Advertisement · 728 × 90

Posts by Adam Link

Post image

2026-04-16 (Thursday): #pcap and #malware samples from the #LummaStealer infection with #SectopRAT ( #ArechClient2 ) that I documented in an ISC diary at isc.sans.edu/diary/Lumma+...

5 days ago 4 1 1 0

Going to be a long season, but good to see Wetherholt step right up!

3 weeks ago 0 0 0 0
Preview
Alec Burleson's big blast caps Cardinals' 8-run rally in sixth to shock Rays, win opener Free article: Top prospect JJ Wetherholt also homered, but it was the decisive sixth-inning outburst of eight runs and eight hits that led to the 9-7 victory.

A solid start to my ball club’s season

3 weeks ago 7 1 3 0

So I always like to go "What would have happened had a Marine done this in Afghanistan" and it's so obvious in this case as to make the exercise moot.

2 months ago 447 80 7 6
Preview
Senior official at Indo-Pacific Command is set to be Trump’s pick to lead Cyber Command, NSA The president has taken steps to nominate Army Lt. Gen. Joshua Rudd, deputy chief of U.S. Indo-Pacific Command, to lead U.S. Cyber Command and the National Security Agency.

NEW: President Donald Trump has taken steps to nominate Army Lt. Gen. Joshua Rudd, the deputy chief of U.S. Indo-Pacific Command, to head the military's Cyber Command and the National Security Agency.

ON @therecordmedia.bsky.social

therecord.media/joshua-rudd-...

4 months ago 7 7 1 0

Happy Birthday, Marines!

5 months ago 0 0 0 0

Gummy nerds are the best. Fueled with them on my last ultra, and just gave out tons of them tonight!

5 months ago 0 0 0 0

Bring back the BBS!

5 months ago 4 1 1 0
Advertisement

Congrats to those selected for TLS!

8 months ago 0 0 0 0

www.marines.mil/News/Message...

8 months ago 0 0 1 0
Preview
The Marine Corps Americans Want Can’t Be Derailed by a Fake Crisis - War on the Rocks The Marine Corps relies on a sense of crisis to promote and prevent change more than any other institution I’ve come across. As one well-known Marine

Preach.

8 months ago 36 10 1 0
Image showing how someone gets from a link in a social media post to arrive at the downloaded archive.

Image showing how someone gets from a link in a social media post to arrive at the downloaded archive.

Image showing how someone would extract malware from the downloaded archive. From zip archive to password-protected 7-Zip archive to zip archive to extracted Windows executable (.exe) file.

Image showing how someone would extract malware from the downloaded archive. From zip archive to password-protected 7-Zip archive to zip archive to extracted Windows executable (.exe) file.

Traffic from an infection filtered in Wireshark.

Traffic from an infection filtered in Wireshark.

How I picture someone would actually run this malware.

How I picture someone would actually run this malware.

2025-06-20 (Friday): Post I wrote for my employer on other social media about distribution of #malware disguised as cracked software. The malware is contained in password-protected 7-Zip archives to avoid detection. #pcap and malware files at www.malware-traffic-analysis.net/2025/06/20/i...

10 months ago 5 2 0 0
Screenshot of the web page for the associated blog post.

Screenshot of the web page for the associated blog post.

2025-06-21 (Saturday): #KoiLoader / #KoiStealer infection. #pcap of the infection traffic, associated malware/files, and some of the indicators available at www.malware-traffic-analysis.net/2025/06/21/i...

10 months ago 3 1 0 0

I will be speaking at @kernelcon.bsky.social on Fri, Apr 3rd. The talk will cover previously-unreported features of the sedexp Linux malware found in the wild - including loading of a memory-only rootkit! Talk will cover how the rootkit was discovered & how to analyze with @volatilityfoundation.org

1 year ago 12 9 0 0

tcpdump, wireshark - can’t be beat.

I surprise myself with how I often I ask about the pcap for a given thing (iykyk). And I’m just some dumb dumb LtCol Marine 😂

1 year ago 1 0 0 0
Advertisement

These are great!

1 year ago 1 0 0 0
Post image

Every SCIF dweller is going to respond to this like how I posted CISSP CPEs for a decade: "Worked on projects relating to national security that cannot be publicly disclosed or documented."

1 year ago 56 5 2 1

250 years …semiquincentennial. Doesn’t exactly roll of the tongue, but the Birthday ball should be a good one this year!

1 year ago 0 0 0 0

I see what you did there…

1 year ago 1 0 0 0

After I got settled, I had to guide a new guy to the visitor center. My directions were apparently substandard….he lost at least an hour of his day 🤣

1 year ago 2 0 1 0

Yep. Run that gate. It will go smooth. Very smooth…🤣

1 year ago 4 1 1 0

Enjoy it!

1 year ago 1 0 0 0

Buying or selling? 🤣

1 year ago 0 0 1 0

Been using it for a couple years now. Dead simple config in your dotfiles.

1 year ago 1 0 0 0
Advertisement

Newsboat, but I’m good living from my terminal for the news. Prefer to be off my phone to do any reading.

1 year ago 1 0 1 0
Post image Post image

Two hour run in six inches of snow? Yep.

Not the smartest, probably, but peaceful!

1 year ago 2 0 0 0

But surely this new tool will solve the issue…

1 year ago 0 0 0 0

Headlines retrospectively discussing the “sinister turn” in China nexus intrusion for OPE are telling. No, this wasn’t just a new problem in ‘24; they have been ongoing since at least ‘08 if not earlier. You are just now noticing.

1 year ago 2 1 0 0
Director, Cybersecurity

Interesting #infosec role for those inclined to work in the doing good space:
www.habitat.org/about/career...

1 year ago 22 9 0 0