Luis Rocha Profile
Luis Rocha

@countuponsec

Followers
1K
Following
334
Media
74
Statuses
2K

Zurich
Joined April 2014
Don't wanna be here? Send us removal request.
@countuponsec
Luis Rocha
16 days
RT @PyroTek3: The domain Kerberos service account, KRBTGT (, is an important account since it is used to sign & enc….
0
101
0
@countuponsec
Luis Rocha
1 month
RT @HexRaysSA: 🧠 Reverse engineers, your lab just got smarter. IDA Free 9.1 is now preinstalled in FLARE VM — @Mandiant 's open-source ma….
0
39
0
@countuponsec
Luis Rocha
1 month
RT @craiu: I've been looking at the leaked #Nobitex cryptocurrency exchange Source Code from Predatory Sparrow / Gonjeshke Darande (https:/….
0
50
0
@countuponsec
Luis Rocha
2 months
RT @cyb3rops: PoC Exploit for the NTLM reflection SMB flaw CVE-2025-33073.
Tweet media one
0
196
0
@countuponsec
Luis Rocha
3 months
RT @hackerschoice: 1-line "Living Off The Land" persistent DNS-reverse backdoor. (now added to . .
0
68
0
@countuponsec
Luis Rocha
4 months
RT @hackerschoice: 🍿THC member on camera. A first. 😅.30 years of hacking - a perspective and a reflection. 📺 👉 Keep Hacking 👈 The next 30 y….
0
14
0
@countuponsec
Luis Rocha
8 months
RT @hasherezade: I have a little X-mass gift for you all. #PEsieve 0.4.0 is out:
Tweet media one
0
122
0
@countuponsec
Luis Rocha
8 months
RT @craiu: Here's the decrypted, 2nd stage dex payload of the Android Monokle spyware from this amazing story below: 3613a76be3c6f0d7f61089….
0
27
0
@countuponsec
Luis Rocha
8 months
RT @ESETresearch: UPDATE: #ESETresearch was contacted by one of the possible authors of the Bootkitty bootkit, claiming the bootkit is a pa….
Tweet card summary image
welivesecurity.com
ESET's discovery of the first UEFI bootkit designed for Linux sendss an important message: UEFI bootkits are no longer confined to Windows systems alone.
0
66
0
@countuponsec
Luis Rocha
9 months
RT @CISACyber: 🚨@SophosXOps completed a 5-year investigation into People’s Republic of China-based groups targeting perimeter devices. Thei….
0
45
0
@countuponsec
Luis Rocha
9 months
RT @craiu: Some of the details in this story are just crazy. For instance: "Sophos included in its “hotfix" for the hackers' intrusions add….
0
88
0
@countuponsec
Luis Rocha
9 months
RT @attrc: Our talk from @defcon is now available! In the presented research, we document every EDR bypass technique used in the wild along….
0
254
0
@countuponsec
Luis Rocha
9 months
RT @samaritan_o: 🚨 #DFIRtips 🚨. Today, during an investigation, I found a registry key that proved to be extremely useful in identifying th….
0
98
0
@countuponsec
Luis Rocha
11 months
RT @m_r_tz: 11th Annual Flare-On Challenge announcement .#flareon11 #yara 👀
Tweet media one
0
47
0
@countuponsec
Luis Rocha
11 months
RT @fabian_bader: Good to see that DART is using very similar methods to analyze Microsoft Graph Activity logs.
0
22
0
@countuponsec
Luis Rocha
11 months
RT @danieldibswe: I learned this nice feature in Wireshark from a gentleman named Curtis Whipple when I posted to LinkedIn. You can use Wir….
0
91
0
@countuponsec
Luis Rocha
1 year
RT @phrack: The time has come, and with it your reading material for the week. Phrack #71 is officially released ONLINE! Let us know what….
0
503
0
@countuponsec
Luis Rocha
1 year
RT @Mike_stokkel: APT41 has been infiltrating and stealing sensitive data from organizations in the global shipping, media, tech, and autom….
Tweet card summary image
cloud.google.com
Mandiant has observed a sustained campaign by the advanced persistent threat group APT41.
0
25
0