Viewing profile — mariocandela
mariocandela
HN member- Joined
- Tue, Jul 26, 2022, 10:53 AM UTC
- HN karma
- 6
- Public activity
- 80 items
- HN profile
- View on Hacker News ↗
About mariocandela
Recent public activity
- story
-
story
Show HN: Azazel – Lightweight eBPF-based malware analysis sandbox using Docker
Hey HN, I got frustrated with heavy proprietary sandboxes for malware analysis, so I built my own. Azazel is a single static Go binary that attaches 19 eBPF hook points to an isola…
- story
- story
-
comment
Comment #46345973
I run a honeypot infrastructure to study attack patterns. Last week, one of my Docker honeypots caught something interesting: an automated campaign exploiting CVE-2025-29927/CVE-20…
- story
-
comment
Comment #46275800
So I run research honeypots (Beelzebub) and caught something wild this week. A threat actor is running a massive credential theft campaign against Next.js servers - I'm calling it …
- story
- story
- story
-
comment
Comment #45808961
Through our honeypot ( https://github.com/mariocandela/beelzebub ), I’ve identified a major evolution of the RondoDox botnet, first reported by FortiGuard Labs in 2024. The newly d…
- story
-
comment
Comment #45799208
I've just published my analysis on RondoDox v2, and the numbers speak for themselves: +650% exploit vectors compared to v1 documented by FortiGuard Labs. Key Findings: - 15+ exploi…
- story
- story
- story
- story
- story
- story
-
comment
Comment #45616747
Awesome! Thank you for sharing
-
comment
Comment #45614640
Yep I agree, or a "senior" malware vibe coder xD
-
comment
Comment #45614632
thank you
-
comment
Comment #45614630
thank you
- story
-
comment
Comment #45614529
Sorry the link is: https://beelzebub.ai/blog/how-advanced-malware-self-update-s...