Social Media

Categories

  • Florida Sisters Net $25M In IRS Tax Fraud Scheme

    It’s tax season! In that spirit, here is a case involving two sisters that filed thousands of fraudulent returns: According to a federal indictment, sisters Petra Gomez and Jakeline Lumucso submitted more than 16,000 false tax returns using the personal information of previous clients from 2012 to 2016. … To…


  • eCrimeBytes S 1 Ep 8: Cyberstalking Behind A Badge In Louisville, KY

    This episode we look at the Louisville, KY police department where an officer’s use of a law enforcement only database to stalk his female victims opens up a whole series of departmental investigations that ultimately leads to “Slushygate”.  Yeah, we said “Slushygate”.  You won’t want to miss this!  Sit back…


  • Zeek Clustering How-To Video

    I put together a Zeek clustering video over at Youtube (https://youtu.be/g-QvpYHgh1c). You can get to the slides through: https://docs.google.com/presentation/d/1HHHF4-FNhoSuy-YPMOWka3EGvfOW7CJAFeS9VHxBg_E/edit?usp=sharing The source code is available at: https://github.com/corelight/CVE-2022-24491


  • Officer Abused Law Enforcement Resources To Cyberstalk Woman

    This is an interesting story: Shortly after the women left the store with their purchases, Zarbo texted the woman’s license plate to a dispatcher’s personal cellphone, the warrant stated. Zarbo asked the dispatcher to “run it” through the Connecticut On-Line Law Enforcement Teleprocessing (COLLECT) System, the warrant stated. The system…


  • Medical Assistant Accused Of ID Theft, Stealing $31,000

    From the following news article: https://www.databreaches.net/pa-medical-assistant-charged-with-stealing-and-misusing-patient-identity-information/ An investigation by the Office of Attorney General found that Latimer used her cell phone to take photos of patient information forms and licenses while working at Axia Women’s Health in Montgomery County. She then used this information to open credit cards and spend…


  • Using Zeek Signatures To Detect CVEs

    I put a video together (https://www.youtube.com/watch?v=PcXjkUt3rZA) discussing a method I have used to detect CVEs using just Zeek signatures: https://docs.zeek.org/en/master/frameworks/signatures.html This method is useful when trying to detect a CVE exploit in a protocol that is not fully parsed by Zeek. In this video we discuss a CVE for portmapper,…


  • eCrimeBytes S 1, Ep 7: Swatting Payback In Maryland

    From 2017 to 2020 a group of attackers took control of several victims’ phones via SIM swapping to steal cryptocurrency and social media accounts.  It looked like they were going to get away with it until a swatting incident over a deal gone bad broke the case wide open.  Sit…


  • Zeek’s suspend_processing Quirk With PCAPs

    In the comments of an earlier blog: … we found an interesting situation. Even when you call “suspend_processing” in zeek_init, like this: … Zeek will still process the first packet. The “new_connection” and “connection_state_remove” events will still fire for that first packet/connection. This is what the output looks like: ……


  • Officer Arrested For Hacking Into Woman’s Social Media Accounts And Posting Her Nudes

    An officer was suspended and arrested after hacking into a woman’s social media accounts, stealing her nudes, and posting them to her contacts: https://bronx.news12.com/mount-laurel-officer-suspended-from-force-accused-of-hacking-into-womans-social-media-accounts Officer Ayron Taylor was arrested earlier this month. Prosecutors say Taylor was charged after an Evesham Township woman told police that someone hacked her accounts and…


  • Officer Live Streams Traffic Stop On TikTok

    This is a crazy story: https://arstechnica.com/tech-policy/2023/03/man-claims-cop-pulled-him-over-just-to-stream-a-traffic-stop-on-tiktok/ There were real implications of sharing the victim’s personal information via the stream: Approximately 20 minutes later, Osby found out that Castillo had livestreamed the traffic stop when Internet user “Stanley Sensational” reached out to Osby on Facebook. “Stanley” told Osby that he had…