Welcome Recon Wave as an organizing partner of the Honeynet Project Workshop 2025 in Prague! Recon Wave is a powerful attack surface monitoring platform that requires no installation or internal access.
๐
June 2โ4, 2025
๐ NTK, Prague
๐ prague2025.honeynet.org
#Honeynet2025
20.05.2025 15:07 โ ๐ 2 ๐ 2 ๐ฌ 0 ๐ 0
Speaking on @bsidesprg.bsky.social with @rozumbrada.bsky.social today!
04.04.2025 06:32 โ ๐ 0 ๐ 0 ๐ฌ 0 ๐ 0
docs: WARNING do not pass untrusted data to this function!!!
devs: hm yeah my users are pretty trustworthy I think
19.02.2025 15:38 โ ๐ 408 ๐ 29 ๐ฌ 11 ๐ 1
As we're wrapping up our Cyber Security course at fel.cvut.cz we're sorting through the feedback and there's so much love coming from our students!
Looking forward to the next year!
03.02.2025 21:55 โ ๐ 0 ๐ 0 ๐ฌ 0 ๐ 0
My latest work has been published:
"CTU Hornet 65 Niner: A network dataset of geographically distributed low-interaction honeypots"
The dataset has a unique value for studying the nature of Internet attacks over time and their changes and characteristics.
www.sciencedirect.com/science/arti...
13.01.2025 10:26 โ ๐ 12 ๐ 8 ๐ฌ 0 ๐ 0
Quiz time: can you think of a single legit reason to put RSA private keys to DNS TXT records? Sounds like a nonsense but people really do that
We did a small research on this topic some time ago
09.12.2024 11:52 โ ๐ 1 ๐ 1 ๐ฌ 0 ๐ 0
Avocados should come with little pop-up timers to signal before they become overripe.
03.12.2024 08:32 โ ๐ 1 ๐ 0 ๐ฌ 0 ๐ 0
a bit of shameless self-plug, but we run some nice recon tools like search.reconwave.com that you might like
28.11.2024 09:25 โ ๐ 0 ๐ 0 ๐ฌ 0 ๐ 0
Hehe, it really helps when you're getting bombarded with things all the time. I know use it mainly to figure out if this needs my attention or not.
21.11.2024 08:24 โ ๐ 0 ๐ 0 ๐ฌ 0 ๐ 0
it's awesome! it just highlights how inclusive they want to be
20.11.2024 17:08 โ ๐ 1 ๐ 0 ๐ฌ 0 ๐ 0
Hello World ๐ฆ!
19.11.2024 10:35 โ ๐ 4 ๐ 1 ๐ฌ 2 ๐ 0
hello @reconwave.com!
19.11.2024 10:40 โ ๐ 0 ๐ 0 ๐ฌ 0 ๐ 0
I think it's because it is still small social network. And it's full of open minded enthusiasts.
Honestly, it feel so refreshing here.
19.11.2024 10:29 โ ๐ 3 ๐ 0 ๐ฌ 0 ๐ 0
Having Wordpress in your attack surface is problem by definition...
Best is to sandbox it as much as possible!
19.11.2024 10:00 โ ๐ 0 ๐ 0 ๐ฌ 0 ๐ 0
Out of curiosity, how do you keep track of what is exposed to the internet and what is not?
19.11.2024 09:54 โ ๐ 0 ๐ 0 ๐ฌ 1 ๐ 0
> complexity breeds vulnerability
I'd sign that.
Companies have crazy big attack surfaces these days... And more often than not, they don't even know what they expose.
19.11.2024 09:52 โ ๐ 0 ๐ 0 ๐ฌ 0 ๐ 0
more importantly, there will be so many bots as well...
it's beautiful when it's smaller!
19.11.2024 09:51 โ ๐ 0 ๐ 0 ๐ฌ 0 ๐ 0
Wow, this is awesome!
There're so many different and cool usecases for TXT records!
19.11.2024 08:41 โ ๐ 2 ๐ 0 ๐ฌ 0 ๐ 0
Totally random question - what is your opinion on TW? I started recently using it but I'm not 100% convinced.
I like that it really makes me more productive. But reading the code after that... that's pretty annoying at least.
18.11.2024 23:02 โ ๐ 0 ๐ 0 ๐ฌ 1 ๐ 0
I have a dream where I buy dumb TV and just plug my Raspberry for the "smart" component.
Sadly, this is not really possible anymore.
18.11.2024 22:58 โ ๐ 1 ๐ 0 ๐ฌ 0 ๐ 0
... and if it is not, it's BGP
18.11.2024 18:39 โ ๐ 1 ๐ 0 ๐ฌ 0 ๐ 0
When not DNS, it's BGP!
18.11.2024 16:37 โ ๐ 0 ๐ 0 ๐ฌ 0 ๐ 0
6/8 โ๏ธ So imagine this - all private and sensitive user data, including DMs stored on servers being moved by homeless people without any IDs and locked on truck with basic locks from Home Depot tracked by AirTags.
EU would've had mental breakdown.
13.11.2024 20:04 โ ๐ 0 ๐ 0 ๐ฌ 0 ๐ 0
5/8 ๐ Musk, his team and few homeless guys loaded servers onto trucks without protective crates, using basic straps bought from Home Depot. Guys moving the servers were paid $1 / server
At one point, they even used Apple AirTags to โtrackโ the servers - the DIY chaos.
13.11.2024 20:04 โ ๐ 0 ๐ 0 ๐ฌ 1 ๐ 0
4/8 ๐ช Declaring, โThese things do not look that hard to move,โ Musk attempted to open floor panels with a pocket knife and crawled under the server floor to disconnect the equipment.
Yup, he literally cut power from servers with "fuck it, I'll do it myself".
13.11.2024 20:04 โ ๐ 0 ๐ 0 ๐ฌ 1 ๐ 0
AI researcher at XBOW, Associate Professor @ NYU Tandon (on leave). Security, RE, ML. PGP http://keybase.io/moyix/
Founder of the MESS Lab: http://messlab.moyix.net
Hacking/crime/privacy journalist. Author of DARK WIRE, buy here: https://www.hachettebookgroup.com/titles/joseph-cox/dark-wire/9781541702691/#preorder Co-founder of 404 Media. Signal: joseph.404 Email: joseph@404media.co
Real-time historian of the late cyber capitalist era @TechCrunch. Posts about infosec, surveillance by day. ๐, โฝ๏ธ, ๐ธ, ๐ฎ by night.
โ๏ธ Signal: +1 917 257 1382
Past lives: VICE Motherboard, Mashable, WIRED.
Mandiant Intelligence at Google. CYBERWARCON and SLEUTHCON founder. Johns Hopkins professor. Army vet.
Journalist - cyber/natn'l security. Speaker. Georgetown adjunct prof. Author - COUNTDOWN TO ZERO DAY: Stuxnet and the Launch of the World's First Digital Weapon
Signal: KimZ.42
https://www.zetter-zeroday.com
Hacker, father, tinkerer and woodworker, citizen of planet earth. Ex 2K Czech, Ex Avast, Sentinel. Round peg in a square hole. Never too old.
Co-Founder of Vigilainte โ
OSCP | OSWP | CEH |
5 SaaS Projects ๐
Product Lead in B2B & B2C Markets
Ethical Hacker ๐ ๏ธ | Project Builder ๐ก
Current: vigilainte.com - serkanbodur.com
Freelance Science & Tech journalist.
Bylines: BBC World Service, CSO Online, Ars Technica, Motherboard, ZDNet & more. KSJ at MIT Fellow 2020
#cybersecurity #science #retrotech
Suricata IDS. An Open Source intrusion detection, intrusion prevention, and network security monitoring engine developed by the OISF (https://oisf.net).
Development by OISF team and our awesome community.
https://suricata.io
malware detection and analysis, hunting and gathering, threat research
Recovering sysadmin that now chases adversaries instead of uptime. Sr Malware Analyst @redcanary
All things networking & security.
Sharer of knowledge, purveyor of puns, curator of amusement. Wielder of snark & sparkly bats.
@amyengineer@infosec.exchange
@amyengineer on the Twitters
security engineer @OpenAI
IT / OT bod interested in protocols, frequencies and IOT/ICS security
Dad. Husband. Threat researcher at RSAC. He/Him. Maintainer of the Virus History Project.
#infosec #cats #nature #science #art #antifascist #drawing #istandwithukraine
Principal Threat Researcher at Trend Micro
Security information portal, testing and certification body.
Organisers of the annual Virus Bulletin conference.