Andrea Fortuna
AboutSearch
Tools
DFIR Toolkit OSINT Toolkit
  • Jan 11, 2023

    New Dark Pink APT group targets governmental and military organizations

    A new advanced threat actor known as Dark Pink, also referred to as Saaiwc Group, has been found to be targeting government agencies and military bodies in multiple countries in the APAC region using custom malware to steal confidential information.… read more »
  • Jan 9, 2023

    Kubernetes clusters targeted by Kinsing malware campaign

    The Kinsing malware is targeting Kubernetes clusters by exploiting known vulnerabilities in container images and misconfigured PostgreSQL containers.… read more »
  • Jan 6, 2023

    A brief history of malware

    These days I am finishing the first draft of a new book of the 'Little Handbooks' series, dedicated to Malware Analysis. One of the first chapters is a brief history of computer viruses.… read more »
  • Jan 2, 2023

    Agile Methodology in Cybersecurity: Benefits, Challenges, and Best Practices

    In the field of cybersecurity, agile methodologies have the potential to transform the way that organizations approach risk management and respond to emerging threats. In this article, we will explore the benefits of using agile in cybersecurity, the challenges of… read more »
  • Dec 31, 2022

    The Swiss cheese cybersecurity model

    The Swiss cheese model is a useful tool for organizations to understand and mitigate the risks they face in the realm of cybersecurity. By visualizing the various controls and defenses they have in place as slices of cheese with unique… read more »
  • Dec 30, 2022

    Vulnerability in Google Home smart speaker allowed to snoop users conversations

    A security researcher named Matt Kunze discovered a bug in Google's smart speaker, the Google Home, which allowed for the creation of a backdoor account that could be used to remotely control the device and access the microphone feed. This… read more »
  • Dec 29, 2022

    MasquerAds: a new Malvertising campaign via Google Ads

    A new cyber attack campaign called MasquerAds is targeting users who are searching for popular software by using Google Ads to serve malware-infected variants of the software. These malware-infected versions, which include Raccoon Stealer and Vidar, are being served through… read more »
  • Dec 27, 2022

    BlueNoroff APT group using new ways to bypass MotW protection

    The BlueNoroff subcluster of the Lazarus Group has adopted new techniques that allow it to bypass Windows' Mark of the Web protections. … read more »
  • Dec 25, 2022

    Lastpass databreach: what is the actual risk?

    LastPass, a password management software used by over 33 million people and 100,000 businesses worldwide, has revealed that customer vault data was stolen after the company's cloud storage was breached earlier this year.… read more »
  • Dec 24, 2022

    Open source tools for SOC: my own list

    Using open source software in a SOC can be beneficial for a number of reasons, like cost, security and flexibility.… read more »
  • Dec 19, 2022

    The Little Handbook of Online Privacy

    This book had a very long gestation. I started writing it at the end of 2019 and then, because of more important commitments, I decided to put it on hold and pick it up a few months later. In early… read more »
  • Dec 11, 2022

    Cyber Incident Response Plan: the Post Incident Review

    A Post Incident Review is a document that is created after a cybersecurity incident has occurred: it is an in-depth analysis of what happened, how it happened, and what steps can be taken to prevent similar incidents from happening in… read more »
  • Dec 5, 2022

    Will blogs be written by AIs in the future?

    I tried to ask ChatGPT (an OpenAI project based on GPT 3.5) to explain if and why in the future all blogs will be written by artificial intelligence's...here is the answer!… read more »
  • Dec 1, 2022

    “Shine” is available on Spotify

    In the past months I have decided to move away for a while from the joyful and relaxing atmospheres that have characterized my musical production in recent years, and develop somewhat more crepuscular themes.… read more »
  • Oct 19, 2022

    Telegram vs. WhatsApp: Pavel Durov's viewpoint

    In the last years Telegram founder Pavel Durov has been carrying on a kind of "battle" against WhatsApp, highlighting its problems related to security and privacy.… read more »
  • Sep 25, 2022

    Stable Diffusion on Google Colab

    A simple solution to run Stable Diffusion on Google Colab… read more »
  • Aug 21, 2022

    Search tools for forensic investigation

    During a forensic investigation, a big part of all tasks are composed by searches on files.… read more »
  • Aug 12, 2022

    Windows 10 administrator password recovery

    A "quick-and-dirty" method for changing the Administrator user password on Windows 10 systems, that will surely make the purists of DFIR turn up their noses.… read more »
  • Jul 2, 2022

    New Horizons

    Five tracks, lo-fi and deep relaxing music, available on all major music streaming platforms.… read more »
  • Jun 18, 2022

    Four Quartets for Synth Ensemble

    Four Quartets, my new album, is out on Spotify and all major music streaming platforms.… read more »
« Previous page Next page »

Andrea Fortuna

  • Andrea Fortuna
  • andrea@andreafortuna.org
  • andreafortuna
  • andreafortunaig
  • andrea-fortuna

Cybersecurity expert, software developer, experienced digital forensic analyst, musician