Gi7w0rm (@gi7w0rm) 's Twitter Profile
Gi7w0rm

@gi7w0rm

Threat Intelligence Analyst |
See my Linktree for other socials |
In case I post false intel, contact me!
Support me: ko-fi.com/gi7w0rm
๐Ÿ‡ช๐Ÿ‡บ๐Ÿ‡ฉ๐Ÿ‡ช๐Ÿ‡บ๐Ÿ‡ฆ๐ŸŒˆ

ID: 1058319953739333632

linkhttps://linktr.ee/gi7w0rm calendar_today02-11-2018 11:28:34

9,9K Tweet

17,17K Followers

787 Following

Gi7w0rm (@gi7w0rm) 's Twitter Profile Photo

At the beginning of this month i bought myself a #Steamdeck. Must admit I am very pleasently surprised by it. Nice handling, great screen resolution, good performance. Better and more versatile than a Nintendo Switch. Nice product Valve #ThankGaben #gaming

Gi7w0rm (@gi7w0rm) 's Twitter Profile Photo

Hunting bottlenecks in my infra. For months I thought it was the MySQL server. Now that I have some stats, this does not seem to be the case. Time to check the other servers...

Hunting bottlenecks in my infra. 
For months I thought it was the MySQL server. Now that I have some stats, this does not seem to be the case. Time to check the other servers...
Gi7w0rm (@gi7w0rm) 's Twitter Profile Photo

Just arrived to #Copenhagen ๐Ÿฅณ Looking forward to a full week of attending #FirstCon. Please reach out if you are here, I want to meet as many of you as possible. Free #Gi7w0rm stickers and conversations included ๐Ÿ˜Š FIRST.org

Just arrived to #Copenhagen ๐Ÿฅณ
Looking forward to a full week of attending #FirstCon.
Please reach out if you are here, I want to meet as many of you as possible. Free #Gi7w0rm stickers and conversations included ๐Ÿ˜Š
<a href="/FIRSTdotOrg/">FIRST.org</a>
Igor Sushko (@igorsushko) 's Twitter Profile Photo

๐Ÿ’ฅIran: U.S. B-2 bombers dropped 6 GBU-57 deep penetration bunker buster bombs on Fordow nuclear facility. Natanz and Isfahan nuclear facilities were struck with 30 Tomahawk missiles launched by U.S. submarines.

๐Ÿ’ฅIran: U.S. B-2 bombers dropped 6 GBU-57 deep penetration bunker buster bombs on Fordow nuclear facility.
Natanz and Isfahan nuclear facilities were struck with 30 Tomahawk missiles launched by U.S. submarines.
Gi7w0rm (@gi7w0rm) 's Twitter Profile Photo

I might have known about this for a while. Backend of #Quad7 #botnet exposed by my good friend Vangelis tix Stykas. Looking at the files it is clear this is a #chinese cyberactor. Microsoft previously attributed it to #Storm-0940.

NtAlertThread (@elementalx2) 's Twitter Profile Photo

We ( Sathwik Ram Prakki & me) presented our research on Cobalt Whisper & UNG0002( campaigns related to it) at FIRST.org at Copenhagen! Met some cool folks such as Gi7w0rm , collected some conference swags from TeamT5 , research & presentation to be released soon!

We ( <a href="/PrakkiSathwik/">Sathwik Ram Prakki</a>  &amp; me) presented our research on Cobalt Whisper &amp; UNG0002( campaigns related to it) at <a href="/FIRSTdotOrg/">FIRST.org</a> at Copenhagen! Met some cool folks such as <a href="/Gi7w0rm/">Gi7w0rm</a> , collected some conference swags from <a href="/TeamT5_Official/">TeamT5</a> , research &amp; presentation to be released soon!
Gi7w0rm (@gi7w0rm) 's Twitter Profile Photo

Casually dropping a MOTW bypass while talking about an already big improvement to the #ClickFix attack. mr.d0x is on another level ๐Ÿ”ฅ

Gi7w0rm (@gi7w0rm) 's Twitter Profile Photo

I wonder if you can play Pigbutchering scams for getting money. Assuming that they are expecting you to test a payout before going in big, you could apply, say you want to make a test payout of your money, make a potential profit and then just ghost the attacker...

Gi7w0rm (@gi7w0rm) 's Twitter Profile Photo

And this is why #cybercrime does not pay on the long run. Its cool to have money and fame but how long does it last ones you are behind bars? How many of those you tried to impress will actually care ones you are locked up?

Gi7w0rm (@gi7w0rm) 's Twitter Profile Photo

Do i read this correctly as "One click on a link is enough to take over a windows system" ? That is baaaaad! O.o trellix.com/blogs/researchโ€ฆ

Organized Crime and Corruption Reporting Project (@occrp) 's Twitter Profile Photo

The U.S. Treasury issued its first actions under the FEND Off Fentanyl Act, designating three Mexico-based financial institutions as primary money laundering concerns tied to drug cartels and synthetic opioid trafficking. occrp.org/en/news/us-tarโ€ฆ

Marci Ujlaki (@ujlakimarci) 's Twitter Profile Photo

oh no ๐ŸŸฅ CVE-2025-32463, CVSS: 9.3 (#Critical) #Sudo version 1.9.14 to 1.9.17 #Vulnerability allows local users to gain root access via the --chroot option due to improper handling of /etc/nsswitch.conf. #CyberSecurity #CVE #PrivilegeEscalation openwall.com/lists/oss-secuโ€ฆ

oh no

๐ŸŸฅ CVE-2025-32463, CVSS: 9.3 (#Critical)

#Sudo version 1.9.14 to 1.9.17

#Vulnerability allows local users to gain root access via the --chroot option due to improper handling of /etc/nsswitch.conf.  

#CyberSecurity #CVE #PrivilegeEscalation

openwall.com/lists/oss-secuโ€ฆ
Gi7w0rm (@gi7w0rm) 's Twitter Profile Photo

Had an amazing time #FirstCon last week. Met a bunch of awesome folks from all over the industry. Around 3 hours of sleep per night and 17 hours of social interactions ^^ Was so done but also super happy on friday ๐Ÿ™‚ Cheers to all the awesome folks in our industry โค๏ธ

Virus Bulletin (@virusbtn) 's Twitter Profile Photo

ANSSI has published details about the Houken intrusion campaign, which seeks initial access to the networks of French entities through the exploitation of several zero-day vulnerabilities on Ivanti Cloud Service Appliance devices. cert.ssi.gouv.fr/cti/CERTFR-202โ€ฆ

ANSSI has published details about the Houken intrusion campaign, which seeks initial access to the networks of French entities through the exploitation of several zero-day vulnerabilities on Ivanti Cloud Service Appliance devices.  cert.ssi.gouv.fr/cti/CERTFR-202โ€ฆ
vx-underground (@vxunderground) 's Twitter Profile Photo

July 3rd RedDrip7 Cyber Threat Intelligence, in conjunction with Beijing-based Qi An Pangu Lab, released details on a state-sponsored group who is playfully named "NightEagle" a/k/a APT-Q-95 APT-Q-95 is named "NightEagle" is because it "moves as fast as an Eagle", and only

July 3rd RedDrip7 Cyber Threat Intelligence, in conjunction with Beijing-based Qi An Pangu Lab, released details on a state-sponsored group who is playfully named "NightEagle" a/k/a APT-Q-95

APT-Q-95 is named "NightEagle" is because it "moves as fast as an Eagle", and only