Max Rogers
@maxrogers5
Sr. Director of SOC at Huntress. Ex-Mandiant/FireEye. Bringing security to the Fortune 5,000,000.
ID: 457368684
07-01-2012 10:00:22
1,1K Tweet
3,3K Followers
1,1K Following
WOOOOOO!!!! Come hang on Jan 24th! Super excited to hang at AtomicsonaFriday to talk about JonMon2.0.
New @huntress blog where alden Greg Linares (Laughing Mantis) and I tell the story of ๐ต๏ธand ๐ค โก๏ธ๐๏ธ some cyber espionage activity in 2024. Always feels good to learn something interesting and then use it to stop real threats with our team at Huntress! ๐ชhuntress.com/blog/the-hunt-โฆ
๐จ The RMM threat landscape is evolving! ๐จ Recent attacks, like those highlighted by Huntress ๐ก๏ธ & CERT-UA ๐บ๐ฆ, show how adversaries ๐ญ weaponize RMM tools ๐ ๏ธ for persistence ๐ & lateral movement โ๏ธ. ๐ Enter LOLRMM: your ๐งโโ๏ธ ally in detecting ๐ & preventing ๐ซ RMM abuse.
Yeah ๐, this is done through a tracking template. They set the final URL to be a legitimate website, but then with the tracking template have it go through a different domain first that then redirects you wherever they like. support.google.com/google-ads/ansโฆ It's shit for security
ATT&CK ๐ข Shout-out to #HijackLibs's many contributors, including recent additions from @cyberraiju, @xorjosh, Faraday (all of Huntress), swachchhanda Poudel, ๅฎๅๆๆตท Azaka || VTuber, ice-wzl - thanks for sharing your findings with the cyber security community ๐ฅ
Mac's don't get viruses, right? ๐ Deepfake Zoom calls. AppleScript lures. Rosetta 2 abuse. Plenty of custom malware: Nim backdoor, Go infostealer, Obj-C keylogger, and more! Amazing write-up by alden, Stuart Ashenbrenner ๐บ๐ธ ๐จ๐ฆ, and Jonathan Semon ๐ฅ ๐ huntress.com/blog/inside-blโฆ
Not only is Huntress a generous supporter of our Foundation, they also consistently publish top-notch research on emerging macOS threats ๐คฉ Their latest (by alden & Stuart Ashenbrenner ๐บ๐ธ ๐จ๐ฆ): "Feeling Blue(Noroff): Inside a Sophisticated DPRK Web3 Intrusion": huntress.com/blog/inside-blโฆ