Myrtus
@malwareindepth.com
Malware Researcher | Developer | @Cryptolaemus1 | @NVIDIA Will happily talk about malware with anyone.
Reversing these latest rhadamanthys samples is genuinely the worst experience ive ever had with a sample. Hate this fucking malware 🫠🫠🫠
'Meredith,' some guys ask, 'why won't you shove AI into Signal?' Because we love privacy, and we love you, and this shit is predictable and unacceptable. Use Signal ❤️
If you’ve been laid off from a cyber intel position, please reach out if you’d like to come to @sleuthcon.bsky.social.
seeing all the botconf posts this week, gives me major FOMO. Glad it went so well! Really hoping talks are uploaded at some point :)
XAMPPRocky / tokei: Count your code, quickly. ★12485 https://github.com/XAMPPRocky/tokei
XAMPPRocky / tokei
Count your code, quickly.
github.com
/1 I don’t know how many folks will show up Sunday, but we’re gonna have a blast. We’ll kick things off with a short presentation covering the basics of intrusion analysis and the investigative mindset. Then it’s straight into DFIR Labs where you’ll walk through a real intrusion step by step.
Join me on an adventure about a Russian DRM, deception and anti-piracy measures disguised as bugs! It's a technical writeup about how I reverse engineered and preserved a rare variant of Lego's gaming history - Lego Rock Raiders (Russian Edition) layle.me/posts/lego-r...
A Story about a Russian DRM and Lego Rock Raiders
I was approached by “The Research Realm” - a collective aiming to preserve Lego’s history - to create a No-CD crack and fix for a rare version of Lego Rock Raiders.
layle.me
This article that starts getting traction claims that the official RVTools website was distributing a malicious installer leading to Bumblebee. I see zero evidence of this actually being the case. 1/2
We are very excited to announce that Volatility 3 has reached parity with Volatility 2! With this achievement, Volatility 2 is now deprecated. See the full details in our blog post: volatilityfoundation.org/announcing-t...
Announcing the Official Parity Release of Volatility 3!
Visit the post for more.
volatilityfoundation.org
Life Update ▶️I'm back on the job market ◀️ Looking for: - backend engineering role - nyc hybrid preferred, but willing to do full in office or strong remote culture
Why would a disassembler struggle to handle this function (this is the entire thing)
Zydis can dump detailed info about each byte in an assembly instruction :) fantastic for patching
We report stories that keep you and your community informed, every day, without fear or favor. Millions depend on the NPR Network. Now, we’re counting on you. Donate here: n.pr/3EYClNR
Was one of many let go by the Dot. Got to break a ton of great stories there: the exposure of the US No Fly list, gaining early access to Truth Social & registering an account as Trump, & countless others on hacks, leaks, & misinfo. Looking for a new gig, so don't hesitate to reach out.
The Daily Dot—a site that helped define the internet era and was a launch pad for me and a ton of your favorite journalists like @marisakabas.bsky.social, @ericgeller.bsky.social, @asankin.bsky.social, @kevincollier.bsky.social, @williamturton.bsky.social, @kateconger.com & more—has been gutted. RIP
France just called out GRU Unit 20728 (166th Research Information Centre), posted up in Rostov-on-Don, for cyberattacks. Kremlin got new ops on the board. www.diplomatie.gouv.fr/en/country-f... @wylienewmark.bsky.social
Russia – Attribution of cyber attacks on France to the Russian military intelligence service (APT28) (29.04.25)
France condemns in the strongest terms the use by Russia's military intelligence service (GRU) of the APT28 attack group, at the origin of several (…)
diplomatie.gouv.fr
make sure to set your bitness correctly when analyzing shellcode in IDA friends
A lot of my infra workflows live in Slack threads, docs, or buried in shell history. That sucked. I've been building Atuin Desktop. Local-first, CRDT-powered, executable runbooks - with integrated terminals, sql queries + monitoring blog.atuin.sh/atuin-deskto... Lmk if you have any questions <3
HELL YEAH if let chains are stabilized!!! github.com/rust-lang/ru...
Stabilize let chains in the 2024 edition by est31 · Pull Request #132833 · rust-lang/rust
Stabilization report This proposes the stabilization of let_chains (tracking issue, RFC 2497) in the 2024 edition of Rust. What is being stabilized The ability to &&-chain let statements in...
github.com
Psssst if your CTI vendor assessed "Lazarus group" as a priority threat actor for you, it's time to get a new CTI vendor.
Hey artists! Would you like to have your art featured in the print edition of Phrack 72? You can email us at arts@phrack.org
My first blog with Proofpoint is live! And we love a good crossover. State-sponsored actors try their hand at ClickFix - the hottest thing in cybercrime. Meet the North Koreans, Iranians, and Russians who are upping their social engineering game www.proofpoint.com/us/blog/thre...
Around the World in 90 Days: State-Sponsored Actors Try ClickFix | Proofpoint US
Key Findings While primarily a technique affiliated with cybercriminal actors, Proofpoint researchers discovered state-sponsored actors in multiple campaigns using the ClickFix social
proofpoint.com