Top Tweets for #FileLess
Hackers are using fake Claude Code install pages to deploy fileless .NET infostealers. Stay vigilant and download software only from official sources. Link: https://t.co/9zyGQiCuoM #Cybersecurity #Infostealer #Malware #Phishing #SEO #Poisoning #Fileless #DotNet #Threats #Hackers #Scam #Fraud #Spyware #Trojan #Exfiltration #Credential #Attack #Deception #Software #Security

Falsi installer di Claude Code rilasciano #infostealer #fileless
#cybersecurity
https://t.co/L0lAR76RC8
イラン系APT42が防衛要人を狙い、ファイルレスバックドア「Tamecat」を展開。PowerShell等の正規機能を悪用し長期潜伏する諜報作戦。要人向け挙動監視と侵入前提運用が必須 #APT42 #Fileless #CyberEspionage https://t.co/kM749166eL
TA584がTsundere Botを不可視レジストリキー経由で展開。通常ツールでは見えないレジストリに潜伏し、低ノイズで長期侵害を維持。ファイルレス攻撃の進化形で、レジストリ挙動監視が防御の鍵 #TA584 #TsundereBot #Fileless https://t.co/vXaTO5SRRy
SwarmerツールはWindowsレジストリにペイロードを格納・実行し、ディスク痕跡を残さず検知を回避。正規管理操作に紛れるため発見が遅延しやすい。レジストリ書き込みとPowerShell挙動の相関監視が防御の鍵 #Fileless #Malware #WindowsSecurity https://t.co/YnyqvoLouB
Brazilian #Caminho Loader Employs LSB #Steganography and #Fileless Execution to Deliver Multiple Malware Families Across South America, Africa, and Eastern Europe.
https://t.co/Qz4TSNby2B

VBScript‑encodedファイルからレジストリ経由でMulti‑Stage MassLogger体内実行。ファイル残さずPowerShell/MSBuild切替。キーロガー・資格情報窃取・暗号化通信搭載。メール・IDSでは難検出、行動監視強化必須。#MassLogger #Fileless https://t.co/FyBCddfyh8
#Over 1,500 #PostgreSQL #Servers #Compromised #in #Fileless #cryptocurrency #Mining #Campaign
https://t.co/SskhyBZ4A3
A new breed of #malware is here—no files, no traces, just pure chaos. Are we ready to fight invisible threats like #RevC2, #More_eggs Lite, and #PSLoramyra?
Read the full disclosure live in our latest #ThreatResearch: https://t.co/RJ541cqqG5
#MaaS #Fileless #backdoor #SecureBlink

🎯 #Fileless malware attack leveraging #PowerShell – #ExploreWithANYRUN
⚠️ The #loader, which we named #Psloramyra, employs a Living off the Land Attack for privilege escalation and defense #evasion
🔎 Using a #LoLBaS technique, it creates a file that triggers a chain of execution, resulting in the injection of the #Quasar payload into #RegSvcs
⚙️ This #malware operates entirely in memory, leaving no traces on disk, and creates a scheduled task running every two minutes to maintain persistence
🔗 The #script decodes strings, dynamically loads a #malicious payload into memory, identifies the Execute method from the loaded .NET assembly, and invokes the system .NET ‘RegSvcs.exe’ file, ultimately running the Quasar #payload
Take a look at the analysis:
https://t.co/hhGcA8AmyA
📌 #Cyberchef recipe:
https://t.co/3s8uLQZNQB
Analyze and investigate the latest malware and #phishing threats with #ANYRUN 🛡️

Fileless Execution Methods
https://t.co/8EZiOkc6XM
#fileless #redteam #blueteam #execution #dll #memory #assembly #malware #redteamrecipe #privilegeescalation #activedirectory

In a recent campaign involving the dissemination of the #AgentTesla #malware, perpetrators employed VBA macros in Word documents to conduct a #fileless injection #attack, where the malicious payload is directly loaded into the computer's memory
https://t.co/3saKMFQeag

https://t.co/auBkYuVomb
🚨 New attack report 🚨
🕷️The Endless Struggle Against APT10: Insights from LODEINFO [Monday, January 29, 2024]
#AttackReport #Cybersecurity #apt #backdoor #lodeinfo #apt10 #fileless
🔍 Understanding #fileless malware
Fileless #malware lies of the land without leaving traces on the hard drive. Let's learn about its traits, example families and operation.
Details here ⬇️
https://t.co/Z0TkEm54mV
#ANYRUN_Insights
r77 Rootkit v1.5.1 releases: single file installer and fileless persistence that hides processes, files, and network connections
https://t.co/oXNjMVHGp2
#Rootkit #persistence #network #fileless

Last Seen Hashtags on Sotwe
kiranrathod #fullnude
Seen from India
jilbabsange
Seen from Indonesia
xlii() or #exny() or #momson() or #nolimit() +filter:native_video
Seen from United States
str8baited
Seen from United States
รับงานแหลมฉบัง
Seen from Thailand
GREATOPENING
Seen from Brazil
r18
Seen from Canada
hslut
แม่ขะจาน
Seen from Thailand
bitcoin
Seen from Brazil
Trends for you
Most Popular Users

Elon Musk 
@elonmusk
240.2M followers

Barack Obama 
@barackobama
119.3M followers

Donald J. Trump 
@realdonaldtrump
111.6M followers

Cristiano Ronaldo 
@cristiano
109M followers

Narendra Modi 
@narendramodi
107M followers

Rihanna 
@rihanna
97.3M followers

NASA 
@nasa
92.1M followers

Justin Bieber 
@justinbieber
90.6M followers

KATY PERRY 
@katyperry
86.8M followers

Taylor Swift 
@taylorswift13
80.6M followers

Lady Gaga 
@ladygaga
72.2M followers

Kim Kardashian 
@kimkardashian
69.4M followers

YouTube 
@youtube
68.6M followers

Virat Kohli 
@imvkohli
68.6M followers

Bill Gates 
@billgates
63.4M followers

The Ellen Show
@theellenshow
62.5M followers

CNN 
@cnn
61.9M followers

Neymar Jr 
@neymarjr
61.1M followers

X 
@x
60.9M followers

Selena Gomez 
@selenagomez
59.9M followers













![Max_Mal_'s tweet photo. #Qakbot is HERE #TTPs 🦆
Exec #DFIR flow: js > cmd > mshta > PS > exe > 💥
TAs ab(use) built-in script interfaces for Execution & Defense Evasion Tactics, including #fileless methods
[+] JavaScript T1059.007
[+] Mshta T1218.005
[+] VBScript T1059.005
[+] PS T1059.001 https://t.co/RFB4H7AWyS](https://pbs.twimg.com/media/GE7wVa_WIAAhzlH.jpg)
![Max_Mal_'s tweet photo. #Qakbot is HERE #TTPs 🦆
Exec #DFIR flow: js > cmd > mshta > PS > exe > 💥
TAs ab(use) built-in script interfaces for Execution & Defense Evasion Tactics, including #fileless methods
[+] JavaScript T1059.007
[+] Mshta T1218.005
[+] VBScript T1059.005
[+] PS T1059.001 https://t.co/RFB4H7AWyS](https://pbs.twimg.com/media/GE7wTKiXoAAUSw2.jpg)
![Max_Mal_'s tweet photo. #Qakbot is HERE #TTPs 🦆
Exec #DFIR flow: js > cmd > mshta > PS > exe > 💥
TAs ab(use) built-in script interfaces for Execution & Defense Evasion Tactics, including #fileless methods
[+] JavaScript T1059.007
[+] Mshta T1218.005
[+] VBScript T1059.005
[+] PS T1059.001 https://t.co/RFB4H7AWyS](https://pbs.twimg.com/media/GE7wRVcXQAAASat.jpg)

