ActiveCmeasures Profile Banner
Active Countermeasures Profile
Active Countermeasures

@ActiveCmeasures

Followers
4K
Following
687
Media
226
Statuses
735

Threat Hunting your network has never been so awesome! Creators of AC-Hunter. Contact us for a personal Q&A session.

Joined February 2018
Don't wanna be here? Send us removal request.
@ActiveCmeasures
Active Countermeasures
10 days
A simple tool in the wrong hands becomes a silent backdoor. We simulated XenoRAT to analyze its SOCKS5 reverse proxy techniques. For defenders, spotting these patterns is vital to stopping the threat. Read the analysis by @faanross:
activecountermeasures.com
What is Malware of the Day?   Lab Setup Malware: XenoRAT MITRE Tactics: TA0011 Command and Control , T1571 Non-Standard Port Traffic Type: […]
0
1
3
@ActiveCmeasures
Active Countermeasures
18 days
A foundational protocol designed for network health is being weaponized by threat actors. ICMP, the simple troubleshooting tool, can be used to bypass defenses and maintain a covert C2 channel. Is your team hunting the echoes? Read the analysis:
Tweet card summary image
activecountermeasures.com
What is Malware of the Day?   Lab Setup Malware: Custom Go-based C2 (ICMP-GOSH) MITRE Tactics: TA0011 Command and Control, T1071 Application Layer […]
0
0
1
@ActiveCmeasures
Active Countermeasures
22 days
You blocked the IPs, but the payload still arrived. How? It came in over DNS. Joker Screenmate hides tools and data inside TXT records, delivering malware under the cover of normal-looking DNS traffic. More here:
Tweet card summary image
activecountermeasures.com
What is Malware of the Day?   Lab Setup Malware: Joker Screenmate (DNS C2 variant) MITRE Tactics: TA0011 Command and Control, T1071.004 Application […]
0
0
1
@ActiveCmeasures
Active Countermeasures
2 years
You don't want to miss next week's guest webcast!
0
0
2
@ActiveCmeasures
Active Countermeasures
3 years
Have you heard about ACE? ACE aka "AC-Hunter Community Edition" is the free version of our easy-to-use commercial Threat Hunting tool! Watch this to learn more about ACE:
0
13
26
@ActiveCmeasures
Active Countermeasures
3 years
Our team is extremely excited to announce the FREE Community Edition of AC-Hunter! Join us for tomorrow's webcast where we'll talk all about this new release: https://t.co/k90xLJgQqr #ThreatHunting
1
10
20
@BHinfoSecurity
Black Hills Information Security
3 years
Office Hours in the next 45 minutes! This will be the first of our new series. Tune in and watch how we make the magic behind the scenes.   https://t.co/4EkqLvo0zM
0
3
8
@ActiveCmeasures
Active Countermeasures
3 years
Don't forget to stop by and say Hi to our tribe @shmoocon!
@Antisy_Training
Antisyphon Training
3 years
Wanna see those bears from @REKCAHComics Bear v. Bear in action?? Visit @BanjoCrashland, @debthedeb , and @papa_bear1027 at the @BHinfoSecurity booth at @shmoocon !! https://t.co/weLwFJbv82
0
0
0
@ActiveCmeasures
Active Countermeasures
3 years
Join us in this week's Webcast! "All About Ansible - A Suite of Automation Tools" with David Quartarolo Jan 19th | 1-2pm ET Register: https://t.co/1GAJ7QPzA0
0
1
3
@ActiveCmeasures
Active Countermeasures
3 years
Are you a red or blue teamer trying to automate infrastructure tasks? Join in on next week's webcast, "All About Ansible - A Suite of Automation Tools"! Learn More: https://t.co/1GAJ7QPzA0
0
0
1
@ActiveCmeasures
Active Countermeasures
3 years
AC-Hunter with Azure Webcast with Brian Fehrman & Logan Lembke Watch Now:
0
0
0
@ActiveCmeasures
Active Countermeasures
3 years
We have a new open-source tool! Check out SMUDGE - Our passive fingerprinting solution. https://t.co/mxFKpOzgRX
Tweet card summary image
activecountermeasures.com
0
16
20
@ActiveCmeasures
Active Countermeasures
3 years
Our team will be primarily offline from now until the New Year. Thank you to the community for all your support in 2022. We have a lot of cool stuff planned for 2023 that we can't wait to share with you! Have a Happy Holiday!
0
2
5