Sekoia.io(@sekoia_io) 's Twitter Profileg
Sekoia.io

@sekoia_io

A #SOCplatform driven by #threatintelligence and combining #SIEM, #SIRP, #TIP, #logmanagement in a single solution. Used by End-users, MSSP and APIs

ID:907525398631780353

linkhttps://www.sekoia.io/ calendar_today12-09-2017 08:44:50

708 Tweets

3,1K Followers

147 Following

Berta Jarosova(@bertajarosova) 's Twitter Profile Photo

⚠️‼️Statement on the Cyberattacks by Russian Actor APT28 against Czechia👇
mzv.gov.cz/jnp/en/issues_…

account_circle
crep1x(@crep1x) 's Twitter Profile Photo

(1/7) 💡 Illumination of a large resilient infrastructure distributing RAT using:
- Google Ads (malvertising)
- Traffic Distribution System (TDS)
- Fake websites
- MSIX

40+ IP addresses
70+ domain names

IoCs:
gist.github.com/qbourgue/62cee…

twitter.com/Threat_Down/st…

⬇️

(1/7) 💡 Illumination of a large resilient infrastructure distributing #NetSupport RAT using: - Google Ads (malvertising) - Traffic Distribution System (TDS) - Fake websites - MSIX 40+ IP addresses 70+ domain names IoCs: gist.github.com/qbourgue/62cee… twitter.com/Threat_Down/st… ⬇️
account_circle
crep1x(@crep1x) 's Twitter Profile Photo

Latest ACR Stealer C2 domains:
trxh.]xyz
trxh.]xyz
trxq.]xyz
trxu.]xyz

Stealer configuration on the URL '/ujs/9adbbdfd-2661-43e4-8280-7f9a9698f912'

Deobfuscation:
- base64
- XOR {38 35 32 31 34 39 37 32 33 00}

Configuration: gist.github.com/qbourgue/d0f06…

twitter.com/sekoia_io/stat…

Latest ACR Stealer C2 domains: trxh.]xyz trxh.]xyz trxq.]xyz trxu.]xyz Stealer configuration on the URL '/ujs/9adbbdfd-2661-43e4-8280-7f9a9698f912' Deobfuscation: - base64 - XOR {38 35 32 31 34 39 37 32 33 00} Configuration: gist.github.com/qbourgue/d0f06… twitter.com/sekoia_io/stat…
account_circle
Censys(@censysio) 's Twitter Profile Photo

🔍Discover how to proactively detect malicious activities with Censys data in our next webinar with  Sekoia.io. Explore challenges in monitoring decentralized infrastructures and see MalleableC2 in action📈Book your spot now: go.censys.com/April-Lunch-an…

account_circle