@Mandiant Mandiant (part of Google Cloud)Mandiant (part of Google Cloud) posts on X about $googl, actor, how to, engineering the most. They currently have [-------] followers and [---] posts still getting attention that total [-----] engagements in the last [--] hours.
Social category influence technology brands stocks finance countries cryptocurrencies automotive brands social networks formula 1
Social topic influence $googl #1483, actor, how to, engineering, ai, google, cybersecurity, to the, target, check
Top assets mentioned Alphabet Inc Class A (GOOGL) CyberConnect (CYBER) Microsoft Corp. (MSFT) Frontline Ltd. (FRO) Crowdstrike Holdings Inc (CRWD) PolySwarm (NCT)
Top posts by engagements in the last [--] hours
"As cyber threats grow more sophisticated organizations must stay vigilant. Our Cybersecurity Forecast [----] report dives into the key trends read the report. ๐ Question: What threats are you most concerned about in [----] Vote below https://bit.ly/41c3vcw AI-driven phishing Multifaceted extortion Compromised identities Infostealer malware https://bit.ly/41c3vcw AI-driven phishing Multifaceted extortion Compromised identities Infostealer malware"
X Link 2025-02-14T15:00Z 126K followers, [----] engagements
"Cyber threats in [----] are smarter and faster are you equipped to handle it Stay ahead with the Cybersecurity Forecast 2025: Watch out for these top threats https://bit.ly/3XgA5HN https://bit.ly/3XgA5HN"
X Link 2025-02-22T17:00Z 126K followers, [----] engagements
"Ever wonder what goes into dissecting a major phishing attack Our new analysis reveals the methodology behind our deep dive into a Booking campaign powered by Google Threat Intelligence and Google Colab. Learn more here: https://bit.ly/3TxIzIj https://bit.ly/3TxIzIj"
X Link 2025-07-10T18:00Z 127.5K followers, [----] engagements
"Explore the world of #ReverseEngineering with the CTO of @PolySwarm ๐ In this Behind the Binary episode get a rare look into the evolving landscape of binary analysis tools the constant battle with malware obfuscation and more https://goo.gle/4eQAmst https://goo.gle/4eQAmst"
X Link 2025-07-16T18:40Z 127.5K followers, [----] engagements
"๐จ An actor using the CL0P brand is exploiting an Oracle E-Business Suite zero-day (CVE-2025-61882) in an extortion campaign. Our latest blog post examines: ๐น Campaign details ๐น In-memory Java implant framework ๐น Guidance and IOCs for defenders ๐ https://bit.ly/46KMWay https://bit.ly/46KMWay"
X Link 2025-10-09T18:00Z 127.7K followers, [----] engagements
"Cybersecurity Forecast [----] is coming. Access insights on adversary and defender use of AI cybercrime nation-state activity and global trends shaping the year ahead. Pre-register to receive the report right when it launches on Nov. [--]. ๐: https://bit.ly/3WGxfLq https://bit.ly/3WGxfLq"
X Link 2025-10-15T17:30Z 127.7K followers, [----] engagements
"North Korea threat actor UNC5342 is using EtherHiding the first time we have observed a nation-state use this technique. ๐จ The TTP is being used in a social engineering campaign that leads to cryptocurrency heists and espionage. Read the blog post: https://bit.ly/497lvsO https://bit.ly/497lvsO"
X Link 2025-10-17T20:30Z 127.5K followers, 23.2K engagements
"Russia state-sponsored COLDRIVER operationalized new malware only five days after the May [----] disclosure of its LOSTKEYS malware. ๐จ Our latest findings indicate increased development and operations tempo from this threat actor. Read the blog post: https://bit.ly/48FSrJ0 https://bit.ly/48FSrJ0"
X Link 2025-10-20T20:35Z 127.5K followers, 10.3K engagements
"๐ก Mandiant Threat Defense and Google Threat Intelligence Group are tracking UNC5142. This financially motivated actor spreads infostealers via EtherHiding a technique that hides malicious code on public blockchains. Learn more: https://bit.ly/4nqmB6M https://bit.ly/4nqmB6M"
X Link 2025-10-20T22:00Z 127.5K followers, 12.6K engagements
"๐จ Google Threat Intelligence Group is tracking UNC6229 a Vietnam-based threat actor using fake job postings to target digital advertising and marketing professionals and ultimately hijack digital ad accounts. Read the full analysis and get IOCs: https://bit.ly/47mWPtQ https://bit.ly/47mWPtQ"
X Link 2025-10-23T16:00Z 127.5K followers, 13.1K engagements
"2 weeks until launch ๐ The Cybersecurity Forecast [----] report breaks down what defenders need to know now for the coming year. Reserve your copy: https://bit.ly/3Wk93P2 https://bit.ly/3Wk93P2"
X Link 2025-10-23T18:00Z 127.5K followers, [----] engagements
"Threat actors won't slow down in [----]. Sandra Joyce (VP Google Threat Intelligence) shares what defenders need to be thinking about in our upcoming report. Pre-register to get the Cybersecurity Forecast [----] report when it launches on Nov. 4: https://bit.ly/476WPiV https://bit.ly/476WPiV"
X Link 2025-10-24T18:00Z 127.5K followers, [----] engagements
"False positives drain your teams time. โ Our latest blog post shows how to level up your DTM skills cut alert fatigue and build high-fidelity threat detection aligned with @GoogleCloudSec best practices. ๐ https://bit.ly/4nnSs86 https://bit.ly/4nnSs86"
X Link 2025-10-28T16:00Z 127.5K followers, [----] engagements
"Are you afraid of what lurks beneath your network ๐ป Listen to the latest episode of Behind the Binary with @corelight_inc's Mark Overholser for some scary cybersecurity stories and how to prevent them. ๐ง: https://bit.ly/3Jpb1La https://bit.ly/3Jpb1La"
X Link 2025-10-30T21:00Z 126.9K followers, [----] engagements
"๐จ Google Cloud Security Talks is happening next week on November [--] ๐จ RSVP now to join the event virtually and make Google part of your security team: https://goo.gle/sectalk-nov12-li https://goo.gle/sectalk-nov12-li"
X Link 2025-11-01T16:00Z 127.4K followers, [----] engagements
"Sigma = YARA for logs detecting behavior like process execution registry edits or network activity. In Google Threat Intelligence sandboxed files are automatically checked against crowdsourced Sigma rules adding behavioral context & allowing fast pivots to similar samples"
X Link 2025-11-03T23:00Z 127.5K followers, [----] engagements
"๐ฃThe Cybersecurity Forecast [----] report is live Our Google security leaders and experts provide insights on the threats and trends they anticipate in the coming year including adversary use of AI cybercrime (cont) https://bit.ly/4oGtySF https://bit.ly/4oGtySF"
X Link 2025-11-04T14:00Z 127.6K followers, [----] engagements
"โ What are key elements of UNC5221s targeting tactics Mandiants Sarah Yoder and Ashley Pearson of Google Threat Intelligence Group break down the BRICKSTORM campaign and how UNC5221 uses its backdoor for targeting orgs. ๐ง: https://bit.ly/3WAFGIn https://bit.ly/3WAFGIn"
X Link 2025-11-05T14:00Z 127.6K followers, [----] engagements
"Havent read the Cybersecurity Forecast [----] report yet Heres a look at the top trends Google security leaders and experts think will define the year ahead ๐ Download the full report: https://bit.ly/4qL14IF https://bit.ly/4qL14IF"
X Link 2025-11-05T20:30Z 127.5K followers, [----] engagements
"Are we on your ๐ for Nov [--] Join @GoogleCloudSec Talks to learn from Google Mandiant & Dun & Bradstreet about AI cloud defense & real-world threat response. RSVP: https://bit.ly/4pdltVp https://bit.ly/4pdltVp"
X Link 2025-11-05T21:00Z 127.2K followers, [----] engagements
"Google Threat Intelligence Group details the ways threat actors are misusing AI tools including how they are generating and executing AI-enabled malware. ๐ Read this latest report on our blog: https://bit.ly/47EzWCq https://bit.ly/47EzWCq"
X Link 2025-11-05T22:30Z 127.5K followers, 31.7K engagements
"Nine challenges. Over [----] players. ๐ฎ The 12th annual FLARE-On Reverse Engineering Challenge is over Check out all of the official solutions here: https://bit.ly/47rRrqK https://bit.ly/47rRrqK"
X Link 2025-11-07T15:00Z 127.6K followers, [----] engagements
"Were counting down to the Google Cloud Security Talks happening on November [--]. Join virtually to explore how to operationalize #ThreatIntelligence and learn best practices for securing #AI. RSVP today: https://bit.ly/4p3pY4O https://bit.ly/4p3pY4O"
X Link 2025-11-10T15:00Z 127.5K followers, [----] engagements
"Take a glance at the Cybersecurity Forecast [----] report ๐. Read key trends and threats our security experts anticipate for [----]. Download the full report: https://bit.ly/3XrHsf3 https://bit.ly/3XrHsf3"
X Link 2025-11-10T21:00Z 127.5K followers, [----] engagements
"Mandiant Threat Defense recently observed exploitation of CVE-2025-12480 which gives threat actors unauthenticated access on Gladinets Triofox platform. Learn about the threat and get IOCs to defend against it. ๐ Read more: https://bit.ly/484TGR3 https://bit.ly/484TGR3"
X Link 2025-11-11T22:30Z 127.5K followers, [----] engagements
"๐ฃ Everything defenders need to know about UNC1549: a deep dive analysis of suspected Iran-nexus espionage targeting the aerospace aviation and defense industries in the Middle East. Dive into the details: https://bit.ly/3LLpzFF https://bit.ly/3LLpzFF"
X Link 2025-11-17T23:00Z 127.2K followers, 44.9K engagements
"Join Googles Nino Isakovic on a new episode of the Behind the Binary podcast. On this episode Nino talks about reverse engineering and unpacks the art and science of deconstructing problems. Listen here: https://bit.ly/3XDRRo8 https://bit.ly/3XDRRo8"
X Link 2025-11-19T22:00Z 127.5K followers, [----] engagements
"UPDATE: New guidance due to the recent Salesforce advisory regarding Gainsight applications. Get hardening logging and detection recommendations for programmatic credentials. https://cloud.google.com/blog/topics/threat-intelligence/unc6040-proactive-hardening-recommendations https://cloud.google.com/blog/topics/threat-intelligence/unc6040-proactive-hardening-recommendations"
X Link 2025-11-21T19:33Z 127.4K followers, 13.1K engagements
"๐จ APT24 a PRC-nexus threat actor has been leveraging BADAUDIO malware to conduct cyber espionage operations against organizations in Taiwan. ๐ Read more about this campaign that has spanned three years and stay ahead of this persistent threat: https://bit.ly/4r8mek5 https://bit.ly/4r8mek5"
X Link 2025-11-21T20:00Z 127.3K followers, [----] engagements
"๐ก Monday Tip: IDS rules in #GoogleThreatIntelligence ๐ก Hunt smarter with #GoogleTI Use crowdsourced_ids to pivot & find files linked to specific C2 or malicious traffic. #GoogleTIMondays #ThreatIntelligence #CyberSecurity"
X Link 2025-12-01T22:00Z 126.8K followers, [----] engagements
"CVE-2025-55182 (aka "React2Shell") continues to be exploited ๐จ Google Threat Intelligence Group has observed multiple campaigns including China-nexus and financially motivated activity. Get the latest insights to identify and remediate this threat โก https://bit.ly/3XYde3S https://bit.ly/3XYde3S"
X Link 2025-12-16T19:30Z 127.1K followers, 17.8K engagements
"In this episode of Behind The Binary we get a unique look at the story of Windows through the eyes of one of its leading experts Pavel Yosifovich (@zodiacon). From EDRs to AI Pavel offers a window into techs history and future. ๐ช https://bit.ly/4924vmc https://bit.ly/4924vmc"
X Link 2025-12-23T17:00Z 127K followers, [----] engagements
"Hunt better with Malware Config Extractor ๐ Extract C2s from Agent Tesla/XRed. ๐ Try the malware_config modifier: #Malware #ThreatHunt https://bit.ly/4jG1bSK https://bit.ly/4jG1bSK"
X Link 2026-01-12T22:00Z 127.2K followers, 10.4K engagements
"New security tool ๐ง Weve released AuraInspector an open-source tool to help defenders audit Salesforce Aura for access control misconfigurations and data exposure risks. Our latest post also details a new (cont) https://bit.ly/4pFiyoc https://bit.ly/4pFiyoc"
X Link 2026-01-14T22:30Z 127.1K followers, [----] engagements
"Net-NTLMv1 is outdated insecure and must go. ๐ To help defenders prove the risk and accelerate deprecation weve released a comprehensive dataset of rainbow tables. See how easily these keys can be recovered and secure your environment. Read more: https://bit.ly/4qpV6MJ https://bit.ly/4qpV6MJ"
X Link 2026-01-16T21:00Z 127.1K followers, 42.9K engagements
"Stop chasing static IoCs. ๐ก Use TTP Analysis in Google TI to hunt smarter with MITRE ATT&CK. #GoogleTIMondays #ThreatHunting"
X Link 2026-01-16T22:00Z 127.1K followers, [----] engagements
"Google Threat Intelligence Group observed pro-Russia IO actors spreading narratives related to reports of Russian drones entering Polish airspace in September [----]. Read our latest analysis to learn about these campaigns: https://bit.ly/3JpgWzG https://bit.ly/3JpgWzG"
X Link 2025-10-22T20:00Z 127.2K followers, [----] engagements
"Understanding the targeting and TTPs of nation-state adversaries is key to staying ahead of them. Sandra Joyce VP of Google Threat Intelligence shares what to expect from China in [----]. Want more Read the full Cybersecurity Forecast [----] report โก https://bit.ly/4qqJ99D https://bit.ly/4qqJ99D"
X Link 2026-01-20T21:30Z 127.2K followers, [----] engagements
"We are tracking widespread exploitation of critical WinRAR vulnerability CVE-2025-8088 by state-sponsored espionage groups and financially motivated actors. ๐ All orgs and users should update to the latest version of WinRAR. Learn more and get IOCs: https://bit.ly/4t2FuAB https://bit.ly/4t2FuAB"
X Link 2026-01-27T22:00Z 127.4K followers, 21.2K engagements
"๐ฃ New episode of The Defenders Advantage Podcast Eugene Liderman Director of Product for Android Security & Privacy breaks down the evolution of mobile scams over the past several years. ๐ง: https://bit.ly/4q8CT5f https://bit.ly/4q8CT5f"
X Link 2026-01-28T19:00Z 127.2K followers, [----] engagements
"Google & partners disrupted IPIDEA one of the world's largest residential proxy networks reducing its device pool by millions. This infrastructure was leveraged by over [---] distinct espionage and cybercrime groups. Full report + IOCs here: https://bit.ly/4a7hT9h https://bit.ly/4a7hT9h"
X Link 2026-01-28T22:45Z 127.3K followers, [----] engagements
"๐ Agentic Threat Intelligence is officially GA ๐ข Shift from manual research to AI-driven workflows. ๐คโก #GoogleTIMondays #AI"
X Link 2026-02-02T22:00Z 127.3K followers, [----] engagements
"North Korean IT worker operations are expected to expand in [----]. ๐ Sandra Joyce VP of Google Threat Intelligence shares how these actors are adapting and what regions they may target next. Get more [----] insights: https://bit.ly/4c9HNf4 https://bit.ly/4c9HNf4"
X Link 2026-02-04T20:00Z 127.4K followers, [----] engagements
"Stop manual LOLBin hunts ๐ต Use Google TI Advanced Searches to catch stealthy tools. ๐ #GoogleTIMondays #lolbins"
X Link 2026-02-09T22:30Z 127.4K followers, [----] engagements
"One compromised Microsoft Entra ID or Azure account can lead to a full tenant takeover. Our new framework ranks roles by risk and adds strong MFA + secure admin workstations to protect the most critical accounts. Read the whitepaper: https://bit.ly/47GbPTU https://bit.ly/47GbPTU"
X Link 2025-11-06T19:06Z 127.5K followers, 132.7K engagements
"North Korean actor UNC1069 is targeting the crypto sector with AI-enabled social engineering deepfakes and [--] new malware families. Get the details on their TTPs and tooling as well as IOCs to detect and hunt for the activity detailed in our post ๐ https://bit.ly/4ckI3rD https://bit.ly/4ckI3rD"
X Link 2026-02-09T21:00Z 127.5K followers, 16K engagements
"Adversaries are bypassing traditional defenses to target the Defense Industrial Base. From edge device exploitation to spoofed recruitment portals understand how the defense sector is being targeted by state-sponsored actors and criminal groups alike. https://bit.ly/4qwmR5D https://bit.ly/4qwmR5D"
X Link 2026-02-10T21:30Z 127.5K followers, [----] engagements
"Our latest GTIG AI Threat Tracker report reveals how adversaries are integrating AI into operations. We detail state-sponsored LLM phishing AI-enabled malware like HONESTCUE and rising model extraction attacks. Read the report: https://bit.ly/4adaUNk https://bit.ly/4adaUNk"
X Link 2026-02-12T18:00Z 127.5K followers, 14K engagements
"Ransomware is the #1 way financially motivated threat actors monetize their intrusions but they will use other tactics to exert pressure on orgs in [----]. Download the Cybersecurity Forecast [----] report to learn more: https://bit.ly/3OcZn86 https://bit.ly/3OcZn86"
X Link 2026-02-12T21:00Z 127.5K followers, [----] engagements
"New #GoogleTIMondays ๐ก Hunt Mshta Regsvr32 & Bitsadmin like a pro using Advanced Search ๐ & YARA ๐ค #ThreatHunting #LOLBins"
X Link 2026-02-16T17:00Z 127.5K followers, [----] engagements
"Another virtual sales kickoff for the books ๐ With Momentum [----] wrapped Team Mandiant is ready to execute on our plans this year. We look forward to seeing all this team will accomplish"
X Link 2022-01-19T22:16Z 126K followers, [--] engagements
"Meet Mandiant now part of Google Cloud at the @SecureWorld Manufacturing Virtual Conference on August [--]. @ChrisSistrunk will discuss Incident Response for OT at 1pm ET. Register here: #Cybersecurity #OT #OperationalTechnology #ICS #ThreatIntelligence"
X Link 2023-08-09T17:32Z 123.9K followers, [----] engagements
"Mandiant Intelligence has been tracking several ways in which Chinese cyber espionage activity has increasingly leveraged initial access and post-compromise strategies intended to minimize opportunities for detection. Learn more in our analysis: https://mndt.info/3rrmIaC https://mndt.info/3rrmIaC"
X Link 2023-08-14T15:20Z 127.5K followers, 94.9K engagements
"Have you heard about our Pre-Conference Training courses at @mWISEConference Mandiant is offering three courses including one about Intelligence Research II Open Source Intelligence (OSINT) Tools & Techniques. You dont want to miss this Register now:"
X Link 2023-08-24T02:40Z 123.9K followers, [----] engagements
"@Pparkjaewoos 3-part series from @RadioFreeAsiaon North Korean hackers is out now Watch to hear firsthand accounts from victims and experts on how these groups operate. #Cybersecurity #ThreatIntelligence"
X Link 2023-08-24T17:33Z 123.9K followers, [----] engagements
"Our latest edition of The Defender's Advantage Cyber Snapshot is here Learn about todays top cyber defense topics based on Mandiant frontline observations and real-world experience. Download here:"
X Link 2023-08-31T18:49Z 123.9K followers, [----] engagements
"Keynote at #mWISE2023 is about to begin featuring Kevin Mandia @JohnHultquist @snlyngaas @maddiestone Selena Larson Jackie Burns Koven and @FBI Director Christopher Wray"
X Link 2023-09-18T18:10Z 126K followers, [----] engagements
"Mandiant and @SentinelOne are expanding their partnership to enhance Sentinel Ones Singularity Platform to protect organizations of all sizes with industry-leading threat intelligence. Learn more: #Cybersecurity #ThreatIntelligence"
X Link 2023-09-18T22:00Z 123.9K followers, [--] engagements
"The threat actor was extremely sophisticated. They knew the functionality of our product and used those features to carry out their mission - Diane Honda @barracuda"
X Link 2023-09-19T18:20Z 122K followers, [--] engagements
"What is the role of AI in assessing and protecting the enterprise attack surface Hear from experts as they explore this topic and many more during @DarkReading's webinar Cyber Risk Assessment Secrets from the Pros. Register here: #CyberRiskAssessment2023"
X Link 2023-09-20T19:57Z 123.9K followers, [----] engagements
"Hi Oklahoma Mandiant will be sponsoring the upcoming @IWSOKC which will take place in Edmond on October [--]. Tune in for Jibran Ilyas's talk Anatomy of a ransomware attack at 10am CT and dont hesitate to stop by our booth #Cybersecurity #Ransomware"
X Link 2023-09-26T20:21Z 123.9K followers, [----] engagements
"Security theater in the cloud is a problem. Google Cloud researchers found that 41% of compromises they reviewed from [----] were to blame on weak passwords and our M-Trends [----] report backs this up. Read here about how you can help stop it:"
X Link 2023-09-26T20:21Z 122K followers, [----] engagements
"Gain expert insights on todays cyberthreat landscape and learn how your organization can combat these threats using security solutions powered by generative AI. #Cybersecurity #ThreatIntelligence #GenerativeAI"
X Link 2023-10-03T13:00Z 123.9K followers, [----] engagements
"Our blog on the assessed cyber structure and alignments of North Korea in [----] is now live Read more about Mandiants findings: #Cybersecurity #CyberCrime #Espionage"
X Link 2023-10-11T18:15Z 122K followers, [----] engagements
"Yesterday @Google partnered with government and industry leaders to host a forum focused on AI and security where they discussed their new report on Building a Secure Foundation for American Leadership in AI. Read more here:"
X Link 2023-10-19T21:18Z 122K followers, [----] engagements
"Our quarterly digital event Google Cloud Security Talks is happening on October [--] and will bring together experts from Google Cloud and the broader Google security community to share insights best practices and more. See what's happening:"
X Link 2023-10-20T20:12Z 122K followers, [----] engagements
"Synthetic media is by no means a new development. Our blog shares how repurposing open source models can be weaponized for offensive social media campaigns. The security community should help AI researchers and other stakeholders mitigate the harmfulness. https://www.mandiant.com/resources/blog/repurposing-neural-networks-to-generate-synthetic-media-for-information-operations https://www.mandiant.com/resources/blog/repurposing-neural-networks-to-generate-synthetic-media-for-information-operations"
X Link 2023-10-20T23:03Z 126.1K followers, [----] engagements
"Its hard to believe its been about a month since #mWISE2023 If you missed it watch the replay of @NReichenbergs talk and find out how Google Cloud is reimagining modern security operations. #Cybersecurity #CloudSecurity #mWISE"
X Link 2023-10-23T15:10Z 122K followers, [----] engagements
"Head to our YouTube to watch Octobers Cybersecurity Awareness Month episode on the Defender's Advantage Podcast with Kevin Mandia and DHS Secretary Alejandro Mayorkas #Cybersecurity #DefendersAdvantagePodcast"
X Link 2023-11-08T01:08Z 122.1K followers, [----] engagements
"Read our research on Citrix vulnerability CVE-2023-4966 here and our guidance for remediating and reducing risk #Vulnerabilities #ZeroDayThreats #TTPS"
X Link 2023-11-22T16:40Z 122.4K followers, [----] engagements
"Register now for a new webinar about #VulnerabilityManagement on Dec. [--]. Join experts from @Nucleus @Google and @Mandiant who will teach you about vulnerability threat intelligence with actionable insights to stay ahead of threats. Secure your spot:"
X Link 2023-12-08T21:00Z 124.1K followers, [---] engagements
"As you likely noticed yesterday Mandiant lost control of this X account which had 2FA enabled. Currently there are no indications of malicious activity beyond the impacted X account which is back under our control. We'll share our investigation findings once concluded"
X Link 2024-01-04T19:10Z 127.5K followers, 224.2K engagements
"We have finished our investigation into last week's Mandiant X account takeover and determined it was likely a brute force password attack limited to this single account"
X Link 2024-01-10T20:00Z 127.5K followers, 406.1K engagements
"Last year our Managed Defense threat hunting team identified an UNC2975 malicious advertising campaign presented to users in sponsored search engine results and social media posts. Read all about how this malvertising (cont)"
X Link 2024-01-10T22:00Z 124K followers, [--] engagements
"The #ThreatLandscape is constantly evolving which forces organizations to keep their #CyberDefense fresh and up-to-date. Read our full #DefendersAdvantage Cyber Snapshot Report ๐"
X Link 2024-01-12T17:00Z [--] followers, [----] engagements
"Check out our initial findings on zero-day exploitation of Ivanti appliances by a suspected APT. ๐ We share details on five malware families related to the exploitation as well as IOCs YARA rules and more for defenders to stay ahead of the threat. https://bit.ly/3vwmkK6 https://bit.ly/3vwmkK6"
X Link 2024-01-12T22:07Z 127.5K followers, 18.6K engagements
"As part of the Google Summer of Code project our FLOSS malware analysis tool now supports the Go and Rust executables. Learn how to use FLOSS by reading our blog here #ReverseEngineering #Flare https://www.mandiant.com/resources/blog/extracting-strings-go-rust-executables https://www.mandiant.com/resources/blog/extracting-strings-go-rust-executables"
X Link 2024-01-17T21:45Z 127.5K followers, 21.5K engagements
"Check out the new #JCDC water sector incident response guide from@CISAgov Usinginput from @Mandiant's responders this guideassists owners and operators in this sector with cyber resources. With @FBI and @EPAwater we published a guide to assist owners and operators in #WWS Sector with best practices for cyber incident response and information about federal roles resources and responsibilities for each stage of the response lifecycle. https://t.co/NvIhShDrsj https://t.co/gkgMPuWCrz With @FBI and @EPAwater we published a guide to assist owners and operators in #WWS Sector with best practices for"
X Link 2024-01-18T21:03Z [--] followers, [----] engagements
"Our Managed Defense team identified a threat actor UNC4990 who uses USB devices for initial attacks. They have moved from using seemingly benign encoded text files to hosting payloads on popular websites. Read more: #Malware #ManagedDefense https://www.mandiant.com/resources/blog/unc4990-evolution-usb-malware https://www.mandiant.com/resources/blog/unc4990-evolution-usb-malware"
X Link 2024-02-01T19:00Z 127.5K followers, 19.7K engagements
"Mandiant and VMware Product Security found that UNC3886 has been exploiting CVE-2023-20867 since [----]. Mandiant recommends VMware users update to the latest version of vCenter to account for this vulnerability seeing exploitation in the wild. https://www.mandiant.com/resources/blog/chinese-vmware-exploitation-since-2021 https://www.mandiant.com/resources/blog/chinese-vmware-exploitation-since-2021"
X Link 2024-02-08T23:08Z 127.5K followers, 62.6K engagements
"@BostonCyberGuy and Bill Reid discuss last years threat activity within healthcare and life sciences along with applying threat intelligence to third-party risk management and threat modeling in the latest episode of The Defenders Advantage Podcast:"
X Link 2024-02-13T21:00Z 124.1K followers, [---] engagements
"With cyber becoming a tool of first resort for warfare threat intel is more important than ever. Read Google TAG & @Mandiant's new report on cyber's role amid the Israel-Hamas war and an update on the Russian war in Ukraine: #Cybersecurity #ThreatIntel"
X Link 2024-02-14T21:00Z 124.2K followers, [----] engagements
"Join our experts for a webinar on February [--] about sophisticated attacks and how organizations can defend themselves from the latest generation of attacks. Register here: #Phishing #ThreatIntelligence"
X Link 2024-02-20T17:00Z 124.3K followers, [----] engagements
"Threat actors are increasing their focus on the maritime industry considering its impact and effect on global supply chains. Learn more from Issue [--] of The #DefendersAdvantage Cyber Snapshot. #Cybersecurity #MaritimeIndustry"
X Link 2024-02-21T15:24Z 124.3K followers, [----] engagements
"Learn about the updated version of the ConnectWise ScreenConnect product (23.9.8+) that mitigates vulnerabilities and read our remediation and hardening guide now to protect against threats"
X Link 2024-02-27T02:00Z 124.3K followers, [----] engagements
"Explore threat intel trends #GenAI security use cases and #SecOps best practices by registering for the first virtual Security Talks event on March [--] ๐ Register here: #CloudSecurity #ThreatIntel #SecurityAI"
X Link 2024-03-01T19:30Z 124.4K followers, [----] engagements
"Kick off the new year and explore the latest threat intel trends from Google Cloud and Mandiant at todays Google Cloud Security Talks Register here: #Cybersecurity #GenAI #CyberThreats"
X Link 2024-03-13T17:00Z 124.4K followers, [----] engagements
"Meet SCC Enterprise by @googlecloud - the industrys first multi-cloud security and risk management solution. Seamlessly converging cloud and enterprise security operations infused with AI and supercharged by Mandiant expertise"
X Link 2024-03-13T19:00Z 124.4K followers, [----] engagements
"๐ #GoogleCloudNext [----] begins in #LasVegas uniting tech enthusiasts for immersive learning. Hear from esteemed Mandiant professionals and @googlecloud experts as they delve into #GenAI #DataSecurity and #CloudOperations"
X Link 2024-04-09T19:15Z 124.6K followers, [----] engagements
"In a world where #ransomware and #datatheft loom large organizations are constantly battling evolving threats. Our latest report offers comprehensive strategies to fortify defenses and mitigate risks. Dive deeper into the tactics โก https://bit.ly/4do23bd https://bit.ly/4do23bd"
X Link 2024-04-30T22:00Z 124.8K followers, [----] engagements
"๐ Day [--] at #RSAC is here Explore AI safety and risk management insights from frontline experts. Learn about secure #AI workflows and tech solutions and catch our exclusive livestream events with @Optiv and @nucleussec Don't miss out #Mandiant"
X Link 2024-05-08T15:05Z 125K followers, [----] engagements
"๐ Dive into the findings and insights from the #MTrends [----] special report directly from the analysts and authors. Register now for the webinar series to watch live or on-demand: https://bit.ly/4broaMl https://bit.ly/4broaMl"
X Link 2024-05-20T16:30Z 125K followers, [----] engagements
"๐ We observed client-specific secrets leaking from #Bitbucket and used by threat actors to access AWS. Read details on the issue and defensive actions to take in our latest blog post: #Mandiant #Cybersecurity https://bit.ly/3QVo2wB https://bit.ly/3QVo2wB"
X Link 2024-05-21T17:30Z 125K followers, [----] engagements
"โ Alert: Mandiant investigation reveals targeted campaign against Snowflake customer databases. Read more โก #Snowflake #Cybersecurity #Mandiant https://bit.ly/3XhbEL7 https://bit.ly/3XhbEL7"
X Link 2024-06-10T14:00Z 127.5K followers, 20.3K engagements
"UNC3944 Evolving Tactics Exposed Our new blog dives deep into UNC3944's recent SaaS attacks analyzing their changing methods and goals. Read now: #Cybersecurity #ThreatIntelligence #UNC3944 https://bit.ly/3x5WC0l https://bit.ly/3x5WC0l"
X Link 2024-06-13T18:55Z 127.5K followers, 74.9K engagements
"๐จ #Snowflake customer database instances are being targeted for data theft and extortion. To help defenders we've released our Snowflake #threathunting guide โก Read our blog post for findings on this campaign: #Mandiant https://bit.ly/3VKaV3R https://bit.ly/3RtMWU0 https://bit.ly/3VKaV3R https://bit.ly/3RtMWU0"
X Link 2024-06-17T16:00Z 127.5K followers, 18.5K engagements
"๐จ New Mandiant intel: #UNC3886 a suspected China-nexus cyber espionage group uses publicly available rootkits for persistence Their targets: prominent organizations worldwide. Read about our investigations to learn more: #Mandiant #UNC3886 https://bit.ly/4baGeJV https://bit.ly/4baGeJV"
X Link 2024-06-18T19:00Z 127.5K followers, 29.8K engagements
"๐จ Heads up Snowflake customer database instances are being targeted for data theft and extortion. To help defenders we have released our #Snowflake threat hunting guide โก Read our blog post for more: #Mandiant #ThreatHunting https://bit.ly/3znmV2K https://bit.ly/4eC65gJ https://bit.ly/3znmV2K https://bit.ly/4eC65gJ"
X Link 2024-07-02T13:00Z 125.6K followers, [----] engagements
"As #NATOSummit unfolds explore our latest blog post uncovering the critical cyber threats facing the Alliance. From state-sponsored attacks to emerging risks stay informed about the evolving landscape. ๐ Read more: #Cybersecurity #CyberThreats https://bit.ly/3LiKI6I https://bit.ly/3LiKI6I"
X Link 2024-07-10T20:00Z 125.9K followers, [----] engagements
"๐ Discover EMPTYSPACE: Mandiant finds variants disguised as "Runtime Broker.exe" in Node.js .NET and Python. It uses HTTP for C2 communication delivering secondary malware payloads. Read more: #Cybersecurity #Malware #EMPTYSPACE https://bit.ly/4ffkxeG https://bit.ly/4ffkxeG"
X Link 2024-07-30T14:00Z 126K followers, [----] engagements
"๐จ #Mandiant flagged a vulnerability in #MicrosoftAzure Kubernetes Services to Microsoft via MSRC. This flaw which has been addressed could have allowed for privilege escalation for services used by a vulnerable cluster. Get the full details https://bit.ly/4dQ673a https://bit.ly/4dQ673a"
X Link 2024-08-19T18:00Z 126.5K followers, [----] engagements
"๐จ Mandiant uncovered a suspected Iran-nexus counterintelligence operation targeting Iranian activists via fake recruiting sites. Since as early as [----] this campaign aimed to collect personal info using deceptive tactics. Get the details here https://bit.ly/3ATVTk0 https://bit.ly/3ATVTk0"
X Link 2024-08-29T00:00Z 127.5K followers, 17.5K engagements
"๐ฅ Dive into five hot cyber defense topics from rising attacks on cloud-first organizations to insider threat penetration testing in the latest Cyber Snapshot report. ๐ #CyberSnapshot #CloudSecurity #Cybersecurity https://bit.ly/4dHHcz4 https://bit.ly/4dHHcz4"
X Link 2024-08-30T16:00Z 126.4K followers, [----] engagements
"๐จ Threat actors are turning everyday digital tools into powerful weapons. Mandiant and @googlecloud researchers reveal how these tactics work and how you can defend against them. Discover more #Cybersecurity #ThreatIntel #Mandiant https://bit.ly/473d9Q1 https://bit.ly/473d9Q1"
X Link 2024-08-30T18:00Z 126.5K followers, [----] engagements
"๐จ Mandiant's research uncovers how Web3's growth has driven a surge in DeFi heists reshaping the cybersecurity landscape. Explore the findings #Cybersecurity #Web3 #DeFi https://bit.ly/3XuvBhg https://bit.ly/3XuvBhg"
X Link 2024-09-03T21:00Z 126.5K followers, [----] engagements
"Join @chrisdoman CTO of @CadoSecurity as he covers minimizing permissions for #cloudforensics. Learn about forensics accounts data extraction and RBAC best practices. Register to hear the full session in Denver ๐ #mWISE2024 https://bit.ly/4gfcJtS https://bit.ly/4gfcJtS"
X Link 2024-09-05T16:00Z 126.5K followers, [----] engagements
"๐ Want to tackle the latest threats Choose from sessions in the #SecurityThreats and Exploits track at #mWISE2024 then dive into Third Party & Cyber #RiskManagement sessions. Tailor your learning and stay aheadregister now ๐ https://bit.ly/4ebTxvh https://bit.ly/4ebTxvh"
X Link 2024-09-06T19:00Z 126.5K followers, [----] engagements
"๐ Cant make it to Denver Join #mWISE2024 online with our Digital Pass ๐ฅ Live Keynotes ๐ 70+ On-Demand Sessions Use code GoogleCloudDigital100 for a free Digital Conference badge ๐ https://bit.ly/47ezOJl https://bit.ly/47ezOJl"
X Link 2024-09-09T14:00Z 126.5K followers, [----] engagements
"๐จ Join Us Tomorrow ๐จ Get ahead of cyber threats with our webinar Learn about the latest trends in ransomware attack vectors and defensive strategies from Google and Mandiant. ๐ Register Now: #Cybersecurity #Mandiant #Ransomware https://bit.ly/4dSQNTL https://bit.ly/4dSQNTL"
X Link 2024-09-11T15:00Z 126.5K followers, [----] engagements
"๐ [--] week to go until the @mWISEConference in Denver Security pros gear up for advanced strategies threat intel and expert insights. Dont miss outregister now ๐ #mWISE2024 https://bit.ly/3Xl0kMD https://bit.ly/3Xl0kMD"
X Link 2024-09-12T14:00Z 126.5K followers, [----] engagements
"The Flare-On Challenge is back for its 11th year ๐ฅ This #CTF-style challenge for current and aspiring reverse engineers features puzzles across Windows Linux Web3 and even YARA. Learn more and get ready to compete #Flareon11 https://bit.ly/3TwZ7AG https://bit.ly/3TwZ7AG"
X Link 2024-09-16T18:00Z 127.5K followers, 23K engagements
"๐จ Mandiant has identified a North Korea nexus cyber espionage group #UNC2970 targeting energy & aerospace with job recruiter lures. Access the full details https://bit.ly/3MQzuXU https://bit.ly/3MQzuXU"
X Link 2024-09-17T22:00Z 127.5K followers, 16.6K engagements
"The Defenders Advantage 2nd Edition ๐ With insights drawn directly from the frontlines learn how to capitalize on your defenders advantage to protect and secure your organization's environment through effective cyber defense. Grab the eBook today: https://bit.ly/3Xxjizo https://bit.ly/3Xxjizo"
X Link 2024-09-18T15:00Z 126.5K followers, [----] engagements
"As digital spaces grow so do cyber threats ๐ก Introducing Mandiant Managed Defense now delivered on Google Security Operations. ๐Get expert backing Swift responses ๐24/7 monitoring See how we can boost your security: #MandiantManagedDefense https://bit.ly/3TuV7AC https://bit.ly/3TuV7AC"
X Link 2024-09-18T16:30Z 126.5K followers, [----] engagements
"๐ #UNC1860: An Iranian state-sponsored threat actor with specialized tooling and backdoors for persistent access to targets in the Middle East. Our latest blog post unpacks their operations and targeting https://bit.ly/3B597KY https://bit.ly/3B597KY"
X Link 2024-09-20T16:00Z 126.5K followers, [----] engagements
"๐จ Mandiant observed #LummaC2 stealers leveraging a new obfuscation technique to thwart analysis tools and stifle reverse engineering efforts. Read about this tactic and how we developed an automated method for removing this protection layer https://bit.ly/47IImbK https://bit.ly/47IImbK"
X Link 2024-09-25T18:00Z 127.5K followers, 16.9K engagements
"Its time to show what you've got the 11th Annual Flare-On Challenge is live ๐ Showcase your reverse engineering skills from Windows to Web3 with a YARA twist Join before it ends on Nov [--] ๐ #FlareOn11 #ReverseEngineering #Cybersecurity https://bit.ly/4eLWAuA https://bit.ly/4eLWAuA"
X Link 2024-10-04T16:00Z 126.7K followers, [----] engagements
"Mandiants latest research analyzed [---] vulnerabilities disclosed in [----] with [--] being exploited as zero-days and [--] as n-days. The gap between #zeroday and n-day exploitation is widening driven by increased zero-day usage. Discover the details: https://bit.ly/4hfRM2t https://bit.ly/4hfRM2t"
X Link 2024-10-21T18:10Z 127.5K followers, 12.4K engagements
"๐จ Breaking: A zero-day vulnerability (CVE-2024-47575) has been observed impacting Fortinet FortiManager devices posing serious risks. Learn how the exploit works and how to defend against the threat. Read more - #ThreatIntelligence https://bit.ly/4hbqmuR https://bit.ly/4hbqmuR"
X Link 2024-10-24T01:00Z 127.5K followers, 39.9K engagements
"ICYMI: A newly observed zero-day vulnerability (CVE-2024-47575) is impacting FortiManager devices leaving critical systems exposed. Get the latest insights and learn how to defend your network against potential attacks. Read the full investigation - https://bit.ly/3AgkkbE https://bit.ly/3AgkkbE"
X Link 2024-10-25T21:00Z 127.1K followers, [----] engagements
"Mandiant has been tracking #GOOTLOADER an obfuscated #JavaScript downloader since [----]. Explore its infection chain and detection strategies in our latest blog post. Stay informed ๐ #Malware #Cybersecurity https://bit.ly/3YyRzPB https://bit.ly/3YyRzPB"
X Link 2024-11-01T16:30Z 126.4K followers, [----] engagements
"๐ Join Mandiant experts on November 6th at [--] AM EST/8 AM PST for a webinar on the FortiManager zero-day CVE-2024-47575 and UNC5820 tactics Learn how to spot vulnerabilities and bolster your defenses. Register today https://bit.ly/4eZbkXv https://bit.ly/4eZbkXv"
X Link 2024-11-01T19:00Z 126.4K followers, [----] engagements
"๐ญ How is the Mandiant Red Team using AI to revolutionize adversarial emulation Learn how we leverage #AI and #LLMs to process unstructured security data and better defend organizations. Read the post https://bit.ly/4fPHGUI https://bit.ly/4fPHGUI"
X Link 2024-11-15T19:00Z 126.1K followers, [----] engagements
"Strengthen your defenses ahead of [----]. Join our security expert on Dec [--] for insights from our Cybersecurity Forecast 2025: #AI emerging #malware #cybercrime and more. Register today ๐ https://bit.ly/4fvciee https://bit.ly/4fvciee"
X Link 2024-11-20T15:00Z 126.1K followers, [----] engagements
"Major shift detected in the world of cyber exploits Mandiants [----] findings highlight a rise in zero-day exploits. What does this mean for future cybersecurity strategies Explore the insights: #Cybersecurity #ThreatIntel https://bit.ly/3AJB0bT https://bit.ly/3AJB0bT"
X Link 2024-11-22T19:00Z 126.1K followers, [----] engagements
"A pro-PRC influence operation exposed. @Googles Threat Intelligence Group uncovered #GLASSBRIDGEa network spreading propaganda via fake news sites. Get the full details on how they operate in our latest blog post. ๐ https://bit.ly/3OmNZ6h https://bit.ly/3OmNZ6h"
X Link 2024-11-22T21:00Z 126.1K followers, [----] engagements
"Join John Barth Senior Intelligence Enablement Consultant at Google Cloud at #CyberRhinoThreatWeek2024 as he shares his expertise in threat intelligence and security operations alongside industry leaders. Learn more https://bit.ly/4eEsusl https://bit.ly/4eEsusl"
X Link 2024-11-24T15:00Z 126K followers, [----] engagements
"Threats from all angles: #AI #ransomware and beyond. Join us to learn more On Dec [--] get ready for a deep dive into the Cybersecurity Forecast [----] with a Mandiant security expert. Register today ๐ #Cybersecurity https://bit.ly/3OrwstY https://bit.ly/3OrwstY"
X Link 2024-11-26T15:00Z 126K followers, [----] engagements
"๐ The [----] #MTrends report shows how attackers are using AiTM (Adversary-in-the-Middle) phishing pages to bypass #MFA Web proxy phishing is making many MFA setups ineffective. Get the full details here: https://bit.ly/411UUte https://bit.ly/411UUte"
X Link 2024-11-27T15:00Z 126.1K followers, [----] engagements
"Mandiants research reveals that most n-day exploits happen soon after patches are available. In fact 56% are exploited within the first month Stay ahead of the curve and read more about these findings: #Cybersecurity #ThreatIntel https://bit.ly/3VbLtDX https://bit.ly/3VbLtDX"
X Link 2024-12-03T19:00Z 127.5K followers, [----] engagements
"๐จBeware of #UNC5267: individuals posing as IT workers and infiltrating various businesses to fund the North Korean regime. Learn more about the threat and how to detect and hinder DPRK IT worker activity. https://cloud.google.com/blog/topics/threat-intelligence/mitigating-dprk-it-worker-threat/ https://cloud.google.com/blog/topics/threat-intelligence/mitigating-dprk-it-worker-threat/"
X Link 2024-12-10T17:15Z 126.2K followers, [----] engagements
"Attackers can use QR codes to bypass browser isolation and establish command and control. Learn how the technique works and recommendations on how to stay ahead of this threat: https://bit.ly/49uMYms https://bit.ly/49uMYms"
X Link 2024-12-10T20:00Z 127.5K followers, 11.6K engagements
"๐ Mandiant observes that AI is increasingly used in Initial Access stages of attacks focusing on social engineering. Learn how this innovation is impacting proactive security and red team strategies. ๐ #MTrends #RedTeam https://bit.ly/49y9IBX https://bit.ly/49y9IBX"
X Link 2024-12-11T15:00Z 126.2K followers, [----] engagements
"๐จ Mandiant saw a 17% rise in exploited vendors in [----] Attackers are targeting a more diverse range of companies shifting the landscape. Dive into the details: #Cybersecurity #ThreatIntelligence https://bit.ly/3ZqtbB6 https://bit.ly/3ZqtbB6"
X Link 2024-12-11T17:00Z 126.1K followers, [----] engagements
"A threat hunter at @PaloAltoNtwks Ryan Chapman chats with @jstrosch from Googles FLARE team on #malware evolution in the latest Behind the Binary episode. ๐ง Listen now #ThreatHunting #Cybersecurity https://spoti.fi/49AajDq https://spoti.fi/49AajDq"
X Link 2024-12-13T17:35Z 126.2K followers, [----] engagements
"Cyber threats are evolving and so should your defenses. Integrating AppSec into Red Team assessments more accurately simulates real-world tactics and uncovers hidden vulnerabilities. See how AppSec expertise turns risks into resilience: https://bit.ly/49CicYY https://bit.ly/49CicYY"
X Link 2024-12-16T16:00Z 126.2K followers, [----] engagements
"Introducing XRefer: a tool from the Mandiant FLARE team to speed up #malwareanalysis and streamline investigations. Learn more: https://bit.ly/4iUrvrF https://bit.ly/4iUrvrF"
X Link 2024-12-17T21:00Z 127.5K followers, 11.8K engagements
"Learn how #ThreatIntelligence Detection & Hunting can transform your defenses Part [--] of The Defender's Advantage series covers how to operationalize intel build high-fidelity detections and hunt hidden adversaries. Register now https://bit.ly/3DmSBHs https://bit.ly/3DmSBHs"
X Link 2024-12-20T15:00Z 126.2K followers, [----] engagements
"Start [----] with stronger defenses ๐ช On Jan [--] [--] AM EST learn how to: ๐ก Operationalize threat intel โ Align detections with attacker tactics ๐ Uncover hidden threats Gain insights from top expertsregister now: #Cybersecurity #ThreatHunting https://bit.ly/405PsDz https://bit.ly/405PsDz"
X Link 2025-01-06T17:00Z 126.1K followers, [----] engagements
"๐จ #IvantiConnectSecure VPN Zero-Day (CVE-2025-0282) actively exploited since Dec. [----] Learn about our initial investigations: #Cybersecurity #ZeroDay #ThreatIntel https://bit.ly/4gOYzja https://bit.ly/4gOYzja"
X Link 2025-01-09T17:00Z 127.5K followers, 16.9K engagements
"#Espionage groups are getting better at hiding their tracks. Charles Carmakal CTO of Mandiant anticipates more long-hidden breaches will surface in [----]. Stay ahead of #AI attacks and more in our Cybersecurity Forecast [----] report. Read now: https://bit.ly/4h8mlGA https://bit.ly/4h8mlGA"
X Link 2025-01-13T17:00Z 126K followers, [----] engagements
"๐จ Mandiant incident response teams have observed DPRK efforts to obtain employment as IT workers. Tracked as #UNC5267 these individuals will use fraudulent resumes to infiltrate organizations putting them at risk Learn more: https://bit.ly/3Cl6zt4 https://bit.ly/3Cl6zt4"
X Link 2025-01-14T17:45Z 127.5K followers, 11.7K engagements
"#Malware detection can be challenging due to anti-analysis techniques. #Backscatter by the Mandiant FLARE team offers fast static analysis to extract IOCs helping teams stay ahead of attackers. ๐ Learn more: #GoogleSecOps #GoogleThreatIntelligence https://bit.ly/3WknAdT https://bit.ly/3WknAdT"
X Link 2025-01-16T18:00Z 127.5K followers, [----] engagements
"How are APT and IO actors misusing #GenAI Analysis shows trends such as research and phishing content but no novel capabilities so far. Strong gen AI safeguards are helping block malicious use. Explore the full findings: https://bit.ly/40zwtSe https://bit.ly/40zwtSe"
X Link 2025-01-29T20:00Z 126K followers, [----] engagements
"Nation-state threats are evolving fast. @JumpforJoyce of Google Threat Intelligence explores trends from North Korea China Iran and Russia. Get the insights in our Cybersecurity Forecast [----] report: #ThreatIntelligence #Cybersecurity https://bit.ly/4jzQhgW https://bit.ly/4jzQhgW"
X Link 2025-01-31T19:00Z 126K followers, [----] engagements
"Securing third-party Windows installers can be challenging. Our latest blog post covers CVE-2023-6080 a local privilege escalation vulnerability found in Lakeside Software's SysTrack Agent 10.7.8. See how it was discovered and eventually patched: https://bit.ly/4jIRMcG https://bit.ly/4jIRMcG"
X Link 2025-02-05T19:00Z 126K followers, [----] engagements
"Stealthy cyber operations are crossing borders targeting organizations worldwide. POISONPLUG.SHADOW linked to APT41 is a sophisticated threat leveraging a custom obfuscating compiler known as ScatterBrain to evade detection and analysis. Read more here: https://bit.ly/4aTYdWr https://bit.ly/4aTYdWr"
X Link 2025-02-14T18:00Z 126.1K followers, [----] engagements
"In the latest Behind the Binary episode security researcher Saumil Shah shares his journeyfrom veteran Black Hat instructor to launching his own security conference. ๐ง Listen now: #Cybersecurity #ReverseEngineering #AI https://spoti.fi/41bTGdz https://spoti.fi/41bTGdz"
X Link 2025-02-20T23:45Z 126.1K followers, [----] engagements
"Our FLARE team frequently sees Go #malware obfuscated by garble which complicates analysis. GoStringUngarbler automates string decryption restoring plaintext for faster detection and reverse engineering. ๐ Try it now: https://bit.ly/41B8Adm https://bit.ly/41B8Adm"
X Link 2025-03-10T18:02Z 127.5K followers, [----] engagements
"Last year we discovered custom backdoors on Juniper Networks Junos OS routers and attributed this to China-nexus espionage group #UNC3886. We recommend organizations to upgrade their Juniper devices and run the JMRT Quick Scan and Integrity Check. https://bit.ly/3DEDXvJ https://bit.ly/3DEDXvJ"
X Link 2025-03-12T16:00Z 127.5K followers, 20.2K engagements
"Were bringing the latest in #AI defense and threat intel to #RSAC ๐ Free expo pass with code 54SGGLESECXP or $150 off full access with code 52FCDGGLESECSP. ๐ Moscone Center San Francisco ๐ April [--] - May [--] Register now: https://bit.ly/3DHSKpr https://bit.ly/3DHSKpr"
X Link 2025-03-16T17:00Z 126.2K followers, [----] engagements
"On the latest #DefendersAdvantage podcast @imranvpf joins us to discuss how leaders are approaching cybersecurity today. Listen now ๐ง https://spoti.fi/41Ujqv7 https://spoti.fi/41Ujqv7"
X Link 2025-03-18T22:30Z 126.1K followers, [----] engagements
"The lines between real and fake content are blurring. IO actors are leveraging #AI to scale #misinformation. Learn more in the Cybersecurity Forecast [----] report and stay ahead of threats: https://bit.ly/41LmIAX https://bit.ly/41LmIAX"
X Link 2025-03-21T16:00Z 126.2K followers, [----] engagements
"๐ Ready to level up your threat intel ๐ Join us at #GoogleCloudNEXT for sessions thatll boost your security game with Google Cloud Security. Register today: https://bit.ly/42226EN https://bit.ly/42226EN"
X Link 2025-03-24T18:00Z 126.2K followers, [----] engagements
"Day [--] of #GoogleCloudNext was ๐ฅ with key updates breakout sessions and hands-on demos in the Security Hub Missed it IRL Catch keynotes sessions & updates on demand https://bit.ly/3RHLVYb https://bit.ly/3RHLVYb"
X Link 2025-04-11T01:30Z 126.2K followers, [----] engagements
"Threat hunting just got real. At #GoogleCloudNext our CTF challenge used CISA alerts dark web data and more to simulate the chaos of real-world threats. Huge shoutout to the winners who cracked the case"
X Link 2025-04-11T21:15Z 126.2K followers, [----] engagements
"Learn how gov-backed threat actors are exploiting #GenAI. GTIGs latest report reveals key insights on APT & IO activity. Swipe for the takeaways Learn more: https://bit.ly/4juepR8 https://bit.ly/4juepR8"
X Link 2025-04-17T19:00Z 126.2K followers, [----] engagements
"Ready for a reverse engineering deep dive In this episode of Behind the Binary @psifertex co-founder of @vector35 and creator of Binary Ninja shares insights on building a platform CTFs and AIs role in cybersecurity. Listen now https://spoti.fi/3Ef7VH3 https://spoti.fi/3Ef7VH3"
X Link 2025-04-17T21:00Z 126.1K followers, [----] engagements
"Let's get Wine Down Wednesday on everyone's #RSAC calendar ๐โจ Save the Date for this happy hour (Weds @ 5:30 PM) featuring @GoogleCloudSec @CrowdStrike @Fortinet @menlosecurity @Sysdig & @Wiz. Register here: https://bit.ly/4jlm0lk https://bit.ly/4jlm0lk"
X Link 2025-04-23T23:00Z 126.1K followers, [----] engagements
"๐จ Mandiant Threat Defense is investigating an UNC6032 campaign that utilizes fake AI video generator websites to distribute infostealer and other malware. Get the details and learn how to stay ahead of this threat: https://bit.ly/3H7AWFJ https://bit.ly/3H7AWFJ"
X Link 2025-05-27T18:00Z 125.9K followers, [----] engagements
"๐จ APT41 is using malware TOUGHPROGRESS that leverages Google Calendar for command and control. Learn more about the campaign how GTIG disrupted it using custom detection signatures and how to defend against future attacks: https://bit.ly/4kCNqU1 https://bit.ly/4kCNqU1"
X Link 2025-05-28T18:45Z 127.5K followers, 22.1K engagements
"North Korean IT workers operating inside your org Hear how incident responders uncovered the threat and what to watch for. ๐ง Watch the clip + catch the full episode https://spoti.fi/451egke https://spoti.fi/451egke"
X Link 2025-05-30T14:00Z 125.9K followers, [----] engagements
"๐จ DPRK IT workers are expanding into Europe using remote work covers to generate revenue for the regime. Is your team ready Learn more: https://bit.ly/3Ssw3JC https://bit.ly/3Ssw3JC"
X Link 2025-06-02T18:00Z 125.9K followers, [----] engagements
"Organizations are you prepared for voice phishing๐ฑ UNC6040 is a financially-motivated threat cluster that specializes in using voice phishing (vishing) to compromise organizations' Salesforce instances leading to large-scale data theft. Learn more: https://bit.ly/3FxJwx1 https://bit.ly/3FxJwx1"
X Link 2025-06-04T16:00Z 126.7K followers, 11.5K engagements
"Join @GoogleCloudSec @NLawGlobal and FTI Consulting for exclusive insights into [----] Middle East cyber incidents. Register now: https://bit.ly/4kv0RWo https://bit.ly/4kv0RWo"
X Link 2025-06-09T08:00Z 126.2K followers, [----] engagements
"๐จ UNC6293 a likely Russia-sponsored threat actor is using novel phishing to target academics and critics of Russia. By spoofing the U.S. DOS they're tricking targets into creating ASPs giving persistent access to email accounts. Learn more: https://bit.ly/3HOtCz1 https://bit.ly/3HOtCz1"
X Link 2025-06-18T17:30Z 126.1K followers, [----] engagements
"Who names the worlds most notorious APTs ๐ค Meet Greg Sinclair a reverse engineer from Google's FLARE team. In this Behind the Binary episode he shares the story of how he discovered and named the North Korean APT the Lazarus Group. ๐ Listen here: https://spoti.fi/44p1YjS https://spoti.fi/44p1YjS"
X Link 2025-06-27T20:00Z 126.2K followers, [----] engagements
"Protection relays vital for power grid stability are prime cyberattack targets Increasing digitization exposes them to threats risking outages and more. Securing these devices is essential for national power grid resilience. Learn more: https://goo.gle/4l5dAiT https://goo.gle/4l5dAiT"
X Link 2025-07-01T16:00Z 126.2K followers, [----] engagements
"ICYMI: #APT41 is leveraging Google Calendar for C2. We mapped the attack details so defenders know what to look for and how to respond. ๐ https://goo.gle/4euNK5s https://goo.gle/4euNK5s"
X Link 2025-07-03T22:00Z 126.2K followers, [----] engagements
"Weve made planning easy for #BlackHat USA [----] ๐ ๐ Discover your must-hit checklist for @GoogleCloudSec live sessions and networking events below or find more details in this blog post: https://bit.ly/4f68Wzb https://bit.ly/4f68Wzb"
X Link 2025-07-25T19:00Z 126.6K followers, [----] engagements
"The 12th Annual Flare-On Challenge kicks off Sept [--] at 8PM EST Reverse engineering pros from Windows to Web3 (with a YARA twist) it's your time to shine. ๐ Get ready #FlareOn12 https://bit.ly/4ofb5g8 https://bit.ly/4ofb5g8"
X Link 2025-07-29T16:00Z 127.5K followers, 21.1K engagements
"Cybercriminals are using USB infections for coinmining operations. This blog post unpacks their multi-stage attack including DLL side-loading process injection and using PostgreSQL as C2. Learn more: https://bit.ly/4lA7hDA https://bit.ly/4lA7hDA"
X Link 2025-08-19T18:00Z 127.5K followers, 75.1K engagements
"โ Alert: Widespread data theft campaign by UNC6395. The threat actor is targeting Salesforce instances via Salesloft Drift targeting sensitive data. Organizations should investigate rotate credentials and harden access controls. More here: https://bit.ly/3HviIi1 https://bit.ly/3HviIi1"
X Link 2025-08-26T20:00Z 127.5K followers, 21.9K engagements
"Google Threat Intelligence links CVEs to the actors malware & campaigns exploiting them helping you prioritize patching. From CVE to exploitation: โ
Risk ratings โ
File searches tied to CVEs โ
Product/CPE lookups Watch now ๐"
X Link 2025-09-08T18:00Z 127.1K followers, [----] engagements
"BRICKSTORM malware used by suspected China-nexus actor UNC5221 in stealthy espionage campaign. - Avg dwell time: [---] days. - Targets: US legal SaaS BPOs & tech firms. We have released a scanner IOCs and guidance to help defenders. Full analysis: https://bit.ly/4pT3pku https://bit.ly/4pT3pku"
X Link 2025-09-24T18:00Z 127.2K followers, [----] engagements
"Why are threat actors zeroing in on VMware ๐ฏ On this episode of The Defenders Advantage Podcast our senior consultant Stuart Carrera unpacks VMwares evolutionand why attackers have it in their sights. ๐ง Listen now: https://bit.ly/3IC2XpV https://bit.ly/3IC2XpV"
X Link 2025-09-26T19:30Z 127.2K followers, [----] engagements
"Go beyond basic IOC lookups in #GoogleThreatIntelligence: ๐ IOC Investigation โก Advanced Search with modifiers ๐ง Natural language w/ Gemini ๐ป API for automation Try real queries & get inspired with our cheat sheet ๐"
X Link 2025-09-29T21:30Z 127.2K followers, [----] engagements
"The Agentic SOC combines AI agents and human analysts to triage alerts investigate threats and respond proactively. Register for this webinar to learn how: https://bit.ly/489ZSrt https://bit.ly/489ZSrt"
X Link 2025-10-01T10:00Z 127.2K followers, [----] engagements
"UNC6040 uses vishing to steal data from Salesforce environments and move laterally into Okta and M365. Defend against their tactics with our guide that covers identity SaaS application hardening and detection. Read now: https://bit.ly/4gRdqKH https://bit.ly/4gRdqKH"
X Link 2025-10-01T14:00Z 127.3K followers, [----] engagements
"Fmr FBI Director Robert Mueller to keynote Mandiant InfoSec conference MIRcon. 20% discount code to unlock @ [--] RTs http://t.co/acqdYISaHD http://mnd.tt/mircon http://mnd.tt/mircon"
X Link 2013-10-08T15:57Z 126.4K followers, [--] engagements
"As you likely noticed yesterday Mandiant lost control of this X account which had 2FA enabled. Currently there are no indications of malicious activity beyond the impacted X account which is back under our control. We'll share our investigation findings once concluded"
X Link 2024-01-04T19:10Z 127.5K followers, 224.2K engagements
"We are excited to announce that we've signed an agreement to join the @GoogleCloud family bringing together some of the best minds in security Read more here: https://www.mandiant.com/company/press-release/mgc https://www.mandiant.com/company/press-release/mgc"
X Link 2022-03-08T11:29Z 127.5K followers, [----] engagements
"Google completed its acquisition of Mandiant today. Were excited to get started on our shared mission to create a comprehensive and best-in-class cyber security solution for customers and partners. Read more here: https://www.mandiant.com/company/press-releases/google-completes-mandiant-acquisition https://www.mandiant.com/company/press-releases/google-completes-mandiant-acquisition"
X Link 2022-09-12T13:09Z 127.5K followers, [---] engagements
"We have finished our investigation into last week's Mandiant X account takeover and determined it was likely a brute force password attack limited to this single account"
X Link 2024-01-10T20:00Z 127.5K followers, 406.1K engagements
"One compromised Microsoft Entra ID or Azure account can lead to a full tenant takeover. Our new framework ranks roles by risk and adds strong MFA + secure admin workstations to protect the most critical accounts. Read the whitepaper: https://bit.ly/47GbPTU https://bit.ly/47GbPTU"
X Link 2025-11-06T19:06Z 127.5K followers, 132.7K engagements
"Mandiant @ RSA USA 2014: Who What Where & When #RSA #DFIR #InfoSec http://t.co/BPiXGMtluo http://mnd.tt/8ieum http://mnd.tt/8ieum"
X Link 2014-02-19T09:15Z 127.5K followers, [---] engagements
"Google Threat Intelligence Group details the ways threat actors are misusing AI tools including how they are generating and executing AI-enabled malware. ๐ Read this latest report on our blog: https://bit.ly/47EzWCq https://bit.ly/47EzWCq"
X Link 2025-11-05T22:30Z 127.5K followers, 31.7K engagements
"New: North Korea has taken a page out of China's cyber playbook to reorganize and consolidate its threat groups within the government - making them extremely mobile now that theyve consolidated. Here's a first look at their new org structure ๐ https://www.mandiant.com/resources/mapping-dprk-groups-to-government https://www.mandiant.com/resources/mapping-dprk-groups-to-government"
X Link 2022-03-23T17:53Z 127.5K followers, [---] engagements
"Mandiant Intelligence has been tracking several ways in which Chinese cyber espionage activity has increasingly leveraged initial access and post-compromise strategies intended to minimize opportunities for detection. Learn more in our analysis: https://mndt.info/3rrmIaC https://mndt.info/3rrmIaC"
X Link 2023-08-14T15:20Z 127.5K followers, 94.9K engagements
"Linux is becoming a prime target as it is used as the operating system for basic household items up to critical infrastructure. View our latest white paper for guidance on protecting Linux endpoints against malware and destructive attacks. โก https://mndt.info/3NmBINx https://mndt.info/3NmBINx"
X Link 2022-03-26T02:40Z 127.5K followers, [---] engagements
"Listen to this weeks #ThreatTrends episode feat. Mandiants Yihao Lim who joined to discuss the trends he sees in the threat landscape in APJ and how organizations in the region are approaching security. ๐ง: https://mndt.info/3etmda1 https://mndt.info/3etmda1"
X Link 2022-10-13T19:23Z 127.5K followers, [---] engagements
"Today the Mandiant Threat Intelligence team shared that it assesses with high confidence that #UNC1151 is linked to the Belarusian govt & that Belarus is likely at least partially responsible for the Ghostwriter IO campaign. Read more on our blog: https://mndt.info/30v7e7X https://mndt.info/30v7e7X"
X Link 2021-11-16T17:07Z 127.5K followers, [---] engagements
"North Korea threat actor UNC5342 is using EtherHiding the first time we have observed a nation-state use this technique. ๐จ The TTP is being used in a social engineering campaign that leads to cryptocurrency heists and espionage. Read the blog post: https://bit.ly/497lvsO https://bit.ly/497lvsO"
X Link 2025-10-17T20:30Z 127.5K followers, 23.2K engagements
"Attention malware analysts ๐ป Our latest blog post delves into Time Travel Debugging (TTD). We introduce the basics of WinDbg and TTD to help you start incorporating TTD into your analysis. ๐: https://bit.ly/441J3vS https://bit.ly/441J3vS"
X Link 2025-11-14T21:30Z 127.5K followers, 22.1K engagements
"UNC3944 Evolving Tactics Exposed Our new blog dives deep into UNC3944's recent SaaS attacks analyzing their changing methods and goals. Read now: #Cybersecurity #ThreatIntelligence #UNC3944 https://bit.ly/3x5WC0l https://bit.ly/3x5WC0l"
X Link 2024-06-13T18:55Z 127.5K followers, 74.9K engagements
"๐จ Breaking: A zero-day vulnerability (CVE-2024-47575) has been observed impacting Fortinet FortiManager devices posing serious risks. Learn how the exploit works and how to defend against the threat. Read more - #ThreatIntelligence https://bit.ly/4hbqmuR https://bit.ly/4hbqmuR"
X Link 2024-10-24T01:00Z 127.5K followers, 39.9K engagements
"๐ The Flare-On Challenge is officially wrapped up This year we had [----] participants but only [---] made it to the finish line Check out our blog post for the solutions winner stats and a shoutout to our challenge authors https://bit.ly/4fvzfh8 https://bit.ly/4fvzfh8"
X Link 2024-11-09T01:05Z 127.5K followers, 19.7K engagements
"Mandiant and VMware Product Security found that UNC3886 has been exploiting CVE-2023-20867 since [----]. Mandiant recommends VMware users update to the latest version of vCenter to account for this vulnerability seeing exploitation in the wild. https://www.mandiant.com/resources/blog/chinese-vmware-exploitation-since-2021 https://www.mandiant.com/resources/blog/chinese-vmware-exploitation-since-2021"
X Link 2024-02-08T23:08Z 127.5K followers, 62.6K engagements
"The Flare-On Challenge is back for its 11th year ๐ฅ This #CTF-style challenge for current and aspiring reverse engineers features puzzles across Windows Linux Web3 and even YARA. Learn more and get ready to compete #Flareon11 https://bit.ly/3TwZ7AG https://bit.ly/3TwZ7AG"
X Link 2024-09-16T18:00Z 127.5K followers, 23K engagements
"Today we announced the elevation of one of the longest-running financially-motivated threat clusters to FIN status known as #FIN13. The group is unique in several ways including in the fact they do not deploy #ransomware. Learn more โก https://mndt.info/3rGL4LB https://mndt.info/3rGL4LB"
X Link 2021-12-07T17:46Z 127.5K followers, [---] engagements
Limited data mode. Full metrics available with subscription: lunarcrush.com/pricing