JBL
banner
jbl-cyber.bsky.social
JBL
@jbl-cyber.bsky.social
-SecOps, DFIR, OSINT, CTI
-grappling/jiu-jitsu
-science believer
-data-driven
-gumbo connoisseur

Signal: nocilis.94
Well, this should be interesting.
www.reddit.com/r/cybersecur...
From the cybersecurity community on Reddit
Explore this post and more from the cybersecurity community
www.reddit.com
December 17, 2024 at 12:06 AM
Reposted by JBL
December 16, 2024 at 4:55 PM
Reposted by JBL
i'm sure it is fine.. let me check my bank balance ...
December 7, 2024 at 6:14 AM
Reposted by JBL
Palo Alto Networks has looked at FrostyGoop (BUSTLEBERM), the malware used by Russia to cut heating to 600 Ukrainian apartment buildings earlier this year

unit42.paloaltonetworks.com/frostygoop-m...
FrostyGoop’s Zoom-In: A Closer Look into the Malware Artifacts, Behaviors and Network Communications
We analyze FrostyGoop malware, which targets OT systems. This article walks through newly discovered samples, indicators, and also examines configurations and network communications. We analyze Frosty...
unit42.paloaltonetworks.com
November 19, 2024 at 2:10 PM
Reposted by JBL
Vulnerability names: this is log4shell. We named it this way because it's in log4j and gives you shell.

Threat actor names: this is HAIRY EEL, aka VIOLIN HIPPO, no relation to VEXING MACKEREL. Also known as APT-74, formely APT-C-92. We named it this way because he's a guy in Bulgaria
November 19, 2024 at 7:54 PM