Keith KorbenD Wingo
@korbend_intel
Threat synthesis, the Korben Dallas way. Keith Wingo. Christian. Husband. Veteran.
ID: 915628924582924288
04-10-2017 17:25:21
2,2K Tweet
1,1K Followers
468 Following
🚨 FalconFeeds IOC Analysis – Aug 29, 2025 200+ active IOCs across botnets, stealers & APT infra: Rhadamanthys Stealer → 45.74.16[.]12:443 🇺🇸 Cobalt Strike → 45.153.124[.]230:8080 🇪🇺 AsyncRAT → 38.242.230[.]250:8808 🇩🇪 Extreme RAT → 145.82.185[.]205 (multi-port) 🇸🇦 Mozi
206.237.3[.]150 React2Shell CVE-2025-55182 exploit IP in AWS report. REF0657 Elastic Security Labs
🦔 Researchers at Aikido Security found 151 malicious packages uploaded to GitHub between March 3 and March 9. The packages use Unicode characters that are invisible to humans but execute as code when run. Manual code reviews and static analysis tools see only whitespace or blank