@SttyK

I'm just nurse. BlackHat USA 2025/2026 Speaker Signal: @SttyK.88 fd61227fdc@protonmail.com

Joined May 2017
Pinned Tweet
Yay! My talk "Inside the Screen: Deep-Diving into North Korean IT Workers' Live Infrastructure" accepted BlackHat USA Briefings😎 But it's only for on demand. blackhat.com/us-26/briefings…
8
13
1
107
26,464
オッカムの剃刀
1
331
棒 retweeted
最近流行ってる北朝鮮IT労働者と思われる人物がAI音声/アバターで面接を受けてるケースで内部で使われてると思われるウェブパネルの構成調べてみたらこんな感じだった。声とかも設定できて、Anam(.)aiを使ってる。Webcamoidで仮想カメラを設定して生成したアバターを会議で流せる?
28
4
162
15,083
Today, Treasury took unprecedented action against the A7 Network, a shadow banking network with ties to Russia used by the Iranian regime to evade sanctions as part of Operation Economic Outcast. Treasury’s @FinCENnews proposed a rule that would prohibit transmittals of funds regarding transactions involving the A7 Network’s Sub-Agents. Additionally, FinCEN issued an Alert to help financial institutions detect and report suspicious activity related to the A7 Network. Treasury’s Office of Foreign Assets Control sanctioned the A7 Network as a significant transnational criminal organization. home.treasury.gov/news/press…
25
319
22
1,148
169,724
INTEL DROP DarkSword C2 controllers, 43 hosts in the Total Insights detection pipeline across 26 networks in Hong Kong, the United States, Singapore, China, Japan, Brazil, and South Korea. Hosting skews heavily to APAC. 8.210.67.79 35.203.134.133 38.60.125.123 38.181.56.130 43.98.165.114 43.108.57.27 43.136.35.215 43.160.231.87 43.165.167.94 43.255.28.208 45.192.110.60 47.236.83.240 47.254.120.61 64.90.13.176 89.125.43.163 103.27.79.231 103.30.78.49 103.52.153.142 103.230.240.83 103.242.2.144 103.254.148.169 107.149.129.212 107.175.49.181 112.213.103.111 112.213.108.85 112.213.110.214 118.107.35.196 118.107.35.248 154.18.187.160 154.23.141.210 154.36.167.198 156.238.120.147 157.119.103.204 162.4.136.30 162.251.94.208 167.104.101.115 186.244.231.115 191.40.37.39 192.253.229.191 206.238.20.42 208.87.200.68 209.222.251.117 210.126.235.135 Sharing the host with other C2 and tooling: 38.181.56.130 controller:darksword + controller:cyberstrikeai + ost:pentagi 47.236.83.240 controller:darksword + controller:cobaltstrike + malware-hosting Also flagged kev-vulnerable: 43.165.167.94 89.125.43.163 118.107.35.248 157.119.103.204 162.251.94.208 206.238.20.42 Two in the same /24: 118.107.35.196, 118.107.35.248 Block the set and hunt for beacons to these controllers. #TotalInsights #ThreatIntel #DarkSword #C2 team-cymru.com/total-insight…
14
4
73
8,962
I don't have the right words to express the car crash of thoughts and feelings that come with reading this ridiculous post. The gall. The overtness. The ridiculousness. The self-owning. It's too much to articulate. anthropic.com/research/glm-5…
14
13
4
150
20,349
人間が--dangerously-skip-permissionsでお仕事
1
3
1,019
偉すぎてインターネットの揉め事に参加してない
7
562
好きな曲をリストして見直したら丸サ進行に毒されてるだけなことがわかって()
1
2
766
借金する勢いですべて自費で海外カンファレンス参加するとどれだけのコストを会社にかけてるのか理解できるので一度はやってみることをおすすめしたい。
1
4
1
41
4,114
会社にこれだけのお金を出させてるんだからそれだけの成果を、、、という意味合いではなく経費と身銭を切るの違いという金の性質を理解することと、コスト感覚を理解する上で大事だと思ってる。紙の上での計算でこれだけかかるんだじゃなくてそれを実際に自分で背負ってみる。
1
265
ある種の緊張感を生み出せる(リスクとして認識させられる)から、こういうのだいじだと思う。
Replying to @cheenanet
またこれはサイバー攻撃とは少し異なるけども、最近はAppleがSiriで会話データを録音し提供していた問題で集団訴訟され、iPhoneユーザーは一人あたり数千円程度の和解金の受取ができた 大きな金額ではないけども、アメリカでは政府機関の訴訟・集団訴訟で圧力がかけられることが多いのは良いと思う
12
1,784
This morning @FBI and our partners the Dutch National Police are announcing the arrest of one of the alleged leaders of ShinyHunters - a global cybercrime and threat actor group linked to cyberattacks in the United States, the Netherlands, and around the world. In coordination with FBI investigators the Dutch High-Tech Crime Unit arrested the suspect under Dutch law. As we speak FBI teams are actively working with partners to obtain and execute more leads in the ongoing investigation based on this arrest. Thank you to our Dutch National Police partners for their continued work with us in this case and the industry partners who shared information with us. The investigation continues. -DKP🇺🇸
435
1,943
115
12,719
576,937
人間蒸留おじさんBHの凄さがわかってないのか爆発的に増えなくてよかった。
5
555
人間LLM
最近はタダ飯おじさんならぬ"タダ情報おじさん"に悩まされている。商談と称して最新のAIセキュリティ動向を聞いて帰る、弊社製品の構成だけ聞いて帰る。そうでない人を見極めてMTG組んでるけど、見極めるのにもコストがかかる😅
1
7
3,126
A year ago we launched Signal Secure Backups. Now, we’re happy to share all of the additions and improvements we’ve made to backups since then: On-device backups, cross-platform support, storage optimization, and attachment backfill for linked devices. signal.org/blog/backup-impro…
25
104
4
1,077
42,756
面接に来た北朝鮮の人に金正恩を罵倒させることが流行ると協力者が最初から面接に出てくることが常態化して判定不能になって積むので伝家の宝刀として最後の手段としておいておくべきだと思う。
Replying to @Ryuki_Sasaki
「金正恩は汚い豚だ」と言わせてみて
1
16
2,094
できるかどうかはわからんけど暗号メッセンジャーのメッセージ復号するより、スクリーンショットをバレずに取る方がコストは低そう。
8
843
[SECURITY NOTICE] Bitget Hot Wallet Incident — September 24, 2026 At 18:31 UTC on September 24, 2026, Bitget's security systems detected unauthorized transfers from some of our hot wallets. Our security team activated emergency response protocols immediately. What we have confirmed: -Estimated funds affected: approximately $351.6 million -Cold wallets remain fully secure. Bitget operates a three-tier wallet architecture — the breach contained only a portion of the hot wallet and warm wallet layers. -User funds are safe. The full amount of this loss falls within the coverage of Bitget's User Protection Fund, which currently holds over $464 million Actions we have taken: -Emergency response team activated within minutes of detection -Abnormal transfer addresses identified, flagged, and reported -Withdrawals temporarily suspended as a precautionary measure, pending security review -Law enforcement and on-chain security firms have been formally notified and are engaged What this means for you: -Your account balances are accurate and your assets are protected -Deposits and trading remain fully operational Withdrawals are temporarily paused and will be restored as soon as the security review is complete -What comes next: We will provide updates on an hourly basis across this channel and all official platforms. A full incident report — including root cause analysis and corrective actions — will be published within 24 hours. We will not speculate on the attack vector until the investigation is complete. Bitget has navigated multiple market cycles. We will not run from this. Every dollar and every decision will be accounted for, transparently and in full. Updates will be posted here and across all official Bitget channels as they become available. — Gracy Chen, CEO, Bitget
619
666
727
3,726
2,056,796