DFIR Alert (@dfiralert) 's Twitter Profile
DFIR Alert

@dfiralert

All the latest cybersecurity #DFIR #ThreatHunting #MalwareAnalysis #Detection rules from the #DFIR lab at @binalyze

ID: 1664642736434167813

linkhttps://github.com/binalyze/dfir-lab calendar_today02-06-2023 14:39:06

24 Tweet

205 Followers

22 Following

Binalyze (@binalyze) 's Twitter Profile Photo

We're excited to announce we're attending IT Nation Secure in Orlando 🇺🇸 From 5-7 June, the team will be at the event (Booth 421) and ready to provide live demos of AIR and discuss your #DFIR requirements. Book your time with us here 👉 ow.ly/aHzf50OnWtG

Binalyze (@binalyze) 's Twitter Profile Photo

We're attending the Techno-Security Conference in Wilmington, NC 🇺🇸. Come and join us for this unique event. Find out how Binalyze can support your DFIR efforts, and get hands-on with live demos of AIR. Visit us at booth 607! #DFIR #Event #Wilmington

DFIR Alert (@dfiralert) 's Twitter Profile Photo

MITRE ATT&CK: Version 1.4.0 is here! 👉Updated detection for indicators of various hacking tools used for discovery, lateral movement and privilege escalation. 👉Updated detection for packers often used in malicious executables. Continued...

MITRE ATT&CK: Version 1.4.0 is here! 

👉Updated detection for indicators of various hacking tools used for discovery, lateral movement and privilege escalation.
👉Updated detection for packers often used in malicious executables.

Continued...
DFIR Alert (@dfiralert) 's Twitter Profile Photo

👉Updated detection for various persistence and defense evasion techniques. 👉Added detection for anomalies, obfuscation techniques and malware families mentioned in recent reports. *Update applies to Windows and Linux. Sign up now: ow.ly/FxT050PvKkl #DFIR

DFIR Alert (@dfiralert) 's Twitter Profile Photo

MITRE ATT&CK: Version 1.5.1 is here! 👉Improved detection for privilege escalation tools such as Potato (Juicy Potato and similar) and others. 👉Improved detection for various pentesting frameworks and hacktools. (continued)

MITRE ATT&CK: Version 1.5.1 is here! 

👉Improved detection for privilege escalation tools such as Potato (Juicy Potato and similar) and others.
👉Improved detection for various pentesting frameworks and hacktools.

(continued)
DFIR Alert (@dfiralert) 's Twitter Profile Photo

👉Added detection for malware families mentioned in latest reports such as MacOS version of XLoader and HiatusRAT. *Update applies to Windows, Linux and MacOS. Sign up for your 14-day free trial now: binalyze.com/14-day-free-bi… #DFIR #Alert #DigitalForensics #IncidentResponse

👉Added detection for malware families mentioned in latest reports such as MacOS version of XLoader and HiatusRAT.

*Update applies to Windows, Linux and MacOS.

Sign up for your 14-day free trial now: binalyze.com/14-day-free-bi…

#DFIR #Alert #DigitalForensics #IncidentResponse
Binalyze (@binalyze) 's Twitter Profile Photo

Binalyze Secures $19 Million in Series A Funding Led by Molten Ventures with participation from Earlybird Digital East and OpenOcean, and new investors Cisco Investments, Citibank Ventures, and Deutsche Bank Ventures. ow.ly/lyj150PK8g5 #DFIR #News #Cybersecurity

Binalyze Secures $19 Million in Series A Funding

Led by Molten Ventures with participation from Earlybird Digital East and OpenOcean, and new investors Cisco Investments, Citibank Ventures, and Deutsche Bank Ventures.

ow.ly/lyj150PK8g5

#DFIR #News #Cybersecurity
DFIR Alert (@dfiralert) 's Twitter Profile Photo

AIR MITRE ATT&CK: Version 1.6.0 has landed! 👉Improved detection for Red Teaming and exploitation frameworks observed in latest reports, such as Brute Ratel and Metasploit. Continued...

AIR MITRE ATT&CK: Version 1.6.0 has landed! 

👉Improved detection for Red Teaming and exploitation frameworks observed in latest reports, such as Brute Ratel and Metasploit.

Continued...
DFIR Alert (@dfiralert) 's Twitter Profile Photo

👉Added detection for novel technique where Office document gets embedded into PDF file for defense evasion. 👉Added detection for various families and TTPs mentioned in the latest reports. *Update applies to Windows, Linux and macOS. ow.ly/3xF550PL3l0

👉Added detection for novel technique where Office document gets embedded into PDF file for defense evasion.
👉Added detection for various families and TTPs mentioned in the latest reports.
*Update applies to Windows, Linux and macOS.
 
ow.ly/3xF550PL3l0
DFIR Alert (@dfiralert) 's Twitter Profile Photo

Binalyze AIR MITRE ATT&CK: Version 1.7.1 has landed! 👉Added detection for archives taking advantage of WinRar vulnerability tracked as CVE-2023-38831. Continued...

Binalyze AIR MITRE ATT&CK: Version 1.7.1 has landed! 

👉Added detection for archives taking advantage of WinRar vulnerability tracked as CVE-2023-38831.

Continued...
DFIR Alert (@dfiralert) 's Twitter Profile Photo

👉Added detection for various info stealers targeting macOS and other trending malware 👉Improved detection for various tools used by APT and ransomware groups for privilege escalation, credentials dumping, network tunneling & more. ow.ly/qqt350PQ5t0 #yara #DFIR

👉Added detection for various info stealers targeting macOS and other trending malware
👉Improved detection for various tools used by APT and ransomware groups for privilege escalation, credentials dumping, network tunneling & more.

ow.ly/qqt350PQ5t0

#yara #DFIR
DFIR Alert (@dfiralert) 's Twitter Profile Photo

Binalyze MITRE ATT&CK Analyzer version 2.2.0 has just been released, and it comes packed with some fantastic updates! In this latest release, we've made significant improvements to enhance your threat detection capabilities. Here are the key highlights: Dynamo Enhancements: ✅

Binalyze MITRE ATT&CK Analyzer version 2.2.0 has just been released, and it comes packed with some fantastic updates!

In this latest release, we've made significant improvements to enhance your threat detection capabilities. Here are the key highlights:

Dynamo Enhancements:

✅
DFIR Alert (@dfiralert) 's Twitter Profile Photo

MITRE ATT&CK Analyzer version 3.1.0 is out now. Updated highlights include: ✅ Each detection now links to a MITRE ATT&CK Technique instead of Tactic only. #Yara: ✅ Added coverage for various malware families mentioned in our latest reports. ✅ Enhanced detection of

MITRE ATT&CK Analyzer version 3.1.0 is out now.

Updated highlights include:
 
✅ Each detection now links to a MITRE ATT&CK Technique instead of Tactic only.
 
#Yara:
✅ Added coverage for various malware families mentioned in our latest reports.
✅ Enhanced detection of