Tom Hegel (@tomhegel) 's Twitter Profile
Tom Hegel

@tomhegel

Distinguished Threat Researcher, Research Lead @SentinelOne,
Advisor with @ValidinLLC

ID: 3279943920

linkhttp://tomhegel.com calendar_today14-07-2015 22:30:31

1,1K Tweet

6,6K Followers

732 Following

Tom Hegel (@tomhegel) 's Twitter Profile Photo

1/ A pro-Hamas persona is making noise from recent airport “hacks”, including broadcast system defacements in 🇨🇦 Kelowna & 🇺🇸 Harrisburg. But digging deeper, their actions remain low-impact and opportunistic. Lets take a deeper look..🧵

Tom Hegel (@tomhegel) 's Twitter Profile Photo

DPRK APTs continue to innovate in ways few other state actors do. Their creativity might be malicious, but it’s definitely impressive.

Elastic Security Labs (@elasticseclabs) 's Twitter Profile Photo

#ElasticSecurityLabs joins forces with Texas A&M System and discloses TOLLBOOTH, an IIS module used for SEO abuse that relies on publicly exposed ASP. NET machine keys: go.es.io/3L68p57

Tom Hegel (@tomhegel) 's Twitter Profile Photo

🔥New research release PhantomCaptcha: A short-lived, multi-stage PowerShell + WebSocket RAT operation targeting Ukraine-linked humanitarian & gov entities. Full report: s1.ai/pcapt

Digital Security Lab Ukraine (@dslab_ukraine) 's Twitter Profile Photo

🚨 SentinelLaboratories, together with the Digital Security Lab of Ukraine, has uncovered a coordinated spearphishing campaign targeting members of the Red Cross, Norwegian Refugee Council, UNICEF, and other NGOs supporting Ukraine, as well as regional government officials.

🚨 <a href="/SentinelLabs/">SentinelLaboratories</a>, together with the Digital Security Lab of Ukraine, has uncovered a coordinated spearphishing campaign targeting members of the Red Cross, Norwegian Refugee Council, UNICEF, and other NGOs supporting Ukraine, as well as regional government officials.
The OSINT Newsletter (@osintnewsletter) 's Twitter Profile Photo

If you’re reversing domains or mapping infrastructure - check out Validin. DNS intelligence, WHOIS, certificates, subdomains, host responses - all in one place. Check it out here: validin.com

Tom Hegel (@tomhegel) 's Twitter Profile Photo

Tough choices in the new 2025 robot vacuum battle.. 1. US based Matic Robots doing local processing, with stronger security & privacy by design. 2. DJI Romo, uploading your home layout, location, and usage details straight to China and sharing with a few friendly third parties.

J. A. Guerrero-Saade (@juanandres_gs) 's Twitter Profile Photo

Excited for a special episode of the Three Buddy Problem, as Dave Aitel join us to talk about the announcement of OpenAI fabled bug finding security agent 'Aardvark' along with our usual security news roundup. Livestream in ~30m (11:30am ET): youtube.com/watch?v=7IkmOX…