Pinnedtaha aka "lordx64"·Mar 26, 2025First Pump.Fun Malware Identified: A Threat Leading to XWorm malware infectionXWORM malware targeting pump.fun users at scale
taha aka "lordx64"·Nov 14, 2023Exclusive: I did a Q&A session with an AI powered Threat intelligence bot — here’s what you should…I am excited to do my first time ever a QA session with an Artificial Intelligence powered, Threat Intelligence Bot.
taha aka "lordx64"·Jan 19, 2023Multiple Linux Backdoors Discovered Targeting Bitcoin Core Developer — Technical AnalysisAn in-depth technical analysis of various backdoors discovered in Luke’s compromised Linux server.A response icon1A response icon1
InConfiantbytaha aka "lordx64"·Dec 24, 2022L’art de l’évasion: How Shlayer hides its configuration inside Apple proprietary DMG filesIntro
InConfiantbytaha aka "lordx64"·Jun 12, 2022How SeaFlower 藏海花 installs backdoors in iOS/Android web3 wallets to steal your seed phraseDuring the course of our work at Confiant, we see malicious activity on a daily basis. What matters the most for us is the ability to:
InConfiantbytaha aka "lordx64"·Oct 18, 2021Profiling hackers using the Malvertising Attack Matrix by ConfiantWhat is Malvertising?
InConfiantbytaha aka "lordx64"·Jun 3, 2021OSX/Hydromac: A new macOS malware leaked from a Flashcards appAt @ConfiantIntel we had some “luck” finding a new malware targeting the new Apple flagship M1 computers. I put “luck” between quotes, as…
taha aka "lordx64"·Apr 23, 2021Initial analysis of PasswordState supply chain attack backdoor codeOne hour ago, I became aware of this supply chain attack from tweet by Kim Zetter. If you don’t follow her please do and subscribe to her…
taha aka "lordx64"·Mar 6, 2021How to extract Python source code from Py2App packed Mach-O BinariesI got many requests after my last tweet on the discovery of a backdoored Electrum wallet, that was notarized by Apple !
InConfiantbytaha aka "lordx64"·Jul 14, 2020Internet Explorer CVE-2019–1367 Exploitation — part 3Shellcode AnalysisA response icon1A response icon1