Paul Melson (@pmelson) 's Twitter Profile
Paul Melson

@pmelson

Author/Operator of @ScumBots. Blue Team by day, Blue Team by night. Opinions, typos, and bad grammar do not represent my employer. He/Him

ID: 13734102

calendar_today20-02-2008 19:03:48

16,16K Tweet

14,14K Followers

1,1K Following

David J. Bianco (@davidjbianco) 's Twitter Profile Photo

I am excited to share that the #PEAK #ThreatHunting Framework, which I wrote with Ryan Fetterman, D.Eng. and sydney, has been nominated for a SANS Difference Maker award as "Innovation of the Year." Vote here: sans.org/about/awards/d…

I am excited to share that the #PEAK #ThreatHunting Framework, which I wrote with <a href="/iknowuhack/">Ryan Fetterman, D.Eng.</a> and <a href="/letswastetime/">sydney</a>, has been nominated for a SANS Difference Maker award as "Innovation of the Year."

Vote here: sans.org/about/awards/d…
Blk & Missing FDN (@bam_fi) 's Twitter Profile Photo

#BAMFI ALERT - #Chicago: “Abducted 4y/o from Chicago in Arizona or Texas? Riley Batts, 4, was last seen on Sept 23, in the 5500 block of South Lowe Avenue in the Englewood neighborhood. Police say she was abducted by her non-custodial parent. - via JCodenReports.com

#BAMFI ALERT - #Chicago: “Abducted 4y/o from Chicago in Arizona or Texas?  Riley Batts, 4, was last seen on  Sept 23, in the 5500 block of South Lowe Avenue in the Englewood neighborhood. Police say she was abducted by her non-custodial parent.  - via JCodenReports.com
Blk & Missing FDN (@bam_fi) 's Twitter Profile Photo

#Oakland, #California: 5y/o King Scott has been #missing since yesterday (Tues, Sept 24). He was last seen in the 1000 blk of Eight St in Oakland. Authorities believe King may be with his Mother, Mikalairene King, who is also missing (pictured). Pls SHARE to help us find King.

#Oakland, #California: 5y/o King Scott has been #missing since yesterday (Tues, Sept 24).
He was last seen in the 1000 blk of Eight St in Oakland. Authorities believe King may be with his Mother, Mikalairene King, who is also missing (pictured).

Pls SHARE to help us find King.
National Center for Missing & Exploited Children (@ncmec) 's Twitter Profile Photo

Shaun may travel to Irvine, #California, he was last seen in September 7, 2024 in San Clemente, California.. He may be in the need of medical attention. bit.ly/4dloVa2

Cryptolaemus (@cryptolaemus1) 's Twitter Profile Photo

#BruteRatel - #Latrodectus - .pdf > url > .js > .msi > .dll wscript.exe Document-19-51-48.js msiexec.exe /V MSIBA2E.tmp /DontWait rundll32.exe C:\Users\Admin\AppData\Roaming\vierm_soft_x64.dll, GetDeepDVCState (1/3) 👇 IOC's github.com/pr0xylife/Latr…

#BruteRatel - #Latrodectus - .pdf &gt; url &gt; .js &gt; .msi &gt; .dll

wscript.exe Document-19-51-48.js

msiexec.exe /V

MSIBA2E.tmp /DontWait 

rundll32.exe C:\Users\Admin\AppData\Roaming\vierm_soft_x64.dll, GetDeepDVCState

(1/3) 👇

IOC's
github.com/pr0xylife/Latr…
BSidesAugusta (@bsidesaugusta) 's Twitter Profile Photo

Given the significant impact of Hurricane Helene, the BSidesAugusta organizers have decided to cancel BSidesAugusta 2024 and our directly associated events during Augusta Cyber Week.

Paul Melson (@pmelson) 's Twitter Profile Photo

I posted my analysis of a malicious PDF containing a heavily obfuscated PHP payload over on infosec[.]exchange: infosec.exchange/@pmelson/11335…

Michael Schwartz (@schwartzonsec) 's Twitter Profile Photo

Censys Censys has many open positions open right now across the company: sales, marketing, product, engineering, and research. Come join the team building the next generation of Internet scanning technology, the Internet Intelligence Platform. censys.com/careers/

Paul Melson (@pmelson) 's Twitter Profile Photo

Today I am thankful for all of the folks working a shift and watching the wires to keep us safe. I see you and I appreciate you.

SLEUTHCON (@sleuthcon) 's Twitter Profile Photo

We are excited to announce our 2025 SLEUTHCON keynote speaker: Paul Melson, VP of Cybersecurity at Capital One and author/operator of ScumBots With over two decades of experience defending networks and disrupting adversaries, Paul brings unmatched insight into the economics of

We are excited to announce our 2025 SLEUTHCON keynote speaker: <a href="/pmelson/">Paul Melson</a>, VP of Cybersecurity at Capital One and author/operator of <a href="/ScumBots/">ScumBots</a> 

With over two decades of experience defending networks and disrupting adversaries, Paul brings unmatched insight into the economics of
💻 Sherrod DeGrippo 🛸 (@sherrod_im) 's Twitter Profile Photo

Get ready for this year's Sleuthcon by listening to the episode of THE Microsoft Threat Intelligence podcast all about ScumBots with Paul Melson! thecyberwire.com/podcasts/micro…

Andrew Thompson (@imposecost) 's Twitter Profile Photo

We're kicked off at #SLEUTHCON with Paul Melson discussing the importance of networking in cyber, not for packet routing or job hunting, but disruption opportunities by pooling our collective access. I agree. Collectively, we're actually more powerful than state actors in many ways.

Tom (@human_decoded) 's Twitter Profile Photo

SLEUTHCON off to a great start. My lesson learned from Paul Melson is: make friends, they probably know something you don’t, and the Intel space is all about not not knowing things #sharingIsScaring #CTI

NexusFuzzy 💩 (@nexusfuzzy) 's Twitter Profile Photo

I found a what I think novel approach which allowed me to list some of the content of #Lumma #Infostealer Command & Control servers with the help of left behind .DS_Store files. Blog, tool and Lumma files can be found here nexusfuzzy.medium.com/lumma-stealer-…

I found a what I think novel approach which allowed me to list some of the content of #Lumma #Infostealer Command &amp; Control servers with the help of left behind .DS_Store files. Blog, tool and Lumma files can be found here nexusfuzzy.medium.com/lumma-stealer-…