A quick note on process regarding the recent AUR story. Everything worked exactly as community-driven threat intel should.

  • A user tipped us off
  • We investigated and reported
  • Community feedback refined the intel
  • Everyone got the necessary information
  • We protected each other.

    #ThreatIntelIsMutualAid

    @ifin let's see Microsoft do that. :)
    @ifin I got notified in time, got the necessary information, could investigate the indicators of compromise, and it took me around 20 minutes. For me it was a false positive, luckily.