Michael Ligh (MHL) Profile
Michael Ligh (MHL)

@iMHLv2

Followers
10K
Following
461
Media
100
Statuses
4K

CTO @Volexity. Malware Analyst's Cookbook. Art of Memory Forensics. The @Volatility Project. Thoughts are those of my employer, not mine, they made me say it.

Joined March 2011
Don't wanna be here? Send us removal request.
@iMHLv2
Michael Ligh (MHL)
4 days
RT @volatility: Only one week left to submit your talk for #FTSCon 2025!.
0
4
0
@iMHLv2
Michael Ligh (MHL)
11 days
RT @Volexity: This training course will be led by @attrc, @imhlv2 & @superponible. This is a great opportunity to gain valuable knowledge a….
0
6
0
@iMHLv2
Michael Ligh (MHL)
11 days
RT @volatility: REMINDER: The Call for Speakers for #FTSCon is open! The deadline is July 23. See the full details in our blog post: https….
0
5
0
@iMHLv2
Michael Ligh (MHL)
23 days
RT @volatility: We are excited to announce FTSCon 2025 on October 20, 2025, in Arlington VA! Registration is now OPEN + we have a Call for….
0
11
0
@iMHLv2
Michael Ligh (MHL)
1 month
RT @Volexity: .@Volexity Volcano Server & Volcano One v25.06.12 adds ~600 new YARA rules, new IOCs for fake registered antivirus & hooked L….
0
3
0
@iMHLv2
Michael Ligh (MHL)
1 month
RT @attrc: Our highly popular and technical training, "Malware and Memory Forensics with Volatility", has been fully converted to @volatili….
0
19
0
@iMHLv2
Michael Ligh (MHL)
1 month
RT @attrc: The Call for Presentations for From the Source 2025 is open! Our Makers Track is aimed at developers of open source DFIR tools a….
0
8
0
@iMHLv2
Michael Ligh (MHL)
1 month
RT @volatility: The Call for Presentations for From the Source 2025 is open! Our Makers Track is aimed at developers of open source DFIR to….
0
7
0
@iMHLv2
Michael Ligh (MHL)
2 months
RT @attrc: I will be showing off @Volatility 3 during my talk on Wednesday afternoon at @RVAsec. Be sure to attend and come say hello if yo….
0
6
0
@iMHLv2
Michael Ligh (MHL)
2 months
RT @volatility: We are very excited to announce that Volatility 3 has reached parity with Volatility 2! With this achievement, Volatility 2….
0
158
0
@iMHLv2
Michael Ligh (MHL)
2 months
RT @Volexity: Congratulations to all of the Volatility contributors - this was no small feat! We are proud to be a sustaining sponsor of th….
0
5
0
@iMHLv2
Michael Ligh (MHL)
3 months
RT @Volexity: .@Volexity #threatintel: Multiple Russian threat actors are using Signal, WhatsApp & a compromised Ukrainian gov email addres….
0
63
0
@iMHLv2
Michael Ligh (MHL)
4 months
RT @Volexity: Today, @Volexity released GoResolver, open-source tooling to assist reverse engineers with obfuscated Golang samples. @r00tbs….
0
49
0
@iMHLv2
Michael Ligh (MHL)
5 months
RT @Volexity: .@Volexity regularly assists customers in combatting advanced threat actors & we enjoy being able to assist our partners as w….
0
3
0
@iMHLv2
Michael Ligh (MHL)
5 months
RT @attrc: I spoke at @BSidesPhilly last year on how kernel rootkits operate on Windows 10+ systems and how to detect and defend against th….
0
35
0
@iMHLv2
Michael Ligh (MHL)
5 months
RT @Volexity: .@Volexity Volcano Server & Volcano One v25.02.21 extracts cmd history from Windows 24H2 RAM; and adds admin options for SAML….
0
2
0
@iMHLv2
Michael Ligh (MHL)
5 months
RT @Volexity: .@Volexity Volcano Server & Volcano One v25.02.21 adds 300 new YARA rules; consistent Bash/ZSH history & sessions from Linux/….
0
4
0
@iMHLv2
Michael Ligh (MHL)
5 months
RT @Volexity: .@Volexity recently identified multiple Russian threat actors targeting users via #socialengineering + #spearphishing campaig….
0
51
0
@iMHLv2
Michael Ligh (MHL)
6 months
RT @Volexity: On Thursday, Feb 6, @attrc will be at @WWHackinFest to present "Effectively Detecting Modern Code Injection Techniques with V….
0
9
0
@iMHLv2
Michael Ligh (MHL)
8 months
RT @Volexity: .@Volexity has developed a new #opensource tool, “HWP Extract”, a lightweight Python library & CLI for interacting with Hangu….
0
40
0