Steve YARA Synapse Miller
banner
stvemillertime.bsky.social
Steve YARA Synapse Miller
@stvemillertime.bsky.social
threat intelligence @google

writing & sharing on adversary tradecraft, malware, threat detection, ics/ot + cyber physical intel, and of course all things #yara
If you need me I'll be in the Andromeda Galaxy
October 18, 2025 at 3:39 PM
I often use my personal SIGINT experiences to describe CN APT groups, and rightly accused of mirroring bias. Still, CN has been pillaging and imitating us for decades, so if you want to see what they're up to today on the CNO front, look at what the IC was doing 10+ years ago.
December 6, 2024 at 1:12 PM
Curate your collection
December 6, 2024 at 12:46 AM
November 26, 2024 at 11:04 PM
Sometimes the C2 framework itself manages the collateral damage, and not without good reason, I'm sure :D
November 25, 2024 at 3:26 PM
*downselection of activity not to scale
November 22, 2024 at 2:52 PM
It can be helpful to think about what you're trying to get away from. What is the "South Star" for your product, organization, or workflow? Given how much time I spend copying and pasting data from one system to another, Ctrl+C Ctrl-V is my South Star in almost everything.
November 19, 2024 at 1:41 PM