WatchingRac (@racwatchin8872) 's Twitter Profile
WatchingRac

@racwatchin8872

Threat Intelligence.
My Opinions
Thanks @silentpush, @censysio, @ValidinLLC, @anyrun_app for making my research easier.

ID: 1658096201097412608

calendar_today15-05-2023 13:06:28

658 Tweet

1,1K Followers

188 Following

NoPhishInHere (@nomorephis) 's Twitter Profile Photo

#Tycoon2FA #Phishing 🐟48 Domains related to Tycoon2FA Phishing with Low Hits on vt: pastebin.com/u1hfmu4s Full List: github.com/NoMorePhish/Ty… Tool used: Validin CC: WatchingRac Who said what? Mikhail Kasimov

NoPhishInHere (@nomorephis) 's Twitter Profile Photo

#Tycoon2FA #Phishing 🐟79 Domains related to Tycoon2FA Phishing with Low Hits on vt: pastebin.com/NWxMrYuj Full List: github.com/NoMorePhish/Ty… Tool used: Validin CC: WatchingRac Who said what? Mikhail Kasimov

NoPhishInHere (@nomorephis) 's Twitter Profile Photo

#Tycoon2FA #Phishing 🐟10 Domains related to Tycoon2FA Phishing with Low Hits on vt: pastebin.com/0ScewEqu Full List: github.com/NoMorePhish/Ty… Tool used: Validin CC: WatchingRac Who said what? Mikhail Kasimov

NoPhishInHere (@nomorephis) 's Twitter Profile Photo

#Tycoon2FA #Phishing 🐟78 Domains related to Tycoon2FA Phishing with Low Hits on vt: pastebin.com/2ud7YYea Full List: github.com/NoMorePhish/Ty… Tool used: Validin CC: WatchingRac Who said what? Mikhail Kasimov

V (@orlof_v) 's Twitter Profile Photo

Mapping Lumma's infrastructure 🧵 Key pivots: ℹ️Cert fingerprints connecting distribution → C2 ℹ️ASN clustering (Aeza, Routerhosting, Proton66) ℹ️Domain patterns (.qpon, .top, .xyz, .ru) 👉 intelinsights.substack.com/p/mapping-late…

Mapping Lumma's infrastructure 🧵

Key pivots:
ℹ️Cert fingerprints connecting distribution → C2
ℹ️ASN clustering (Aeza, Routerhosting, Proton66)
ℹ️Domain patterns (.qpon, .top, .xyz, .ru) 

👉 intelinsights.substack.com/p/mapping-late…