PrecisionSec threat feeds offer curated #threatintelligence focused on malware and C2 frameworks that are typically utilized in an intrusion or incident.
We’re opening beta access to our new CTI @MaltegoHQ Transforms.
Built to help analysts pivot through high-confidence threat intelligence directly inside Maltego.
If you have a Maltego Professional license and are interested,reply here or DM us.
#ThreatIntelligence#CTI#DFIR
Join me at @BSidesVancouver on May 26 for my workshop "Precision #ThreatHunting: Unveiling Adversary Infrastructure using Free and Open Source Tools," designed to teach participants techniques for discovering and analyzing adversary infrastructure. Only 6 seats left! #OSINT
We are at #blackhat2022 and #defcon this year! If you are in Vegas this week, feel free to reach out for a demo of any of our feeds, meet for a beer or just to talk malware. DM's are open!
#BHUSA#blackhat#threatintelligence
Emotet is back! After many months of inactivity, we're seeing malicious documents downloading the typical follow up exe.
Our detection is holding and as always our customers are already protected by the latest #Emotet#IOCs:
https://t.co/XKdlgBLcQn
Our #Emotet#IOC feed is up and running! Currently featuring a live feed of URL's distributing (internally verified) Emotet binaries. C2 IP's are available for customers in our private feed.
https://t.co/XKdlgBLcQn
#Emotet returns in 2019 after Holiday break hiatus. Our live Emotet #ThreatIntel feed is constantly updated with the latest Emotet #IOCs. Check it out here: https://t.co/XKdlgBLcQn
2018-11-5 #Emotet returns after nearly a month hiatus. New exe distribution URL's were updated in our Threat Feed:
https://t.co/XKdlgBLcQn
Sample VT:
https://t.co/o2v1Q5q91m
Here's my write-up on the new Emotet version and the major updates in the malware. New Firewall/SRM evasion technique and single URI for final payload. https://t.co/WVjOGRcwvE
This map shows live and kicking #Emotet Tier-1 C&C proxies for the past 24 hours. 95 servers in total listening on random ports, however majority uses TCP port 80 or 443. Notice that there are no T1's located in Russia.