Simo

5K posts

Simo banner
Simo

Simo

@SimoKohonen

chief honeypot @defusedcyber

☠ 💻 🔑 🛡 cyberspace Katılım Şubat 2016
302 Takip Edilen2.9K Takipçiler
Mike Manrod
Mike Manrod@CroodSolutions·
So, who is going to SlopCon - er, sorry, I meant RSAC next week?
GIF
English
7
2
18
1.3K
mRr3b00t
mRr3b00t@UK_Daniel_Card·
I was hunting for KVMs BAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHA
mRr3b00t tweet media
Filipino
10
4
146
25.6K
faulty *ptrrr
faulty *ptrrr@0x_shaq·
It’s coming soon :) 🐉 working on last touch ups before going open source. Context: I wrote a ‘build system’/fuzzing framework that lets you compile, link, analyze and profile your harness/mutators for Apache fuzzing. I’ll post more details when the time comes.
faulty *ptrrr tweet mediafaulty *ptrrr tweet media
faulty *ptrrr@0x_shaq

grok generated a teaser for you

English
2
4
43
4.5K
Simo
Simo@SimoKohonen·
@ZackKorman Nah bud we are in the same camp regarding MCP
English
0
0
1
24
Zack Korman
Zack Korman@ZackKorman·
@SimoKohonen Hahaha, glad to hear this didn’t cause a quadruple facepalm
English
1
0
2
140
Zack Korman
Zack Korman@ZackKorman·
I got mad about people defending MCP so I made this video. The first minute is just me being very mad, but then I tried to contribute something of value after that. youtube.com/watch?v=m0VyZU…
YouTube video
YouTube
Zack Korman tweet media
English
24
40
235
17K
Simo
Simo@SimoKohonen·
@ZackKorman fortunately we are living in the golden age of AI
Simo tweet media
English
0
1
17
188
Zack Korman
Zack Korman@ZackKorman·
@SimoKohonen I have bad news for you, I’m posting something else in a few hours probably that’s even dumber
English
1
0
32
829
Zack Korman
Zack Korman@ZackKorman·
If you believe this you have zero clue how security works.
Zack Korman tweet media
English
84
56
748
24.5K
Simo
Simo@SimoKohonen·
@Backbone666 Dont worry. It might also drop on Friday 4pm!
English
0
0
1
52
Simo
Simo@SimoKohonen·
Shipped a number of improvements for finding the crucial intel from the @DefusedCyber TI - Filtering by attacker noise index (remove mass & scanners very easily) - Keyword, IP, attack type exclusions Check 'em 👉console.defusedcyber.com/intel
Simo tweet media
English
0
4
18
2K
Simo retweetledi
Saeed Abbasi
Saeed Abbasi@saeed4bbasi·
🚨 Meet #CrackArmor. What happens when vulnerabilities are found in the very security module designed to protect your Linux system? I am incredibly proud to share the latest research from our team at the Qualys Threat Research Unit (TRU). We have uncovered CrackArmor: a set of 9 vulnerabilities in AppArmor, the default Linux Security Module protecting millions of Ubuntu, Debian, and SUSE systems. The TRU team discovered a fundamental "confused-deputy" flaw that allows any unprivileged local user to arbitrarily load, replace, or remove AppArmor profiles. But they didn't stop there. By creatively chaining this logic flaw, the team demonstrated multiple paths for Local Privilege Escalation (LPE) to full ROOT: 🔥 User-Space LPE: Weaponizing AppArmor to force a "fail-open" state in Sudo, leveraging Postfix for root access. (Note: Postfix is not installed by default on modern Ubuntu, and this Sudo issue was independently found and fixed by ZeroPath in Nov 2025.) 🔥Kernel-Space LPEs: Exploiting deeply buried memory corruption bugs (including a Use-After-Free and Double-Free) to achieve root despite modern kernel mitigations like CONFIG_RANDOM_KMALLOC_CACHES and CONFIG_SLAB_BUCKETS. 🔥 Namespace Bypass: A complete bypass of Ubuntu’s unprivileged user-namespace restrictions. ⚠️ Urgent Note for Defenders: Patches officially landed upstream in Linus’s tree today. However, due to the new Linux kernel assignment process, CVEs have not been assigned yet. Do not wait for a CVE ID to trigger your vulnerability scanners—start reviewing your patching strategy now! Qualys customers can use QID 386714 - AppArmor Local Privilege Escalation Vulnerability (CrackArmor), which was just released. 🙏Thank you to the Canonical, Debian, SUSE, and Linux Kernel security teams for their coordination. #CyberSecurity #Linux #AppArmor #CrackArmor #QualysTRU #InfoSec #KernelExploitation #ThreatResearch #Qualys blog.qualys.com/vulnerabilitie…
English
2
16
55
20.7K
Simo
Simo@SimoKohonen·
@samlakig Meditation medicine 😉
Français
1
0
1
18
heihachi
heihachi@samlakig·
new mix but serene af
heihachi tweet media
English
2
0
18
353
Simo
Simo@SimoKohonen·
@samlakig Downside is seasons 1-2 are in finnish.. but then again you are a finnish apreciator 😂
English
1
0
1
17
mRr3b00t
mRr3b00t@UK_Daniel_Card·
Running a business, you can go on holiday but the business doesn't.... so you sometimes have to work whilst away.... this is why we have tech!
mRr3b00t tweet media
English
3
0
11
1.6K
spencer
spencer@techspence·
As a defender, I want the advantage. I want my environment to be hostile territory to adversaries. I want them to know… that I know that they know I see them. Get wrecked. spenceralessi.com/post/guarantee…
spencer tweet media
English
11
10
71
3.1K