IronNet (@ironnet) 's Twitter Profile
IronNet

@ironnet

IronNet offers advanced collective defense and network detection and response technology and services to protect against current and emerging cyber threats.

ID: 2768040359

linkhttp://ironnet.com calendar_today12-09-2014 16:07:58

3,3K Tweet

4,4K Followers

1,1K Following

IronNet Threat Research (@ironnettr) 's Twitter Profile Photo

IronNet has identified an active #RedLineStealer #C2 on 80.66.81[.]137 - AS 207957 Outbound HTTP sessions to /loader/screen/<string> via a PUT command containing a screenshot from the victim host. Activity was observed within our Collective Defense community. #CollectiveDefense

IronNet (@ironnet) 's Twitter Profile Photo

Learn how top security teams and threat hunters stay one step ahead of the attacker. Secure your spot for our upcoming webinar: ironnet.com/webinar-collec… #CollectiveDefense #cybersecurity #ThreatHunting #ThreatIntel

Learn how top security teams and threat hunters stay one step ahead of the attacker. 

Secure your spot for our upcoming webinar: ironnet.com/webinar-collec…

#CollectiveDefense #cybersecurity #ThreatHunting #ThreatIntel
IronNet (@ironnet) 's Twitter Profile Photo

Don't miss our webinar tomorrow! Join us to learn how IronNet’s threat hunters proactively detect cyber adversaries to stay ahead of threats. Register now: ironnet.com/webinar-collec… #CyberSecurity #ThreatIntelligence #IronRadar

IronNet (@ironnet) 's Twitter Profile Photo

TODAY 6/11 @ 1pm EST - Don't miss #IronNet's webinar on Collective Defense: Threat Intelligence Strategies to Detect the Undetectable. Register now: ironnet.com/webinar-collec… #cybersecuritynews #cybersecuritytraining #collectivedefense #threatintelligence

IronNet Threat Research (@ironnettr) 's Twitter Profile Photo

#IronRadar has detected various #BitRAT #C2 servers. 46.226.163[.]38:8080 - 0 VT 77.91.101[.]145:443 - 0 VT 45.207.52[.]74:8080 - 0 VT 51.195.145[.]87:8092 - 11 VT 77.221.151[.]31:4444 - 17 VT 178.236.247[.]210:8080- 9 VT 159.100.13[.]218:8889 - 13 VT

#IronRadar has detected various #BitRAT #C2 servers.

46.226.163[.]38:8080 - 0 VT
77.91.101[.]145:443 - 0 VT
45.207.52[.]74:8080 - 0 VT
51.195.145[.]87:8092 -  11 VT 
77.221.151[.]31:4444 - 17 VT 
178.236.247[.]210:8080- 9 VT 
159.100.13[.]218:8889 - 13 VT
IronNet (@ironnet) 's Twitter Profile Photo

The #Snowflakebreach is making headlines this week. Critical lessons can be learned from this #infostealer campaign affecting 165 organizations. Learn more: lnkd.in/eVfXQc8b #cyberattack #databreach #threatintelligence #collectivedefense #c2 #malware #ransomware

The #Snowflakebreach is making headlines this week. Critical lessons can be learned from this #infostealer campaign affecting 165 organizations.

Learn more: lnkd.in/eVfXQc8b

#cyberattack #databreach #threatintelligence #collectivedefense #c2 #malware #ransomware
IronNet Threat Research (@ironnettr) 's Twitter Profile Photo

#IronRadar has detected an active Meduza #C2 panel on hxxp://45.15.158.144.sslip[.]io urlscan.io/result/d55ba26… #threatintel #malware

#IronRadar has detected an active Meduza #C2 panel on hxxp://45.15.158.144.sslip[.]io

urlscan.io/result/d55ba26…

#threatintel #malware
IronNet (@ironnet) 's Twitter Profile Photo

Hackers are using new tactics, but #CollectiveDefense is evolving to keep you protected. Hear from IronNet's CEO, Linda Zecher-Higgins, on the latest #hacker threats coming out of China and how you can stay one step ahead. 🔗 newsweek.com/china-using-ha…

IronNet Threat Research (@ironnettr) 's Twitter Profile Photo

#IronRadar is tracking a series of IPs we believe to be #ShadowPad (Chinese #APT Remote Access Trojan). #IronRadar customers can get access to the full list as well as have protection against this threat. #malware #C2 #cybersecurity #ThreatHunting #IOC #RAT

IronNet Threat Research (@ironnettr) 's Twitter Profile Photo

BlackNET windows botnet detections have been added to #IronRadar. BlackNet functionalities include: infostealing, keylogging, cmd execution, etc New BlackNET control panel found at 216.73.156[.]90. #malware #ThreatIntel #IOC #cybersecurity

IronNet Threat Research (@ironnettr) 's Twitter Profile Photo

DICELOADER #C2 indicators from #IronRadar Threat Feed. 77.105.162[.]254:443 - 1/92 193.233.22[.]99:443 - 1/92 38.180.62[.]115:443 - 0/92 109.107.170[.]57:443 - 1/92 #ThreatIntel #malware #IOC #cybersecurity #ThreatHunting

IronNet (@ironnet) 's Twitter Profile Photo

We're excited to offer instant access to the Q1/Q2 2024 IronRadar Threat Update for a limited time. This comprehensive report is just a sample of what our IronRadar subscribers receive each quarter. 📥 Download Now: lnkd.in/e59mHr9q #ThreatIntelligence #CyberSecurity

We're excited to offer instant access to the Q1/Q2 2024 IronRadar Threat Update for a limited time. This comprehensive report is just a sample of what our IronRadar subscribers receive each quarter.

📥 Download Now: lnkd.in/e59mHr9q

#ThreatIntelligence #CyberSecurity
IronNet (@ironnet) 's Twitter Profile Photo

Don't miss out! Get instant access to the IronRadar 2024 Q1/Q2 Threat Update. Discover new detections, gain actionable intel, and see what's next on our roadmap. Get the report now: ironnet.com/iron-radar-thr… #Cybersecurity #ThreatIntel #ThreatIntelligence #C2 #CollectiveDefense

Don't miss out! Get instant access to the IronRadar 2024 Q1/Q2 Threat Update. Discover new detections, gain actionable intel, and see what's next on our roadmap.

Get the report now: ironnet.com/iron-radar-thr…

#Cybersecurity #ThreatIntel #ThreatIntelligence #C2 #CollectiveDefense
IronNet Threat Research (@ironnettr) 's Twitter Profile Photo

IronNet TR has discovered a RemcosRAT indicator 89.117.23[.]25 found to be hosting multiple open-dir domains containing the file sostener.vbs (identified as Remcos). Further investigation associates this file as part of a larger RAT campaign (12 IPs - Remcos, Async, DCRAT)

IronNet Threat Research (@ironnettr) 's Twitter Profile Photo

Implementing new Remcos detections for #IronRadar, an RDP Hostname (WIN-SVPD50JM3QK) was identified which correlated to over 170 IPs within ASN 'RootLayer Web Services'. The vast majority of these are rated malicious and are hosting various malware strains. 1/2

IronNet (@ironnet) 's Twitter Profile Photo

What happens when you integrate IronNet's IronDome solution with Asterion's advanced counter-UAS technology? Unmatched, #AI-driven protection against cyber-physical threats. Collective defense: it’s what we do! prnewswire.com/news-releases/…