<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Home on Saumya Agarwal — Threat Intel</title><link>https://theminddump.com/</link><description>Recent content in Home on Saumya Agarwal — Threat Intel</description><generator>Hugo</generator><language>en-us</language><lastBuildDate>Sun, 23 Aug 2026 00:00:00 +0000</lastBuildDate><atom:link href="https://theminddump.com/index.xml" rel="self" type="application/rss+xml"/><item><title>Persona, Infrastructure &amp; Access: An Operational Case Study Attributed to "APT35"</title><link>https://theminddump.com/posts/apt-35/</link><pubDate>Sun, 23 Aug 2026 00:00:00 +0000</pubDate><guid>https://theminddump.com/posts/apt-35/</guid><description>An operator&amp;rsquo;s own Farsi-language timesheet — 20 daily reports over two months — reconstructs how an APT35-attributed operation was actually built, day by day: persona infrastructure, KYC and payment evasion, content operations, and reconnaissance against a named university target.</description></item><item><title>About</title><link>https://theminddump.com/about/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://theminddump.com/about/</guid><description>&lt;p&gt;I&amp;rsquo;m a threat intelligence analyst focused on &lt;strong&gt;attack-surface discovery,
exposure hunting, and infrastructure pivoting&lt;/strong&gt;. I spend my time mapping what&amp;rsquo;s
reachable on the public internet and writing up the techniques that make that
tractable.&lt;/p&gt;</description></item></channel></rss>