One custom RC4 seed led us to four botnets, five C2 channels, and a developer who shipped their Windows username and Cursor IDE logs with their malware.
Equal parts cryptography, thread-pulling, and easter eggs.
https://github.com/deepfield/public-research/blob/main/reports/2026-03-20-aisuru-ecosystem.md
#threatintel #Aisuru #kimwolf #jackskid #mossadproxy #cecilio

public-research/reports/2026-03-20-aisuru-ecosystem.md at main · deepfield/public-research
DDoS botnet research and indicators of compromise from Nokia Deepfield ERT - deepfield/public-research
GitHub13.09 fvtvristica x CLUB VISION x SYNERGY @ Dopo?Space - 13 Sep feat. Laurine, Cecilio, ANDREA SALVAGGIO + more
#SESH #Laurine #Cecilio #ANDREASALVAGGIO
https://sesh.sx/events/12230169
Love On The Rocks @ Berghain | Panorama Bar | Säule - 22 Aug feat. Soichi Terada, Cecilio, Giammarco Orsini + more
#SESH #SoichiTerada #Cecilio #GiammarcoOrsini
https://sesh.sx/events/12203042