Kyle Cucci
@d4rksystem
Threat Research @proofpoint | Author of "Evasive Malware" @nostarch | Talks about cybercrime, threat intel, and malware stuff.
I’m excited to announce that my book, “Evasive Malware”, will soon be available for pre-order! The past 2.5 years of late nights, eye strain, and carpal tunnel is almost worth it 😎 Also excited to announce that my technical reviewer is the amazing @fr0gger_ ! Stay tuned! 👇

Tap in to the stream this week for some YARA fun, highlighting some crazy rules, how I think about learning yara (or anything) as a mid-career professional, and more!
🔥 Ready for this week's live stream with Greg Lesnewich... youtube.com/live/JIxbM82hW…
I've been poking at #Golang malware a bit lately and wrote up some tips/tricks that I use when analyzing Golang. @jstrosch and I just talked about this on his live stream too. Check it out here -> (The livestream replay is linked in the blog post) 🤓 securityliterate.com/go-big-or-go-h…
Congratulations to @RussianPanda9xx & @polygonben for having talks accepted at #defcon33! Follow these folks and if you're headed to @defcon put it on you to-do list to be in attendance!
If you'll be at @defcon , don't forget to register for our workshop "Defeating Malware Evasion: Techniques and Countermeasures"! We'll be going in depth into malware evasion, and.. umm... techniques and countermeasures against these 😎
Register tomorrow (July 15) at noon PDT for #defcon workshops! Here's the link if you want to come to the evasive malware workshop taught by @d4rksystem and me: Defeating Malware Evasion: Techniques and Countermeasures events.humanitix.com/dc33ws-n258-09p
Register tomorrow (July 15) at noon PDT for #defcon workshops! Here's the link if you want to come to the evasive malware workshop taught by @d4rksystem and me: Defeating Malware Evasion: Techniques and Countermeasures events.humanitix.com/dc33ws-n258-09p
Unveiling Go Malware: Analysis Challenges & Expert Techniques with Kyle Cucci x.com/i/broadcasts/1…
If you want to sign up, you've got to be quick! Workshops are free (if you have a DEF CON ticket) and you can register at precisely noon PDT on July 15: reddit.com/r/Defcon/comme…
Ever since I was baby I've wanted speak or give a workshop at Defcon.. This year I get to finally make that dream happen. It's on, @rpargman 😎
Ever since I was baby I've wanted speak or give a workshop at Defcon.. This year I get to finally make that dream happen. It's on, @rpargman 😎

Hey malware analysts, reversers, and incident responders! My book Evasive Malware (@nostarch) is on sale for World UFO Day! Check it out if you like malware and/or aliens 🤓
Some invaders like to lurk in the shadows 👽 Advanced threats like Stuxnet and ShadowHammer don't want to be found. Evasive Malware by @d4rksystem teaches you how to hunt programs that hide, resist, and self-destruct. 35% off. Today only. Code LITTLEGREYMEN. Happy UFO Day,…
Some invaders like to lurk in the shadows 👽 Advanced threats like Stuxnet and ShadowHammer don't want to be found. Evasive Malware by @d4rksystem teaches you how to hunt programs that hide, resist, and self-destruct. 35% off. Today only. Code LITTLEGREYMEN. Happy UFO Day,…
So I'm trying out Bluesky because I've heard good things. If you're on there, you can find me at: d4rksystem @ bluesky.social😎 (Elon, if you're reading this, please don't ban me).
It's like a slap in the face when the malware you are reversing injects code into VMware processes and IDA😆The TA is taunting me.


Sharing my slides from BotConf 2025: "Elephant in the Sandbox: An Analysis of DBatLoader’s Unique Evasion Techniques". If you want to learn about weird and stupid evasion techniques, then look no further. Ps. The URL title doesn't match, I know. 😄 botconf.eu/botconf-presen…
Zscaler ThreatLabz researchers recently uncovered AI-themed websites designed to spread malware like Vidar, Lumma & Legion Loader. Threat actors are using Black Hat SEO to poison search engine rankings for AI keywords to spread malware. zscaler.com/blogs/security…
Interested in learning how to build a lab VM for malware analysis and reversing? You can download a 40+ page chapter on this topic, taken from my book Evasive Malware. Get the PDF from my blog, here: 🤓 evasivemalware.com/EvasiveMalware… CC @nostarch
Well, it happened. The company I worked at for 6 years will be closing and thus I got laid off. This doesn't affect @octopwn operations in any negative ways, but I'm actively looking for a new day job. If someone has something please DM me. Retweets are appreciated.
“when AI just writes entire codebases, even the best IDE becomes irrelevant” * checks profile * ceo of some ai startup. every. time.
The Call for Sponsors for @MalwareVillage at @DEFCON 33 is now open! 📣 📄 Sponsor Package: malwarevillage.org/sponsor.pdf 📧 Email: [email protected] Please consider sponsoring us, so we can make #MalwareVillage at #DC33 a legendary event! 🤩
The Call for Sponsors for #MalwareVillage at @DEFCON 33 is now open! 📣 📄 Sponsor Package: malwarevillage.org/sponsor.pdf 📧 Email: [email protected] Sponsors are what make events like Malware Village possible! We’re looking forward to working with our sponsors! 🙏 #DC33