moltenbit

IT, cybersecurity, cybercrime, OSINT. i like running honeypots.

2025-06-03

πŸ›‘οΈ Honeypot Attack Summary (last 24h)

πŸ‘€ Usernames tried:
root (1,547), admin (203), oracle (71), user (47), postgres (45), test (42)

πŸ”‘ Passwords used:
1 (1,417), 123456 (282), 123 (174), abc123 (54), (empty) (50), admin (48)

πŸ”— moltenbit.net
#cybersecurity #honeypot #infosec #security

2025-06-02

honeypot 24h most tested usernames

#cybersecurity #infosec #security #honeypot

2025-05-31

Geolocation case solved on the @Bellingcat Discord πŸ•΅οΈβ€β™‚οΈπŸŒ
A video claimed to show wind turbines arriving in La Guajira, Colombia β€” but it was actually filmed in Oklahoma, USA.

The fact-check is now live on Colombiacheck:
πŸ”— colombiacheck.com/chequeos/est

Blog post about it by me:
πŸ“
moltenbit.net/posts/combating-

#OSINT #Geolocation

2025-05-30

Funnull enabled large-scale crypto scams by leasing IP space + hosting 332K+ fast-flux domains across AWS, Azure, and others. FBI calls this β€œinfrastructure laundering.”. IOCs can be found here: ic3.gov/CSA/2025/250529.pdf via @briankrebs krebsonsecurity.com/2025/05/u-
#infosec #cybersecurity #cybercrime

2025-05-28

#microsoft #outlook still using #windows xp style recycle bin icon when deleting mails seems wild to me

2025-05-25

New blog post:
Send out custom e-mail notifications to admins when new devices join Intune!

moltenbit.net/posts/custom-adm

#intune #linux

2025-05-24

Couple days ago I published my walkthrough for #OSINT exercise 005 by
@gralhix . Great challenges, looking forward to the others.

moltenbit.net/posts/gralhix-os

moltenbit boosted:
2025-05-21

New, from me:

KrebsOnSecurity last week was hit by a near record distributed denial-of-service (DDoS) attack that clocked in at more than 6.3 terabits of data per second (a terabit is one trillion bits of data). The brief attack appears to have been a test run for a massive new Internet of Things (IoT) botnet capable of launching crippling digital assaults that few web destinations can withstand. Read on for more about the botnet, the attack, and the apparent creator of this global menace.

According to Google, the botnet that hit my site - at a rate of 585 million packets per second -- is an IoT botnet known as Aisuru, and it is the same one that hit Cloudflare with a remarkably similar attack last month. I interviewed the self-professed creator of Aisuru, a 21 y/o Brazilian who goes by the handle "Forky." Forky denied being involved in an attack on my site, but he also lied in almost everything else he told me.

There's a lot more to this story, including some eerie parallels between Aisuru's rise and that of the Mirai IoT botnet, which became so powerful because it effectively out-competed every other DDoS botnet in existence, giving them enormous firepower. Ironically, this same concentration of power happens each time the FBI conducts another one of its mass takedowns of DDoS-for-hire services. The ones that don't get taken down benefit enormously.

krebsonsecurity.com/2025/05/kr

An artist's rendition of the Pixar movie character Forky, shows a white spoon/fork/spork decorated to look like a human, with red felt arms and eyebrows, and googley eyes on the smiling face.
2025-05-14

#CVE-2025-30386 released today by #Microsoft sounds worrying:

β€žIn the worst-case email attack scenario, an attacker could send a specially crafted email to the user without a requirement that the victim open, read, or click on the link.β€œ - leading to RCE.

2024-10-09

honeypot 24h most tested passwords

#cybersecurity #infosec #security

2024-10-09

honeypot 24h most tested usernames

#cybersecurity #infosec #security

2024-10-09

honeypot 24h attack map

#cybersecurity #infosec #security

2024-10-08

honeypot attack map, last 24h

#cybersecurity #infosec #security #linux

moltenbit boosted:
Kluthulhu' XOR 1=1--kluthulhu@infosec.exchange
2024-10-08

It is 7 AM and you're (loudly) discussing a merger at a table in the middle of a hotel restaurant.

Bold strategy Cotton.

2024-10-01

interesting read from the japanese CERT about windows eventIDs generated by human-operated ransomware

blogs.jpcert.or.jp/en/2024/09/

#cybersecurity #infosec #malware #ransomware

2024-08-02

@chrismeller thank you, that means a lot!

2024-07-16

what's your favorite #linux distro?

#cybersecurity #infosec #security

Client Info

Server: https://mastodon.social
Version: 2025.04
Repository: https://github.com/cyevgeniy/lmst