Pernah cuba tanam ciku, tapi tak berbuah (CC BY 4.0)

Joined July 2009
201 Photos and videos
Pinned Tweet
Fake Base Transceiver Station atau Fake BTS adalah sebuah peranti yang menyamar sebagai stesen pangkalan telefon bimbit sebenar. Di Malaysia, ia selalunya bertujuan untuk menyebarkan SMS phishing. Lagi best, nama penghantar SMS pun boleh di spoof!
4
92
86
15,134
Unpopular opinion in defense in depth: blocking newly registered domains. Not because every new domain is malicious, but because attackers often rely on disposable infrastructure
1
4
16
722
Adnan (xanda) Mohd Shukor retweeted
Back in 2002, I wrote a super-simple tool to dump the memory of a live process to a file. This was a cool way to grab "screenshots" of SSH sessions, editors, etc. I recently non-vibe-coded a new version that works on modern Linux, if you want to have fun: lcamtuf.coredump.cx/soft/memโ€ฆ

5
48
321
35,040
Tak kisah Home Expo, Malaysia Bike Show atau mana-mana pameran. Nampak diskaun 50%, 80% jangan terus beli. Bandingkan harga dahulu. Sekurang-kurangnya bandingkan dengan harga di Shopee. I doubt @KPDN_HQ tak aware MO ni
1
10
42
5,685
Bavet Police Raid a Rental House, Find Eight Malaysians Running a Scam Op Svay Rieng police hit a rented house in Tabeb village, Bavet, and detained nine people. Eight Malaysians, including one woman, and one Vietnamese man. The landlord is named as Pech Vuthy. With most of the big compounds shut down, operators who got out are setting up small cells in rented houses and rooms. No income, no infrastructure - the police will be cleaning up pockets like this for a long time.
1
13
50
5,023
Adnan (xanda) Mohd Shukor retweeted
May 25
๐—ง๐—›๐—œ๐—ฆ ๐—œ๐—ฆ ๐—”๐—–๐—ง๐—จ๐—”๐—Ÿ๐—Ÿ๐—ฌ ๐—œ๐—ก๐—ฆ๐—”๐—ก๐—˜. โ€“ Europol raided an office in Latvia few weeks ago and what they found inside is hard to believe. โ€“ Latvia's counterterrorism unit OMEGA smashed through the doors with flashbang grenades. โ€“ Inside were 1,200 SIM box devices stacked floor to ceiling. 40,000 active SIM cards. Connected to 80 countries simultaneously. โ€“ They were running two websites, Gogetsms and Apisim where criminals could rent a phone number from any country on demand. โ€“ Those numbers were used for phishing, bank fraud, investment scams, extortion, and migrant smuggling. โ€“ 3,200 confirmed fraud cases in Austria and Latvia alone. โ€“ $5.8 MILLION in confirmed losses. โ€“ Police seized 4 luxury cars, $470,000 in frozen bank accounts, and $290,000 in crypto. โ€“ 7 people were running the entire operation. โ€“ The operation was called SIMCARTEL. โ€“ 49 MILLION fake accounts were created using their service. The same apps that make you jump through 6 verification steps just to log in. 49 million fake accounts got through while you were still waiting for your SMS code.
20
133
330
59,232
Ada lagi eh imam baca bismillaHURrahmaNURrahim
1
142
Adnan (xanda) Mohd Shukor retweeted
Weโ€™re taking down insidious scam centers who prey on Americans. $10 MILLION REWARD for information that disrupts the Tai Chang scam centers in Burma. Have a tip? Contact the FBI at TaiChangTIPS@fbi.gov. state.gov/releases/office-ofโ€ฆ
109
646
1,630
145,236
Adnan (xanda) Mohd Shukor retweeted
May 23
PDRM Serbu Operasi Menipu Warga Sepanyol Menggunakan AI Oleh Warga China Di Johor amanz.my/2026565718
4
2
808
Adnan (xanda) Mohd Shukor retweeted
๐ŸšจData Breach Alert โ€ผ๏ธ ๐—ง๐—ฒ๐—ฎ๐—บ๐—ฃ๐—–๐—ฃ ๐—–๐—น๐—ฎ๐—ถ๐—บ๐˜€ ๐—ฆ๐—ฎ๐—น๐—ฒ ๐—ผ๐—ณ ๐—š๐—ถ๐˜๐—›๐˜‚๐—ฏ ๐—œ๐—ป๐˜๐—ฒ๐—ฟ๐—ป๐—ฎ๐—น ๐—ฆ๐—ผ๐˜‚๐—ฟ๐—ฐ๐—ฒ ๐—–๐—ผ๐—ฑ๐—ฒ TeamPCP hacking group claimed the compromise and sale of GitHub internal data, allegedly including around 4,000 private repositories containing source code related to GitHubโ€™s main platform and internal organizations. Threat actor: TeamPCP Sector: ICT Data exposure (claimed): Approximately 4,000 private repositories Data type: Source code Observed: May 19, 2026 Status: Pending verification ESIXยฉ: 7.96 Full details and impact assessment on HackRisk.io
59
324
1,647
794,688
Adnan (xanda) Mohd Shukor retweeted
May 19
We are investigating unauthorized access to GitHubโ€™s internal repositories. While we currently have no evidence of impact to customer information stored outside of GitHubโ€™s internal repositories (such as our customersโ€™ enterprises, organizations, and repositories), we are closely monitoring our infrastructure for follow-on activity.
1,667
5,303
25,406
13,829,395
MASSA app by @mycert is seeing rapid updates! It now features app recognition via certificate signatures and deep scanning for suspicious APK/XAPK/ZIP files. Detecting apps removed from the Play Store, enhanced app list sorting, and major stability fixes play.google.com/store/apps/dโ€ฆ
15
47
2,924
Go-Gov-MY is the Malaysian governmentโ€™s official tool for building secure forms with gov.my links and QR codes. Clean, secure, and open source ๐Ÿ‡ฒ๐Ÿ‡พ Government agencies, this oneโ€™s for you go.gov.my

13
71
260
21,901
Update: The dev team informed me that the latest version is not open source. The source code available on GitHub is for the previous version
1
305
After Budi95, now Iโ€™m wondering what budirakyat.gov.my is all about ๐Ÿ‘€

4
487
Adnan (xanda) Mohd Shukor retweeted
Reporter: Did you talk to Xi about the cyber attacks that he's done in the United States? Trump: I did. And he talked about attacks that we did in China. What they do, we do too.
22
90
553
36,627
Phishtank is back online
1
302
All items listed under the "impact" section in the @mycert advisory are inaccurate for this campaign. The fraudster are only looking gift cards or Razor Gold PINs ๐Ÿ˜† mycert.org.my/portal/advisorโ€ฆ

MyCert said it has been receiving reports from users who were sent suspicious emails by individuals impersonating C-level executives or senior management personnel within their organisations. thestar.com.my/tech/tech-newโ€ฆ
1
7
19
1,736
Can anyone connect me to TI/IR team of BDO Unibank ?
6
10
804