Chi-en (Ashley) Shen (@ashl3y_shen) 's Twitter Profile
Chi-en (Ashley) Shen

@ashl3y_shen

Security researcher @TalosSecurity / Ex-Google TAG / Black Hat USA & Asia & HITCON Review Board / Organizer of @rhacklette41. My tweets are my own opinion.

ID: 517687298

calendar_today07-03-2012 15:22:54

734 Tweet

3,3K Followers

992 Following

Chi-en (Ashley) Shen (@ashl3y_shen) 's Twitter Profile Photo

SoS agenda is out 🥳 We got a lot of brilliant submissions thanks for all the trust, it was really not easy to select! Looking forward to see you in October!

Tom Hegel (@tomhegel) 's Twitter Profile Photo

LABScon 2025 Chi-en (Ashley) Shen (@ashl3y-shen.bsky.social) hitting the stage first, with an OTR talk on Dissecting a Modular Gateway Implant for Domestic Surveillance. 💜 Spicy private intel, coming to share with the community, love it Cisco Talos Intelligence Group ! #labscon25

<a href="/labscon_io/">LABScon 2025</a> <a href="/ashl3y_shen/">Chi-en (Ashley) Shen (@ashl3y-shen.bsky.social)</a> hitting the stage first, with an OTR talk on Dissecting a Modular Gateway Implant for Domestic Surveillance.  

💜 Spicy private intel, coming to share with the community, love it <a href="/TalosSecurity/">Cisco Talos Intelligence Group</a> ! 

#labscon25
Greg Lesnewich (@greglesnewich) 's Twitter Profile Photo

Couple of openings here in our threat research org! Staff Security Research Engineer: proofpoint.wd5.myworkdayjobs.com/en-US/Proofpoi… Senior Threat Researcher (ecrime team): proofpoint.wd5.myworkdayjobs.com/ProofpointCare…

Chi-en (Ashley) Shen (@ashl3y_shen) 's Twitter Profile Photo

Thanks to everyone who joined my LABScon 2025 talk last week! Grateful for the chance to share my research with this community again. Major kudos to J. A. Guerrero-Saade, Ryan Naraine, Tom Hegel and the LABScon team, still a can’t-miss conference for CTI. See you next year! #LABScon25

Thanks to everyone who joined my <a href="/labscon_io/">LABScon 2025</a> talk last week! Grateful for the chance to share my research with this community again. Major kudos to <a href="/juanandres_gs/">J. A. Guerrero-Saade</a>, <a href="/ryanaraine/">Ryan Naraine</a>, <a href="/TomHegel/">Tom Hegel</a> and the LABScon team, still a can’t-miss conference for CTI. See you next year! #LABScon25
PIVOTcon (@pivot_con) 's Twitter Profile Photo

📣🔥SAVE THE DATE🔥📣 The next #PIVOTcon will be on 6-8 May 2026, in Malaga, ES!!! You favorite ;) #ThreatResearch conference is coming back and we are planning to bring you the usual experience and content of utmost quality. #StayTuned for more #CTI #ThreatIntel #PIVOTcon26

State of Statecraft Conference (@what_is_sos) 's Twitter Profile Photo

🆘 is officially THREE weeks away! Tickets are available but not for long! We feature talks from experts on China, Russia, Iran that illuminates structures of units, details covert operations, and highlights emerging trends. You'll want to be there. stateofstatecraft.com/agenda

State of Statecraft Conference (@what_is_sos) 's Twitter Profile Photo

Follow this thread 👇 With the inaugural SOS just 18 days away, we'll be highlighting a few of the amazing talks you'll be hearing on October 28 in Brussels! stateofstatecraft.com/agenda Get a ticket while you still can! 🎟️🎟️🎟️

Follow this thread 👇 

With the inaugural SOS just 18 days away, we'll be highlighting a few of the amazing talks you'll be hearing on October 28 in Brussels!  

stateofstatecraft.com/agenda 

Get a ticket while you still can! 🎟️🎟️🎟️
Chi-en (Ashley) Shen (@ashl3y_shen) 's Twitter Profile Photo

Threat actor are actively targeting the SNMP protocol on routers for exploitation. Great investigation from Trend Micro with the contributions from joeychen

Costin Raiu (@craiu) 's Twitter Profile Photo

So this October 2025 F5 security notification is pretty wild because of the sheer volume of vulnerabilities disclosed: more than 30 high-severity CVEs (!) and around a dozen medium-severity ones in a single release cycle. This affects almost every F5 product family, BIG-IP (all

Vanja Svajcer (@vanjasvajcer) 's Twitter Profile Photo

DPRK alligned Famous Chollima keeps their operational tempo high and although not the most sophisticated actors, they have been consistently adding new features to their tools. blog.talosintelligence.com/beavertail-and…

Raphael Rashid (@koryodynasty) 's Twitter Profile Photo

1/ UPDATE: South Korea's spy agency has finally broken its silence on the massive government hack revealed in Phrack Zine magazine over the summer. After two months, the NIS confirms hackers had systematic access to Seoul's digital backbone for nearly three years.

1/ UPDATE: South Korea's spy agency has finally broken its silence on the massive government hack revealed in <a href="/phrack/">Phrack Zine</a> magazine over the summer. After two months, the NIS confirms hackers had systematic access to Seoul's digital backbone for nearly three years.
Winnona 💾 (@__winn) 's Twitter Profile Photo

🚨 NEW PAPER 🚨: “From Chaos to Capability: Building the U.S. Market for Offensive Cyber” by myself and @SergeyBratus 👉 ists.dartmouth.edu/programs/publi… Should the U.S. outsource its cyberattacks? We talked to 30 experts across gov, VC, and industry to find out.

🚨 NEW PAPER 🚨: “From Chaos to Capability: Building the U.S. Market for Offensive Cyber”
by myself and @SergeyBratus
👉 ists.dartmouth.edu/programs/publi… 
Should the U.S. outsource its cyberattacks? We talked to 30 experts across gov, VC, and industry to find out.
Antti Tikkanen (@anttitikkanen) 's Twitter Profile Photo

Snap is looking for a Security Engineering Manager for our Detection and Response (D&R) team in Switzerland: careers.snap.com/job?id=R0042638 It's a great team to work with, trust me!

Chi-en (Ashley) Shen (@ashl3y_shen) 's Twitter Profile Photo

Great work from Trend Micro Research and thanks for referencing our research on redefining IAB! The Earth Estries & Earth Naga collaboration in the Premier Pass-as-a-Service model aligns with what we defined as state-sponsored initial access (SIA) activity. trendmicro.com/en_us/research…

Mari0n (@pinkflawd) 's Twitter Profile Photo

Y'all fantastic news! Save the date, Blackhoodie will be at DistrictCon this year 😱 the fantastic crew has offered to host us for a day of Malware Reverse Engineering, Morgan Whitlow and myself will be hosting a training for women by women on January 23rd!!