home.social

#threatfox β€” Public Fediverse posts

Live and recent posts from across the Fediverse tagged #threatfox, aggregated by home.social.

fetched live
  1. Over the past 30 days, our community shared 27,165 new #IOCs on ThreatFox 🦊 β€” an 18% increase from the previous month.

    πŸ‘ Huge shoutout to 'juroots', our top contributor with 2,746 IOCs submitted.
    πŸ’€ The most-shared malware family (or in this case framework)? Clearfake, with 2,817 IOCs reported.

    Find the full breakdown here: πŸ‘‰ threatfox.abuse.ch/statistics/

    #ThreatFox #CommunityPower #SharingIsCaring #CyberThreatIntel

  2. Over the past 30 days, our community shared 27,165 new #IOCs on ThreatFox 🦊 β€” an 18% increase from the previous month.

    πŸ‘ Huge shoutout to 'juroots', our top contributor with 2,746 IOCs submitted.
    πŸ’€ The most-shared malware family (or in this case framework)? Clearfake, with 2,817 IOCs reported.

    Find the full breakdown here: πŸ‘‰ threatfox.abuse.ch/statistics/

    #ThreatFox #CommunityPower #SharingIsCaring #CyberThreatIntel

  3. Over the past 30 days, our community shared 27,165 new #IOCs on ThreatFox 🦊 β€” an 18% increase from the previous month.

    πŸ‘ Huge shoutout to 'juroots', our top contributor with 2,746 IOCs submitted.
    πŸ’€ The most-shared malware family (or in this case framework)? Clearfake, with 2,817 IOCs reported.

    Find the full breakdown here: πŸ‘‰ threatfox.abuse.ch/statistics/

    #ThreatFox #CommunityPower #SharingIsCaring #CyberThreatIntel

  4. Over the past 30 days, our community shared 27,165 new #IOCs on ThreatFox 🦊 β€” an 18% increase from the previous month.

    πŸ‘ Huge shoutout to 'juroots', our top contributor with 2,746 IOCs submitted.
    πŸ’€ The most-shared malware family (or in this case framework)? Clearfake, with 2,817 IOCs reported.

    Find the full breakdown here: πŸ‘‰ threatfox.abuse.ch/statistics/

    #ThreatFox #CommunityPower #SharingIsCaring #CyberThreatIntel

  5. Over the past 30 days, our community shared 27,165 new #IOCs on ThreatFox 🦊 β€” an 18% increase from the previous month.

    πŸ‘ Huge shoutout to 'juroots', our top contributor with 2,746 IOCs submitted.
    πŸ’€ The most-shared malware family (or in this case framework)? Clearfake, with 2,817 IOCs reported.

    Find the full breakdown here: πŸ‘‰ threatfox.abuse.ch/statistics/

    #ThreatFox #CommunityPower #SharingIsCaring #CyberThreatIntel

  6. 🦊 ThreatFox Update | We're now expiring IOCs older than 6 months. IOCs don’t last forever and internet infrastructure often gets re-used, therefore we're implementing a 6-month expiry policy to reduce false positives.

    As a result, expired IOCs will no longer appear in ThreatFox exports or be available via the ThreatFox APIs. Thanks for your continued support! πŸ™

    #ThreatFox #IOC #CyberThreatIntel

  7. 🦊 ThreatFox Update | We're now expiring IOCs older than 6 months. IOCs don’t last forever and internet infrastructure often gets re-used, therefore we're implementing a 6-month expiry policy to reduce false positives.

    As a result, expired IOCs will no longer appear in ThreatFox exports or be available via the ThreatFox APIs. Thanks for your continued support! πŸ™

    #ThreatFox #IOC #CyberThreatIntel

  8. 🦊 ThreatFox Update | We're now expiring IOCs older than 6 months. IOCs don’t last forever and internet infrastructure often gets re-used, therefore we're implementing a 6-month expiry policy to reduce false positives.

    As a result, expired IOCs will no longer appear in ThreatFox exports or be available via the ThreatFox APIs. Thanks for your continued support! πŸ™

    #ThreatFox #IOC #CyberThreatIntel

  9. 🦊 ThreatFox Update | We're now expiring IOCs older than 6 months. IOCs don’t last forever and internet infrastructure often gets re-used, therefore we're implementing a 6-month expiry policy to reduce false positives.

    As a result, expired IOCs will no longer appear in ThreatFox exports or be available via the ThreatFox APIs. Thanks for your continued support! πŸ™

    #ThreatFox #IOC #CyberThreatIntel

  10. 🦊 ThreatFox Update | We're now expiring IOCs older than 6 months. IOCs don’t last forever and internet infrastructure often gets re-used, therefore we're implementing a 6-month expiry policy to reduce false positives.

    As a result, expired IOCs will no longer appear in ThreatFox exports or be available via the ThreatFox APIs. Thanks for your continued support! πŸ™

    #ThreatFox #IOC #CyberThreatIntel

  11. Happy to have received recognition for being a #TopContributor to the @abuse_ch project in #2024. Currently ranking place 4 in the leaderboard of global #IoC sharing via #Threatfox.
    Definetly planning to keep up that rank in the next years.
    Cheers to the Team @abuse_ch and @spamhaus!

    P.S. The hoodie has an amazing quality!

  12. Happy to have received recognition for being a #TopContributor to the @abuse_ch project in #2024. Currently ranking place 4 in the leaderboard of global #IoC sharing via #Threatfox.
    Definetly planning to keep up that rank in the next years.
    Cheers to the Team @abuse_ch and @spamhaus!

    P.S. The hoodie has an amazing quality!

  13. Happy to have received recognition for being a #TopContributor to the @abuse_ch project in #2024. Currently ranking place 4 in the leaderboard of global #IoC sharing via #Threatfox.
    Definetly planning to keep up that rank in the next years.
    Cheers to the Team @abuse_ch and @spamhaus!

    P.S. The hoodie has an amazing quality!

  14. Happy to have received recognition for being a #TopContributor to the @abuse_ch project in #2024. Currently ranking place 4 in the leaderboard of global #IoC sharing via #Threatfox.
    Definetly planning to keep up that rank in the next years.
    Cheers to the Team @abuse_ch and @spamhaus!

    P.S. The hoodie has an amazing quality!

  15. Happy to have received recognition for being a #TopContributor to the @abuse_ch project in #2024. Currently ranking place 4 in the leaderboard of global #IoC sharing via #Threatfox.
    Definetly planning to keep up that rank in the next years.
    Cheers to the Team @abuse_ch and @spamhaus!

    P.S. The hoodie has an amazing quality!

  16. βœ… Cyberbro v0.1.0 released

    Get CTI information about IPs / domains/ URLs / hash from different sources:

    - VirusTotal
    - OpenCTI
    - ThreatFox
    - Grep.App

    and more.

    Self-hosted: github.com/stanfrbd/cyberbro/

    Demo: demo.cyberbro.net/

    #cti #virustotal #threatfox #opencti #grep #osint #foss #github #release

  17. βœ… Cyberbro v0.1.0 released

    Get CTI information about IPs / domains/ URLs / hash from different sources:

    - VirusTotal
    - OpenCTI
    - ThreatFox
    - Grep.App

    and more.

    Self-hosted: github.com/stanfrbd/cyberbro/

    Demo: demo.cyberbro.net/

    #cti #virustotal #threatfox #opencti #grep #osint #foss #github #release

  18. Updating old projects to prepare for 2025 πŸ™‚
    IoCSharing to #ThreatFox and my Github has been very low in recent months. Blame my bachelor thesis. But I hope to get that going on a way more frequent basis with the new system :)

    Cheers @abuse_ch for your awesome platforms πŸ’ͺ

  19. Updating old projects to prepare for 2025 πŸ™‚
    IoCSharing to #ThreatFox and my Github has been very low in recent months. Blame my bachelor thesis. But I hope to get that going on a way more frequent basis with the new system :)

    Cheers @abuse_ch for your awesome platforms πŸ’ͺ

  20. Updating old projects to prepare for 2025 πŸ™‚
    IoCSharing to #ThreatFox and my Github has been very low in recent months. Blame my bachelor thesis. But I hope to get that going on a way more frequent basis with the new system :)

    Cheers @abuse_ch for your awesome platforms πŸ’ͺ

  21. New entrant #Bashlite malware enters the Top10 at #2 for most IOCs shared (1,389) on ThreatFox 🦊. Meanwhile, Cobalt Strike remains πŸ” of the charts with 1,772 samples!

    πŸ‘‰ Read the Malware Digest here: spamhaus.org/malware-digest/#m

    Bashlite malware infects Linux systems to enable distributed denial-of-service (DDoS) attacks.

    πŸ‘‰ Learn more about Bashlite: malpedia.caad.fkie.fraunhofer.

    #Malware #ThreatFox #ThreatIntel

  22. New entrant #Bashlite malware enters the Top10 at #2 for most IOCs shared (1,389) on ThreatFox 🦊. Meanwhile, Cobalt Strike remains πŸ” of the charts with 1,772 samples!

    πŸ‘‰ Read the Malware Digest here: spamhaus.org/malware-digest/#m

    Bashlite malware infects Linux systems to enable distributed denial-of-service (DDoS) attacks.

    πŸ‘‰ Learn more about Bashlite: malpedia.caad.fkie.fraunhofer.

    #Malware #ThreatFox #ThreatIntel

  23. New entrant #Bashlite malware enters the Top10 at #2 for most IOCs shared (1,389) on ThreatFox 🦊. Meanwhile, Cobalt Strike remains πŸ” of the charts with 1,772 samples!

    πŸ‘‰ Read the Malware Digest here: spamhaus.org/malware-digest/#m

    Bashlite malware infects Linux systems to enable distributed denial-of-service (DDoS) attacks.

    πŸ‘‰ Learn more about Bashlite: malpedia.caad.fkie.fraunhofer.

    #Malware #ThreatFox #ThreatIntel

  24. New entrant #Bashlite malware enters the Top10 at #2 for most IOCs shared (1,389) on ThreatFox 🦊. Meanwhile, Cobalt Strike remains πŸ” of the charts with 1,772 samples!

    πŸ‘‰ Read the Malware Digest here: spamhaus.org/malware-digest/#m

    Bashlite malware infects Linux systems to enable distributed denial-of-service (DDoS) attacks.

    πŸ‘‰ Learn more about Bashlite: malpedia.caad.fkie.fraunhofer.

    #Malware #ThreatFox #ThreatIntel

  25. New entrant #Bashlite malware enters the Top10 at #2 for most IOCs shared (1,389) on ThreatFox 🦊. Meanwhile, Cobalt Strike remains πŸ” of the charts with 1,772 samples!

    πŸ‘‰ Read the Malware Digest here: spamhaus.org/malware-digest/#m

    Bashlite malware infects Linux systems to enable distributed denial-of-service (DDoS) attacks.

    πŸ‘‰ Learn more about Bashlite: malpedia.caad.fkie.fraunhofer.

    #Malware #ThreatFox #ThreatIntel

  26. #WormsWeeklyIoC have been released. This week features #RecordBreaker/#racconv2, #Amadey #Botnet, and a rework of my #Rhadamanthys #Stealer #IoC gathering.

    Find all indicators here:
    github.com/Gi7w0rm/MalwareConf

    The proudest release this week is 85 new #Rhadamanthys #Stealer #C2s not prior known to #Threatfox.

    I invite you all to vet those to make sure my new method of gathering works correctly :)
    Together with this week's #Raccoon #IoC, they are all in #OTX as well.

    otx.alienvault.com/user/@Gi7w0

    Interesting side note: One of the #IoC for #Rhadamanthys #Stealer is IP: 104.156.149[.]126.

    This IP has been attributed as an Indicator of #Sandworm / GRU Unit 74455 by Google:
    blog.google/threat-analysis-gr

    Stay safe out there <3

  27. #WormsWeeklyIoC have been released. This week features #RecordBreaker/#racconv2, #Amadey #Botnet, and a rework of my #Rhadamanthys #Stealer #IoC gathering.

    Find all indicators here:
    github.com/Gi7w0rm/MalwareConf

    The proudest release this week is 85 new #Rhadamanthys #Stealer #C2s not prior known to #Threatfox.

    I invite you all to vet those to make sure my new method of gathering works correctly :)
    Together with this week's #Raccoon #IoC, they are all in #OTX as well.

    otx.alienvault.com/user/@Gi7w0

    Interesting side note: One of the #IoC for #Rhadamanthys #Stealer is IP: 104.156.149[.]126.

    This IP has been attributed as an Indicator of #Sandworm / GRU Unit 74455 by Google:
    blog.google/threat-analysis-gr

    Stay safe out there <3

  28. @abuse_ch
    Seen some confusion about this - Just wanted to share that (for me at least) the API keys already generated for abuse.ch services (including #ThreatFox and #MalwareBazaar) still work πŸ‘

  29. @abuse_ch
    Seen some confusion about this - Just wanted to share that (for me at least) the API keys already generated for abuse.ch services (including #ThreatFox and #MalwareBazaar) still work πŸ‘

  30. @abuse_ch
    Seen some confusion about this - Just wanted to share that (for me at least) the API keys already generated for abuse.ch services (including #ThreatFox and #MalwareBazaar) still work πŸ‘

  31. @abuse_ch
    Seen some confusion about this - Just wanted to share that (for me at least) the API keys already generated for abuse.ch services (including #ThreatFox and #MalwareBazaar) still work πŸ‘