Omer

292 posts

Omer

Omer

@_Omer_GG

Cyber Prompt Engineer

Katılım Ocak 2019
220 Takip Edilen23 Takipçiler
Omer
Omer@_Omer_GG·
@UK_Daniel_Card My biggest problem with macOS is that every AV on it sucks. No one really scares about Mac’s
English
1
0
2
39
Jaime Blasco
Jaime Blasco@jaimeblascob·
Security incident involving Vercel. Check for the following Oauth grant in your environment http://110671459871-30f1spbu0hptbs60cb4vsmv79i7bbvqj.apps.googleusercontent[.]com
English
11
24
208
207.1K
Omer
Omer@_Omer_GG·
@theo @RobinhoodApp After GameStop incident I deleted my account. Never looked back
English
0
0
1
911
Theo - t3.gg
Theo - t3.gg@theo·
As promised @RobinhoodApp - I will cost you 10x what you cost me. I have closed all the positions I had in Robinhood. I will be posting daily reminders to my community that you are an evil company run by scammers. You fucked over the wrong person.
English
89
45
2.9K
108.2K
Omer
Omer@_Omer_GG·
@mattjay So patch faster…oh wait supply chain threat so don’t patch too fast
English
0
0
2
85
Omer
Omer@_Omer_GG·
@KaiXCreator The White House told me I have to use rust
English
0
0
1
359
Kaito
Kaito@KaiXCreator·
Google uses C++. Meta uses C++. Microsoft uses C++. Amazon uses C++. Apple uses C++. Adobe uses C++. NVIDIA uses C++. Intel uses C++. Tesla uses C++. What stopping you from learning C++?
English
87
8
328
30K
mRr3b00t
mRr3b00t@UK_Daniel_Card·
'The European Commission has told some of its most senior officials to shut down a Signal group chat they were using to exchange information.' where will they move it to? whatsapp? email? telegram?
POLITICOEurope@POLITICOEurope

EXCLUSIVE: Phishing attempts targeting the EU’s internal communications have prompted a response: The European Commission has told some of its most senior officials to shut down a Signal group chat they were using to exchange information. 🔗 politico.eu/article/top-eu…

English
9
2
12
2K
mRr3b00t
mRr3b00t@UK_Daniel_Card·
ok another tool ;) Mac universal audit log timeline creation tool! Let's F go!
mRr3b00t tweet media
English
5
8
45
4.8K
Omer
Omer@_Omer_GG·
@AWSSecurityInfo Why can’t I get AWS GuardDuty Security agent runtime events streamed to my SIEM?
English
1
0
1
48
Omer
Omer@_Omer_GG·
Can we just delete NPM?
English
0
0
1
15
Omer
Omer@_Omer_GG·
@Frichette_n Wake up? I’m still awake thanks to this….
English
0
0
2
32
Nick Frichette
Nick Frichette@Frichette_n·
For everyone waking up to the axios news:
Nick Frichette tweet media
English
1
0
10
502
Omer
Omer@_Omer_GG·
@IceSolst The prestige to have CISSP on your LinkedIn profile
English
0
0
2
243
solst/ICE of Astarte
solst/ICE of Astarte@IceSolst·
If you pass the CISSP exam, not paying the annual fee doesn’t unpass the exam for you. So why tf am I paying for??
English
57
6
304
30K
ShadowPay
ShadowPay@ShadowPaycom·
Riot Platforms reported a record $647.4 million in revenue for 2025. Valve generated over $17 billion in the same period — roughly 26x more. Skins making the difference?
ShadowPay tweet mediaShadowPay tweet media
English
94
33
2.3K
865.3K
Kostas
Kostas@Kostastsale·
📢🍏 macOS is now part of the EDR Telemetry Project. After three months of focused work, we’re excited to share a new framework and generator for endpoint visibility on macOS! Huge thank you to everyone who contributed and helped shape this release. Looking forward to what comes next. Read more: edr-telemetry.com/blog/macOS-EDR…
English
3
31
111
17.1K
Omer
Omer@_Omer_GG·
@Mandiant you guys cooking a blog for this Salesforce Aura by the ShinyHunters TA?
English
0
0
1
77
International Cyber Digest
International Cyber Digest@IntCyberDigest·
❗️This is sick: ShinyHunters have allegedly exfiltrated 1 PETABYTE of data from a single breach victim. They're using a modified version of Google Threat Intelligence tool "Aura Inspector" to mass scan public-facing Experience Cloud sites, extracting data upon finding vulnerable instances. Due to the countless Salesforce breaches that have occurred, the company has published a guide on how to harden against these attacks.
vx-underground@vxunderground

Today @BleepinComputer published a story on a company named Telus Digital being compromised by a Threat Group operating under the moniker "ShinyHunters', a reference to Pokemon. GTIG (Google Threat Intelligence Group) has been tracking ShinyHunters under the label UNC6395. UNC6395 has been targeting enterprise organizations since at least August, 2025 by exploiting compromised OAuth tokens to gain access to company SalesForce instances. Upon successful compromise, UNC6395 attempts vertical or horizontal movement by combing through the compromised SalesForce data. At a currently unknown time, UNC6395 successfully compromised Telus' SalesForce instance which allowed them to pivot elsewhere within the organization. The amount of data UNC6395 claims to have compromised is astronomical. They claim to have exfiltrated over ONE PETABYTE of data (compressed as .tar.xz). While Telus has confirmed the compromise, the exfiltration of ONE PETABYTE of data indicates the compromise may have occurred weeks, possibly months, ago. Telus as of this writing has not given additional details on the compromise (more on that later). I am unable to confirm the validity of the data, primarily because I do have the means to reliably comb through a petabyte of data. However, "snippets" and "samples" have been shared. Based off data seen, the compromised appears authentic. Here is a high-level overview of what was allegedly compromised and successfully exfiltrated. - Employee Full Legal Name - Employee National ID Number and/or SSN - Telus hashed passwords, API keys, OAuth tokens - Call record details - Call meta data - Telecom customer PII (First Name, Last Name, Address) - HR records - Agent performance records - SalesForce accounts, contacts, leads, and records - Financial records (ACH routing numbers, etc) - GitHub repository access to an additional 20 organizations adjacent to Telus (20,000 internal source code projects) - Customer and Agent call records in .wav - 14,139 customer database instances, all containing customer PII (unspecified) - GLEAN TELUS background check files. UNC6395 has access to FBI, RCMP, and CISA background checks. - GLEAN TELUS confidential reports on investigations - GLEAN TELUS confidential reports on tax filings (?) - ... just search "GLEAN" on Google If what UNC6395 states is true, this breach impacts approx. 230M companies across the globe. Based on information seen publicly, ... it looks bad. However, as of this writing, Telus has not done anything other than confirm the compromise with some journalists. I suspect they're currently performing a DFIR (Digital Forensics and Incident Response) and forming a strategy to combat this technologically, legally, logistically, and PR-wise. Is UNC6395 telling the truth? Is this compromise as severe as it appears to be? When will TELUS provide more details? Will impacted customers be notified? Is law enforcement mad their background checks are allegedly compromised? Find out next time on Dragon Ball Z

English
7
33
243
39.8K
Omer
Omer@_Omer_GG·
@j_fishback You should probably wipe your phone and make sure lockdown feature is turned on
English
1
0
4
1.3K
Omer
Omer@_Omer_GG·
@vxdb 3 27 inch monitors are imo the best but if you have trouble focusing then one ultra wide is the way to go
English
0
0
2
148
vxdb
vxdb@vxdb·
Are ultra-wide or wide monitors the move? I've been looking at them for years and I think i'm ready to pull the trigger.
English
7
1
21
4.6K