Johannes Bader
@viql
Reverse engineer / malware analyst. On the hunt for domain generation algorithms. Currently side project: rosti.bin.re
ID: 1713609325
https://bin.re/ 30-08-2013 19:47:39
195 Tweet
1,1K Followers
168 Following
Chris Sanders 🔎 🧠 Since there's probably a few big CyberChef aficionados here, I'll go ahead and pitch my little rival project, the binary refinery: 🏭 github.com/binref/refiner… It's (almost) like CyberChef, but it's a cross platform command line toolkit.
Nice #MooBot botnet caught by Fox_threatintel 😂 Botnet C2 domain: 🔥 putin.zelenskyj .ru Pointing to: 45.88.90.30:43957 (AS203168 Constant MOULIN 🇧🇪) DNS resolution provided by Cloudflare 🔎 Payload URLs: 🌐 urlhaus.abuse.ch/host/45.88.90.… Payload: 📄 bazaar.abuse.ch/sample/21f1caa…
Could you please share your IOCs in any format that is NOT low screenshots Cloudflare 🙏? blog.cloudflare.com/disrupting-fly…
According to GovCERT.ch , an unknown threat actor has sent out postal letters (yes, *postal* letters ✉️) to recipients in Switzerland that pretend to originate from MeteoSchweiz, luring the recipient into downloading and installing a rogue App 🔥🕵️♂️ The QR code in the letter