivers. Nobody wants to patch them. Because doing so turns your stable box into a haunted carnival ride.


Andre M. DiMino 已轉發

It's a shame too. Blue Team is infinitely more interesting. I have deep respect and admiration for people who do DFIR, SOC, and DEVSECOPS, etc. I've learned more from defensive approaches than I have offensive. Blue Team just isn't as "flashy".

Cybersecurity Industry

LetsDefendIO's tweet image. Cybersecurity Industry


Andre M. DiMino 已轉發

So, what just happened with the CVE program? - MITRE drops a letter saying funding ends tomorrow - Everyone panics, assumes no more CVE numbers - The community scrambles to organize - The CVE Foundation appears, positioned as a vendor-neutral non-profit - We all learn MITRE has…


Andre M. DiMino 已轉發

Quinlan’s post hits the nail on the head - most SOC analysts are stuck doing monotonous work that’s far below their true potential. Watching endless alerts is mind-numbing; let’s be honest, a machine should do that. I totally agree with her point about the value of giving…

cyb3rops's tweet image. Quinlan’s post hits the nail on the head - most SOC analysts are stuck doing monotonous work that’s far below their true potential. Watching endless alerts is mind-numbing; let’s be honest, a machine should do that.

I totally agree with her point about the value of giving…
cyb3rops's tweet image. Quinlan’s post hits the nail on the head - most SOC analysts are stuck doing monotonous work that’s far below their true potential. Watching endless alerts is mind-numbing; let’s be honest, a machine should do that.

I totally agree with her point about the value of giving…

Anyone know anything about these? 134.122.197.17 eagleeyelegalservices [.] com ccapital-pros [.] com financednx-esomi [.] com ccapitalvips [.] com financednxesomi [.] com skyeyeattorneys [.] com skyeyelegal [.] com skyeyeassistance [.] com pisces-vips [.] com interactivebroker-us…

sempersecurus's tweet image. Anyone know anything about these?
134.122.197.17
eagleeyelegalservices [.] com
ccapital-pros [.] com
financednx-esomi [.] com
ccapitalvips [.] com
financednxesomi [.] com
skyeyeattorneys [.] com
skyeyelegal [.] com
skyeyeassistance [.] com
pisces-vips [.] com
interactivebroker-us…

Loading...

Something went wrong.


Something went wrong.