With Volcano, security teams can automate the entire workflow of acquisition of memory and select files to deep analysis to automated alerts that directly point to signs of memory only malware and attacker activity throughout RAM and key artifacts sources from disk.
.@Volexity Volcano Server & Volcano One v25.09.21 adds memory analysis support for ARM64 Linux, macOS 26 (Tahoe) & Windows 25H2, as well as 75+ new YARA rules, 10+ new IOCs, analysis of udev rules, and rolling upgrades for managed endpoints. [1/2]
I watched this keynote live last week and it was incredible! I highly recommend @aaronportnoy if your conference is looking for a keynote that is truly relevant to today's threat landscape.
ok, so this talk from @aaronportnoy from @ekoparty is absolutely phenomenal... my neck hurts from nodding
my tldr takeaway: defenders need to start listening *really carefully* to actual, economically rational attackers
the cadence of the OODA loop that we've grown used to over the years is now *way* too tight
https://t.co/KKzjifhQkS
Does anyone know the actual effect of what Riot did? Are the cards actually bricked? OS updated required? Reinstall? The existing replies all seem to be from bots and are entirely useless.
The latest @DarknetDiaries (Ep. 174: Pacific Rim) offers a look at state-sponsored groups targeting perimeter infrastructure & edge devices. Thanks @JackRhysider for mentioning our work!
@Volexity’s detection and response efforts combined network visibility, host-based analysis, #threatintelligence & #memoryforensics, enabling us to discover these complex #0days being exploited in the wild.
Read our blog post for the original research mentioned: https://t.co/CD8eiXiriT
With Volcano, security teams can automate the entire workflow of acquisition of memory and select files to deep analysis to automated alerts that directly point to signs of memory only malware and attacker activity throughout RAM and key artifacts sources from disk.
SAVE THE DATE!!
BSides Memphis will be hosted at Epicenter Memphis on October 3rd, 2026!
More info to come on tickets, CFP, Sponsors, ect.
please share so the local community knows this is happening!
I am excited to announce that I will be speaking at @bsidesnash on May 15th. Be sure to attend to see all the latest @volatility 3 plugins against the most sophisticated and devastating malware from the wild!
Another interesting one shared by @malwrhunterteam:
1c715cd40331ba2ca6559d2fdb958e7f44053080f9ffd3d90bd1916978d336cb ( 1 VT hit for DPRK). This is a fun one and even has a usage prompt when executing, which is strange.
🧵 Let's dig in
I am excited to announce that I will be speaking at @bsidesnash on May 15th. Be sure to attend to see all the latest @volatility 3 plugins against the most sophisticated and devastating malware from the wild!
Memory-only malware leaves no trace on the file system & is commonly used by threat actors ranging from criminal organizations to ransomware operators to APTs. In our @volatility 3 training, students gain deep hands on experience analyzing such threats:
https://t.co/kihCRhwaov