USN C-2 COD takes the option at Palmdale, July 2018 #photography #militaryaviation #aviationphotography #planespotting #AvGeek #spotter #photography #aircraft #milair #nikon #palmdale #USN #C2 #COD
Mastodon communities, be vigilant! Bad actors are creating accounts within the Fediverse and then using them to distribute malware. We identified one such case in which the threat actor had gone undetected since 2022. That Mastodon instance was one with a climate change focus. The threat actor was distributing an information stealer through their account.
We are happy to have helped the instance owner figure out why they have been on blocklists intermittently for the last few years, but also get that particular threat out of their Mastodon instance and safe for users.
There are undoubtedly many more of these across the Fediverse. Hopefully more awareness can get them detected and shut down faster.
For our fellow security nerds... this was #vidar malware with sha256 975932eeda7cc3feea07bc1f8576e1e73e4e001c6fe477c8df7272ee2e0ba20d
and a c2 IP 78[.]47[.]227[.]68 from the instance.
there is still at least one more Mastodon instance impacted that we are trying to reach.
#malware #stealer #mastodon #threatintel #cybercrime #threatintelligence #cybersecurity #infosec #infoblox #infobloxthreatintel #fakeaccounts #c2
Detected a C2 framework in RAM today with velociraptor. Dumped the process memory with velo, created a zignature with radare2.
Never thought I'd ever reach that level...
Blogpost and velo artifact incoming
New blog post:
#Synology #BlackFriday2024 giveaway is open! Enter and win a brand new 4TB #BeeStation, plus 500GB of #C2 storage for a year!
https://www.blackvoid.club/synology-black-friday-2024-giveaway/
"Tampella" is an idyllic location in the city of Tampere (where Jolla's roots situate)
◉Browser engine upgraded to ESR91
◉UI translation update
◉Blocking of incoming calls from preset numbers
◉Internet sharing (hotspot) fix
◉New ambiences
◉...much more!
https://forum.sailfishos.org/t/release-notes-tampella-5-0-0-21-for-jolla-c2/20558
#Jolla #SailfishOS #mobile #Linux #phones #C2 #Tampere #Tampella #Suomi #Finland @jolla
The latest #SailfishOS community news is out!
Good stuff this fortnight: the @jolla #C2 is shipping! Running #SailfishOS 5 (
× 5). There's Cβ and VoLTE news too
Plus the usual repository
and app
https://forum.sailfishos.org/t/sailfish-community-news-24th-october-2024-shipping/20529
#PlaneAlert ICAO: #AE045D Tail: #162169 Flt: #RAWHD71
Owner: #UnitedStatesNavy
Aircraft: #Grumman C-2A Greyhound
2024/09/05 08:04:08
#C2 #CarrierOnboardDelivery #HighPriorityCargo #MailCall https://w.wiki/5CqE
https://globe.airplanes.live/?icao=AE045D&showTrace=2024-09-05&zoom=7&lat=41.283463&lon=-72.293091×tamp=1725537848
#adsb #planefence #planealert by kx1t - https://kx1t.com https://planefence.com/plane-alert https://sdr-e.com/docker-planefence
#PlaneAlert ICAO: #AE0467 Tail: #162161 Flt: #RAWHD72
Owner: #UnitedStatesNavy
Aircraft: #Grumman C-2A Greyhound
2024/08/12 15:07:28
#C2 #CarrierOnboardDelivery #HighPriorityCargo #MailCall https://w.wiki/5CqE
https://globe.adsbexchange.com/?icao=AE0467&showTrace=2024-08-12&zoom=7&lat=39.142984&lon=-74.774658×tamp=1723489648
#planefence #adsb - docker:kx1t/planefence
True Linux phone seekers rejoice: JOLLA C2 phone 1st look & Sailfish OS 5.0 preview!
Jolla represents the features and update highlights people asked for.
◉New camera capabilities ◉Landscape / portrait mode ◉Expandable storage
◉True alternative for the domination of iOS (Apple) & Android (Google)
◉Get a glimpse of upcoming for the ultimate Sailfish experience via C2 phone
#PlaneAlert ICAO: #AE045D Tail: #162169 Flt: #RAWHD71
Owner: #UnitedStatesNavy
Aircraft: #Grumman C-2A Greyhound
2024/07/26 11:44:36
#C2 #CarrierOnboardDelivery #HighPriorityCargo #MailCall https://w.wiki/5CqE
https://globe.adsbexchange.com/?icao=AE045D&showTrace=2024-07-26&zoom=7&lat=38.495132&lon=-75.069879×tamp=1722008676
#planefence #adsb - docker:kx1t/planefence
#VesselAlert #Vaixell #NOU Primera Observació
Nom del Vaixell: #C2
#MMSI: #339039000
Indicatiu: #6YVU2
#Bandera: #
Missatges Rebuts: 74
Vist a: 23-Jul-2024 14:11:05 CEST
Velocitat: 1.3 kts
Distància: 110.6 nm
Senyal #RSSI: -16.1 dBFS
Detalls: https://kx1t.com/victor/ais?mmsi=339039000
https://aiscatcher.org/ship/details/339039000
https://www.shipxplorer.com/data/vessels/IMO-MMSI-339039000
https://www.marinetraffic.com/en/ais/details/ships/339039000
https://www.vesselfinder.com/vessels/details/339039000
#Vinaros - Uneix-te a nosaltres a https://vesselalert.com
#Vaixell #AIS #VesselAlert © 2022-2024 #kx1t
Found this user on the @internetarchive hosting images with embedded base64 encoded #malware between <<BASE64_START>> and <<BASE64_END>> flags. The malware is used to download an inject the next stage payload into another process. The campaign I observed involved #RemcosRAT
User page: https://archive.org/details/@nodetectonn
Remcos: hxxps://petshopsirena[.]mk/a.txt
#c2 : 45.95.169[.]135:2404
I found samples dropping others such as #agenttesla and #formbook as well.
We just released a landscape review of Registered DGAs. We review the many ways threat actors are leveraging these algorithms -- including malware, phishing, scams, porns, you name it. Our RDGA detectors find tens of thousands of domains every day, and we've seen the use continue to rise over the last several years. Most folks aren't even aware since actors are doing this in DNS and it often isn't obvious. #dns #threatintel #cybersecurity #cybercrime #infoblox #RDGA #DGA #DDGA #malware #phishing #scams #infoblox #infobloxthreatintel #cybersecurity #threatactor #c2 #revolverrabbit #threatintelligence #cyber #cyberintelligence #xloader #formbook #abusedtld https://insights.infoblox.com/resources-research-report/infoblox-research-report-registered-dgas-the-prolific-new-menace-no-one-is-talking-about
I guess recovery from cloud will be decent, but #backup will take some time. This is not even 5% of my total upload capacity.
Didn't know #Synology has its own hosted #speedtest platform that will test your speeds against all three of their #C2 locations.
https://speedtest.c2.synology.com
*not the fastest speeds I have seen…
After researchers reported on SolarMarker in 2021, the threat actor rapidly rebuilt a multi-tiered #C2 infrastructure, and the central core has remained active since its inception.
While today is Easter it’s also #worldbackupday!
How is your #backup configured?
Living Off Trusted Sites – Żyjąc Z Zaufanych Stron ( https://nfsec.pl/security/6364 )
@mrd0x
#security #phishing #c2 #exfiltration #service #providers #twittermigration