My talk with @hinoshiba from @Botconf is out! :)
At the start, Kuma talks about repo squatting as a malware delivery technique. From 9:25, I talk about GPU-based anti-analysis and the overall campaign:
https://t.co/ATgvRoK68C
My talk with @hinoshiba from @Botconf is out! :)
At the start, Kuma talks about repo squatting as a malware delivery technique. From 9:25, I talk about GPU-based anti-analysis and the overall campaign:
https://t.co/ATgvRoK68C
Yesterday, I presented at BSides Tokyo 2026.
Thank you to the organizers for the opportunity, and thank you to everyone who came up to me after my talk. I really appreciate it💜
When practicing on a VM crackme recently, I created a devirtualizer which lifts the virtual machine to LLVM to defeat the protection. LLVM-based devirtualisation is a lot of fun and I wrote down my experience and lessons learned on my blog:
https://t.co/LiWNIj31uK
VECT RaaS is making headlines via partnerships with BreachForums and TeamPCP. Behind the polished image is a weak operator: the ransomware is bug-ridden, poorly built, and most encrypted files aren’t fully recoverable, even with the decryption key.
https://t.co/4tK7OIoIiw
Introducing Combat Theater, a malware technique emulator built for blue teams, detection engineers and security researchers to perform testing and detection validation quickly and easily.
Check out the introduction blog to learn more!
https://t.co/mX8qmWDI9W
Theo Webb and Shungo Kumasaka will be speaking at Botconf 2026, an international conference in France focused on botnet countermeasures and malware research.
https://t.co/r0vhMyv4vy
Slides from my JSAC2026 lightning talk are now available.
I cover repo squatting as a malware delivery technique, why it works, and how it was used in the GPUGate campaign:
https://t.co/6KnWtrM8hM
It’s been a while since I posted. My last one was back in 2023 about my roadmap for learning C.
Last year I joined @gmo_ierae as a security engineer.
Here’s my first research report revisiting the malware dubbed “GPUGate.”
https://t.co/XYasJ8znA2
Check Point Research unveils #VoidLink, a highly modular Linux malware framework with 30+ plugins, cloud/container persistence, robust OPSEC (runtime encryption, rootkits, self-delete), and links to Chinese-affiliated actors. Full analysis on our blog
https://t.co/9ucKf6eyGC