Snorre Fagerland

162 Followers
209 Following
16 Posts
Threat researcher, RSAC
@catsalad at an earlier workplace we wasted an entire offsite workshop because someone brought that up
@jonn_blanchard Names are hard to get right. Eg my onlyfans site never really took off even tho it should be a perfect fit for the niche

As some of you know, I run VHP - the Virus History Project on Github. Aim: To preserve historic malcode from going out of time. A lot of code is already gone for good.

Historic typically means pre-Win32 (ie not currently viable, though there are grayzones here).

I am always on the lookout for old malware and malware-adjacent material, specially for platforms that are poorly preserved and not often found in public repos like VT, malshare, vx-underground etc.

If you have oddball material, samples, war stories, POC's and experiments from back in the day, please give me a ping. Both your privacy and your contribution will be respected. I can be reached here and on snoffle(at)proton.me.

VHP is at:
https://github.com/SnorreFagerland/virushistory

@thoughtbox Hehe, ok. Let me know if it happens. Sounds like an old Risc box could be fun to get running regardless.
@thoughtbox Fantastic. Reason I ask, and I know this is a looong shot: I try to preserve old malcode from going entirely extinct. And Acorn viruses are (possibly) gone from history - unless folks like you have stored them somehow. You would not happen to have preserved some of this stuff?
@thoughtbox This is going to sound weird, but are you the same Tor that used to be active in the Acorn Archimedes community decades ago?
@briankrebs Do you have a feel for how Constella has compiled this intel? Some of the data sources floating around are not exactly stellar (eg combolists where people have scripted in bogus emails based on valid addresses just to beef up the set)
There are very few people I respect more than Lise Klaveness. She is *formidable* and her stainless steel spine is legendary. I suspect she and people like her is the future of organized football/soccer.
Jeg snakker ikke samenes sak. Det gjør de utmerket selv. Men jeg vil gjerne at den norske rettsstaten skal fungere, og det gjør den da teknisk og formelt ikke når statsapparatet ignorerer høyesterettsdommer? Javisst er det dyre konsekvenser av å gjøre ulovlige ting. Regjeringen Solberg's OED ga konsesjon til utbygging på tross av advarsler og pågående anker, og tok en bevisst og kalkulert risiko på at ankene ikke ville føre frem. Staten Norge tapte det veddemålet. Nå sitter Støre igjen med svarteper og vil veldig gjerne at saken bare forsvinner. Det kommer den ikke til å gjøre, men kanskje Solberg får den i retur hvis han trenerer lenge nok.
I hadn't noticed, but APT40 used OneNote to embed malware already back in 2017.