Denis (@unmaskparasites) 's Twitter Profile
Denis

@unmaskparasites

Working with the world's largest collection of classified website malware

ID: 17446164

linkhttps://unmask.sucuri.net/ calendar_today17-11-2008 17:47:49

2,2K Tweet

2,2K Followers

40 Following

Denis (@unmaskparasites) 's Twitter Profile Photo

Nice post about how most browser push notification ads work and how they can be easily abused gosecure.ai/wp-content/upl…

Expel (@expelsecurity) 's Twitter Profile Photo

Our SOC noticed that some attackers using the ClickFix and Fake Captcha technique are also providing text incase their payloads are read by AI or LLM. Learn more about fake captchas: expel.com/blog/expel-qua…

Our SOC noticed that some attackers using the ClickFix and Fake Captcha technique are also providing text incase their payloads are read by AI or LLM.

Learn more about fake captchas: expel.com/blog/expel-qua…
GoDaddy (@godaddy) 's Twitter Profile Photo

Our security researchers have uncovered "DollyWay World Domination" — a sophisticated malware operation that has compromised over 20,000 websites globally since 2016. Learn how the latest variant of this threat operates in part 1 of this series. godaddy.com/resources/news…

BleepingComputer (@bleepincomputer) 's Twitter Profile Photo

Malware campaign 'DollyWay' breached 20,000 WordPress sites - Bill Toulas bleepingcomputer.com/news/security/… bleepingcomputer.com/news/security/…

Denis (@unmaskparasites) 's Twitter Profile Photo

In this second follow-up post about the DollyWay malware operation, I explore the distributed DollyWay TDS/C2 nodes: architecture, redirect partners, statistics and estimated reach of the campaign godaddy.com/resources/news…

GoDaddy (@godaddy) 's Twitter Profile Photo

Inside the DollyWay malware operation: In part II of the series, security researcher Denis explores the DollyWay campaign's distributed C2/TDS nodes, revealing redirect partners and campaign statistics. godaddy.com/resources/news…

Denis (@unmaskparasites) 's Twitter Profile Photo

Our analysis of 70.8 million global website scans in 2024: Top website malware: Balada Injector, SocGholish, Japanese SEO spam. Top trend: Fake browser updates and captchas. New threat: Web3 cryptodrainers on compromised sites.

Daniel Cid (@danielcid) 's Twitter Profile Photo

Expanded DNSArchive to also add web headers, CMS versions, links , css files, etc. You can now search for it here (in beta): dnsarchive.net/web-search Ex: All sites using PHP/5.2: dnsarchive.net/web-search?q=P… And you can still do DNS specific search here: dnsarchive.net/search

Denis (@unmaskparasites) 's Twitter Profile Photo

I can see quite a few sites with this skimmer publicwww.com/websites/%22UR… Currently using wss://kefersuc[.]xyz, wss://babymarket[.]io