Randy 🇺🇦

518 Followers
848 Following
264 Posts
Слава Україні! 💙🇺🇦💪🏼
Most important job: being Dad; I also love to help people deny attackers the opportunity to break and steal all the things. 
One of the organizers of #DEATHCon for Detection Engineers And Threat Hunters 
💙Python && C++
Pronouns: He/him
DEATHCon websitehttps://deathcon.io
Feed people in Ukrainehttps://wck.org/
SUP, Heron
Nice analysis of a voicemail themed phishing lure on Gmail: https://malwr-analysis.com/2025/08/16/watch-out-for-this-gmail-scam/
Watch Out for This Gmail Scam

This week, I received an email claiming I had a “New Voice Notification”. The email included a big “Listen to Voicemail” button: Looking at the email headers revealed even more: The email was sent …

Malware Analysis, Phishing, and Email Scams

#DEATHCon2025 merch is now available! https://deathcon.io/merch.html

This year, 100% of the proceeds go directly to @kc7cyber KC7 Cyber Foundation to support free cybersecurity education for all!

We 😘 u, KC7!

Merch - DEATHCon 2025 - Detection Engineering and Threat Hunting

DEATHCon - Detection Engineering and Threat Hunting Workshops

DEATHCon online/remote ticket sale round 1 will start Monday 7th of July at 00:01 UTC! https://www.worldtimebuddy.com/?pl=1&lid=100,8,5,3860259,2759794,1735161&h=100&date=7/7/2025%7C3&hf=1 Last year they sold out in 24h 😳

On-site tickets will be available on 7/7 at around 10am local time for each site.

All details here: https://deathcon.io/tickets.html

This year, we're making online tickets affordable no matter what your geography, economy, or work situation with pay-what-you-can pricing. We want everyone to have access to great workshops and hands-on threat hunting training!

World Clock & Time Converter

Effortless time conversion and world time. Schedule conference calls, webinars & online meetings, plan travel and track flight arrival time across time zones.

Worldtime Buddy

We are excited to announce another great workshop accepted from @hashfastr for #DEATHCon2025 -- we'll get hands-on to learn about his new open source language to query logs, Hash query language (Hql). What makes this intriguing is that it is based on one of the best and most expressive languages: Kusto (KQL)! We love KQL and wish it was available everywhere outside the Microsoft ecosystem. This just might be the way to get there.

Check out this and 20 other awesome workshops on Detection Engineering and Threat Hunting at https://deathcon.io/workshops.html

Tickets go on sale July 7. Keep an eye out if you want to go, because last year the online tickets sold out in under 24 hours.

DEATHCon Workshops 2025

Please raise your hand if you've disabled PowerShell 2.0 on your Windows systems. What? Didn't know that was a thing you should do? PowerShell 2.0 does not have any of the modern logging and security features that newer versions like v5.1 or 7.x have. But if you don't remove or disable the old 2.0 version, it can be used and abused by malware, info stealers, ransomware operators, etc. Here's an article that provides you with several ways to remove it from you systems (while keeping the newer version in place) #cybersecurity

https://powershellcommands.com/disable-powershell-20

How to Disable PowerShell 2.0 Effectively

Discover how to disable PowerShell 2.0 effortlessly. This succinct guide leads you through essential steps for securing your systems.

Powershell Commands

Something to chew on, this Pride month:

As a cis and/or hetero person, you don't have to understand how it feels to be gay, pan, or ace, to be trans, enby, genderfluid or any other identity or orientation. You don't need to intellectually "get" it. It doesn't have to make sense to you.

There's nothing more to it than taking people's word for how they feel, and standing alongside them, as they simply live their lives as themselves.

Much love 

What do we do during a power outage? We IPL zOS, that's what.
Hey @hacks4pancakes I think you will love this. On "Somebody Feed Phil" we saw this cute little pancake house in Amsterdam: https://maps.app.goo.gl/eSMMytNWeLQ3gK2p8
The interview with the owner was adorable, but what really caught my interest was his creation: Bacon Brie and Honey pancake. I was inspired to make them at home for my family this morning, since Amsterdam is a bit far to travel for pancakes
Los Angeles Dodgers say they denied Ice agents entry to Dodger Stadium

Baseball team says Ice agents were denied permission to access parking lots but agency claims agents ‘were never there’

The Guardian