Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups
Skins
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (Cyborg)
  • No Skin
Collapse
Brand Logo

CIRCLE WITH A DOT

thedfirreport@infosec.exchangeT

thedfirreport@infosec.exchange

@thedfirreport@infosec.exchange
About
Posts
3
Topics
3
Shares
0
Groups
0
Followers
0
Following
0

View Original

Posts

Recent Best Controversial

  • 🧪 DFIR Labs | ALPHV Ransomware Case #24952
    thedfirreport@infosec.exchangeT thedfirreport@infosec.exchange

    🧪 DFIR Labs | ALPHV Ransomware Case #24952

    Walk through a real intrusion where IcedID was used to deploy ScreenConnect and a custom C# streamer, ultimately leading to an ALPHV (BlackCat) ransomware event.

    This lab breaks down:

    ➡️ Remote access and persistence with ScreenConnect
    ➡️ Custom tooling used prior to ransomware deployment
    ➡️ Operator tradecraft observed along the way

    Step through the investigation and analyze attacker behavior end-to-end.
    👉 https://dfirlabs.thedfirreport.com/auth/login

    Uncategorized

  • Don’t just block threats — disrupt them.
    thedfirreport@infosec.exchangeT thedfirreport@infosec.exchange

    Don’t just block threats — disrupt them.

    Our IR-driven Threat Feed helps you:

    🔎 Detect attacker infrastructure early
    ⚡ Hunt for active footholds
    🛡️ Reduce false positives with continuously verified intel

    Built for SOCs, MSSPs, MDRs, and security vendors.

    Get the edge: https://thedfirreport.com/contact/

    #ThreatIntel #BlueTeam #DFIR #CyberDefense

    Link Preview Image
    Uncategorized threatintel blueteam dfir cyberdefense

  • 🐱 Cat’s Got Your Files: Dive Into the Lynx Ransomware Incident!
    thedfirreport@infosec.exchangeT thedfirreport@infosec.exchange

    🐱 Cat’s Got Your Files: Dive Into the Lynx Ransomware Incident!

    Check out our latest DFIR Report detailing how attackers abused valid credentials to compromise an environment, create persistent high-privilege accounts, and conduct environment mapping and exfiltration before deploying Lynx ransomware.

    Report: https://thedfirreport.com/2025/11/17/cats-got-your-files-lynx-ransomware/
    Services: https://thedfirreport.com/services/
    Contact Us for pricing or a demo: https://thedfirreport.com/contact/

    Uncategorized
  • Login

  • Login or register to search.
  • First post
    Last post
0
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups