Till
skywlkr007.bsky.social
Till
@skywlkr007.bsky.social
Cyber Security Enthusiast
All opinions are my own and don’t represent in any way my employer.
Reposted by Till
#CERTUA warns defenders about a targeted cyber-espionage operation by #UAC0200 targeting the Armed Forces of Ukraine. Detect associated malicious activity with #Sigma rules from SOC Prime Platform.
buff.ly/Gvtw6KS
#infosec #cybersecurity
UAC-0200 Attack Detection: Cyber-Espionage Activity Targeting Defense Industry Sector and the Armed Forces of Ukraine Using DarkCrystal RAT - SOC Prime
Detect UAC-0200 attacks against the defense industry sector and the Armed Forces of Ukraine using DarkCrystal RAT with Sigma rules from SOC Prime.
buff.ly
March 19, 2025 at 9:49 AM
Reposted by Till
March 11, 2025 at 10:23 AM
Reposted by Till
#FactsOnFriday
🇺🇦 #Ukraine is a sovereign nation.
🇺🇦 Ukraine is a sovereign democracy.
🇺🇦 Ukraine’s President, Volodymyr Zelenskyy was elected by the people of Ukraine.
🇺🇦 Ukraine was invaded by Russia in 2014.
🇺🇦 Ukraine was invaded by Russia in 2022.
🇺🇦 Crimea is Ukraine.
🇺🇦 Donbas is Ukraine.
February 21, 2025 at 4:07 PM
I am running a webinar for @socprime.bsky.social on Monday focused on the German speaking market that covers Innovations for modern SOCs.
my.socprime.com/innovations-...
Next-Gen SOC: Innovations & Best Practices | SOC Prime Webinar
Join us for our exclusive bi-lingual webinar to discover how modern SOCs empower security teams to combat sophisticated threats.
my.socprime.com
February 21, 2025 at 11:15 AM
Reposted by Till
CVE-2025-0411, a zero-day #vulnerability in 7-Zip is actively exploited by russian adversaries to target Ukraine in a #SmokeLoader campaign involving homoglyph attacks. Detect exploitation attempts using a set of #Sigma rules from SOC Prime Platform.
https://buff.ly/3EmgSht
CVE-2025-0411 Detection: russian Cybercrime Groups Rely on Zero-Day Vulnerability in 7-Zip to Target Ukrainian Organizations - SOC Prime
Detect CVE-2025-0411 exploitation attempts, 7-Zip zero-day vulnerability used in a SmokeLoader campaign against Ukraine, with Sigma rules from SOC Prime.
buff.ly
February 5, 2025 at 1:11 PM
Reposted by Till
Detect Banshee Stealer, a stealthy macOS malware that uses XProtect-inspired encryption to evade detection, with a set of Sigma rules in the SOC Prime Platform.
Detect Banshee Stealer: Stealthy Apple macOS Malware Evades Detection Using XProtect Encryption - SOC Prime
Detect Apple macOS Banshee Stealer malware leveraging XProtect encryption to evade detection with a set of Sigma rules from SOC Prime.
buff.ly
January 14, 2025 at 3:03 PM
Reposted by Till
Detect #EAGERBEE – a new backdoor targeting Middle East ISPs and government sector – using a set of Sigma rules in the SOC Prime Platform.
buff.ly/4gLN2B1
#cybersecurity #infosec
EAGERBEE Malware Detection: New Backdoor Variant Targets Internet Service Providers and State Bodies in the Middle East - SOC Prime
Detect EAGERBEE malware, a new backdoor variant targeting organizations in the Middle East, with Sigma rules from SOC Prime Platform.
buff.ly
January 8, 2025 at 3:41 PM
Initial post. Just started migration over from #Twitter (X).
December 11, 2024 at 2:36 PM