Adrenochrome, to Munich German
@Adrenochrome@mastodon.social avatar
InfobloxThreatIntel, to Cybersecurity

A few of the MFA lookalike domains we've detected recently. These target a large bank in the Czech Republic (csob[.]sk):
csob-sso-sk[.]net, online-csob-sso-sk-moja[.]com, csob-sso-sk[.]com

To learn more about MFA smishing check out this blog https://blogs.infoblox.com/cyber-threat-intelligence/how-bad-guys-are-undermining-trust-in-multi-factor-authentication-mfa/

#dns #infoblox #threatintel #cybersecurity #infosec #lookalike #phishing #mfa #smishing

InfobloxThreatIntel, to Cybersecurity

Nice paper by AT&T on asyncRAT. We see a lot of domains from registered domain generation algoritihms (RDGAs), but not a ton of traditional DGAs these days… but this IS one! asyncRAT DGA is keeping a lower profile by not generating too many domain variants. We've seen 37 SLDs in our resolvers this month from the asyncRAT DGA, almost all of which were NXDOMAIN responses. Only 2ira57j063uauto[.]top resolved for us recently. We were blocking it already as suspicious. Pro tip: topTLD plus 15 char new domain.. block. ;)

But even more interesting is that with the actor using dedicated hosting through BitLaunch, we can see that aside from their DGA domains they have the sneaky lookalike:

akamai-cdn[.]top registered on Decemeber 18th. Block that one!

Lots of interesting DNS on this actor.
https://cybersecurity.att.com/blogs/labs-research/asyncrat-loader-obfuscation-dgas-decoys-and-govno

funbreaker, to random

I know this is a cleaning tool but I'm very tempted to use this as a dip pen.

#fountainpen #dipPen #lookalike

Think_Link, to Vintage
@Think_Link@pixelfed.social avatar
emarktaylor, to random
@emarktaylor@thecanadian.social avatar
Charlie, to random
Charlie, to random
sharan, to random
@sharan@metalhead.club avatar

"Mom, I want Pedro!"
"We have Senor Pascal at home!"
Pedro Pascal at home:

#PedroPascal #Actors #LastofUs #TLOU #LookALike

Charlie, to random

195/365 Meet Molly the Mushroom and her Surfboard

Charlie, to random

187/365 The Conductor and the Choir #pixelfed365 #fediphoto365 #smartphonepic #lookalike?

  • All
  • Subscribed
  • Moderated
  • Favorites
  • megavids
  • mdbf
  • ngwrru68w68
  • modclub
  • magazineikmin
  • thenastyranch
  • rosin
  • khanakhh
  • InstantRegret
  • Youngstown
  • slotface
  • Durango
  • kavyap
  • DreamBathrooms
  • JUstTest
  • normalnudes
  • osvaldo12
  • tester
  • GTA5RPClips
  • cubers
  • everett
  • tacticalgear
  • ethstaker
  • provamag3
  • anitta
  • Leos
  • cisconetworking
  • lostlight
  • All magazines