Simo
banner
nembo.bsky.social
Simo
@nembo.bsky.social
DFIR and Malware analyst 🇮🇹
Views are my own and don't reflect the views of my employer.
Reposted by Simo
Security firm Synthient has launched a free-to-use and searchable online database of known proxy IPs

synthient.com/blog/synthie...
Synthient
Synthient detects and blocks bad actors from your platform. Get access to the latest in threat intelligence and bot detection.
synthient.com
September 14, 2025 at 2:38 PM
Reposted by Simo
New blog post of me analyzing a crash dump with the bugcheck 0x9F. Root cause was a power IRP timeout in RAS SSTP during a device removal. The post walks PnP locks, the stuck IRP, and more, including my thought process. Check it out here: medium.com/@Debugger/po...
Power IRP timeout in RAS SSTP causes Blue Screen 0x9F during sleep
We’ll first start with the !winde.infocommand, which tells us that this system is a Windows 10 version 19041 on an 8 core Intel machine…
medium.com
September 12, 2025 at 5:46 PM
Reposted by Simo
Periodic reminder that ransomware groups aren’t anti-heroes, aren’t just causing trouble to major corporations and should absolutely not be treated like anything other than the bastards they are.
Save the Children International hit with cyberattack, but says operations weren’t impacted
The global charity organization Save the Children International confirmed that it was recently hit with a cyberattack after a ransomware group claimed to have breached the organization’s systems.
therecord.media
September 13, 2023 at 12:26 PM