Grilled Cheese

ExploreLog inSign up

Volexity

@volexity.com

7 Following1.2k Followers

Volexity is a cybersecurity firm founded by the pioneers of memory forensics. Volexity delivers transformative solutions & services to governments & organizations worldwide, increasing enterprise visibility & facilitating rapid intrusion detection.

PostsRepliesMedia
@volexity.comOct 9, 2026, 4:09 PM

See the full #BSidesNYC conference schedule here: bsidesnyc.org/schedule/

@volexity.comOct 9, 2026, 4:09 PM

Join @attrc.bsky.social, Volexity’s Director of Research, at #BSidesNYC on Oct 17 at 10AM ET (Blue Track). In “Finding Evil Fast: Windows Memory Triage with Volatility 3,” he'll share five automated checks for quickly finding malicious activity in Windows memory.


#memoryforensics #dfir #volatility

@volexity.comOct 9, 2026, 3:58 PM

See the full #BSidesNYC conference schedule here: bsidesnyc.org/schedule/

@volexity.comOct 9, 2026, 3:58 PM

Catch Volexity’s Josh Duke at #BSidesNYC on Oct 17 at 5PM ET (Other Track). Josh will present “No Safe Harbor: OceanLotus and ROGUEHARBOR,” sharing details from a recent #OceanLotus campaign that used WhatsApp to target human rights organizations and deploy the ROGUEHARBOR RAT.


#dfir #threatintel

@volexity.comOct 1, 2026, 2:54 PM

The full lineup for the Volexity Cyber Sessions in Amsterdam (Oct 29) is set! Talks cover Chrome & Windows vulnerabilities exploited by Chinese threat actors, edge device memory forensics, macOS lures & malware, and APTs targeting Europe in 2026.

Seating is limited. Register here: luma.com/0qtkw49c

@volexity.comSep 28, 2026, 5:19 PM

Steven Adair keynotes at our Volexity Cyber Sessions in Amsterdam (Oct 29) on Chinese APTs exploiting Chrome vulns fixed in Chromium but not released. Identical exploit code points to a shared supplier, plus a false-flag op pinning it on Russia.

Seating is limited! Register here: luma.com/0qtkw49c

@volexity.comSep 25, 2026, 2:49 PM

Feike Hacquebord will be speaking at our Volexity Cyber Sessions in Amsterdam (Oct 29) about Russia-, China- & DPRK-aligned APTs targeting Europe: IoT proxy networks, DPRK's Russian IPs, Pawn Storm's evolution & China's AI shift.

Seating is limited! Register here: luma.com/0qtkw49c

@volexity.comSep 22, 2026, 2:21 PM

Roey Shua will be speaking at our Volexity Cyber Sessions in Amsterdam (Oct 29) about automating edge device forensics, from fingerprinting unknown routers & IoT devices to reconstructing symbols and acquiring memory on unsupported architectures.

Seating is limited! Register here: luma.com/0qtkw49c

@volexity.comSep 21, 2026, 9:13 PM

UTA0565 used multiple fake websites, posing as media orgs & an NGO, to run a more customized version of the exploit framework than previously documented instances. The payload delivered was a new custom malware family, CLEANGULP, obfuscated using control flow flattening.

@volexity.comSep 21, 2026, 9:13 PM

Following our Sept 9 blog on two Chinese APT actors chaining 0-days in Chrome (CVE-2026-85046, CVE-2026-87491) & Windows (CVE-2026-85880), Volexity found a third actor, UTA0565 using the same exploits Sept 3-4, while they were still unpatched.

@volatilityfoundation.orgSep 21, 2026, 4:17 PMReposted by @volexity.com

Volatility New Release: #volatility3 v2.28.2 - visit github.com/volatilityfo... for details and downloads.

#memoryforensics #dfir

@volexity.comSep 17, 2026, 6:52 PM

Christopher Lopez will be speaking at our Volexity Cyber Sessions in Amsterdam (Oct 29) about the current macOS threat landscape: lures, targets, recently discovered malware, plus the artifacts that drive forensic analysis & durable detections.

Seating is limited! Register here: luma.com/0qtkw49c

@volexity.comSep 10, 2026, 5:28 PM

Contact us to schedule a Volexity Volcano demo! www.volexity.com/contact/demo...

@volexity.comSep 10, 2026, 5:28 PM

Volexity Volcano v26.09.01 also adds MFT parsing from disk, file magic detection, importing from GCP buckets, and complete AWS GovCloud support.

@volexity.comSep 10, 2026, 5:28 PM

Volexity Volcano v26.09.01 expands what you can analyze, and where! This release adds a powerful MCP server, threat intel integration, memory support for Linux 7.x kernels and Windows 26H1 on Snapdragon X2 ARM64.

The stylized blue, orange and black Volexity Volcano logo is centered, with the Volcano wordmark below it. The words “by Volexity” appear below the Volcano logo. There is a dark blue banner in the upper left with white letters that read “New Release”. The background is a faded gray abstract illustration evoking smoke.
@volexity.comSep 9, 2026, 5:43 PM

Read the full analysis of the exploit chain and post-exploitation tradecraft here: www.volexity.com/blog/2026/09...

@volexity.comSep 9, 2026, 5:43 PM

Volexity observed threat actors it tracks as UTA0560 and JungleBamboo using variations of the same exploits to deliver different malware implants. These implants ranged from a JScript backdoor (GRIMWEDGE) to a fake Google Gemini Chrome extension (LONGTALE).

@volexity.comSep 9, 2026, 5:43 PM

Earlier this month, Volexity detected multiple Chinese threat actors launching attacks against its customers using chained 0-day exploits in Google Chrome (CVE-2026-85046 & CVE-2026-87491) and Microsoft Windows (CVE-2026-85880).
 
#DFIR #threatintel

@volexity.comNov 22, 2024, 2:58 PM

@volexity.com’s latest blog post describes in detail how a Russian APT used a new attack technique, the “Nearest Neighbor Attack”, to leverage Wi-Fi networks in close proximity to the intended target while the attacker was halfway around the world. 
 
Read more here: www.volexity.com/blog/2024/11...

volexity.comThe Nearest Neighbor Attack: How A Russian APT Weaponized Nearby Wi-Fi Networks for Covert AccessIn early February 2022, notably just ahead of the Russian invasion of Ukraine, Volexity made a discovery that led to one of the most fascinating and complex incident investigations Volexity had ever w...
1
Terms of UsePrivacy PolicyCommunity StandardsHelpGet the app

Grilled Cheese is a product of Village Compute

Version devBuilt at: 2026-10-11 02:37:10 EDT