Skip Navigation

Posts
282
Comments
15
Joined
2 yr. ago

blueteamsec @infosec.pub

Subtle Snail (UNC1549, TA455), an Iran-nexus espionage group linked to the Eclipsed Wasp (Charming Kitten) network, has been active since at least November 2022 - IoCs

blueteamsec @infosec.pub

WSL-Payloads: A small How-To on creating your own weaponized WSL file

blueteamsec @infosec.pub

Detection Engineering: Practicing Detection-as-Code - Validation - Part 3

blueteamsec @infosec.pub

Linux-persistence: A no-reboot, in-memory Linux persistence PoC leveraging namespace joining, user-namespace elevation, and self‑deletion.

blueteamsec @infosec.pub

The Threat Hunter's Cookbook

blueteamsec @infosec.pub

SCENE 1: SoupDealer - Technical Analysis of a Stealth Java Loader Used in Phishing Campaigns Targeting Türkiye

blueteamsec @infosec.pub

クルド人グループによる日本の組織を狙ったサイバー攻撃 - Cyber attacks by Kurdish groups targeting Japanese organizations

blueteamsec @infosec.pub

Microsoft Releases Guidance on High-Severity Vulnerability (CVE-2025-53786) in Hybrid Exchange Deployments

blueteamsec @infosec.pub

BamboozlEDR: A comprehensive ETW (Event Tracing for Windows) event generation tool designed for testing and research purposes.

blueteamsec @infosec.pub

Hidden Black Hands: How $1.46 Billion Disappeared in Silence - "This incident demonstrates the exceptionally targeted nature of Lazarus's attacks"

blueteamsec @infosec.pub

turnt: A tool designed for smuggling interactive command and control traffic through legitimate TURN servers hosted by reputable providers such as Zoom.

blueteamsec @infosec.pub

Trust Me, I’m a Legitimate Process: Verisimilitude and the Art of Hiding

blueteamsec @infosec.pub

Threat actors: “Please do not use Okta FastPass”

blueteamsec @infosec.pub

From The Depths of the Shadows IRGC and Hacker Collectives Of The 12-Day War

blueteamsec @infosec.pub

Cyber Assessment Framework v4.0 released in response to growing threat - UK

blueteamsec @infosec.pub

ThrottleStop driver abused to terminate AV processes

blueteamsec @infosec.pub

UEFI Bootkit Hunting: Deep Search for Unique Code Behaviors - Chinese

blueteamsec @infosec.pub

Stored XSS in OpenVPN Dashboard widget

blueteamsec @infosec.pub

yaraast: A powerful Python library and CLI tool for parsing, analyzing, and manipulating YARA rules through Abstract Syntax Tree (AST) representation

blueteamsec @infosec.pub

GRITREP: Observed Malicious Driver Use Associated with Akira SonicWall Campaign

  • Nope, very manual and the plan is to stay here :) - I managed to keep the last community going at this rate for ~8 years.

  • Almost need 'Voyager link post'

  • I wanted to do browser to Lemmy I get this