fdgy
2.4K posts

fdgy
@fdgy
“That which can be destroyed by truth...should be”








New Robinhood phishing chain that's kinda beautiful: 1. Attacker creates an RH account using the Gmail dot trick of your email (same inbox, different address) 2. Sets device name to HTML 3. RH's "unrecognized activity" email renders the device name unsanitized (html injection) The result is a real email from noreply@robinhood.com, DKIM pass, SPF pass, DMARC pass, with a phishing CTA Just because it's real, doesn't mean it's safe... $HOOD




🍆 The 20 cities having the most sex 1. 🇲🇴 Macau 2. 🇵🇱 Krakow 3. 🇲🇽 Guadalajara 4. 🇧🇷 Sao Paulo 5. 🇱🇺 Luxembourg 6. 🇵🇹 Porto 7. 🇫🇷 Marseille 8. 🇹🇭 Bangkok 9. 🇧🇷 Rio de Janeiro 10. 🇵🇦 Panama City 11. 🇬🇧 Cambridge 12. 🇮🇹 Naples 13. 🇨🇴 Medellin 14. 🇧🇪 Brussels 15. 🇻🇳 Hanoi 16. 🇨🇴 Bogota 17. 🇲🇽 Mexico City 18. 🇳🇱 Rotterdam 19. 🇧🇷 Brasilia 20. 🇨🇷 San Jose Source: TimeOut





