P retweetledi
P
619 posts

P retweetledi

presse-citron.net/13-millions-de…
on parle administrations, mais beaucoup de démarches vitales sont tout aussi compliquées: téléphone, électricité, eau, gaz ...
L'ergonomie des services publics est un enjeux de citoyenneté.
Français
P retweetledi

👀 Apparently #AlibabaCloud has been hacked and their source code is now up for sale on #Raidforums. Mentions of targeting #Tencent next...


English
P retweetledi

W0w! @virustotal has now available memdumps and EVTX to download for every malware detonation they do

English
P retweetledi
P retweetledi
P retweetledi
P retweetledi
P retweetledi

#HappyXmas First at all, I would like to thank @faisalusuf for the contribution to the collaborative project to edit a list of aliases of different groups from different Threat Intelligence companies. github.com/StrangerealInt…
English
P retweetledi

Journalistes, un rappel : on n'a pas de chiffres sérieux sur les attaques informatiques (et encore moins sur leur coût !), tous ceux qui sont publiés sont du doigt mouillé approximatif fait au pifomètre sans jamais de méthodologie. lemondeinformatique.fr/actualites/lir…
#cybersécuritay
Français
P retweetledi

FBI and AFP ran a “secure messaging” app for 3 years. Now they’re rolling up hundreds criminals who talked about crimes on AN0M, aka FBI Messenger. couriermail.com.au/news/national/…
English
P retweetledi
P retweetledi

arstechnica.com/gadgets/2021/0…
Once again: do not expose administration interfaces on open networks.
Use VPN, host2host IPsec, segmentation, micro-segmentation, IP access control, filtered admin VLAN, whatever. But don't let anybody connnect to admin interfaces.
English
P retweetledi
P retweetledi
P retweetledi

I wrote a 1day exploit for chrome CVE-2020-16040. It includes a typer hardening bypass. Works for chrome version <= 87.0.4280.88
github.com/r4j0x00/exploi…

English
P retweetledi

Je l'ai citée verbalement 2 fois cette semaine, donc je re-twitte: La synthèse de @laubloch sur les enjeux stratégiques autour des semi-conducteurs est excellente et tenue à jour. Lecture recommandée.
laurentbloch.net/MySpip3/Indust…
Français
P retweetledi

Publication de l'outil DFIR-O365RC : Un module PowerShell de collecte de journaux pour l'investigation numérique sur Office 365.
github.com/anssi-fr/dfir-…
Français
P retweetledi

Tired of hunting for IOCs on social media and fighting with different logins across different platforms? I'm happy to announce the newest project of abuse.ch: ThreatFox! 🥳🎉
ThreatFox IOC sharing platform:
threatfox.abuse.ch
Blog:
abuse.ch/blog/introduci…
English
P retweetledi

Patches released by @MsftSecIntel for multiple Exchange #CVE. Immediate action is critical, as some are currently being exploited in the wild. Exploits enable unauthenticated RCE when chained. microsoft.com/security/blog/…
English















