Hi, French #security pro interested in #cybersecurity issues & Telecommunications Security. (#5G ,Incident Response, Threat Hunting, Intel analysis) Lang: EN&FR

Paris, France
Joined September 2014
🚨👉👈👀
Microsoft identified a limited number of targeted attacks. To protect customers, please see msrc.microsoft.com/update-gu… for mitigation guidance.
0
0
0
0
SwitHak (👁) retweeted
THREAD Found an interesting #PowerShell dropper today that uses multiple rounds of complex obfuscation, even actual encryption. And I reversed the whole things using one stupid trick: Replace 'Invoke-Expression' with 'Write-Host' Wanna see?
4
45
4
176
Show this thread
SwitHak (👁) retweeted
0 new OPEN, 13 new PRO (0 + 13). VictoryGate, CoinMiners, Others. For those of you attending #SuriCon2021 - be sure to attend 'Making CENTS of Malware Configurations' Oct 21st, 11:45-12:30 (EDT), by several members of the Emerging Threats team! lists.emergingthreats.net/pi…
0
4
0
6
SwitHak (👁) retweeted
Whatta TA: #TA505 Ramps Up Activity, Delivers New FlawedGrace Variant. ow.ly/8uU350Gu0XY
0
5
0
10
SwitHak (👁) retweeted
First GitHub, now Twitter. @apple is attacking me for posting a link (actually an IP address) to the website which hosts their documentation. And the website is still publicly available (google "Atlas is a toolbox" in quotes). How messed up is that!?
9
57
10
220
Only for my French followers Si vous êtes dans le Vaucluse et départements environnants, attention homme dangereux! Contacter la police du Vaucluse directement! ↘️
#Bollène 🚨 Intervention #gendarmerie en cours. + de 100 #gendarmes mobilisés. ⚠️ 𝐄𝐯𝐢𝐭𝐞𝐳 𝐥𝐞 𝐬𝐞𝐜𝐭𝐞𝐮𝐫 du massif du Barry. Individu en fuite, potentiellement dangereux et armé : si vous l'apercevez, n'intervenez pas vous-même et contactez immédiatement le 17.
0
0
0
0
👀🇫🇷 Defense Minister Parly making public the 3rd French cyber offensive capability in Influence Operations (IO) ↘️
Cyberdéfenseurs de la lutte informatique d’influence : « Un métier passionnant (…) Des places seront à prendre dans les prochaines années », au ministère des Armées, annonce @florence_parly.
0
0
0
0
SwitHak (👁) retweeted
Hi ! I search a sample of family Ransom:Win32/Macaw.A. You can ping me in DM #ransomware
1
3
0
4
SwitHak (👁) retweeted
New #espionage campaign using previously undocumented toolset attacking targets in South East Asia. symantec-enterprise-blogs.se… #apt
0
6
1
4
Dear operational MNO teams, here a really good primer how the port/IP assignment works for GTP. This is not that easy, in particular for collocated nodes it is easy to make mistakes. piped.kavin.rocks/watch?v=FPfExr9b…
0
0
0
0
👍
Dynamic Process Isolation: Research by Cloudflare and @tugraz. cfl.re/3ar6CCi #CloudflareResearch🔬
0
0
0
1
👀👀👀 ↘️
0
1
0
6
👀🔎🇷🇺
Nothing like an FBI raid in a DC NW neighborhood on a beautiful fall morning. @nbcnews @PoPville
0
0
0
0
SwitHak (👁) retweeted
#MagnitudeEK is now stepping up its game by using CVE-2021-21224 and CVE-2021-31956 to exploit Chromium-based browsers. This is an interesting development since most exploit kits are currently targeting exclusively Internet Explorer, with Chromium staying out of their reach.
3
44
9
60
Show this thread
#TSW Very interesting threat actor, deep understanding on how the Telecommunications networks works and its flaws. ↘️
🚨 CrowdStrike Intelligence reports multiple intrusions targeting the telecommunications sector from a sophisticated actor tracked as the LightBasin activity cluster. Read all about our investigation in the @ CrowdStrike blog → bit.ly/3DTM6qE via @dan__mayer
1
3
0
5
Cc @DTCERT @tbarabosch Very interesting one
0
0
0
2
SwitHak (👁) retweeted
#BlackMatter #ransomware-as-a-service has been targeting U.S. critical infrastructure since July 2021. We partnered with @CISAgov and @FBI to share the advisory with actor TTPs and mitigations. us-cert.cisa.gov/ncas/alerts…
11
191
16
328
🚨 Fake Malwarebytes support page and number 🔗 webservicesonline[.]info/antimalware-solution/antimalware.html ☎️ 406[-]344[-]5114 Create date: 2021-09-21 Domain name: webservicesonline[.]info Domain registrar: NameCheap, Inc @Namecheap could you please take action?
1
8
3
18