Danny 🌻 (@dadamitis) 's Twitter Profile
Danny 🌻

@dadamitis

Security Researcher @ Lumen, black coffee connoisseur, dog lover, follower of sea turtles, SHU 13, my thoughts are my own. (he/him)

ID: 102555574

calendar_today07-01-2010 02:54:45

2,2K Tweet

618 Followers

449 Following

Dakota Cary (@dakotaindc) 's Twitter Profile Photo

Love this quote. When talking about paying for an on-going lawsuit to harass the victims, one agent said: "[It] really is a drop in the bucket for a country to spend $1 billion or $0.8 billion to meet the political task assigned by the Central Government." IE. $ is no object.

securityledger (@securityledger) 's Twitter Profile Photo

Our latest #podcast is out with an interview with Danny 🌻 of Black Lotus Labs about #ZuoRAT #malware targeting SOHO routers and home networks with #APT-style tools. Recorded at #LabsCon22. zcu.io/4ktr #sponsored by ReversingLabs zcu.io/4ktr

Our latest #podcast is out with an interview with <a href="/dadamitis/">Danny 🌻</a>  of <a href="/BlackLotusLabs/">Black Lotus Labs</a>  about #ZuoRAT #malware targeting SOHO routers and home networks with #APT-style tools. Recorded at #LabsCon22. zcu.io/4ktr #sponsored by <a href="/ReversingLabs/">ReversingLabs</a> zcu.io/4ktr
Danny 🌻 (@dadamitis) 's Twitter Profile Photo

Setting up an account on the elephant app, hit me up there [email protected]. Don’t worry I’ll continue to provide the same threat intel, salty comments, and spicy memes as before.

SentinelLabs (@labssentinel) 's Twitter Profile Photo

New Research -- "Tainted Love" APT Operation ✴️Targeting Middle East telecom. ✴️ Likely connected to a Chinese groups in the nexus of Gallium and APT41. Full Report: sentinelone.com/labs/operation… By Aleksandar Milenkoski J. A. Guerrero-Saade 91 QGroup IT-Security

David Maynor (@dave_maynor) 's Twitter Profile Photo

github.com/Cybrary/CTIG_F… the base for a repo for low power tracker research. Expect more to be added. Great research sponsored by Cybrary! #flipperzero #ble #airtag

John Althouse (@4a4133) 's Twitter Profile Photo

Pivoting on the JDY C2 proxy cert hash in Hunt.io shows an IP, 45.76.67.43, that was not listed in Lumen's IOC list. Though it looks like it was only active for 2 days and has since been recycled back into Vultr.

Pivoting on the JDY C2 proxy cert hash in Hunt.io shows an IP, 45.76.67.43, that was not listed in Lumen's IOC list. Though it looks like it was only active for 2 days and has since been recycled back into Vultr.