Mr.Trunk · @mrtrunk
5 followers · 10035 posts · Server dromedary.seedoubleyou.me
Mr.Trunk · @mrtrunk
5 followers · 9934 posts · Server dromedary.seedoubleyou.me
Joe Stone · @joe
68 followers · 165 posts · Server meh.social
Kevin Beaumont · @GossiTheDog
23037 followers · 864 posts · Server cyberplace.social

Saw a (large file size to evade MS Defender) used to deliver trojan - Defender for Endpoint miss.

At first it looked like a really lame malware, but it's interesting - it uses a legit copy of PHP and the malware is all written in PHP. Your AV doesn't trigger on legit php.exe

Here's a prior write up:
zscaler.com/blogs/security-res

#defenderexplode #ducktail

Last updated 2 years ago

Today in Digital Marketing · @todayindigital
18 followers · 22 posts · Server mas.to

On today’s show (releases at 4pm PT):
🚨 The that hacks ad accounts
🍪 's "clean room"
💼 Twitter fires ad platform engineers
🛒 Online shopping hits new record
💤 The TikTok feature none of us wanted (but probably all of us need)
todayindigital.com/

#business #mediabuying #ads #advertising #agencylife #adagency #retail #marketingnews #marketing #pinterest #meta #malware #ducktail

Last updated 2 years ago

Tod Maffin—TodayInDigital.com · @tod
606 followers · 497 posts · Server hci.social

The Ducktail malware can bypass two-factor authentication, hack into your Meta ad accounts, and start spending millions of dollars on your company's (or client's) credit card.

linkedin.com/pulse/terrifying-

#ducktail #metaads #mediabuying #facebookads

Last updated 2 years ago

Walker · @Walker
21 followers · 102 posts · Server infosec.exchange

@cybergingey Just like , harvesting credentials, machine info, and such then sending it all to api.telegram.org.

If possible, alerting on headless browser calls to api.telegram.org is a good way to identify this traffic.

#ducktail

Last updated 2 years ago

securityaffairs · @securityaffairs
56 followers · 25 posts · Server infosec.exchange
Pierluigi Paganini · @Pierluigi_Paganini
39 followers · 70 posts · Server mstdn.social
imlordoftherings · @Imlordofthering
185 followers · 245 posts · Server infosec.exchange

Just published my first event!

#misp #ducktail #malwareanalysis

Last updated 2 years ago

Parliamo di news! · @parliamodinews
16 followers · 87658 posts · Server masthead.social