Malware Dropbear

41 Followers
101 Following
41 Posts
Cyber Intelligence Nerd | Security Researcher | PhD Student | Twitter Migrant
Just another Infosec researcher trying to give back to the community.
SANS660 Advance Pen Testing - once again I am not a massive SANS fan but the modules for Network Attacks and Fuzzing were really good. This wouldn’t be my recommendation for exploit dev (I would say try exp301 or Corelan Exploit Development for Windows)
CodeMachine Windows Kernel Internals - Geez this was a firehose of information, but a lot of awesome insights. Really recommend this course for anyone who wants to go deep on the Windows Kernel.
SANS670 Red Team Tool Development - awesome course, I normally try and stay away from SANS courses as I think they are overpriced for the content, but this course was genuinely really enjoyable and a lot of takeaway. Make sure do John’s Intro for C for Windows Dev series, really good primer.
Some course I managed to get on last year and my thoughts on them:
@DiligentSentinal it’s a fork of OSSEC (an HIDS), a free software with great community!

Fellow infosec researchers o/

Are any of you running IDS's on your home setups, if yes what are you running?

#IDS #infosec #security

@axi0kers0s @DiligentSentinal Hybrid Analysis and MalwareBazaar (which i forgot) are the only ones I know of that let you YARA hunt and download samples for free
@axi0kers0s @DiligentSentinal vx, malshare, and Hybrid-Analysis

Threat Researchers, what's your favourite place to grab malware samples

#malwareanalysis #malware #threatintel #reverseengineering #ioc

Interesting way of spreading malware, obviously relies on the presence of vulnerable WI-FI routers, however, there are plenty of those laying around...

https://www.bleepingcomputer.com/news/security/roaming-mantis-android-malware-adds-dns-changer-to-hack-wifi-routers/

Roaming Mantis’ Android malware adds DNS changer to hack WiFi routers

Starting in September 2022, the 'Roaming Mantis' credential theft and malware distribution campaign was observed using a new version of the Wroba.o/XLoader Android malware that incorporates a function for detecting specific WiFi routers and changing their DNS.

BleepingComputer