true legend!
11.07.2025 15:59 โ ๐ 1 ๐ 0 ๐ฌ 0 ๐ 0
Opossum Attack
opossum-attack.comย <-ย Opossum is a cross-protocol application layer desynchronization attack that affects TLS-based application protocols that rely on both opportunistic and implicit TLS. Among the affected protocols are HTTP, FTP, POP3, SMTP, LMTP and NNTP.
08.07.2025 16:08 โ ๐ 0 ๐ 0 ๐ฌ 0 ๐ 0
Original post on cyberplace.social
Help request. My brother has Stage 4 colorectal cancer.
His life insurance has refused to pay out on a technicality, meaning he and his loved ones cannot afford the mortgage on their home.
I've never asked for anything in return for infosec stuff, but if you have anything spare, please chuck [โฆ]
26.06.2025 11:23 โ ๐ 75 ๐ 162 ๐ฌ 26 ๐ 6
Looks like old age finally finished the job and wiped out whatever was left of his brain, not that there was much to begin with. ๐ฌ
17.06.2025 09:52 โ ๐ 0 ๐ 0 ๐ฌ 0 ๐ 0
According to my sources, Cellebrite used to purchase iPhone prototypes (aka dev-fused devices), which had lower security features, to develop its zero-days.
Corellium's founder Chris Wade also purchased them back in the day, according to sources.
www.vice.com/en/article/t...
05.06.2025 13:24 โ ๐ 6 ๐ 3 ๐ฌ 1 ๐ 0
<img/src/onerror=window.onerror=eval;ReferenceError.prototype.name=';alert\x281\x29;var\x20Uncaught//';z>
This vector adds an onerror handler with eval, rewrites all ReferenceError names, then triggers an error to execute the payload. Just added it to the XSS cheat sheet. Credit to @0x999.net , inspired by @terjanq.me
portswigger.net/web-security...
03.06.2025 13:07 โ ๐ 5 ๐ 3 ๐ฌ 0 ๐ 0
Finding SSRFs in Azure DevOps - Part 2 binsec.no/posts/2025/0...
30.05.2025 13:00 โ ๐ 0 ๐ 0 ๐ฌ 0 ๐ 0
๐คฆโโ๏ธ๐
30.05.2025 08:12 โ ๐ 1 ๐ 0 ๐ฌ 0 ๐ 0
Threat of TCC Bypasses on macOS afine.com/threat-of-tc...
26.05.2025 12:13 โ ๐ 0 ๐ 0 ๐ฌ 0 ๐ 0
Automating MS-RPC vulnerability research www.incendium.rocks/posts/Automa...
22.05.2025 12:23 โ ๐ 0 ๐ 0 ๐ฌ 0 ๐ 0
Bypass SharePoint Restricted View to exfiltrate data using Copilot AI and moreโฆ www.pentestpartners.com/security-blo...
22.05.2025 06:35 โ ๐ 0 ๐ 0 ๐ฌ 0 ๐ 0
Of course, it's always wise to speak from ignorance, after all, globalist propaganda wouldn't work so flawlessly if people actually bothered to think. ๐คฆโโ๏ธ
19.05.2025 14:25 โ ๐ 1 ๐ 0 ๐ฌ 0 ๐ 0
ย From SAST to CVE-2025-46337 xaliom.blogspot.com/2025/05/from...
05.05.2025 15:42 โ ๐ 1 ๐ 0 ๐ฌ 0 ๐ 0
#Skype shuts down TODAY.
Here's the link to download your contacts & chats. secure.skype.com/en/data-export
05.05.2025 10:23 โ ๐ 34 ๐ 11 ๐ฌ 4 ๐ 2
Agent of Chaos: Hijacking NodeJSโs Jenkins Agents
www.praetorian.com/blog/agent-o...
01.05.2025 07:43 โ ๐ 0 ๐ 0 ๐ฌ 0 ๐ 0
Think youโve seen every OS command injection trick?
Think again, read our latest blog post!
Link in the comments๐
30.04.2025 12:44 โ ๐ 27 ๐ 9 ๐ฌ 1 ๐ 1
What about this? It was mentioned a month ago ๐ณ www.euronews.com/my-europe/20...
28.04.2025 14:22 โ ๐ 0 ๐ 0 ๐ฌ 0 ๐ 0
28.04.2025 11:52 โ ๐ 0 ๐ 0 ๐ฌ 0 ๐ 0
25.04.2025 06:53 โ ๐ 0 ๐ 0 ๐ฌ 0 ๐ 0
Research finds 12,000 โLiveโ API Keys and Passwords in DeepSeek's Training Data trufflesecurity.com/blog/researc...
23.04.2025 08:03 โ ๐ 0 ๐ 0 ๐ฌ 0 ๐ 0
check this: cybermonit.com
14.04.2025 14:02 โ ๐ 0 ๐ 0 ๐ฌ 0 ๐ 0
Tracking Adversaries: EvilCorp, the RansomHub affiliate
CTI, threat intelligence, OSINT, malware, APT, threat hunting, threat analysis, CTF, cybersecurity, security
New Blog! Tracking Adversaries: EvilCorp, the RansomHub affiliate
blog.bushidotoken.net/2025/04/trac...
02.04.2025 16:08 โ ๐ 12 ๐ 7 ๐ฌ 0 ๐ 0
Thwarting Online Autocrats, senior security researcher
@Citizenlab.ca ๐จโ๐ป @insyria.bsky.social is my other account
Cyber dumpster fire marshal, tabletop adventurer, wannabe coffee and whiskey snob, Malort propagandist, new dad, & husband. Follows folks smarter than he/him.
Nextgov/FCW cybersecurity + intelligence reporter. Tips: ddimolfetta@govexec.com Signal: @ djd.99 X/Twitter: @ddimolfetta
๐จ Automated posting of Known Exploited Vulnerabilities (KEV) from CyberAlerts.io
โ 42 โ
๐ท Photography: @danielhuckmann.com
๐ Organizer: @rainsec.org || @netsec.bsky.social
๐ฆ InfoSec, Psychedelics, Psychology, & Neuroscience
Co-leader OWASP Cornucopia. If you like what we do for open source, visit our code repository https://github.com/OWASP/cornucopia and give us a star โญ
๐ ยซDifference is of the essence of humanityยป โ John Hume
#appsec #owasp #cornucopia #threatmodeling
Just a passionate dev, learning from this community daily.
โจ Sharing the entire journey - bugs, breakthroughs, and banter. ๐
Evolve or Die!
Head of Vuln Research Lab at CUJO AI
Volunteer at IoTVillage Hackersuli Meetup Hacktivity @zh4ck@infosec.exchange
NetRunner, Shaper
๐ผ: Staff Information Security Engineer at Google. ๐ ๏ธ: Rosetta Flash, BitIodine. ๐: web security, โ , โฟ, finance. Data is the most dangerous form of opinion.
freelance tech journalist, copywriter & editor โจavailable for commissionsโจ
โ๏ธ Signal: carly.44โจโ๏ธ carlypagewrites@gmail.com
โ๏ธ carlypagewrites.co.uk
Mirrors r/netsec, "a community-curated link aggregator of technical information security content." Unofficial. Operated by @tweedge.net, open source @ https://github.com/tweedge/xpost-reddit-to-fediverse
Independent investigative journalist. Covers cybercrime, security, privacy. Author of 'Spam Nation,' a NYT bestseller. Former Washington Post reporter [โฆ]
[bridged from https://infosec.exchange/@briankrebs on the fediverse by https://fed.brid.gy/ ]
Chasing digital badness. Senior Researcher at Citizen Lab, but words here are mine.
Cybersecurity weather person and award winning shitposter. Shitposting is an anagram of Top Insights. You may be surprised to know I am not representing [โฆ]
[bridged from https://cyberplace.social/@GossiTheDog on the fediverse by https://fed.brid.gy/ ]
Cybersecurity Reporter, Ars Technica: https://arstechnica.com/author/dan-goodin/ Hungry for tips. Text me on Signal: DanArs.82. "The world isnโt run by weapons anymore, or energy, or money. Itโs run by little 1s and 0s, little bits of data."
Award-winning #cybersecurity and #AI keynote speaker, writer, podcaster | Host of @theaifix.show and @smashingsecurity.com podcasts
โค๏ธ #DoctorWho, #Beatles, #Chess
๐ https://grahamcluley.com
๐๏ธ https://theaifix.show
๐๏ธ https://www.smashingsecurity.com
Birb stalker. Cat tree. Cyber Threat Researcher. Recovering cyber and natsec journalist. Navy vet. Meme war survivor. Creator of CyberThreaterator and Sean's Vuln Emotes (SVE) #Baltimore
@thepacketrat everywhere since 1994. https://falling-anvil.com
๐ณ founder of @greynoise.io. computers, networks, technology enthusiast. big goober.
Bug bounty & VDP platform trusted by the worldโs largest organisations! ๐
linktr.ee/hackwithintigriti