Jay Rosenberg
@jaytezer
Formerly ----------------------
GReAT @kaspersky
@IntezerLabs
ID:870249355051225088
01-06-2017 12:03:09
561 Tweets
1,4K Followers
419 Following
Merry Christmas / Happy Chanukah to all my friends! From myself & Vitali Kremez visiting in Miami! 🎄
✅When I was writing the last RE course lesson, I credited and thought a lot remembering Jay Rosenberg's excellent presentation from confidenceconf on 'Utilizing YARA to Find Evolving Malware'
🙂I highly recommend watching it for YARA code reuse zen -> youtube.com/watch?v=XMZ-c2…
2019-11-14: Let's Learn: [Last 12th Session of RE Course] ' #YARA Hunting for Code Reuse: “(Bit)|(Doppel)Paymer” #Ransomware & “ #Dridex ” Kinship Family' |
Writing YARA Code Reuse Rules that Last |
🔦Dridex API Hashing -> #BitPaymer & #DoppelPaymer & Loader
sentinelone.com/blog/yara-hunt…
Virusbay blog is finally up!
We begin with decryption of #Whiterose ransomware / by void m4p(): blog.virusbay.io/2019/08/05/how…
and additional 2 parts blog / by 0verfl0w, who’s also one of our Divers, about #Turla KLSL0T!
Enjoy!
Well, Vitali Kremez & Ido Naor attribute this ransomware to me because they don’t think else anyone would include “Gucci gang” in the ransom note. Caught me! 😂😂😂
#attributionthroughraplyrics