1. X
  2. Andi Ahmeti
Log inSign up
Andi Ahmeti
118 posts
user avatar
Andi Ahmeti
@SecEagleAnd1
Threat Researcher @permisosecurity
Kosovo
Joined January 2024
181
Following
65
Followers
RepliesRepliesMediaMedia

Log in or sign up for X

See what’s happening and join the conversation

Continue with phone
or
Log in with username or email
Terms·Privacy·Cookies·Accessibility·Ads Info·© 2026 X Corp.
  • user avatar
    Andi Ahmeti
    @SecEagleAnd1
    Nov 21, 2025
    Had a blast presenting at BSides Munich and DeepSec this week, diving into our latest work at @permisosecurity and breaking down fresh TTPs from LUCR-3 (Scattered Spider). #LUCR3 #ScatteredSpider #PermisoSecurity #P0Labs #BSidesMunich #DeepSec #ThreatResearch #ThreatDetection
    132
  • user avatar
    Andi Ahmeti
    @SecEagleAnd1
    Sep 24, 2025
    Love seeing our work at @PermisoSecurity being shared with the community! I had the chance to develop Inboxfuscation an open-source tool to detect malicious inbox rules. Excited to see it getting out there!
    user avatar
    Cyber Security News
    @The_Cyber_News
    Sep 23, 2025
    🚨 Inboxfuscation Tool That Bypasses Microsoft Exchange Inbox Rules and Evades Detection Read more: cybersecuritynews.com/inboxfuscation… Attackers increasingly exploit Microsoft Exchange inbox rules to maintain persistence and exfiltrate data within enterprise environments. Inboxfuscation
    374
  • user avatar
    Andi Ahmeti
    @SecEagleAnd1
    Sep 11, 2025
    This past Sunday at Blue Team Con, I shared my latest research and released a new open-source framework called Inboxfuscation. The research looks at how attackers can abuse Microsoft 365 inbox rules using Unicode tricks like:
    609
  • user avatar
    Andi Ahmeti
    @SecEagleAnd1
    Oct 24, 2024
    If you love obfuscation make sure to check this one out! #PermisoSecurity #AWS #Obufscation #Security
    user avatar
    Permiso Security
    @permisosecurity
    Oct 24, 2024
    Today we are excited to announce the release of SkyScalpel, an open-source tool that helps red and blue teamers understand how policies could be obfuscated by threat actors to avoid detection in an environment. @danielhbohannon and @AbianMorina will be taking the stage today to
    206
  • user avatar
    Andi Ahmeti
    @SecEagleAnd1
    Aug 16, 2024
    Great research/tool from my co-workers at @permisosecurity #BlackHat #sectorca #Obfuscation
    user avatar
    Daniel Bohannon
    @danielhbohannon
    Aug 16, 2024
    @AbianMorina & I were accepted to present our latest research & open-source tool drop from @permisosecurity at @sectorca in Toronto, Canada on 23-24 Oct! 🇨🇦 SkyScalpel: Making & Breaking {"Policy": "Obf\u0075scA**Tion"} in the Cloud Abstract: blackhat.com/sector/2024/br… #sectorca
    199