




This is wild. theaustralian.com.au/business/techn…
Daniel Kalinowski
595 posts

@llamaonsecurity
Founder of @tlbcpl - Security researcher, spare time bounty hounter





This is wild. theaustralian.com.au/business/techn…






New changes in the authentication cycle for O365 If you are using evilginx in production to phish for O365 stop immediately as it will send the current domain (your domain) through an API request which will most likely result in a takedown Phishers be ware


Do sprzedaży trafił kolejny numer Programisty. Serdecznie polecam artykuł @KrzaQ2 - skoro mnie przekonał do programowania w C++, to znaczy, że opisywane ficzery są super ;) Dołożyłem mała cegiełkę do naszej wspólnej z @oshogbovx serii o CVE ;) trochę o VPNach i takich tam ;)





I was looking into how organizations deploy Spring Boot Actuator in the cloud and found 1 in 4 exposed Actuators had security flaws leading to data leaks or RCE. These risks are more common than you'd think..⚠️


There are at least 75,000 exposed CUPS daemons on the Internet: shodan.io/search/report?…

The results are in!🥇 Congratulations to these 32 teams who will move on to the Group Round of the 2024 #AmbassadorWorldCup! 🙌 The next round kicks off at the end of August! Stay tuned for the latest info, and read more about the AWC here. bit.ly/3SwGbkV





Nighthawk 0.3 (@MDSecLabs), Musl heap exploit (@NCCsecurityUS), Copilot chat 💉 (@wunderwuzzi23), and more! blog.badsectorlabs.com/last-week-in-s…