
Intrinsec
@Intrinsec
Followers
2K
Following
118
Media
357
Statuses
1K
Notre métier ? Protéger le vôtre ! Management des risques, Évaluation, Cyber Threat Intelligence, Détection, Réponse (CERT), Innovation.
Courbevoie, France
Joined March 2013
🧵5/📌 IPs from have been previously used by ransomware groups like:.#BlackBast🦹♂️.#Cactus🌵.#RansomHub 🏴.👁 Impressive overlap between PsOps, espionage and ransomware infrastructure.
1
1
3
🧵4/ For #UAC0006: 🌐 IPs from Global Connectivity Solutions LLP (AS215540 - UK) routed through Stark Industries (AS44477) .⬅️ May be tied to 🇷🇺 Global Internet Solutions LLC (AS207713) .Both serve as legal fronts for bulletproof hoster 4vps[.]su 🛡️.
1
1
4
🧵3/ Since Jan 2025, #UAC0050 adopted NetSupport Manager for malware delivery. 🕵️♂️ Used Ukrainian IPs managed by:.- Karina Rashkovska.- Virtualine (AS215789 & AS214943) 🏢 Virtualine hosted infra via shell company Railnet LLC (in Kentucky 🇺🇸), linked to White Label Networks.
1
3
2
🧵2/🧠 Psychological ops (#PsyOps) were key: .📩 Emails mimicking terrorist & bomb threats sent to 🇺🇦 and allies 🇨🇭🇩🇪🇵🇱🇫🇷 throughout Dec 2024. 🔎 Strong similarities with UAC-0050’s “Fire Cells Group” activities. #InfoOps #CyberThreats.
1
1
3
8/8 – Read the report here: 👉 .Stay vigilant! 🔍.#Disinformation #CyberThreats #Infowar #Doppelganger #OSINT.
1
1
2