Master of Disaster #soc #infosec #opsec #dfir #malware #threathunting. Opinions are my own and not those of my employer

Joined November 2010
380 Photos and videos
I put up a github repo for #emotet c2 configs that are extracted by @CapeSandbox. I'm scraping every 10 minutes and only new/unique configs are added to the repository. Maybe these IOCs can be helpful to fellow defenders Β―\_(ツ)_/Β― github.com/ring0x0/emotet-co…
2
36
70
One of my best friends launched cybermechanics.pro/ today, a cyber security resource to bring an awareness and fundraising effort towards NETs, a very rare neuroendocrine cancer that his wife was diagnosed with. 1/2

1
1
1
712
Please, if your business or a business that you know is seeking help relating to cyber security, give this website a look. This is a valuable resource with a lot of great information and a clear mission to benefit NETs cancer researchπŸ¦“ Please share❀️ 2/2
1
519
I have 1 @shmoocon ticket available for sale. Will sell for face value. #shmoocon
3
3
2
1,131
Shout out to @Namecheap for one of the fastest takedowns I've ever seen. I wish they were all that fast!

ALT Batman Clap GIF

1
1
2
438
RIP @VK_Intel 😒 Gone way too soon. You'll always be one of the brightest people that I've ever had the pleasure of working with. You will be missed by so many. Rest easy my friend☹️
Our deepest condolences to Vitali Kremez family, friends, and colleagues. You will be missed.
7
🀣
Modern day cyber security explained
6
2
RIP IE. You were the best Chrome downloader I ever used.
Goodbye internet explorer. Enjoy my little doodle…
5
5
DALL-E mini nailed it
1
3
SOC: #spring4shell requires Spring MVC framework of JDK9 and above. If the JDK version is less than equal to 8, it is not affected. Client: You told us to upgrade our Java! SOC: ....

ALT Homer Disappearing GIF

3
14
31
Anyone looking for @shmoocon tickets? I have 4 available. Will sell for face value. #shmoocon
4
1
All 4 are sold. Thanks!
1
Credit to @Redbeard_SecπŸ˜‚
1
5
πŸ†πŸ…΄πŸ…ΆπŸ…ΆπŸ…ΈπŸ…΄ retweeted
11 Dec 2021
so fixing log4shell is great and all, but.. wouldn't it be ✨ amazing ✨ if we all just promised to be nice and instead use this power to make vanilla minecraft doom server πŸ€”
51
1,598
4,915
πŸ†πŸ…΄πŸ…ΆπŸ…ΆπŸ…ΈπŸ…΄ retweeted
You can detect the exploitation of Windows InstallerFileTakeOver LPE CVE-2021-41379 with the published PoC with events from the 'Application' Eventlog Search for EventID 1033 and the keyword 'test pkg'
8
142
364
πŸ†πŸ…΄πŸ…ΆπŸ…ΆπŸ…ΈπŸ…΄ retweeted
πŸ”₯πŸ†•"Not Yet Kameraden!"- Conti ransomware is back again and up & running 1⃣"We are up and running, our infra is intact and we are going full throttle" 2⃣"The reported 25kk which we "made since July" is straight-up BS - we've made around 300kk at least (suck this Twitter-hobos)"
2
13
31