Oleksii Starov 🇺🇦
@o_starov
Followers
485
Following
11K
Media
39
Statuses
824
Cyberphilosopher. Security Researcher at Palo Alto Networks (this is a personal page, opinions are mine). Formerly: PragSec Lab / Stony Brook University. 🇺🇦
California, USA
Joined March 2012
Combined this list of ideas on how Academia can #SupportUkraine. Please consider performing some of the steps and help to share. A special note to CS and security scientists - 🇺🇦needs support in cyber and information warfare, so any ideas are welcome https://t.co/bdrlyJWJbI
0
2
6
31 dead in Ternopil following Russia’s recent missile strike. Everyone who disgracefully grovels before the aggressor and serves it has blood up to their elbows.
118
984
3K
A malicious #TDS campaign uses multi-layer #cloaking measures to evade detection, including anti-bot #CAPTCHA and multiple #fingerprint libraries (ThumbmarkJS & FingerprintJS). Our investigation revealed it distributes #PUP payloads. More info at https://t.co/2NOqK7AZAo
0
31
77
Recent #phishing campaigns abuse #OAuth flows to hijack Microsoft accounts. Attackers impersonate major business & investment platforms, tricking users into entering codes or approving access that silently grants account control. Details at https://t.co/fIPQ1rymAp
2
43
140
A #phishing campaign we call C2-Sock uses script to #keylog, steal creds & even allow redirects/popups by building a persistent #WebSockets connection. It streams everything you type in the phishing page & fingerprints your device for tracking. Details at https://t.co/o2aBMExsju
0
34
113
Ongoing activity uses #blobURLs to deliver #phishing pages. These pages dynamically construct malicious content in the browser's memory at runtime to bypass network analyzers. Details and recent examples at https://t.co/eFLhlkXT5c
0
35
168
Attackers are publishing malicious AI-themed Chrome #BrowserExtensions. These let users type prompts in the search bar but act as a #PromptHijacker and #SearchHijacker that redirect queries to attacker-controlled domains & track search activity. Details at https://t.co/RDPdEpU8Ks
2
15
49
A #phishing campaign active as early as April 2025 uses Browser-in-the-Middle (#BitM) pages to impersonate Facebook login sites. URLs are distributed through fake copyright violation notices. We continue to find new indicators for this activity. Details at https://t.co/Ob4ouNlwgs
2
32
115
In Kyiv, people bring flowers to a makeshift memorial in memory of the children whose lives were taken by Russia today. Russian missiles killed 18 people, including 4 children. 📷 State Emergency Service
108
846
2K
All these cities are located in Ukraine’s Donetsk and Luhansk regions, the so-called #Donbas. All these cities have been already reduced to ashes by the Russian army. All these cities were once full of Ukrainians – children, families. Ukrainians whom Russian war criminals have
109
1K
2K
Seeing US soldiers unroll a red carpet in front of a war criminal and a child murderer feels surreal.
31
459
4K
#AI-powered summary-related Chrome extensions are on the rise, posing serious #DataSecurity risks. We found multiple #BrowserExtensions sending sensitive user data (e.g., email, chat logs) to low-reputation domains. Examples at https://t.co/6C8i4byNrA
0
28
68
Today, on July 9th, the life of little Dmytryk was cruelly taken by a Russian drone strike on a home in Pravdyne, Kherson region, where he was staying with his great-grandmother. He was only one year and two months old. These toys, scattered by the blast wave, belonged to
59
748
1K
Kyiv. Looks like absolute horror movie. This is putin's reaction to the halt of weapons that protect peaceful cities from russia.
39
441
1K
These parents waited all day as rescuers dug through the rubble after the Russian strike in Kyiv. Their son’s body was just found.
151
1K
3K
President Trump continues to compliment Putin. Putin continues to destroy and kill people. The only language Putin understands is strength. It's time to change policies that aren't working. This is my native Kyiv after the massive shelling of residential areas.
97
707
2K
russia just drone striked Kharkiv with 14 injured including 4 children but yeah happy russia day @marcorubio
133
2K
8K
“On behalf of the American people… The U.S. remains committed to supporting the Russian people as they continue to build on their aspirations for a brighter future.” – Rubio. Did I miss something, dear American people? Since when is the extermination of the Ukrainian nation
531
1K
5K
One of the worst crimes of Russia’s war is the abduction of children. This Yale lab tracked the kids. Trump and Rubio cut the funding. You can help. Urge Rubio to reinstate the funding — and donate here. https://t.co/mFsko0XgIU
medicine.yale.edu
The Humanitarian Research Lab (HRL) at Yale helps to locate and bring back Ukraine’s children who have been abducted by Russia. But without additional funding,
80
2K
5K