Category Archives: Uncategorized

An Analysis of the “Meyhod” JavaScript Web Skimmers

A new web skimmer called “Meyhod” has recently been disclosed by RiskIQ. Named after a typo in its code, this malware first surfaced in October, targeting several e-commerce sites, including Bosley, a hair treatment company, and the Chicago Architecture Center (CAC). While investigating the attacker’s domain (jquerycloud[.]com) a bit further and other potential victims from […]

I almost thought I saw a drone.

Unmanned Aerial Vehicles (UAVs), commonly known as drones, are now easily accessible for purchase online with just a click, and due to the difficulty in registering them, they have started to pose threats to both air transportation and privacy. We’ve frequently encountered news in the written and visual media highlighting these concerns.As a result, combating […]

Tips and Strategies for Operational Security

As my final blog post of 2020, I’d like to share a brief checklist to help users and researchers stay safe online. Many attackers use broad, sweeping methods, and those who overlook the basics are often the first to be compromised. This guide aims to support those who are beginning their journey into Operational Security […]

Tracking Adversaries: GreenMwizi, a Kenyan Scamming Campaign Leveraging Twitter Bots

Prologue I find uncovering new campaigns and sharing research on novel threats is one the most enjoyable parts of my job as a CTI researcher. Especially the types of threats not many other researchers really spend much time investigating, or at least those who do rarely disclose their findings publicly. My investigation on the RedZei group is […]