Tweets
- Tweets, current page.
- Tweets & replies
- Media
You blocked @ShaneHuntley
Are you sure you want to view these Tweets? Viewing Tweets won't unblock @ShaneHuntley
-
Pinned Tweet
New blog post from TAG with details of a North Korean campaign targeting security researchers working on vulnerability research and development. https://blog.google/threat-analysis-group/new-campaign-targeting-security-researchers/ … Stay safe out there everyone!
Show this threadThanks. Twitter will use this to make your timeline better. UndoUndo -
Quips aside, this is all a very complex topic and worth debate. I actually do think we need a more secure world and need to invest heavily in that as a matter of critical urgency. Spies are going to spy though Good intelligence saves lives.
Show this threadThanks. Twitter will use this to make your timeline better. UndoUndo -
So do the current critics of government cyber offensive technology think that Bletchley Park should have just spent the 1940s just making crypto more secure for everyone?
Show this threadThanks. Twitter will use this to make your timeline better. UndoUndo -
I also see this mistake regularly in cyber threat analysis. I've learned to be EXTREMELY skeptical of any opinion or analysis that starts with "Well, if *I* was government hacker...."https://twitter.com/benjaminbland/status/1357449543818891266 …
Thanks. Twitter will use this to make your timeline better. UndoUndo -
(sorry no remote, no DC)
Show this threadThanks. Twitter will use this to make your timeline better. UndoUndo -
Looking to hire a great threat analyst to us in Sunnyvale (or Boulder) to analyze and counter government backed threat actors in Google TAG.https://careers.google.com/jobs/results/74048419552731846/ …
Show this threadThanks. Twitter will use this to make your timeline better. UndoUndo -
ALL caps should be removed. Australian citizens have a right to return to Australia. Quarantine is a hard but solvable problem especially this many months in. Stop the excuses.https://www.sbs.com.au/news/australia-will-lift-weekly-caps-on-international-arrivals-in-an-effort-to-get-stranded-citizens-home …
Thanks. Twitter will use this to make your timeline better. UndoUndo -
Shane Huntley Retweeted
Today we're publishing root cause analyses for the seven 0-day exploits we discovered in-the-wild in Oct 2020. Chrome, Windows, Safari, & iOS. Great work to
@i41nbeer@j00ru@5aelo@_clem1 Sergei and Mark! https://googleprojectzero.blogspot.com/p/rca.htmlShow this threadThanks. Twitter will use this to make your timeline better. UndoUndo -
I strongly believe that almost everyone needs to read more, write more, do more and meet less.
Show this threadThanks. Twitter will use this to make your timeline better. UndoUndo -
"endemic problems caused by those 11 layers of management, a culture of perpetual, permanent meetings, a stubborn insistance on creating every possible product no matter what"
@spolsky in *2006* https://www.joelonsoftware.com/2006/06/16/my-first-billg-review/ … hmmmShow this threadThanks. Twitter will use this to make your timeline better. UndoUndo -
Cool job alert: Senior threat analyst position with YouTube. https://careers.google.com/jobs/results/131505181536723654-senior-investigations-analyst-youtube-trust-safety/ …pic.twitter.com/85TYWjg9bo
Thanks. Twitter will use this to make your timeline better. UndoUndo -
Yep. My team has a counter disinformation mission but countering misinfo, ie. someone being wrong on the Internet, is not (yet) a threat intel function.https://twitter.com/TimHarford/status/1356183577164193795 …
Thanks. Twitter will use this to make your timeline better. UndoUndo -
I only give one piece of advice to soon-to-be dads: You only get one day to make all the “you weren’t born yesterday” Dad jokes. Make the most of that opportunity before it passes.
Thanks. Twitter will use this to make your timeline better. UndoUndo -
Shane Huntley Retweeted
Normally security researchers are the ones doing the hunting. This actor was hunting security researchers.https://twitter.com/MsftSecIntel/status/1354839152836173827 …
Show this threadThanks. Twitter will use this to make your timeline better. UndoUndo -
Shane Huntley Retweeted
We created a collaborative Graph in VirusTotal with all IOCs (to date) of this campaign, hopefully this will be useful for the security community to work together in this investigation. https://www.virustotal.com/graph/embed/g4784ec032b3f4cb987a616f4b2dbc9aa9a982d9b20494f8980ae611a4ca3a1d8 …pic.twitter.com/j07nO1cglX
Thanks. Twitter will use this to make your timeline better. UndoUndo -
Shane Huntley Retweeted
A look at some of the malware mentioned in this Google TAG research. https://norfolkinfosec.com/dprk-malware-targeting-security-researchers/ … - Two-stage (payload in ProgramData) - AV Check (Kasp, Avast) - Basic Persistence - Multiple C2s per payload More to be done re:C2 comm (unless someone does it first)
#DPRK https://twitter.com/ShaneHuntley/status/1353856344655204352 …pic.twitter.com/425ukg7HUP
Thanks. Twitter will use this to make your timeline better. UndoUndo -
Shane Huntley RetweetedThanks. Twitter will use this to make your timeline better. UndoUndo
-
Shane Huntley Retweeted
Loving all these posts from infosec people who have been digging through past communications to find chats with actors now revealed to have been North Korean hackers trying to ensnare security folkhttps://twitter.com/daveaitel/status/1353876096136179718 …
Show this threadThanks. Twitter will use this to make your timeline better. UndoUndo -
Shane Huntley Retweeted
WARNING! I can confirm this is true and I got hit by
@z0x55g who sent me a Windows kernel PoC trigger. The vulnerability was real and complex to trigger. Fortunately I only ran it in VM.. in the end the VMDK I was using was actually corrupted and non-bootable, so it self-implodedhttps://twitter.com/ShaneHuntley/status/1353856344655204352 …Show this threadThanks. Twitter will use this to make your timeline better. UndoUndo -
These actors have used multiple platforms to communicate with potential targets, including Twitter, LinkedIn, Telegram, Discord, Keybase and email. We are providing a list of known accounts and IOCs in the blog post.
Show this threadThanks. Twitter will use this to make your timeline better. UndoUndo -
In addition to targeting users via social engineering, we have also observed several cases where researchers have been compromised after visiting the actors’ blog. The victim systems were running fully patched and up-to-date Windows 10 and Chrome
Show this threadThanks. Twitter will use this to make your timeline better. UndoUndo
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.