@sentinelone.com
https://sentinellabs.com
https://labscon.io
PhantomCaptcha: A short-lived, multi-stage PowerShell and WebSocket RAT operation targeting Ukraine-linked humanitarian and government entities.
Full report: s1.ai/pcapt
PhantomCaptcha: A short-lived, multi-stage PowerShell and WebSocket RAT operation targeting Ukraine-linked humanitarian and government entities.
Full report: s1.ai/pcapt
The Hunt for LLM-enabled malware #ai #cyber #threatintel
s1.ai/llm-mw
The Hunt for LLM-enabled malware #ai #cyber #threatintel
s1.ai/llm-mw
It was a pleasure collaborating with Sreekar Madabushi and @kennethkinion.bsky.social from Validin!
Read our blog post: s1.ai/nk-ops
It was a pleasure collaborating with Sreekar Madabushi and @kennethkinion.bsky.social from Validin!
Read our blog post: s1.ai/nk-ops
Sign up below (includes details on terms and conditions):
Sign up below (includes details on terms and conditions):
labs.beazley.security/articles/gho...
Thanks for the fantastic collab SentinelLabs team!
labs.beazley.security/articles/gho...
Thanks for the fantastic collab SentinelLabs team!
www.sentinelone.com/labs/chinas-...
www.sentinelone.com/labs/chinas-...
🔥 Microsoft Sharepoint security crisis: Faulty patches, Toolshell zero-days
youtu.be/3GJuVGmpexA
🔥 Microsoft Sharepoint security crisis: Faulty patches, Toolshell zero-days
youtu.be/3GJuVGmpexA
💻 Meanwhile, in /Users/Shared:
🕵️♂️ Persistent Malware masquerading as Apple “agent”
>> Khepri beacon in /tmp
📦 Ad-hoc signed payloads
🌍 Targeting Chinese diaspora
Deep dive from Dinesh Devadoss and me 👉 s1.ai/zuru
#icymi #macOS #malware #APT #infosec
Our guys untangle the knots of #NimDoor: compiled Nim, macOS process injection and signals-based persistence triggers, with AppleScript (⁉️) beacons (whatever will they think up next 😅) 🌶️🌶️.
#dprk #apt #macOS
s1.ai/nimdoor
Our guys untangle the knots of #NimDoor: compiled Nim, macOS process injection and signals-based persistence triggers, with AppleScript (⁉️) beacons (whatever will they think up next 😅) 🌶️🌶️.
#dprk #apt #macOS
s1.ai/nimdoor
We discuss a relatively underreported, yet critical, aspect of the threat landscape: the targeting of cybersecurity vendors.
Big shout out to Lumen's Black Lotus Labs for their support! [1/2]
We discuss a relatively underreported, yet critical, aspect of the threat landscape: the targeting of cybersecurity vendors.
Big shout out to Lumen's Black Lotus Labs for their support! [1/2]
Catch his talk at #SLEUTHCON 2025!
🎟️ Grab your ticket today >>> www.sleuthcon.com
#CyberThreatIntel #InfosecEvents
Catch his talk at #SLEUTHCON 2025!
🎟️ Grab your ticket today >>> www.sleuthcon.com
#CyberThreatIntel #InfosecEvents
www.sentinelone.com/labs/top-tie...
www.sentinelone.com/labs/top-tie...
open.spotify.com/show/6dXbRag...
open.spotify.com/show/6dXbRag...
Jim & I will share the backstory behind AkiraBot that didn’t make it into the blog—and what they’ve been up to since.
Jim & I will share the backstory behind AkiraBot that didn’t make it into the blog—and what they’ve been up to since.