• Open source tools for SOC: my own list

    A SOC, or Security Operations Center, is a centralized unit within an organization responsible for the detection, analysis, and response to cyber threats and vulnerabilities. It is typically responsible for managing and monitoring the security of an organization’s networks, systems,… read more »
  • The Little Handbook of Online Privacy

    This book had a very long gestation. I started writing it at the end of 2019 and then, because of more important commitments, I decided to put it on hold and pick it up a few months later. In early… read more »
  • Cyber Incident Response Plan: the Post Incident Review

    Cybersecurity is a critical issue in the modern world. As more and more of our personal and professional lives move online, the need for effective cybersecurity measures becomes increasingly important. One key aspect of maintaining strong cybersecurity posture is the… read more »
  • Will blogs be written by AIs in the future?

    I tried to ask ChatGPT (an OpenAI project based on GPT 3.5) to explain if and why in the future all blogs will be written by artificial intelligences…here is the answer! In recent years, there has been a growing trend… read more »
  • “Shine” is available on Spotify

    In the past months I have decided to move away for a while from the joyful and relaxing atmospheres that have characterized my musical production in recent years, and develop somewhat more crepuscular themes. “Shine” is a 4-track EP, designed… read more »
  • Telegram vs. WhatsApp: Pavel Durov's viewpoint

    Over the past few years, Telegram founder Pavel Durov has waged a sort of “battle” against WhatsApp, highlighting its security and privacy problems. Durov has always been very attentive to issues of privacy and freedom of speech more generally, having… read more »
  • Stable Diffusion on Google Colab

    Text-to-image algorithms creates an image from scratch from a text description, using machine learning to understand your words and convert them to a unique image each time. Researchers at OpenAI, Google, Facebook, and others have developed text-to-image tools, and similar… read more »
  • My Weekly Roundup #161

    Cybersecurity Samsung Has Been Hacked: What Data Has Been Stolen? On September 2, Samsung published a security advisory confirming it had been hacked. The breach would appear to have been of Samsung systems in the U.S. and took place in… read more »
  • Search tools for forensic investigation

    During a forensic investigation, a big part of all tasks are composed by searches on files. Below is a brief list of the tools I usually use for this type of activity.. awk An extremely useful tool, especially for parsing… read more »
  • Windows 10 administrator password recovery

    Time ago I have had to perform memory capture on a Windows 10 system that was infected with malware but whose administrator password had been lost. “Fortunately,”, the malware had gained a fair amount of persistence and was able to… read more »
  • My Weekly Roundup #160

    Cybersecurity A new botnet Orchard Generates DGA Domains with Bitcoin Transaction Information DGA is one of the classic techniques for botnets to hide their C2s, attacker only needs to selectively register a very small number of C2 domains, while for… read more »
  • My Weekly Roundup #159

    Cybersecurity Microsoft ties novel ‘Raspberry Robin’ malware to Evil Corp cybercrime syndicate Microsoft’s security team published evidence this week tying the Raspberry Robin malware to Russian cybercrime syndicate Evil Corp. New Qualys Research Report: Evolution of Quasar RAT The Qualys… read more »
  • My Weekly Roundup #158

    Cybersecurity Reverse Image Search Guide #osint The tool I recommend you start your search with is Yandex Images. Not only does it search very well for similar images, but it also recognizes the text on them and identifies the location… read more »
  • My Weekly Roundup #157

    A selection of interesting news published during this week on news.andreafortuna.org. Cybersecurity Above the Fold and in Your Inbox: Tracing State-Aligned Activity Targeting Journalists, Media Key Takeaways Those involved in media make for appealing targets given the unique access, information,… read more »
  • My Weekly Roundup #156

    Cybersecurity Killnet: Russian DDoS Group Claims Attack on US Congress Website On July 8, the Russian hacktivist DDoS group “Killnet” claimed responsibility for an attack on the website of US Congress. A Library of Congress spokesperson told CyberScoop that the… read more »
  • My Weekly Roundup #155

    Cybersecurity Rogue HackerOne employee steals bug reports to sell on the side A HackerOne employee stole vulnerability reports submitted through the bug bounty platform and disclosed them to affected customers to claim financial rewards. Facebook 2FA phish arrives just 28… read more »
  • New Horizons

    “New Horizons”: five tracks, lo-fi and deep relaxing music. Album cover “New Horizons”, my new album, is out on Spotify and all major music streaming platforms. … read more »
  • My Weekly Roundup #154

    Cybersecurity Google says attackers worked with ISPs to deploy Hermit spyware on Android and iOS A sophisticated spyware campaign is getting the help of internet service providers (ISPs) to trick users into downloading malicious apps, according to research published by… read more »
  • My Weekly Roundup #153

    Cybersecurity China-linked APT Flew Under Radar for Decade Evidence suggests that a just-discovered APT has been active since 2013. DeadBolt ransomware takes another shot at QNAP storage QNAP is warning users about another wave of DeadBolt ransomware attacks against its… read more »
  • Four Quartets for Synth Ensemble

    Four Quartets for synth ensemble, four rarefied, meditative and relaxing pieces. Recommended good headphones. Album cover “Four Quartets”, my new album, is out on Spotify and all major music streaming platforms. … read more »