- Security Researcher - Incident Responder - Lethal Forensicator - Reverse Engineering Enthusiast [Tweets are my own and not the views of my employer]

Joined June 2017
27 Photos and videos
Jun 11
Linking indicators from samples to campaigns and actors. #MalwareAnalysis #CTI
24
Jun 9
I am including some malware config extraction too: #MalwareAnalysis #CTI
37
Jun 8
Moving forward with my static analysis platform: #MalwareAnalysis #CTI
1
45
Jan retweeted
new blog post: shrun, apiwatcher, and argus: three malware analysis tools built with Claude antonioparata.blogspot.com/2… #MalwareAnalysis #ReverseEngineering

6
14
706
Jan retweeted
Foresiet identified and analyzed Lucid Stealer, a Node.js SEA wrapper delivering a credential stealer and remote-access Trojan with persistence, wallet theft, keylogging, HVNC, and DDoS capabilities. foresiet.com/blog/lucid-stea…
1
4
13
1,757
Jan retweeted
Follow every Mythos discovery through our coordinated vulnerability disclosure dashboard. red.anthropic.com/2026/cvd/
10
140
643
60,909
May 19
hmm what to do when machine thinks it knows better than me:
36
May 14
Just waiting for AI to include hidden advertisement in their responses, e.g. when asking for summary of incident response actions depending on LLM it will point out that it is best to use tool or service of a certain company 🤣
1
34
May 1
Running @opencode together with Selenium and Safari remote control to have the AI fix my JavaScript errors, so I can enjoy the sun 🤣
2
50
Apr 14
AI does not mean attackers generate better exploits. It means they generate better reasons to panic. Speed of patching replaces verification as the dominant safety signal.
1
41
Apr 6
I just wanted to update one library ... now I am running OCLP on my late 2013 mac with a clean install of Sonoma 🤣
1
96
Apr 3
Added capability overview based on imported API function:
1
53
Mar 31
Slowly getting to where I want it to be. If you have labelled samples for me to play with, let me know.
53
Mar 21
Continued to play further with malware similarity: --- Top 1 Family Ranking for 1b357f661479 --- RANK 1: [ACCEPTED] Zeus | Weight: 144.5 REJECTED (Low Weight): PlugX | Weight: 19.7 REJECTED (Low Weight): PoisonIvy | Weight: 1.41 not perfect yet but we are getting there.
1
1
2
284
Mar 25
Btw. If you happen to have some labelled sample sets your willing to share please reach out.
21
Jan retweeted
22 Dec 2025
🚨 A critical RCE vulnerability in certain versions of n8n allows an authenticated attacker to execute arbitrary code with the privileges of the n8n process. Exploitation could lead to full compromise of the affected instance. 🔴 CVSS 9.9 🛠️ Patch available — upgrade immediately. 👉 See full advisory for more details: hubs.ly/Q03YVn9L0 #cve202568613
4
58
208
22,046