home.social

#trashagent — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #trashagent, aggregated by home.social.

  1. First day of #100daysOfYara
    This YARA rule detects a technique used in #TrashAgent malware. The malware has a hard-coded list of apps to check for on the system. This YARA looks for the way they parse the list.
    In the image, the list is demarcated with "nepo"

    rule at end
    1/7