Ruben Groenewoud
@rfgroenewoud
A security research engineer at @Elastic focusing mainly on Linux behavior-, signature- and ML-based detection engineering. Github: github.com/Aegrah
ID: 1487011738604249089
https://www.rgrosec.com/ 28-01-2022 10:37:09
156 Tweet
487 Followers
272 Following
Deep dive into Azure OAuth phishing & detection! This article from Terrance DeJesus shows how rich telemetry is crucial for spotting identity-based attacks. Stop relying on static indicators & start: go.es.io/4k4A7LD #CloudSecurity #ThreatDetection #Azure
New backdoor alert: MystRodX, this stealthy C++ malware has evaded detection for 20+ months. Key twist: In passive mode, it lurks silently, waiting for ICMP pings or DNS queries to trigger C2 comms—no open ports needed. Active since Jan 2024. Details: blog.xlab.qianxin.com/mystrodx_cover…