NEW BLOG: The Great VM Escape π
We caught threat actors deploying a VMware ESXi exploit toolkit in the wild - potentially was a zero-day developed over a year before VMware's disclosure π
If anyone has thoughts on it let me know, but I needed almost a full case of beer to wrap my head around this one πΊ
Full technical breakdown π
https://t.co/wXT9c7ytVh
This is an interesting trend worth mentioning. People are processing threat intelligence blogs using AI and republishing summaries and often improved analysis with additional IOCs and YARA rules. These are not always good. π§΅
It's time for a new name. When I picked "russianpanda" it was a joke about APT naming conventions - pandas are China πΌ, bears are Russia π», so the handle was a nonsense combo making fun of the whole animal taxonomy, never meant anything beyond that. Given the war situation, and the fact that I am a Ukrainian national, that "Russian" has stopped reading as a joke and started causing confusion I'd rather avoid, so I'm moving over to @PandaRE__ - same research, same me, same panda, same analyzing your favorite malware, please update your follows and come with me β€οΈ
I've been receiving a lot of messages asking for cybersecurity guidance and mentorship. Unfortunately, I can't answer them all, but here's what I CAN do:
π» MalbearLabs is looking for 3 mentees for a 3-month mentorship program. What is MalbearLabs? We're a threat research group with one mission: research, fight cybercrime, and educate.
π Interested in threat research, threat hunting, SOC, malware reverse engineering, or anything DFIR-related?
Here's what you'll get:
- Hands-on career guidance. A real research project you'll own from start to finish. Your research published as a blog post on the MalbearLabs website - a portfolio piece you can link on your resume and LinkedIn
- We only take serious candidates with real passion for security.
Beginners welcome, but passion and commitment are required πͺ
π Apply here: https://t.co/dkz7HvekWx
β³ Applications close: August 31
Share if you know somebody or apply directly!