I'm super excited to say that Google's Android Malware Research team is hiring again! We're looking for a mix of 4 senior and junior engineers who want to join our team in the Bangalore office!
Apply at google.com/about/careers/app…
Our book, The Android Malware Handbook: Detection and Analysis by Human and Machine, is now also available on Amazon: amazon.com/Android-Malware-H… . The GitHub repository with malware files to follow along is also published at github.com/android-malware-m…
This was the last missing bit for this first edition and I'm looking forward to all the feedback that people have for what we could do better in a second edition. :)
Hey look, the author copies have arrived! The book is real!
I'll share some stories and thoughts about the book over the next few days over at infosec.exchange/@LambdaCube
What do you get when you bring together an all-star team of ML and security experts to write an ingenious guide to detecting & analyzing major threats facing the Android ecosystem? You get The Android Malware Handbook. Preorder w/ code BADROBOT for 25% off
nostarch.com/androidmalwareh…
@AskAmex Hi team, whenever I try to send a secure email for example by clicking on the secure email link at amex-kreditkarten.de/infocen… I get "Bad Request Your browser sent a request that this server could not understand. Size of a request header field exceeds server limit."
Or "Internal Server Error
The server encountered an internal error or misconfiguration and was unable to complete your request.
Please contact the server administrator, you@your.address and inform them of the time the error occurred ..."
Starting a thread to find new jobs for people affected by the Google lay-offs.
The first person is Jarrod, who is a great Android malware reverse engineer with a real desire to drive process improvements too. You can find his LinkedIn post at linkedin.com/feed/update/urn…
I'm super-excited to see this finally published. It's sparse on details, so y'all can put on your threat hunting hats and figure out yourself how these signing keys got compromised.
One thing that has been bugging me for two years is that I think @Malwarebytes wrongly attributed the behavior reported in malwarebytes.com/blog/news/2… to Adups (CTRL-F in the article).
If you break the encrypted Lua code you can discover the C2s pointing at the right company which someone has even done publicly in the MalwareBytes forums at forums.malwarebytes.com/topi… . Would be nice for @Malwarebytes to look into this and potentially fix the original article.
how mad is zuckerberg right now. twitter exodus in full force and folks would rather attempt the advanced internet gymnastics required to launch a new account on some no-name crowdfunded multiverse of madness where you post toots in the fediverse than give facebook another shot.