Advertisement · 728 × 90

Posts by Corsin

Post image

Thank you @ecrime.ch for being #PIVOTcon26 Silver Sponsor🥳
Read more about: @ecrime.ch here: ecrime.ch

They detect extortion threats, stolen data, and brand exposure before attackers escalate - with verified intelligence.

Our sponsors: pivotcon.org/sponsors

1 month ago 7 6 0 0
screenshot of tweet saying "who the fuck is playing pokemon in antarctica" with a trade partner in antarctica

screenshot of tweet saying "who the fuck is playing pokemon in antarctica" with a trade partner in antarctica

photo of me in antarctica playing my switch. adelie penguins are in the background

photo of me in antarctica playing my switch. adelie penguins are in the background

photo of me in antarctica playing my switch, with pokemon legends z-a. adelie penguins are in the background.

photo of me in antarctica playing my switch, with pokemon legends z-a. adelie penguins are in the background.

I've waited 3 years to make this post

3 months ago 22208 5693 141 88

#PIVOTcon2026 call for papers is open!

Remember, it's #PIVOTcon for a reason - your proposal should give insight into techniques and methodology, not just "what my favorite threat group did last summer". 😎

Bring on those proposals! #CFP

4 months ago 7 4 0 0

Our annual review is out covering technical highlights such as

- Engineering resilience against critical loss
- Passkeys
- The future of digital identity
- Post quantum crypt transition
- Our Initiate r&d program with industry
- Radical transparency in technology

.. and more

6 months ago 6 7 0 0
Post image

You know you want to speak at Disobey 2026. And now is your chance to do that!

Our CfP is open at: cfp.disobey.fi/disobey-2026/

Check the guidelines from the link and send your proposal by Sep 30th!

8 months ago 11 7 0 0

Tap in to the stream this week for some YARA fun, highlighting some crazy rules, how I think about learning yara (or anything) as a mid-career professional, and more!

9 months ago 14 6 3 0

I don't think it is, but nobody will stop you...

9 months ago 2 0 0 0
Post image

Well, where else do you get fresh Yara rules?
cc @stvemillertime.bsky.social @greg-l.bsky.social

9 months ago 6 0 2 0
Screenshot of email showing a fake email quarantine summary. Used as a social engineering lure to trick recipients into clicking links and entering their credentials on a phishing site.

Screenshot of email showing a fake email quarantine summary. Used as a social engineering lure to trick recipients into clicking links and entering their credentials on a phishing site.

Finally a new template for a phishing email.

Sender IP: 45.138.48[.]158
Subject: Your email quarantine summary!!!

URLscan: urlscan.io/result/01980...

Phishing URL reported and blocked by Google Safe Browsing already.

9 months ago 1 0 0 0
Advertisement

five times more

10 months ago 1 0 0 0

Which AI do you use for your messaging?

10 months ago 0 0 1 0
Preview
TA406 Pivots to the Front | Proofpoint US What happened  In February 2025, TA406 began targeting government entities in Ukraine, delivering both credential harvesting and malware in its phishing campaigns. The aim of these

@greg-l.bsky.social drops knowledge on TA406 (Konni) as North Korea shows new interest in Ukraine, likely to keep tabs on the progress of the war and Russia's ability to keep pace on the battlefield www.proofpoint.com/us/blog/thre...

11 months ago 15 13 1 1
Preview
Incidents impacting retailers – recommendations from the NCSC A joint blog post by the NCSC’s National Resilience Director, Jonathon Ellison, and Chief Technology Officer, Ollie Whitehouse.

Incidents impacting retailers – recommendations from the NCSC

www.ncsc.gov.uk/blog-post/in...

11 months ago 4 2 0 0
Preview
Slow Pisces Targets Developers With Coding Challenges and Introduces New Customized Python Malware North Korean state-sponsored group Slow Pisces (Jade Sleet) targeted crypto developers with a social engineering campaign that included malicious coding challenges. North Korean state-sponsored group ...

amazing work from Palo Alto and Wired today on TraderTraitor (aka SlowPisces, UNK_MachoMan, UNC something or other, Jade Sleet)

unit42.paloaltonetworks.com/slow-pisces-...

www.wired.com/story/trader...

and a minor line item, only one mention of the L word is a major success

1 year ago 3 2 0 0
Preview
Cybersecurity Community Must Not Remain Silent On Executive Order Attacking Former CISA Director Cybersecurity professionals and the infosec community have essential roles to play in protecting our democracy, securing our elections, and building, testing, and safeguarding government infrastructur...

Infosec must not remain silent while Trump goes after Chris Krebs: www.eff.org/deeplinks/20...

1 year ago 345 162 3 6

Aaaaand we have just released the #PIVOTcon25 #agenda Again You will find there crème de la crème of #CTI #ThreatIntel #ThreatReserch Top researchers tracking both APTs and cybercriminals using very clever and effective PIVOTs 😎💪 Link and thank you ⬇️1/2

1 year ago 5 1 1 0
Month by month comparison of observed events on data leak sites.

Month by month comparison of observed events on data leak sites.

Overview for February 2025 on events, to countries, actors and sector.

Overview for February 2025 on events, to countries, actors and sector.

Top 10 actors and top 10 countries impacted by ransomware and data leaks.

Top 10 actors and top 10 countries impacted by ransomware and data leaks.

February 2025 was a high-volume month on data leak and ransomware sites. Our system picked up and enriched 705 events, the highest ever.

CL0p has been active posting victims from their December 2024 attack against vulnerable Cleo servers.

Get the full picture with our subscription at eCrime.ch

1 year ago 5 6 0 0

And now I need to figure out what is "Zone 1" in London :-D

1 year ago 1 0 0 0
Advertisement

I'll do the call without you and will repeatedly ask what you have to say 🤣

"Greg? Greg? Guess he is not on"

1 year ago 1 0 1 0
Screenshot showing logos of police organisations involved in taking down/seizing the dark web site

Screenshot showing logos of police organisations involved in taking down/seizing the dark web site

Great job by police organisations around the globe to seize domains and arrest #ransomware operators of Phobos/#8BASE.

www.khaosodenglish.com/news/2025/02...

1 year ago 19 5 0 0
Preview
DOGE Teen Owns ‘Tesla.Sexy LLC’ and Worked at Startup That Has Hired Convicted Hackers Experts question whether Edward Coristine, a DOGE staffer who has gone by “Big Balls” online, would pass the background check typically required for access to sensitive US government systems.

A teen DOGE staffer recently given access to government systems worked at a startup known for hiring convicted hackers. Someone using a Telegram handle associated with him also solicited a cyberattack-for-hire service in 2022. All raising questions about his vetting. www.wired.com/story/edward...

1 year ago 19338 8331 1218 853

Subscribing to WIRED should be mandatory for anyone who is concerned about what's happening and wants in-depth coverage from journalists who have been reporting on privacy, security, feds, and national security for years. Plus my besties @dell.bsky.social and @couts.bsky.social work there.

1 year ago 19 4 0 0
x.com

from the other site

x.com/abuse_ch/sta...

1 year ago 1 0 0 0

auth is being worked on and new version should come next month

1 year ago 5 0 1 0

Interesting report from Twitter:
"Another certificate was acquired by this company and used to sign a malicious kernel driver. The driver injects an IIS module into w3wp.exe, embedding JS into webpages that redirects to a Chinese adult site, tricking users into downloading a spyware-like app."

1 year ago 2 1 1 0
Image generated by Apple "Image Playground" showing a cyclist in front of a mountain scenery.

Image generated by Apple "Image Playground" showing a cyclist in front of a mountain scenery.

Strange, dann bin ich einfach ein Nachzügler :)

1 year ago 1 0 0 0
Advertisement

keine Ahnung, hatte heute einfach eine Meldung und konnte es aktivieren. Habe schon immer Englisch eingestellt.

1 year ago 0 0 0 0

@benkoe.com Apple Intelligence seit heute in der Schweiz verfügbar?

1 year ago 1 0 0 0
Wayback Machine capture of MTV News.

Wayback Machine capture of MTV News.

This year, we worked swiftly to save legacy media sites Vice.com and MTVNews before decades worth of valuable journalism could be erased. These sites are now searchable on the Wayback Machine!

Help us in saving these resources:: https://archive.org/donate/?origin=blsky-eoy2024

1 year ago 8158 2168 53 106

hey, leave us out of that

1 year ago 8 0 0 0