
Uh, we actually found that by collaborating with these vendors, like Slack and like Google and so on, if you just talk to them and say that someone is abusing your infrastructure as a C2 and you give them evidence, they're actually really helpful in my experience. So, they will provide a lot of data, as much as their lawyers um accept them to, I guess. But, you will get way more data that way. Plus, I don't know how the German law is, but in Swedish law it wouldn't be legal for me to log into that account, even if it's I know it's a threat actor using it. And keep in mind that they're probably not using their own account,
right? They have probably hacked someone else's account. And all of a sudden, by using those secrets, you're hacking into someone else's account.