Phantom X @PhantomXSec
Security Researcher | Explorer of the Digital Ether | Kimchi Says Hello 🧐. Focused on #Cybercrime #Phishing #APT #ThreatIntel #InfoSec Joined June 2022-
Tweets398
-
Followers393
-
Following264
-
Likes199
All domains in this cluster point to wallet: 0x00000006dED0c4D8C7A82Ba04b5995A0b54E0A3E Full list of domains: pastebin.com/tbtAkUnz 4/4
The second notification technique is newly discovered. Examples are from kanpaipandas[.]art. Visitor actions on the domains are sent to a Telegram Bot in Russian. There is a handy list of the actions/notifications in /javascript/import_main.js. 3/
🚨Small cluster of 8 NFT drainer sites found on @Hetzner_Online 162.55.38[.]225, connected to larger campaign. New Telegram notification TTPs discovered. 🧵1/ #Phishing #cybercrime #NFTs
🚨Huge campaign of 900+ Crypto and NFT drainer sites is now linked to this same threat actor. Activity began in January and is still active. Targeting both $ETH and $SOL projects. Full list of domains at the end of the 🧵 1/ #Phishing #NFT #Cybercrime
⚠️ There are 728 phishing scam sites on this IP Scam site: Metascannft[.]xyz @evilcos @PhantomXSec @SlowMist_Team @1c4m3by
@IM_23pds @namesilo @realScamSniffer Yeah, there are a ton of scam sites on that IP, I just pulled out the obviously associated ones. Would need more hours and a shower to go through the whole pool.
🚨Fifteen phishing domains tied to this massive campaign registered and hosted by @namesilo on 199.33.112[.]228. Slight diversification in lures away from free minting to include the $ETH merge. Full list at the end of the 🧵 1/ #Phishing #NFT #cybercrime
🚨Huge campaign of 900+ Crypto and NFT drainer sites is now linked to this same threat actor. Activity began in January and is still active. Targeting both $ETH and $SOL projects. Full list of domains at the end of the 🧵 1/ #Phishing #NFT #Cybercrime
Full list of Domains on 23.225.152[.]131: pastebin.com/W5trnxdA 4/
Associated Wallets: 0x0AA7F992Dfb485Cf9c4FbE9688F1ECdf9e0A15f9 0xB2dA7748F16dBddEf7C1963000C35B49297a7d06 3/
Another 280 NFT drainer sites located on CloudRadium LLC IP 23.225.152[.]131 are associated with this campaign. Still uses semi-unique TTP of subdomains versus standalone sites. Discovered from code remnants on a domain on 199.33.112[.]228 🧵1/ #Phishing #NFT #Cybercrime
🚨Huge campaign of 900+ Crypto and NFT drainer sites is now linked to this same threat actor. Activity began in January and is still active. Targeting both $ETH and $SOL projects. Full list of domains at the end of the 🧵 1/ #Phishing #NFT #Cybercrime
Full list of Domains on 199.33.112[.]228: pastebin.com/cuAgZncw Full list of Domains on 23.225.152[.]131: pastebin.com/W5trnxdA 6/
Associated Wallets: 0xd2089ff4E050A29e85fb5a447F83628E2a697555 0x5B68C0B4A259179aE792B91dF30f82521322e795 0x2AcFD0152bDBdD5AED36984D4897E08449A189D7 5/
Fake @opensea phishing domain 0pensea[.]biz registered and hosted by @namesilo on 199.33.112[.]228. Harvests wallet private keys, keystore and recovery phrases. Collected data is sent to kuchbhi[.]info/post.info #Phishing #NFT #cybercrime
🚨Phishing domain getdoodles[.]top just went live on 45.12.2[.]67. Semi-unique lure offering cheap floor @doodles. Actor Wallet: 0xc68C8567991e2B5718ff999A70326EF483403bEe #Phishing #NFT
🚨Cluster of at least 29 NFT drainer sites found on Virtual Systems LLC IP 45.12.2[.]67. All associated with same threat entity. Targeting both $SOL and $ETH projects plus $CEEK. Used Custom Name Servers. 🧵1/ #Phishing #NFT #cybercrime
@IM_23pds Will have to check the earlier campaign for overlaps but definitely dedicated hosting.
Please report this scam account. Also, don't trust the obvious typo squatting site premint-mint[.]xyz Wallet: 0xaC21Cb915E8A3fd8f465ed980C29B3c730dee67c #Phishing #NFT
🚨Cluster of at least 29 NFT drainer sites found on Virtual Systems LLC IP 45.12.2[.]67. All associated with same threat entity. Targeting both $SOL and $ETH projects plus $CEEK. Used Custom Name Servers. 🧵1/ #Phishing #NFT #cybercrime
@IM_23pds Overwhelmingly sure it's part of the 900+ campaign based on code overlap. I scanned Rareapepeyc[.]top on urlscan while it's up.
SunSec @1nf0s3cpt
14K Followers 1K Following CISO @xrexinc | Founder @DeFiHackLabs Web3 Security Community | AiSec Labs | Contributor @SEAL_911
SlowMist @SlowMist_Team
89K Followers 406 Following SlowMist is a Blockchain security firm established in 2018, providing services such as security audits, security consultants, red teaming, and more.
23pds (山哥) @im23pds
15K Followers 6K Following Dad/@SlowMist_Team Partner&CISO/#Web3 Security Researcher/RedTeam/Pentester/Ai安全猎人 #bitcoin
Wallet Guard @wallet_guard
55K Followers 2K Following Web3 security advocates. Preventing crypto theft with our security engine. Now fully integrated with @MetaMask 🦊
Michael Koczwara @MichalKoczwara
25K Followers 2K Following Threat Researcher/Founder @Intel_Ops_io Threat Intelligence, Adversary Infrastructure Hunting, Curated TI Feed (Coming Soon) https://t.co/VQWaze6gaF
Alchemyst @Alchemyst0x
2K Followers 5K Following Web3 threat intelligence @BlockmageSec (opinions my own). Privacy is a human right. #InfoSec
DEGEN NEWS @DegenerateNews
422K Followers 36K Following Reporting DEGEN nonsense. TG: https://t.co/j1BQdcJjFU Disclaimer in expanded bio.
Tal Be'ery @TalBeerySec
11K Followers 2K Following Security Research Manager. Co-Founder, CTO @ZenGo. Advisor @ZeroNetworks. x-VP Research Aorato, acq by @Microsoft. 10 times @BlackHatEvents speaker.
͔̤͎̝̣͈̩̤͈̭�... @1c4m3by
2K Followers 888 Following Web2/3 - Security Researcher. - Guardian/Researcher @pocketuniverseZ
world's cilp @AmazingBal56269
1K Followers 5K Following
Welch Sec @wwwelchsec
39 Followers 1K Following I post honeypot data. 🍯 These are observed connections and not confirmed attackers. IPs may be compromised systems or researchers. Sharing for threat intel.
Richard Dixon Art @richarddixonart
2K Followers 2K Following Digital artist & NFT explorer 🎨 Turning imagination into digital assets 💎 DM for collaboration 📩
ana manolera @anamanolera
4 Followers 46 Following
Deku @Ether_SPCE_hero
559 Followers 7K Following Still alive here... sharing crypto, ai and blockchain news till i get squirmy and touch grass. LED lights damage DNA, take L-lysine
qiang zhang @qiang_zhan_fs
0 Followers 9 Following
Axel_jg @KulinskiArkadi
115 Followers 812 Following RIPE NCC Cert.Ekspert ds. Bezpieczeństwa IPv6 https://t.co/NoCwkV7ps9 (admin1/4) https://t.co/7M3DaAT5jo and Axelo A.K.J.G58-500
0xSaiyangod @saiyangod
1K Followers 2K Following CTO of W3bSecOps @wallet_guard @pocketuniverseZ @_SEAL_Org @Intell_On_chain @FairSideNetwork 正义
Lucky Ashley @Ashley2001820
1 Followers 132 Following
Queen Peach Cobbler @QueenRulah76
567 Followers 6K Following 🍑Queen Peach Cobbler Meme Coin at Toshi Mart & Pump Fun! 🍑🍑🍑
arthur schopenhauer @arthurs34048695
0 Followers 33 Following
Dork @0xfatpeanut
51 Followers 620 Following
Dustin Gates @theTopWhale
8 Followers 94 Following
wanderer433 @wanderer433
0 Followers 46 Following
CrypticFix @CrypticFix
7 Followers 146 Following Cyber Threat Intelligence :: Web3 Security :: International Politics Nerd :: Slowly building out network on X …bring on the annoying bots….
codekia @codekias
5 Followers 131 Following
Shu Zhang @ShuZhang9
0 Followers 34 Following
Teja @Teja777111
3 Followers 19 Following
Camilla @camilla20191001
0 Followers 22 Following
jack @jackccyy
0 Followers 412 Following
junan @junan_98
15 Followers 243 Following
Crypto_Note @N0T3_CRYPT0
9 Followers 69 Following
Kunal @Kunalgiridih
2 Followers 120 Following
jyothikanika @jyothikanika08
1 Followers 49 Following
spider @LulleLullu63135
48 Followers 3K Following
ひしょ @hiss475
13 Followers 29 Following
Blank @Blankhollo
1 Followers 245 Following
Charlisse @melemelsav100
167 Followers 387 Following Tamil Cinema Rasigan 💫💫💫💫 || @siva_kartikeyan 💘💘💘💕💕💕 || @dhanushkraja 💥💥💥💥🔥🔥🔥🔥
kyze @kyzegraal
4 Followers 45 Following
Johnny @no1ceoinasia
32 Followers 321 Following Forget what hurt you in the past, but never forget what it taught you.
SpaceWhale @baibeul6
8 Followers 590 Following
threatintel @threatintel14
2 Followers 238 Following
Fredterub @fredterub
61 Followers 1K Following blockchain forensics 🕵️♂️ crypto is not a rocket 🚀 it won’t take you to the moon 🌙
Connie Lam @ConnieL97151799
2 Followers 213 Following
melancholyape @1melancholyape
6 Followers 288 Following
Firef0x @G3suf4l
31 Followers 2K Following
mohd abdul danish @mohdabduldanis3
2 Followers 93 Following
ZachXBT @zachxbt
1.0M Followers 2K Following Scam survivor turned 2D investigator, Advisor @paradigm
vx-underground @vxunderground
438K Followers 359 Following The largest collection of malware source code, samples, and papers on the internet. Password: infected
foobar/ @0xfoobar
180K Followers 3K Following Founder @CircuitAI All tweets = free-range organic human thought
MalwareHunterTeam @malwrhunterteam
254K Followers 37 Following Official MHT Twitter account. Check out ID Ransomware (created by @demonslay335). More photos & gifs, less malware.
SlowMist @SlowMist_Team
89K Followers 406 Following SlowMist is a Blockchain security firm established in 2018, providing services such as security audits, security consultants, red teaming, and more.
23pds (山哥) @im23pds
15K Followers 6K Following Dad/@SlowMist_Team Partner&CISO/#Web3 Security Researcher/RedTeam/Pentester/Ai安全猎人 #bitcoin
Wallet Guard @wallet_guard
55K Followers 2K Following Web3 security advocates. Preventing crypto theft with our security engine. Now fully integrated with @MetaMask 🦊
Germán Fernández @1ZRR4H
38K Followers 463 Following 🏴☠️ OFFENSIVE-INTEL 🏴☠️ Cyber Threat Intelligence by Hackers | Security Researcher at https://t.co/rDrSxZStZD | @CuratedIntel Member | 🥷🧠🇨🇱
CertiK Alert @CertiKAlert
68K Followers 6 Following #CertiKInsight Insights, crypto hacks, crypto scams, flashloans. Turn on notifications for automatic alerts 🕵🏼 @CertiK 🤝 @CertiKCommunity
Will @BushidoToken
38K Followers 3K Following Senior Threat Intel Advisor @TeamCymru | Co-founder @CuratedIntel | Co-author @SANSForensics FOR589 | Co-founder @BSidesBournemth | @darknetdiaries #126: REvil
Jake | JCyberSec_ @JCyberSec_
10K Followers 76 Following Expert in Credential Phishing and Phishing Kit Research. Working in Cyber Security - Threat Intelligence #Phishing
Florian Roth ⚡️ @cyb3rops
221K Followers 3K Following Head of Research @nextronsystems #DFIR #YARA #Sigma | detection engineer | creator of @thor_scanner, Aurora, Sigma, LOKI, YARA-Forge | always busy ⌚️🐇 | vi/vim
PeckShieldAlert @PeckShieldAlert
95K Followers 1 Following Free Chrome Extension: https://t.co/yvXOjS8ZRI Telegram: https://t.co/qX5sVtdkFD
Michael Koczwara @MichalKoczwara
25K Followers 2K Following Threat Researcher/Founder @Intel_Ops_io Threat Intelligence, Adversary Infrastructure Hunting, Curated TI Feed (Coming Soon) https://t.co/VQWaze6gaF
blackorbird @blackorbird
42K Followers 702 Following Peace and Love. Just Analysis/Hunter/Youtuber/AiCoder/Entrepreneur/. #APT #threatIntelligence #Exploit #CTI #meme #cyber #hacker #OSINT #Ai Need Remote Job
Jazi @h2jazi
8K Followers 534 Following Threat Intel researcher! Technical tweets only; not reflective of employer's views. No endorsement of political groups/entities.
Ohm @0xOhm_eth
5K Followers 2K Following Security R&D @MetaMask | Co-founder & Co-CEO of @wallet_guard acquired by @Consensys | Security Alliance - @_SEAL_ORG | Opinions are my own
Malwar3Ninja | Threat... @Malwar3Ninja
4K Followers 3K Following Malware Hunter | ⚡🆓Threat Intelligence: @threatviewio | Cyber Defense | DFIR | Views are personal | Retweet≠endorsement | 🍺🥃
🛡️SHIELDS @SH13LDS7
6K Followers 2K Following Security Advocate | Expose threats & teach safety | Contributor @BoringSecDAO | AI Enthusiast | Bald Black Christian Conservative Dude | Opinions are my own
Scam Sniffer | Web3 A... @realScamSniffer
90K Followers 46 Following Crypto Anti-Scam🛡️ | User-safety advocate 🌐 🧩 Extension: https://t.co/How2d4sL8b 📲 | ✈️ TG: https://t.co/qbfM5Z44mZ
Security Operations C... @fe_tsoc
966 Followers 42 Following A SOC protecting the grid. Bot maintained by @Alt_DataStreams. Made with love by @whlemlk
okHOTSHOT @NFTherder
42K Followers 491 Following On-chain Analyst • Internet Sleuth • Scam Whisperer • Weekly space Sunday 2:00pm EST
𝕊𝕖𝕔𝕥𝕠�... @Sector035
31K Followers 710 Following Not very active here anymore. Moved to a more clear sky...
FatMan @FatManTerra
131K Followers 189 Following FatMan from Terra Research Forum Cryptocurrency & finance researcher Whistleblower of the Terra fraud. Assisted government agencies in taking down Do Kwon.
HackTricks @hacktricks_live
15K Followers 204 Following HackTricks offers free quality hacking resources in 17 languages: https://t.co/O1TVFk5r9q, https://t.co/0RhWRaaPIm Paid certs by HT-Training: https://t.co/2C0w8pkq6v
souiten_4t_FuYingL4b @souiten
1K Followers 231 Following Biped analyser. APT | Botnet | MalDoc | CTF @NSFOCUS_Intl @fuyinglab
Crane Hassold 🏗 @CraneHassold
2K Followers 892 Following Former Threat Intelligence lead at @AbnormalSec, @PhishLabs, | Former @FBI BAU analyst | @JMU alum | #phishing #BEC #threatintel
ghostlulz @ghostlulz1337
14K Followers 1K Following Founder /CEO @StealthNetAI , Author - Bug Bounty Playbook. @DakotaState Alum , Founder/Former CTO RedSentry , Ex @bishopfox. #bugbounty #infosec #redteam
OSINT Techniques @OSINTtechniques
73K Followers 500 Following Co-Founder, Forensic OSINT [email protected]
Cyber Detective💙�... @cyb_detective
61K Followers 3K Following Every day I write about #osint (Open Source Intelligence) tools and techniques. Also little bit about forensics and cybersecurity in general. Work in @netlas_io
Gameel Ali 🤘 @MalGamy12
7K Followers 965 Following Threat Researcher @nextronsystems All opinions are my own
Ryuk @ryuk_nl
15K Followers 2K Following Driving creative destruction with AI and blockchain tech. Founder @Ryuk_Labs
Paul Melson @pmelson
14K Followers 1K Following Author/Operator of @ScumBots. Blue Team by day, Blue Team by night. Opinions, typos, and bad grammar do not represent my employer. He/Him
vitalik.eth @VitalikButerin
6.6M Followers 547 Following I choose balance. First-level balance. mi pinxe lo crino tcati https://t.co/gCQrmCby7P
Zengo Wallet @ZenGo
42K Followers 497 Following The most secure way to buy, swap, and manage crypto - for you and your business. https://t.co/zfK3gn7zeI
Suhail Kakar @SuhailKakar
69K Followers 918 Following developer relations @polymarket • mostly on crypto × ai • prev. @livepeer
urlscan.io @urlscanio
14K Followers 136 Following A sandbox for websites - Find malicious websites and phishing - https://t.co/LfPJPBGXFV - https://t.co/XjI4zJaBBp - #threatintel #cybercrime #infosec #web #phishing
Thomas Roccia 🤘 @fr0gger_
35K Followers 2K Following AI Security x Threat Intel · Threat Researcher · Creator of #Unprotect & #NOVA · Malware Warlock · Python 🧡 · Prev @Microsoft @McAfee_Labs
Gus (🤖🧠+🐍+�... @gusthema
22K Followers 1K Following AI Developer Advocate @google - Gemma 💎 - Machine Learning 🤖🧠 - Google AI ⚙️🧠 - DevRel 🥑🗣️ find me also at: https://t.co/3nrTwEKoJ0
Toby Ord @tobyordoxford
27K Followers 161 Following Senior Researcher at Oxford University. Author — The Precipice: Existential Risk and the Future of Humanity.
Dune @Dune
484K Followers 657 Following 📊 The onchain data platform for enterprises. Making crypto data accessible. Any dataset. Any use case. Any environment. Real-time wallet data API @DuneSim
NASA Webb Telescope @NASAWebb
3.5M Followers 63 Following The Official *NASA* Webb X account. The world's most powerful space telescope. Launched: Dec. 25, 2021. First images revealed: July 12, 2022.
Katie Nickels @likethecoins
55K Followers 3K Following Director of Intel at @redcanary. SANS Certified Instructor for FOR578: CTI. Senior Fellow at @CyberStatecraft. She/her. Mastodon: @[email protected]
Kathrin Federer k... @kathrinfederer
8K Followers 368 Following Artist & Creative Director Shaping images, not prompting them. Adobe Community Expert Partnering w/ Skylum & ColorPro Workshops, Assets & Commissions
Hugging Face @huggingface
705K Followers 222 Following The AI community building the future. https://t.co/TpiXQMQ9rZ
Prof. Feynman @ProfFeynman
1.4M Followers 0 Following A universe of atoms, an atom in the universe. Tribute to the great explainer. Tweets about Science and Wisdom. Portrait by L.V Patten.
Nova Fae @Novafaeee
34K Followers 5K Following Irish 🍀 Catholic 🕊️ Gamer 🎮 ⚡️Chargers⚡️SOL 💸 OG Sports Card Investor 🏈 5ft Tall but full of love 💗 🦋
HACKTORIA || OSINT CT... @hacktoria
16K Followers 74 Following Monthly Story Driven OSINT Capture the Flag Events 📡 #osint
Cred @CryptoCred
779K Followers 1K Following Always trader, often shitposter, sometimes educator. @breakoutprop
codemarch @codemarch
60K Followers 263 Following Tech, reimagined with AI 🤖 Daily AI tools, workflows & use-cases 🎯 Turn AI into income 💰
Guillaume CELOSIA @gcelosia_
3K Followers 4K Following #Industrial #Cybersecurity (#OT/#IoT). Create, share, grow, success !
Alexey Grigorev @Al_Grigor
29K Followers 433 Following Founder @DataTalksClub | Teaching engineers to build production AI systems | AI agents, LLMs, ML, data engineering | 100,000+ learners
candid wueest 🇨�... @mylaocoon
2K Followers 406 Following Im a security geek. My tweets are my own. Orga of #Area41 #DC4131 - I break stuff, I have fun, I have fun breaking stuff ;
Web Security Academy @WebSecAcademy
141K Followers 36 Following Free web security training from @PortSwigger
B E N 📸 G L A S S ... @benglasscophoto
3K Followers 941 Following Full time travel photographer / 8 months solo by motorcycle thru Asia / NFT: https://t.co/AxhqKzSMgu























