FOSDEM was surprisingly good, shout out to @smaury.bsky.social , @ostifofficial.bsky.social and the others I have no handle of!
01.02.2026 18:42 β π 1 π 0 π¬ 1 π 0@marver.bsky.social
FOSDEM was surprisingly good, shout out to @smaury.bsky.social , @ostifofficial.bsky.social and the others I have no handle of!
01.02.2026 18:42 β π 1 π 0 π¬ 1 π 0Is this thing here still alive? Logged in for the first time after some months.
13.12.2025 18:40 β π 1 π 0 π¬ 0 π 00-prompt RCE
11.06.2025 05:55 β π 0 π 0 π¬ 0 π 0Not only is each stack like AWS we will encounter incredibly complex on its own, we will have to move laterally between all of them. This will be an impossible task without proper automation and even non-bs AI support (see the Nemesis MCP servers I wrote about last month)..this week will be fun!
11.05.2025 14:02 β π 0 π 0 π¬ 0 π 0Weβre going to run a live exercise this week against a defensive team from a bigger zero trust platform. This involves nearly anything you can find in modern cloud tech stacks, from Octa to GitHub to AWSβ¦.Itβs fun packing βgearβ, and I mean software and tools here to run proper escalations.
11.05.2025 13:59 β π 0 π 0 π¬ 0 π 0ChatGPT was mostly irrelevant for security except for improving phishing pretexts - AI agents on the other hand are very much relevant!
20.04.2025 20:22 β π 0 π 0 π¬ 0 π 0Two thoughts on the Signal Gate:
1. They apparently did not verify Signal contactsβ safety numbers, allowing easy MiTM
2. Itβs easy to inject a number into a phoneβs contact list or change it
Combine both and you got a way to subvert secure communications without having a 0day for Signal!
Letβs break some LLMs today!
22.03.2025 10:07 β π 0 π 0 π¬ 0 π 0"Your malware is fake!" That's correct. Here's a small tool to generate payloads out of YARA rules: github.com/persistent-s...
We use it as part of a testsuite for detection & monitoring.
Already leaving nullcon Goa, Iβll be back for sure! Thank you everyone for the good talks and especially our trainees for working hard on their AppSec skills.
01.03.2025 23:48 β π 1 π 0 π¬ 0 π 0www.youtube.com/watch?v=5wIO...
If you are interested in music production and also nerding in old school software scenes, this is an absolute speedrun of sound generation software youβve never even heard of!
Yup
13.12.2024 15:52 β π 2485 π 496 π¬ 23 π 30100% the same for me! I wouldnβt want to work with my younger version. Fixing security vulnerabilities is much easier if youβre ignorant about justified complexities.
15.12.2024 00:53 β π 3 π 0 π¬ 0 π 0A version of Missile Command for the Commodore 64 where the bottom of your screen is the game state in memory and missiles cause memory corruption: csdb.dk/release/?id=....
In the video below, a missile broke my controls and caused my cursor to get stuck moving down and to the left.
So this thing here is actually taking off, any tips who to follow for serious Infosec news?
23.11.2024 09:39 β π 2 π 0 π¬ 1 π 0Thatβs straight forward outside the box thinking about lateral movement!
23.11.2024 09:37 β π 2 π 0 π¬ 0 π 0Awesome research ! - The Nearest Neighbor Attack: How A Russian #APT Weaponized Nearby Wi-Fi Networks for Covert Access - @volexity.com - www.volexity.com/blog/2024/11... #cyberespionage
23.11.2024 08:32 β π 14 π 5 π¬ 2 π 0