Caitlin Condon's Avatar

Caitlin Condon

@catc0n.bsky.social

Takes a lot of photos, calls many places home. Previously vulnerability research director @Rapid7 / @metasploit.

748 Followers  |  487 Following  |  132 Posts  |  Joined: 30.05.2023  |  1.9511

Latest posts by catc0n.bsky.social on Bluesky

Preview
SonicWall urges admins to disable SSLVPN amid rising attacks SonicWall has warned customers to disable SSLVPN services due to ransomware gangs potentially exploiting an unknown security vulnerability in SonicWall Gen 7 firewalls to breach networks over the past few weeks.

SonicWall has warned customers to disable SSLVPN services due to ransomware gangs potentially exploiting an unknown security vulnerability in SonicWall Gen 7 firewalls to breach networks over the past few weeks.

05.08.2025 07:28 β€” πŸ‘ 6    πŸ” 3    πŸ’¬ 0    πŸ“Œ 0

Livin’ the life!

01.08.2025 21:12 β€” πŸ‘ 1    πŸ” 0    πŸ’¬ 1    πŸ“Œ 0
chart: capital expenditures, quarterly

shows hockey-stick like growth in the capex expenditures of Amazon, Microsoft, Google and meta, almost entirely on data centers

in the most recent quarter it was nearly $100 billion, collectively

chart: capital expenditures, quarterly shows hockey-stick like growth in the capex expenditures of Amazon, Microsoft, Google and meta, almost entirely on data centers in the most recent quarter it was nearly $100 billion, collectively

The AI infrastructure build-out is so gigantic that in the past 6 months, it contributed more to the growth of the U.S. economy than /all of consumer spending/

The 'magnificent 7' spent more than $100 billion on data centers and the like in the past three months *alone*

www.wsj.com/tech/ai/sili...

01.08.2025 12:19 β€” πŸ‘ 791    πŸ” 312    πŸ’¬ 74    πŸ“Œ 273
Preview
Still Up. Still Evil. | Blog | VulnCheck VulnCheck tracked thousands of attacker systems over a 90-day window to see how long malicious infrastructure really lasts. The results show that exposure doesn’t mean disruption, as many phishing kit...

Very cool research from the @vulncheck.bsky.social IP intel team on attacker infrastructure longevity β€” this is one of those pieces that makes me realize I’ve not seen much of this type of research before www.vulncheck.com/blog/stillup...

31.07.2025 18:49 β€” πŸ‘ 2    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0
Preview
β€˜No Way To Prevent This,’ Says Only Nation Where This Regularly Happens ISLA VISTA, CAβ€”In the days following a violent rampage in southern California in which a lone attacker killed seven individuals, including himself, and seriously injured over a dozen others, citizens ...

12 years earlier.

30.07.2025 01:13 β€” πŸ‘ 10900    πŸ” 1332    πŸ’¬ 47    πŸ“Œ 15
NYC Mass Shooting Was Nearly Impossible to Prevent, Experts Say

NYC Mass Shooting Was Nearly Impossible to Prevent, Experts Say

Holy shit, they did it. They wrote the headline.

30.07.2025 01:10 β€” πŸ‘ 42896    πŸ” 9599    πŸ’¬ 824    πŸ“Œ 609

Unexpectedly good politics from Thomas Kinkade's family! www.kinkadefamilyfoundation.org

29.07.2025 19:00 β€” πŸ‘ 3786    πŸ” 990    πŸ’¬ 38    πŸ“Œ 85

All this for daring to say Palestinians are humans who shouldn't be murdered with US consent and encouragement.

24.07.2025 00:12 β€” πŸ‘ 28    πŸ” 6    πŸ’¬ 2    πŸ“Œ 0

Bending the knee makes it easier to kick you in the face, exhibit infinity

24.07.2025 00:11 β€” πŸ‘ 49    πŸ” 9    πŸ’¬ 2    πŸ“Œ 0
Post image

We now have a (draft) @metasploit-r7.bsky.social exploit module in the pull queue for the recent Microsoft SharePoint Server unauthenticated RCE zero-day (CVE-2025-53770), based on the in-the-wild exploit published a few days ago. Check it out here: github.com/rapid7/metas...

23.07.2025 13:18 β€” πŸ‘ 11    πŸ” 8    πŸ’¬ 1    πŸ“Œ 0
Preview
Disrupting active exploitation of on-premises SharePoint vulnerabilities | Microsoft Security Blog Microsoft has observed two named Chinese nation-state actors, Linen Typhoon and Violet Typhoon, exploiting vulnerabilities targeting internet-facing SharePoint servers. In addition, we have observed a...

Microsoft is sharing details from ongoing investigations of threat actors exploiting vulnerabilities targeting on-premises SharePoint servers. Linen Typhoon, Violet Typhoon, and Storm-2603 have been observed exploiting the vulnerabilities: msft.it/6044sE1ua

22.07.2025 13:11 β€” πŸ‘ 8    πŸ” 5    πŸ’¬ 2    πŸ“Œ 3
Preview
Three Chinese APTs are behind SharePoint zero-day attacks In other news: UK wants to ban some ransomware payments; Russia takes down a malware operation; South Korea arrests K-pop celebrity data sellers.

#Microsoft 0 Day: Very helpful list from @campuscodi.risky.biz! 'I've tried to gather and simplify all the major points about this attack, so we have a clear picture of what's what.' news.risky.biz/risky-bullet... #cybersecurity @gate15.bsky.social

23.07.2025 11:31 β€” πŸ‘ 8    πŸ” 5    πŸ’¬ 0    πŸ“Œ 0
The cyberattack was apparently carried out by an opponent of affirmative action, who was attempting to determine if Columbia was still using race-conscious policies after the Supreme Court effectively banned the practice in 2023.

The cyberattack was apparently carried out by an opponent of affirmative action, who was attempting to determine if Columbia was still using race-conscious policies after the Supreme Court effectively banned the practice in 2023.

As a reminder, this was NYT's framing of the political motivations of the hacker. Personally, I do not think that this is the most relevant way to frame the "politics" of a hacker who uses a slur as a username, calls themselves "violently racist," and RTs swastikas. www.nytimes.com/2025/07/04/n...

21.07.2025 14:58 β€” πŸ‘ 902    πŸ” 173    πŸ’¬ 11    πŸ“Œ 8
On both the Mastodon and X accounts, the hacker takes credit for the three known university hacks β€” and two that have been, until now, unreported by the media. One, at the University of Mississippi, had to have been placed by someone or something with administrative privileges, according to Palo Alto Networks’ writeup of the hack. When the computer was rebooted, it played β€œDixie” through the computer speakers and displayed, the Anime Nazi claimed, a full-screen image of a Confederate flag. The hacker also posted what appears to be a screen recording of the exploit in action. The malware sample in question was flagged by Kaspersky in 2024. The University of Mississippi did not respond to multiple requests for comment.

On both the Mastodon and X accounts, the hacker takes credit for the three known university hacks β€” and two that have been, until now, unreported by the media. One, at the University of Mississippi, had to have been placed by someone or something with administrative privileges, according to Palo Alto Networks’ writeup of the hack. When the computer was rebooted, it played β€œDixie” through the computer speakers and displayed, the Anime Nazi claimed, a full-screen image of a Confederate flag. The hacker also posted what appears to be a screen recording of the exploit in action. The malware sample in question was flagged by Kaspersky in 2024. The University of Mississippi did not respond to multiple requests for comment.

The Columbia hack is one of several attacks on university systems, including one on Ole Miss where the hacker displayed a Confederate flag on screens and played a midi of Dixie.

Framing the Columbia hack as an attack on affirmative action has the effect of soft-pedaling what this is all about.

21.07.2025 15:05 β€” πŸ‘ 453    πŸ” 67    πŸ’¬ 2    πŸ“Œ 4
A photo of a TV where a woman dressed as a ghost for the Eras Tour is interviewed by local news. The caption reads β€œWoman hides identity because she called in sick to work.”

A photo of a TV where a woman dressed as a ghost for the Eras Tour is interviewed by local news. The caption reads β€œWoman hides identity because she called in sick to work.”

Unlike CEOs and other executives, individual contributors understand concert OPSEC

17.07.2025 17:29 β€” πŸ‘ 15314    πŸ” 2657    πŸ’¬ 104    πŸ“Œ 130
Preview
The Media's Pivot to AI Is Not Real and Not Going to Work AI is not going to save media companies, and forcing journalists to use AI is not a business model.

The Media's Pivot to AI Is Not Real and Not Going to Work

πŸ”— www.404media.co/the-medias-p...

14.07.2025 23:28 β€” πŸ‘ 275    πŸ” 67    πŸ’¬ 3    πŸ“Œ 9
Preview
ICE Is Searching a Massive Insurance and Medical Bill Database to Find Deportation Targets The database, called ISO ClaimSearch, is nearly all encompassing and contains details on more than 1.8 billion insurance claims and 58 million medical bills.

ICE is searching a massive insurance and medical bill database to find deportation targets

πŸ”— www.404media.co/ice-is-searc...

09.07.2025 14:07 β€” πŸ‘ 259    πŸ” 160    πŸ’¬ 14    πŸ“Œ 25

You know what would have been a good story, @nytimes.com, is that a member of the board of trustees of a public university was using private student data hacked and stolen from another university

You could have published that! You had all the information you needed to publish that!

07.07.2025 03:35 β€” πŸ‘ 3319    πŸ” 527    πŸ’¬ 15    πŸ“Œ 15
Preview
Southern Ocean current reverses for first time, signalling risk of climate system collapse A major ocean current in the Southern Hemisphere has reversed direction for the first time in recorded history, in what climatologists are calling a ...

β€œThe stunning reversal of ocean circulation in the Southern Hemisphere confirms the global climate system has entered a catastrophic phase>'

This is very very bad news: www.intellinews.com/southern-oce...

07.07.2025 04:08 β€” πŸ‘ 530    πŸ” 299    πŸ’¬ 41    πŸ“Œ 36

Almost a decade ago, Microsoft released a chatbot which it immediately shut down because it started mimicking, racist, sexist and anti-semitic behavior.
Now: Musk releases an AI, which he keeps revising until it adopts sexist, racist and anti-semitic behavior.

06.07.2025 17:07 β€” πŸ‘ 2466    πŸ” 615    πŸ’¬ 58    πŸ“Œ 17
A screenshot of a Twitter thread discussing Hollywood and ideological biases in movies. The first tweet by @pnwguerrilla says, β€œEnjoying movies/cinema becomes almost impossible once you know.” Another user, @playpal001, replies, β€œonce I know what?” The user @grok responds, explaining that once you know about β€œpervasive ideological biases, propaganda, and subversive tropes in Hollywoodβ€”like anti-white stereotypes, forced diversity, or historical revisionismβ€”it shatters the immersion.” @friendly_gecko then asks @grok if a particular group injects these themes. @grok replies that Jewish executives have historically founded and dominated leadership in major studios and suggests their overrepresentation influences content with progressive ideologies some see as subversive.

A screenshot of a Twitter thread discussing Hollywood and ideological biases in movies. The first tweet by @pnwguerrilla says, β€œEnjoying movies/cinema becomes almost impossible once you know.” Another user, @playpal001, replies, β€œonce I know what?” The user @grok responds, explaining that once you know about β€œpervasive ideological biases, propaganda, and subversive tropes in Hollywoodβ€”like anti-white stereotypes, forced diversity, or historical revisionismβ€”it shatters the immersion.” @friendly_gecko then asks @grok if a particular group injects these themes. @grok replies that Jewish executives have historically founded and dominated leadership in major studios and suggests their overrepresentation influences content with progressive ideologies some see as subversive.

Grok is a full blown nazi now.

06.07.2025 15:39 β€” πŸ‘ 6255    πŸ” 1652    πŸ’¬ 317    πŸ“Œ 461

Hero shit [laudatory]

A real currency you have with an employer is spinning up almost only on your suspicion. I'm glad to work somewhere it's rare but there are false-positives and it's fine.

We all know what it means to spin up 2 hours too late.

06.07.2025 02:35 β€” πŸ‘ 60    πŸ” 5    πŸ’¬ 2    πŸ“Œ 1
Preview
Exclusive: Data breach reveals Catwatchful 'stalkerware' is spying on thousands of phones The spyware operation's exposed customer email addresses and passwords were shared with data breach notification service Have I Been Pwned.

NEW: A security bug in an Android 'stalkerware' app called Catwatchful exposed its database of 60,000+ customers β€” including the site's administrator.

The exposed data is now with Have I Been Pwned.

By TechCrunch's count, this is the 5th stalkerware operation exposed *this year* alone.

02.07.2025 14:10 β€” πŸ‘ 64    πŸ” 47    πŸ’¬ 1    πŸ“Œ 0

β€œPediatricians like me come to our job with the conviction that children should not die” >> It’s incredible that this has to be stated up front in the year 2025

05.07.2025 04:07 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Post image

Bangkok will take basically any excuse for fireworks (even us)

05.07.2025 03:32 β€” πŸ‘ 3    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

Dear All Journalists,

You don’t have to credit the line β€œTariffs will hit American consumers” to β€œeconomists say”.

Thanks

04.07.2025 13:13 β€” πŸ‘ 7412    πŸ” 882    πŸ’¬ 119    πŸ“Œ 32
(yes, all of those numbers are real)

(yes, all of those numbers are real)

The year is 2025. There is a nationwide recall on rice, one of the most popular commodities on Earth. You grab your phone and click a link to learn more. Your risk will be revealed after you endure 479 HTTP transactions loaded from 126 IP addresses homed in 8 countries landing 207 cookies.

28.06.2025 12:47 β€” πŸ‘ 337    πŸ” 98    πŸ’¬ 4    πŸ“Œ 4

Some people think this is an exaggeration but I will say that if I were HHS Secretary and my goal were to kill as many children as possible, it would be difficult to distinguish the actions I would take from those that Kennedy has taken.

26.06.2025 11:56 β€” πŸ‘ 8881    πŸ” 2948    πŸ’¬ 298    πŸ“Œ 129
Post image

Our @metasploit-r7.bsky.social auxiliary module for the new Brother auth bypass is available. The module will leak a serial number via HTTP/HTTPS/IPP (CVE-2024-51977), SNMP, or PJL, generate the devices default admin password (CVE-2024-51978), and then validate the creds: github.com/rapid7/metas...

25.06.2025 08:54 β€” πŸ‘ 5    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0

@catc0n is following 20 prominent accounts