Thomas Millochau

10.6K posts

Thomas Millochau

Thomas Millochau

@hammker

Security Engineer / SOC Manager at CFM

Paris, France Katılım Ocak 2011
1.5K Takip Edilen110 Takipçiler
Thomas Millochau retweetledi
Bitwarden
Bitwarden@Bitwarden·
Bitwarden identified and contained a malicious package briefly distributed through the npm delivery path for the Bitwarden CLI in connection with the broader Checkmarx supply chain incident. No user vault data or production systems were compromised or at-risk. Additional details and updates are available here: community.bitwarden.com/t/bitwarden-st…
English
62
667
3.5K
396.7K
Thomas Millochau retweetledi
Socket
Socket@SocketSecurity·
🚨 Bitwarden CLI 2026.4.0 was compromised as part of the ongoing Checkmarx supply chain campaign after attackers abused a GitHub Action in Bitwarden’s CI/CD pipeline. We’ll continue updating our coverage as more details are confirmed. socket.dev/blog/bitwarden…
Socket tweet media
English
80
541
2.5K
1.7M
Thomas Millochau retweetledi
CVE
CVE@CVEnew·
CVE-2025-11621 Vault and Vault Enterprise’s (“Vault”) AWS Auth method may be susceptible to authentication bypass if the role of the configured bound_principal_iam is the same acros… cve.org/CVERecord?id=C…
English
0
1
0
480
Thomas Millochau retweetledi
Julian Goldie SEO
Julian Goldie SEO@JulianGoldieSEO·
HOLY SH*T… These AI Agents do EVERYTHING! 🤯 FREE N8N Course Shows You How To: 🔧 1-Click AI Agents to Replace Your Whole Team 🧠 Scrape 1,000s leads in 1 click 💸 Auto-Send Cold Emails While You Sleep 📦 Auto-Post to TikTok, YouTube, Facebook, Threads 📲 Book Sales Calls WITHOUT Talking to Anyone ⚙️ Build a Viral Video Engine That NEVER Stops! 🔁 Like+RT ✅ Reply “YES” 🤝 Follow me & I’ll send you the guide FREE.
Julian Goldie SEO tweet mediaJulian Goldie SEO tweet mediaJulian Goldie SEO tweet media
English
180
134
367
39.1K
Thomas Millochau
Thomas Millochau@hammker·
@Sn0wAlice Un ou plusieurs mini pc pour cluster ProxMox Jetson Nano super pour setup LLM + agent
Français
0
0
3
109
Alice Sn0w •ᴗ•
Alice Sn0w •ᴗ•@Sn0wAlice·
Je suis en train de me monter un #lab + setup du #selfhost pour de la #cybersécurité, t'a des idées de ce que je devrais acheter ? (balance direct la ref en commentaire que j'aille check)
Français
1
1
6
880
Thomas Millochau retweetledi
Threat Insight
Threat Insight@threatinsight·
Proofpoint also observed the activity reported by Trellix in email threat data targeting financial organizations and people in positions of leadership. Our researchers offer clarifying context below to supplement @TrellixARC’s technical analysis. 🧵
Trellix Advanced Research Center@TrellixARC

This sophisticated phishing attack, starting with a fake Rothschild & Co. job, uses a tricky CAPTCHA to deliver a ZIP with a VBS script. It then installs NetBird & OpenSSH, creates a hidden admin, & enables RDP! 🤯 Monitor closely! More info in the blog: bit.ly/45gnp8T

English
1
17
61
12.5K
Thomas Millochau retweetledi
Andy Greenberg (@agreenberg at the other places)
Flaws in Apple's AirPlay protocol for streaming media to speakers, TVs, and set-top boxes have left millions of these devices vulnerable to being hijacked by any hacker on the same Wifi network. Many of these devices never receive patches. wired.com/story/airborne…
English
1
39
74
7.5K
CaMaK
CaMaK@CaMaKStream·
On est un peu chargé ...
CaMaK tweet media
Français
4
0
50
4.8K
CaMaK
CaMaK@CaMaKStream·
J’espère que vous aimez YouTube ! Vu la dernière décision de Twitch de limiter les temps fort à 100h max nous avons 5 ans 1/2 de replay à sauver avant le 19/04 … merci Twitch encore de nous mettre au pied du mur ❤️‍🩹
Français
12
2
106
11.7K
Thomas Millochau retweetledi
Parti Pirate
Parti Pirate@PartiPirate·
📟 Premier message : Proposition de limiter la data des forfaits mobiles sans argument scientifique ? Approche idéologique d'un faux problème : les politiques actuels savent le faire, on attendait mieux de l'@ademe .
Français
2
3
10
455
Thomas Millochau retweetledi
Cato Networks
Cato Networks@CatoNetworks·
🚨 New threat research! 🕵️‍♂️ Cato CTRL has discovered a threat actor, ProKYC, selling a deepfake tool in the cybercriminal underground to enable new account fraud against cryptocurrency exchanges. 🔗 Blog: bit.ly/3NmmWry #NetworkSecurity #deepfake #SASE
Cato Networks tweet media
English
0
3
1
1K
Thomas Millochau retweetledi
Ryan Naraine
Ryan Naraine@ryanaraine·
Palo Alto warns that attackers can access usernames, cleartext passwords, device configurations, and device API keys of PAN-OS firewalls. securityweek.com/palo-alto-patc…
English
10
102
245
38.2K