| Personal Blog | https://wav3.io |
| GitHub | https://github.com/wav3-io |
| SecResearch | https://blog.grumpygoose.io |
| Personal Blog | https://wav3.io |
| GitHub | https://github.com/wav3-io |
| SecResearch | https://blog.grumpygoose.io |
Does anyone happen to have the OUI's associated with the top devices associated with #kimwolfbotnet #kimwolf #threatintel #ioc
Trying to avoid going shopping on alibaba for them..
REF: https://github.com/synthient/public-research/blob/main/2026/01/kimwolf/product_names.csv
https://www.twitch.tv/bsidespyongyang
I hope everyone is attending the conference today. Dear leader will be displeased if you don't
Made a new post with some DPRK related Indicators for KVM over IP Devices and Hunting for Fraudulent Workers. Beware of meme's...
https://blog.grumpygoose.io/be-kvm-do-fraud-8ab523d26c9d
#dprk #fraud #itfraudworkers #cybersecurity #ioc #northkorea #threatintel #hunting
Probably late to the party, just a casual spike there @torproject
Should really build a gauge on TOR utilization numbers and "probably a massive cyber incident"
Everyone over here like "omg Lisa Monaco" and I guess they already forgot about what happened to @briankrebs and SentinelOne.
The DPRK intel legend SttyK just posted a reference to 1,400+ email addresses used by DPRK IT Worker
SttyK Original Post:
https://x.com/SttyK/status/1956180410104471917