/LikelyMalware

// all posts

The Archive_

7 posts

#silk-road#circle#threat-intel#dark-web

You Keep Using That Word

Thirteen years ago the operator of the most 'anonymous' market on the internet was arrested in a public library with his laptop open. He found out what the word actually means.

Oct 7, 202614 min read
#malware#iot#mirai#circle#timewarp

Mirai: Back to The Future

Timewarp #2. Ten years of the malware that only ever asked nicely.

Sep 30, 202611 min read
#threat-intel#timewarp#yahoo#dark-web

Peace Sells... But Who's Buying?

Timewarp #1: Yahoo at ten, and the dump that got almost everything wrong. The dark web listing that forced Yahoo's hand was wrong about almost everything, and that is why it worked.

Sep 22, 20268 min read
#threat-intel#ransomware#raas

Who Ya Gonna Call? Meet Ransom Busters

A ransomware crew is selling incident response to the companies it just attacked. The audacity is impressive. The packaging is the actually interesting part.

Aug 20, 20267 min read
#meta#threat-intel#ai

Have You Tried Turning It Off And On Again?

I stopped writing here for a while. Here is the honest reason why, and what I am going to do about it.

Aug 20, 20265 min read
#ai#agents#obsidian#architecture

Total Recall

How I gave my agents a memory that survives the session, using a folder of Markdown files and about fifteen minutes.

Apr 10, 202612 min read
#threat-intel#security#osint#research

The Usual Suspects

What threat intelligence actually is, why a list of IP addresses is not it, and how to build a picture of an adversary that survives contact with reality.

Feb 15, 20263 min read