
PRODAFT
@PRODAFT
Followers
9K
Following
95
Media
546
Statuses
894
Proactive Defense Against Future Threats | Pioneering #CyberSec and #ThreatIntelligence in Europe & MENA since ’12. CTI Platform: #USTA Risk Intel: #BLINDSPOT
Europe
Joined July 2012
🚨 BIG NEWS: THE SYS INITIATIVE 🚨. For years, cyber criminals have hidden in the shadows of forums. They operated behind fake names, encrypted channels, and closed communities. Reputation and trust were their most valuable currencies. Now is the time to shift from defense to
7
21
83
Our Ravens monitor every move of cybercriminals and intervene when necessary. Support them with the SYS Initiative:. #CyberSecurity #ThreatIntelligence #ReportCyberCrime #CyberCrime #IOC
0
1
3
🚀 We've shared an IDA Pro decryption script for Matanbuchus 3.0, capable of decrypting ChaCha20 strings & resolving APIs/modules/syscalls using MurmurHash3. Fresh IOCs also available! . 👉Check it out: #threatintel #malware #IOC
0
13
70
⚠️ Did you know? While St. Paul announced their cyberattack now, BLINDSPOT detected Neferious Mantis (a.k.a. Interlock) precursor activity 10 days ago! 🕵️♀️ Gain a crucial advantage & avoid being a victim. Public news: 🔗 . #threatintel #ransomware
1
4
20
Ransomware group���s internal news exposes management’s plans and decisions. Highlights from Qilin: . 🔒 Mandated 50% minimum ransom price .📰 Journalists engaged for the blog .🚫 Restrictions on BRICS attacks.⚖️Lawyer service. and more…. #Ransomware #Cybersecurity #ThreatIntel
2
0
17
RT @BleepinComputer: Hacker sneaks infostealer malware into early access Steam game - @billtoulas. .
bleepingcomputer.com
A threat actor called EncryptHub has compromised a game on Steam to distribute info-stealing malware to unsuspecting users downloading the title.
0
50
0
RT @TheHackersNews: 🚨 New malware CastleLoader is hijacking systems through fake GitHub repos and phishing sites—469 confirmed infections.….
thehackernews.com
CastleLoader malware infected 469 devices via ClickFix, GitHub, and phishing since May 2025. Malware delivery is evolving fast.
0
34
0
🚨 CastleLoader: An emerging loader malware using phishing & fake GitHub repos to deploy RATs & stealers. Now targeting enterprise users via fake Zscaler Client & more. 📄 Read the report: 🔍IOCs: . #ThreatIntel #Malware
8
8
57
Catch the unknowns. 🕵️♂️ Understand the attackers. Be ready. 🛡️ . CATALYST delivers fresh IOCs & never-before-seen TTPs, linked to threat clusters. Level up your threat intel! . 👉 Try it: #ThreatIntel #Malware #IOCs #TTPs
4
4
19
Did you play Chemia on Steam? 🎮 Then you should be worried. LARVA-208’s modification of the game to distribute Fickle Stealer, HijackLoader and Vidar demonstrates a concerning trend. ➡️Check the IOCs now: . #threatintel #cybersecurity #malware #IOC
2
21
61
Starting from Monday, we will no longer be accepting any accounts of XSS[.]is. Thank you for consistently providing accounts over the past months. We appreciate your business !. #SYSInitiative #SYS #PRODAFT #XMR
🚨 Suspected admin of a top Russian-speaking cybercrime forum, was arrested in Ukraine. The suspect, active for nearly 20 years, allegedly made €7M facilitating cybercrime. 🇫🇷🇺🇦🇪🇺 Operation led by France with Europol support.
3
6
43
RT @TheHackersNews: 🚨 Web3 devs targeted with fake AI job interviews — to steal your crypto. Hackers lure victims with sites like “Norlax….
thehackernews.com
Hackers target Web3 developers using fake AI tools and malware to steal crypto wallets and credentials.
0
40
0
🚨 AI is supercharging phishing! . Cybercriminals now use LLMs to auto-generate realistic sites, lowering the barrier to attack. They define detailed personas & use AI to build convincing pages. Are we ready to fight AI-powered phishing? . #phishing #threatintel #LLMs #AI
0
5
19
github.com
This repository contains indicators of compromise (IOCs) of our various investigations. - prodaft/malware-ioc
🚨Matanbuchus 3.0 is here!. Threat actors are already buzzing about this completely rewritten loader. DNS/HTTPS C2, in-memory execution, reverse shell/WMI, morphing builds & a multitenant panel. Priced at $10K–$15K/month. Stay informed. #threatintelligence #cybersecurity
0
9
32
🚨Matanbuchus 3.0 is here!. Threat actors are already buzzing about this completely rewritten loader. DNS/HTTPS C2, in-memory execution, reverse shell/WMI, morphing builds & a multitenant panel. Priced at $10K–$15K/month. Stay informed. #threatintelligence #cybersecurity
1
11
43