Moonbeom(Daniel) (@krneotra) 's Twitter Profile
Moonbeom(Daniel)

@krneotra

CPO(Chief Product Officer) at 78ResearchLab, Hacking incident analysis, Digital Forensic, Research on hacking technique, Profiling hacking source.

ID: 196042099

linkhttps://www.78ResearchLab.com calendar_today28-09-2010 05:14:52

5,5K Tweet

942 Followers

569 Following

blueblue (@piedpiper1616) 's Twitter Profile Photo

GitHub - mbanyamer/CVE-2025-30397---Windows-Server-2025-JScript-RCE-Use-After-Free-: Remote Code Execution via Use-After-Free in JScript.dll (CVE-2025-30397) - github.com/mbanyamer/CVE-…

blackorbird (@blackorbird) 's Twitter Profile Photo

#Kimsuky 27.102.138.226 (cert_CN:google/.email-service.pro) Phishing Website Source code: mexc_20250517.zip 27.102.138.222 27.102.138.10(as_owner:"DAOU TECHNOLOGY") body_hash="1285006584" threatbook.io/ip/27.102.138.…

#Kimsuky 
27.102.138.226 (cert_CN:google/.email-service.pro)
Phishing Website Source code: mexc_20250517.zip
27.102.138.222
27.102.138.10(as_owner:"DAOU TECHNOLOGY")
body_hash="1285006584"
threatbook.io/ip/27.102.138.…
acosador (@adqewrsf) 's Twitter Profile Photo

#APT #DPRK 미신고 자금출처명세서(부가가치세법 시행규칙).hwp.lnk 35cae49f15fdfbe7763765778a5d48797f703a84307de70fc69d1495de7b7e94 hxps://clerwine.com/wp-admin/js/widgets/hurryup/?rv=bear^&za=battle0 hxps://clerwine.com/wp-admin/js/widgets/hurryup/?rv=bear^&za=battle1

#APT #DPRK

미신고 자금출처명세서(부가가치세법 시행규칙).hwp.lnk

35cae49f15fdfbe7763765778a5d48797f703a84307de70fc69d1495de7b7e94

hxps://clerwine.com/wp-admin/js/widgets/hurryup/?rv=bear^&za=battle0
hxps://clerwine.com/wp-admin/js/widgets/hurryup/?rv=bear^&za=battle1
JangPro (@jangpr0) 's Twitter Profile Photo

#APT #DPRK 9a54a114602b136c88b6dc69bb8c7bc3 Decoy: 미신고 자금출처명세서(부가가치세법 시행규칙).hwp.lnk AutoIt3.exe hxxps://clerwine[.]com/wp-admin/js/widgets/hurryup/?rv=bear&za=battle0 KWfFIpS.cdr hxxps://clerwine[.]com/wp-admin/js/widgets/hurryup/?rv=bear&za=battle1

#APT #DPRK

9a54a114602b136c88b6dc69bb8c7bc3

Decoy: 미신고 자금출처명세서(부가가치세법 시행규칙).hwp.lnk

AutoIt3.exe
hxxps://clerwine[.]com/wp-admin/js/widgets/hurryup/?rv=bear&za=battle0

KWfFIpS.cdr
hxxps://clerwine[.]com/wp-admin/js/widgets/hurryup/?rv=bear&za=battle1
Sakai (@sakaijjang) 's Twitter Profile Photo

김수키(Kimsuky)만든 허위 권리보호 작성하신 게시물이 게시중단 되어 안내 말씀 드립니다.피싱 메일 분석(2025.4.1) wezard4u.tistory.com/429512 #보안 #김수키 #Kimsuky #DPRK

Emmy Byrne (@byrne_emmy12099) 's Twitter Profile Photo

0e75a7d2077c13eb5c8b1329ea3b254d56b1b9210bacf5998ead7c17e62d1247 http://knees.nidnaver[.]cloud/free0510/view.php http://toes.nidnaver[.]cloud/free0510/dn.php #APT #Kimsuky

0e75a7d2077c13eb5c8b1329ea3b254d56b1b9210bacf5998ead7c17e62d1247
http://knees.nidnaver[.]cloud/free0510/view.php
http://toes.nidnaver[.]cloud/free0510/dn.php
#APT #Kimsuky
Aaron Jornet (@rexorvc0) 's Twitter Profile Photo

#APT #Kimsuky #VelvetChollima #Thallium #malware #threat 📍🇰🇵 💥🇰🇷🌏 ⛓️ #Phishing | Watering Hole | Social Eng > Exe decryptor (pdf extension) + DLL (#Endoor) > Exe decrypt & load code > Task Persistence > Device + User Info > #C2 🔗QiAnXin report: mp.weixin.qq.com/s?__biz=MzI2MD…

#APT #Kimsuky #VelvetChollima #Thallium #malware #threat

📍🇰🇵
💥🇰🇷🌏

⛓️ #Phishing | Watering Hole | Social Eng > Exe decryptor (pdf extension) + DLL (#Endoor)  > Exe decrypt & load code > Task Persistence > Device + User Info  > #C2

🔗QiAnXin report: mp.weixin.qq.com/s?__biz=MzI2MD…
Sakai (@sakaijjang) 's Twitter Profile Photo

김수키(Kimsuky)으로 추정이 되는 국민비서 경찰청 고지 안내 피싱 메일(2025.4.9) wezard4u.tistory.com/429515 #김수키 #Kimsuky #보안 #국민비서

Emmy Byrne (@byrne_emmy12099) 's Twitter Profile Photo

b91bc5bc74dc056c1286dcbc8f41c09b19e52450b62857d36f454cedab860c55 *schtasks /create /sc minute /mo 5 /tn MicrosoftUpdate #APT #Kimsuky

b91bc5bc74dc056c1286dcbc8f41c09b19e52450b62857d36f454cedab860c55
*schtasks /create /sc minute /mo 5 /tn MicrosoftUpdate 
#APT #Kimsuky
lazarusholic (@lazarusholic) 's Twitter Profile Photo

"북한 코니(Konni)에서 제작한 것으로 추측 되는 악성코드 우리은행 사용자 노린 악성코드 WooriCard_20231108.html.lnk(2025.5.19)" published by Sakai. #Konni, #LNK, #DPRK, #CTI wezard4u.tistory.com/429529

Aaron Jornet (@rexorvc0) 's Twitter Profile Photo

#APT #Kimsuky #VelvetChollima #Thallium #malware #HappyDoor #threat 📍🇰🇵 💥🇰🇷🇺🇸🇪🇺🌏 ⛓️ #Phishing > Bandizip > regsvr32+dll & mshta (.HTA) exec > #VBS + Load > Steal info > Persistence in Tasks > #C2 🔗360 Threat Intel: mp.weixin.qq.com/s?__biz=MzUyMj…

#APT #Kimsuky #VelvetChollima #Thallium #malware #HappyDoor #threat

📍🇰🇵
💥🇰🇷🇺🇸🇪🇺🌏

⛓️ #Phishing > Bandizip > regsvr32+dll & mshta (.HTA) exec > #VBS + Load  > Steal info > Persistence in Tasks > #C2 

🔗360 Threat Intel: mp.weixin.qq.com/s?__biz=MzUyMj…
NanoSec Asia (@nanosec_asia) 's Twitter Profile Photo

Announcing the only dedicated cyber defense security conference in Malaysia! Parallel Pulse NanoSec Asia CFP is now open! pulse.nanosec.asia/cfp/ Join us as we champion a future where security is not just a system — it’s a state of mind.

Announcing the only dedicated cyber defense security conference in Malaysia! Parallel Pulse <a href="/nanosec_asia/">NanoSec Asia</a>  CFP is now open!

pulse.nanosec.asia/cfp/
Join us as we champion a future where security is not just a system — it’s a state of mind.
Mr. OS (@ksg93rd) 's Twitter Profile Photo

#exploit 1⃣ CVE-2025-5959: Type Confusion in V8 in Google Chrome - linz04.github.io/2025/06/20/CVE… 2⃣ CVE-2025-47812: Wing FTP Server RCE Exploit - github.com/4m3rr0r/CVE-20… 3⃣ SailPoint IQService - RCE via Default Encryption Key - github.com/NetSPI/set_sail 4⃣ CVE-2025-5777 (CitrixBleed