Tracking Candiru’s DevilsTongue Spyware in Multiple Countries
digicat @ digicat @infosec.pub Posts 245Comments 14Joined 2 yr. ago

elfspirit: ELF static analysis and injection framework that parse, manipulate, patch and camouflage ELF files.
Breaking NVIDIA Triton: CVE-2025-23319 - A Vulnerability Chain Leading to AI Server Takeover
Demystifying threat intelligence in digital advertising - includes their own pyramid of pain
Exorcism: The first open source runtime windows batch and command line deobfuscator
IOCTL_VOLSNAP_DELETE_SNAPSHOT: Querying And Deleting Shadow Copies Using The IOCTL_VOLSNAP_QUERY_NAMES_OF_SNAPSHOTS & IOCTL_VOLSNAP_DELETE_SNAPSHOT IOCTLs
Perplexity is using stealth, undeclared crawlers to evade website no-crawl directives
Quantum networking technologies - "we provide an updated analysis of QKD as a security technology, and the development of QRNGs. We also consider the future of quantum networking technologies."
Tracing ToneShell: Mustang Panda's Evolving Tradecraft and Campaign Infrastructure
APT36 Targets Indian Infrastructure with Desktop Lures and Poseidon Backdoor
Protecting the Evidence in Real-Time with KQL Queries - "monitoring for attempts to modify the corresponding registry keys can help us generate early alerts and detect potential tampering."
DHS Launches Over $100 Million in Funding to Strengthen Communities’ Cyber Defenses | CISA
PlayPraetor's evolving threat: How Chinese-speaking actors globally scale an Android RAT
How to automatically disable users in AWS Managed Microsoft AD based on GuardDuty findings
Investigating Suspicious Memory Activity: Tracing a SIEM Alert to a Cobalt Strike C2
itw usage - https://x.com/nextronresearch/status/1952343189148360867