UPDATE:
In the overwhelming sea of information, access to timely, insightful and independent open-source intelligence (OSINT) analyses is crucial for maintaining the necessary situational awareness to stay on the top of emerging security threats. This blog covers trends and fads, tactics and strategies, intersecting with third-party research, speculations and real-time CYBERINT assessments, all packed with sarcastic attitude
Friday, January 19, 2024
Research Compilation 2005-2023 - Torrent
Independent Security Consultancy, Threat Intelligence Analysis (OSINT/Cyber Counter Intelligence) and Competitive Intelligence research on demand. Insightful, unbiased, and client-tailored assessments, neatly communicated in the form of interactive reports - because anticipating the emerging threatscape is what shapes the big picture at the end of the day. Approach me at dancho.danchev@hush.com
Thursday, January 18, 2024
Auction Onion
Independent Security Consultancy, Threat Intelligence Analysis (OSINT/Cyber Counter Intelligence) and Competitive Intelligence research on demand. Insightful, unbiased, and client-tailored assessments, neatly communicated in the form of interactive reports - because anticipating the emerging threatscape is what shapes the big picture at the end of the day. Approach me at dancho.danchev@hush.com
Tuesday, January 16, 2024
Retiring
Independent Security Consultancy, Threat Intelligence Analysis (OSINT/Cyber Counter Intelligence) and Competitive Intelligence research on demand. Insightful, unbiased, and client-tailored assessments, neatly communicated in the form of interactive reports - because anticipating the emerging threatscape is what shapes the big picture at the end of the day. Approach me at dancho.danchev@hush.com
Monday, January 15, 2024
Who Can Improve My Wikipedia Article?
Independent Security Consultancy, Threat Intelligence Analysis (OSINT/Cyber Counter Intelligence) and Competitive Intelligence research on demand. Insightful, unbiased, and client-tailored assessments, neatly communicated in the form of interactive reports - because anticipating the emerging threatscape is what shapes the big picture at the end of the day. Approach me at dancho.danchev@hush.com
Saturday, January 13, 2024
Who's Behind GoatRAT?
Personally identifiable information:
hxxp://bit[.]ly/nubankmodulo
hxxp://goatrat[.]com/apks/apk20[.]apk
Sample MD5s:
6583a9b6b83738e0bf2a261fc04483e18772da3241e467fdef37a8e27b1869a7
9a8e85cf1bbd32c71f0efa42ffedf1a0
hxxp://api[.]goatrat[.]com:3008
Social Media:
hxxp://t[.]me/sickoDevz
hxxp://t[.]me/goatmalware
Web site:
hxxp://criminalmw[.]fun
hxxp://clientes[.]criminalmw[.]fun
WhatsApp - +5511987457894
ba5833b49e2c6501f5bbce90b7948a85
Code Signing Certificate Signed By: Mr[.] Paxton Doyle PhD
SSL: 94ba7810ece1a1b227e6a5b509c8bb228e7285a1a5cee5f0ee26542783d4b09a
Sample C&C servers:
104[.]244[.]75[.]74
138[.]197[.]166[.]92
142[.]251[.]143[.]110
142[.]251[.]143[.]129
142[.]251[.]143[.]142
142[.]251[.]143[.]163
142[.]251[.]143[.]193
142[.]54[.]162[.]114
159[.]69[.]27[.]103
174[.]128[.]250[.]164
185[.]204[.]1[.]84
185[.]225[.]68[.]133
188[.]214[.]132[.]49
216[.]239[.]32[.]36
216[.]239[.]34[.]36
31[.]133[.]1[.]108
51[.]148[.]150[.]203
51[.]81[.]93[.]37
80[.]241[.]214[.]102
82[.]128[.]229[.]109
93[.]115[.]91[.]66
95[.]216[.]209[.]129
Sample C&C servers:
tgutjgo6kvqdst5ock[.]com
olbvu5pv2apkc57zfeg[.]com
hxxp://h4j7ewfdpwfzg6g6[.]com - 185[.]177[.]206[.]72
hxxp://3ajzfjsxou4yzn3jw552dg[.]com - 87[.]236[.]195[.]198
hxxp://f53ia7lqhbg54y7xd7ydp3[.]com - 178[.]63[.]41[.]183
hxxp://lblhluz7or[.]com - 178[.]63[.]41[.]183
hxxp://inylslu7vfq24vb[.]com - 185[.]177[.]206[.]72
51[.]81[.]56[.]136
89[.]163[.]128[.]25
81[.]7[.]16[.]177
81[.]170[.]128[.]221
109[.]70[.]100[.]71
158[.]255[.]1[.]112
j6jvmwqorhq4xpjkcy26d3i4au6pz6nyroqxreefmnl7yxgcruxzkmyd[.]onion
Sample Photos:
Independent Security Consultancy, Threat Intelligence Analysis (OSINT/Cyber Counter Intelligence) and Competitive Intelligence research on demand. Insightful, unbiased, and client-tailored assessments, neatly communicated in the form of interactive reports - because anticipating the emerging threatscape is what shapes the big picture at the end of the day. Approach me at dancho.danchev@hush.com
Friday, January 12, 2024
Profiling Internet Research Agency's Anna Vladislavovna Bogacheva
Independent Security Consultancy, Threat Intelligence Analysis (OSINT/Cyber Counter Intelligence) and Competitive Intelligence research on demand. Insightful, unbiased, and client-tailored assessments, neatly communicated in the form of interactive reports - because anticipating the emerging threatscape is what shapes the big picture at the end of the day. Approach me at dancho.danchev@hush.com
Profiling Russia's Internet Research Agency Project Lakhta Artem Mikhaylovich Lifshits
An image is worth a thousand words. Here's the link.
Personally identifiable information:
Email: artemlv@hotmail.com
mycryptodeals@yandex.ru
Vkontakte accounts:
hxxp://vk.com/id5856430
hxxp://vk.com/sh0rtnam3
hxxp://vk.com/artemous
Web site: hxxp://smart-shopping.club
Independent Security Consultancy, Threat Intelligence Analysis (OSINT/Cyber Counter Intelligence) and Competitive Intelligence research on demand. Insightful, unbiased, and client-tailored assessments, neatly communicated in the form of interactive reports - because anticipating the emerging threatscape is what shapes the big picture at the end of the day. Approach me at dancho.danchev@hush.com



















































