Faan Rossouw
@faanross
Followers
4
Following
21
Media
1
Statuses
6
| threat hunting researcher + educator |
Joined December 2025
What happens when legitimate DFIR tools are used for harm? Join Episode 6 of Command & Convo to see how threat actors misuse Velociraptor for C2 and how to hunt for these pivots. Date: Jan 9 Time: 1:00 PM EST Register:
events.zoom.us
0
1
4
ICMP Type 3 C2 channel I built a few months ago, now sharing for the first time. Written in Go, comes with numerous commands + can perform chunked data transfer with session management. See README for more deets 🖖 #ThreatHunting #InfoSec #RedTeam
https://t.co/Naqn8Ez2zf
github.com
proof-of-concept C2 channel that demonstrates covert communication using ICMP Type 3 - faanross/ICMP_GOSH
0
0
0
Had a great webcast on Friday discussing detection of tunneled C2 communication🤟 https://t.co/oIHmvNDCXF
0
0
0