
Florian Roth ⚡️
@cyb3rops
Head of Research @nextronsystems #DFIR #YARA #Sigma | detection engineer | creator of @thor_scanner, Aurora, Sigma, LOKI, YARA-Forge | always busy ⌚️🐇 | vi/vim
ID: 1538299243
https://linktr.ee/cyb3rops 22-06-2013 08:46:16
34,34K Tweet
197,197K Takipçi
2,2K Takip Edilen

Low detection rate on "WindowsSecurity.dll" - likely crafted for side-loading through WeChat in place of "xweb_elf.dll" virustotal.com/gui/file/89990… THOR APT Scanner #apihashing #rc4 #pebwalking






A colleague and me wrote an article about EvilConwi -- signed ConnectWise remote access software being abused as malware G DATA Global #GDATATechblog gdatasoftware.com/blog/2025/06/3…





