Krypton

51 posts

Krypton banner
Krypton

Krypton

@kkrypt0nn

Cloud Engineer | Security enthusiast & researcher | Developer

$rax Katılım Eylül 2018
46 Takip Edilen78 Takipçiler
International Cyber Digest
International Cyber Digest@IntCyberDigest·
‼️🚨 MAJOR IMPACT: AI just found an 18-year-old NGINX critical remote code execution vulnerability. It has been disclosed on GitHub including PoC code. - Affects NGINX 0.6.27 through 1.30.0 - Triggered via the rewrite and set directives in config - Update NGINX ASAP - NGINX is a widely used HTTP web server, be sure to check its prevalence in other products
International Cyber Digest tweet media
English
86
402
2.6K
934.6K
Krypton
Krypton@kkrypt0nn·
It's the Friday deployment time over at Discord
English
0
0
0
162
Krypton
Krypton@kkrypt0nn·
Hard to patch if there's no patch. It's a 0day, and thank you for that. Blocking the module has some more side-effects than the ones described, see openwall.com/lists/oss-secu… I call that irresponsible disclosure, change my mind.
Xint@xint_official

Patch your Linux boxes! Copy.Fail is a trivially exploitable logic bug in Linux, reachable on all major distros released in the last 9 years. A small, portable python script gets root on all platforms. Found by the teams at @theori_io and @xint_official More details below xint.io/blog/copy-fail…

English
0
0
0
47
vx-underground
vx-underground@vxunderground·
CVE-2026-31431 a/k/a CopyFail > Linux LPE > Description sounds like AI slop > Exploit is legit > Impacts every Linux kernel from 2017 - Now > Proof-of-concept released > It's Wednesday? copy.fail
English
102
542
3.7K
258.6K
Krypton
Krypton@kkrypt0nn·
@DarkWebInformer Hey there! Just wanted to thank you for sharing my repository, it gained quite a few stars from it :D
English
0
0
0
128
Krypton
Krypton@kkrypt0nn·
@vector35 I think there was a bit of a mess up in the macOS versions 😆 Ventura is 13, Monterey is 12
Krypton tweet media
English
1
0
0
73
Vector 35
Vector 35@vector35·
It's that time again! Participate in our 2025 Reverse Engineering Survey to win free admission to RE//verse 2026, a free Binary Ninja license, or many other great prizes! binary.ninja/survey/
Vector 35 tweet media
English
4
8
48
4.4K
Krypton
Krypton@kkrypt0nn·
Had an amazing time at @1ns0mn1h4ck, perfectly organized as always 🔥 Favorite talk was probably @ElykDeer's one about the Tantō plugin for @vector35 Binary Ninja 🥷
English
1
0
8
245
Krypton
Krypton@kkrypt0nn·
What's quite concerning is not only what @evilsocket found out. The fact that there's something going around at VINCE which leads to people having access to vulnerabilities people report using the "responsible" disclosure path.. Amazing research btw. Ignore the hate, keep it up
English
0
0
3
238
Krypton
Krypton@kkrypt0nn·
@evilsocket Pretty neat, gratz on that! New blog post maybe 👀
English
0
0
0
35
Simone Margaritelli
Simone Margaritelli@evilsocket·
aaand i can now decrypt all their captures ^_^
Simone Margaritelli tweet media
English
1
0
6
1.4K
Krypton
Krypton@kkrypt0nn·
@I_AM_NO_LEGEND 👋 It's pretty hard to answer that, security is a pretty wast area and has lots of subtopics which may interest you more than others. There's a link - github.com/DFIRmadness/5p… - I like, though at some point you will have to find something more specific and targeted you enjoy :D
English
1
0
1
9
Ammad
Ammad@I_AM_NO_LEGEND·
@kkrypt0nn Hello, I’m interested in getting into cyber security and I would appreciate any help you can offer. Do you have any guidelines, courses, or resources that you can recommend? Thank you in advance for your help.
English
1
0
0
33
Krypton
Krypton@kkrypt0nn·
@evilsocket That's the trick, we are doing QA for them :)
English
1
0
2
44
Krypton
Krypton@kkrypt0nn·
@evilsocket On mobile you can click on the verified checkmark on the profile, then it says whether or not they have it because of the subscription, kind of workaround for mobile
Krypton tweet media
English
1
0
3
0
Simone Margaritelli
Simone Margaritelli@evilsocket·
Cool, by using the Veryfied extension I now get to see who was actually verified (two badges or green only if they lost the verification because they didn't pay) and who just paid for it (white badge only).
Simone Margaritelli tweet media
English
1
1
16
0
Krypton
Krypton@kkrypt0nn·
@JonathanHeindl @overshield @LiveOverflow "a 4 year old video" It shows only the last 365 days in the graph. Same for the view counter those are the views of the last 365 days, not since the video was published. Though I'd also be interested which one it is
English
1
0
3
0
LiveOverflow 🔴
LiveOverflow 🔴@LiveOverflow·
Algorithm Gods blessed a 4 year old video with a spike 🙏 Please help and send more thoughts and prayers 😊
LiveOverflow 🔴 tweet media
English
4
3
229
0
Simone Margaritelli
Simone Margaritelli@evilsocket·
Personal news - after my sabbatical is over in a few weeks, I'll join Dataflow Forensics (newborn sister of @dfsec_com). I'm excited and honored to join such a top notch team, it is really a dream come true. Looking forward to learning and bringing my ideas to the table. 🎉
English
28
4
159
0
Krypton
Krypton@kkrypt0nn·
@cherupil Looks like their Vercel account has been disabled 🎉
English
1
0
3
0
Krypton
Krypton@kkrypt0nn·
@cherupil Contact Namecheap (where they have the domain), contact Vercel (where they host) and take appropriate legal actions, if possible, to not motivate them in doing this again. I admire your work and specifically that website, keep it up (4/4)
English
0
0
2
0
Krypton
Krypton@kkrypt0nn·
@cherupil I do believe such behaviour is just pathetic, your work is amazing compared to anything they will ever "do" - I don't suppose anything they "make" is actually made by themselves but most likely pasted out of somewhere else (3/?)
English
1
0
2
0