SwitHak (👁) Profile picture
French Security Analyst (Fmr TelcoSec) Cyber / Security / Geopolitics & and others. Personal Account, My opinion! Lang: ENglish & FRench
Jan 5 9 tweets 3 min read
Le jeu des ombres : les ingérences étrangères à ciel ouvert | Par @Projet_Arcadie ( @Tris_HR)
& @TeliADC pour la couverture
[372 pages / ISBN 9 798871 275269]
↘️

-
1/9projetarcadie.com/content/le-jeu… En rapide, un bouquin sur les ingérences étrangères en France remarquable, par @Tris_HR qui connaît le Parlement mieux que personne. Le bouquin ne se base pas uniquement sur la commission d'enquête de cette année (on en reparle après), il y a aussi des inédits.
-
2/9
Mar 22, 2020 16 tweets 9 min read
Very long #Thread
Take a seat & grab popcorn
___
The latest @D1G1R3V leak analysis, Part 1 #FRONTON Project
--- 1. Leak source :
Twitter account named @D1G1R3V , representing a group saying they're the Digital Resistance against Russian State surveillance activities.
Previous leaks from them
- Quantum
- SyTech
___
The leak blog post was created the 2020-03-17 and published the 2020-03-18.
Jul 22, 2019 30 tweets 4 min read
#SyTechLeak
Let's dig in since it's publicly available now !
long thread incoming !
1/
1. Project names RU -> EN 1/
АРИОН -> ARION
Буйвол -> Buffalo
Всякое говно -> Every shit
Гамбит -> Gambit
Енот -> Raccoon
камертон -> fork
Москит -> Mosquito
Награда -> Reward
Надежда -> Hope
Наитие -> Influx
Jul 20, 2019 11 tweets 6 min read
Сайтэк a national Russian defense contractor has been hacked according several sources. The @0v1ruS seems to be the threat actor behind that.
The announcement say there's more than 7,5 Terabytes of stolen information. This leak includes several Russian state projects.
1/9
Screenshots from the threat actor indicates an attack against sytech[.]ru infrastructures and the access of their internal Jira.
It's showing the account used to compromise the company network : "tarasov" was used against an Active Directory under Windows Server 2008 (R2?).
2/9
Jan 28, 2019 7 tweets 3 min read
Another sample is publicly available, same ransom note, sharing ~70% of the genes from the sample below. VirusTotal link:
↘️
virustotal.com/en/file/8cfbd3…