Dave Ferguson

2.2K posts

Dave Ferguson banner
Dave Ferguson

Dave Ferguson

@_sc0rn

Product Manager in Software Supply Chain Security. 20-year AppSec pro. Constant & curious learner. Former engineer/developer/consultant/pen tester/SA.

Texas, USA Katılım Ekim 2013
569 Takip Edilen591 Takipçiler
Dave Ferguson retweetledi
The Hacker News
The Hacker News@TheHackersNews·
🛑 Adobe released emergency fixes for a 9.6 CVSS flaw (CVE-2026-34621) in Acrobat/Reader, confirmed under active exploitation. A prototype pollution bug lets malicious PDFs run arbitrary code via JavaScript. Evidence shows attacks may date back to Dec 2025. 🔗 Read → thehackernews.com/2026/04/adobe-…
The Hacker News tweet media
English
6
88
250
25.3K
Dave Ferguson retweetledi
Kaspersky
Kaspersky@kaspersky·
If you downloaded any CPUID software between Apr 9 15:00 UTC and Apr 10 10:00 UTC — assume compromise. Check your DNS logs for these 4 malicious domains and scan for CRYPTBASE.dll artifacts. Full IoCs, hashes, attack chain analysis and detection rules: securelist.com/tr/cpu-z/11936… [6/6]
English
1
9
91
10.3K
JamesFreakinNaismith
JamesFreakinNaismith@NamesJaysmith·
KU’s head coaches & age when hired James Naismith 37 Forrest Allen 22 William Hamilton 33 Dick Harp 38 Ted Owens 34 Larry Brown 42 Roy Williams 37 Bill Self 40 Average age of 35…..
English
10
11
572
55.2K
Dave Ferguson
Dave Ferguson@_sc0rn·
Hey @gmail. An email sent to my business email account and marked as Spam (so I never saw it) created a calendar entry on my Google Calendar. Why did that happen?
English
8
0
0
27
Dave Ferguson retweetledi
ReversingLabs
ReversingLabs@ReversingLabs·
👁️ Be on the look out for compromised versions 1.82.7 and 1.82.8 of the "litellm" PyPI package, which has more than 479 million downloads 🧵👇 secure.software/pypi/packages/…
English
4
6
12
1.2K
Dave Ferguson
Dave Ferguson@_sc0rn·
Crazy that a secrets detection tool had secrets stolen and was subsequently used to launch a very nasty supply chain attack.
English
0
0
1
35
Dave Ferguson
Dave Ferguson@_sc0rn·
The AWS European Sovereign Cloud now open. A physically & logically separate cloud infrastructure, with all components located entirely within the EU. aws.amazon.com/blogs/aws/open…
English
0
0
0
18
Dave Ferguson
Dave Ferguson@_sc0rn·
U.S. Dept of War is gearing up for PQC. Having CBOMs for software, including containers & VMs will help fulfill the "Cryptography Inventory and Risk Assessment" requirement. hstoday.us/subject-matter…
English
0
0
1
16
Dave Ferguson retweetledi
Pascal Bornet
Pascal Bornet@pascal_bornet·
RIP Privacy — AI Glasses Can Now Recognize Anyone, Anywhere. A Dutch journalist just tested a pair of AI-powered glasses that can instantly identify strangers on the street. No government database. No police system. Just public data and off-the-shelf AI. You look at someone and in seconds, their name, LinkedIn, and background appear before your eyes. The scariest part? You can’t really stop it. You can ban it, regulate it, add blinking red lights… but once tech like this exists, someone will always find a way to use it. To me, this marks a turning point. We’ve officially blurred the line between seeing people and knowing them. Between being in public and being exposed. So here’s the question: When every face becomes a dataset, how do we protect the meaning of being human? #AI #Privacy #Ethics #Technology #Innovation #Data #Surveillance
English
977
6.4K
15K
1.4M