Si says "Noid and Jake said it was OK"
1.7K posts

Si says "Noid and Jake said it was OK"
@SecuritySense
Are you the police? No, ma'am. We're m̶u̶s̶i̶c̶i̶a̶n̶s̶ hackers. DEF CON Speaker and @defcon SOC Goon
Interwebs of Stuff Katılım Ekim 2014
39 Takip Edilen369 Takipçiler

@vxunderground @UK_Daniel_Card I lack the cultural knowledge to understand what I'm looking at but this is a top class production 🤣🤣🤣
English

@vxunderground
Can you help explain what i'm looking at here?
I just found this in a public bucket
The name is weird
ncsc-gov.co.uk.s3.amazonaws.com/chicken.html
English

@ScottMcGready @julesndcomputer Tequilla?
Español

@julesndcomputer Tempest! That was the name of it. I kept googling tempura this morning thinking I was going nuts
English

Can anyone genuinely tell me what risk this is addressing or is it a solution in search of a problem?
NCSC UK@NCSC
SilentGlass, a new product developed by experts at the NCSC, will thwart attackers from using your monitor display cable to attack your devices and exfiltrate data.🖥️ Read more here.⬇️ ncsc.gov.uk/news/world-fir…
English

@cyb3rops "the user was actively searching for and downloading game exploits, specifically Roblox “auto-farm” scripts and executors. These types of malicious downloads are notorious vectors for Lumma" Was there any targeting of this key user or just luck?
English

There is now a write-up on infostealers.com, apparently based on Hudson Rock data, that adds more detail to the #Vercel breach
Many will focus on the Lumma stealer infection and the Roblox download. Okay. That matters too.
But for me, the bigger failure came after that …
Infections happen - always. The real question is what one infected machine can reach afterwards.
If one compromised path was enough to expose access to Google Workspace, Supabase, Datadog, Authkit and Vercel-related admin resources, then the problem was not just the infostealer. The problem was too much access, weak separation, missing limits and security monitoring that failed to highlight highly suspicious activity on that account
The mantra should be: “assume compromise”
infostealers.com/article/breaki…


English

@happygeek Interestingly, Adobe Creative Cloud on Mac not showing an update for Acrobat even though it was version 26.001.21367 however opening the application and selecting Check for Updates showed that 26.001.21411 was available. Not good for Adobe as users would expect CC to show updates
English

It's always at the weekend, innit? Adobe urges admins to patch Adobe Acrobat and Reader on Windows and macOS within 72 hours as CVE-2026-34621 attacks confirmed.
forbes.com/sites/daveywin…
English

@happygeek Do you get a Chequebook and Pen with that?
English

@happygeek Step away from the keyboard and put your hands behind your back
English

@Cannibal Because you didn't do the blood sacrifice before hitting print
English

@happygeek You're only as old as the woman you feel
But my wife's older than me
Well there you go old man
English

@dakacki @CryptoGangsta @WSIIAOfficial I recommend watching this one (no personal interest, honest) youtube.com/watch?v=tYFOXe…

YouTube
English

@endingwithali Hello ali, Nice hat.
Filipino

@happygeek @Forbes Was finding the flaw the final frontier in security?
English

Nice little exclusive @forbes for a Friday. NASA vulnerability sat unfixed for three years.
forbes.com/sites/daveywin…
English

@ZephrFish And still ginger. Love you @ZephrFish
English

@happygeek Don't you mean Bigly Chair and Bigly Screen?
English

I’m at the big desk, in front of the big screen and in the BIG chair - I’ve got this, let’s get to work. #infosec

English


By me @Forbes: Noice. Couldn't happen to a scummier bunch. And, no, I'm not a fed. Arf.
#infosec
forbes.com/sites/daveywin…
English

@happygeek Yes, I suppose you're right. Story of my life!
English

By me @Forbes: Hey Google, this sucks. I'm usually pretty upbeat about your security protections, but this, did I mention, sucks. Hard.
#infosec
forbes.com/sites/daveywin…
English











