Julien P.

2.7K posts

Julien P. banner
Julien P.

Julien P.

@luminouw

Bordeaux, France Katılım Mart 2009
372 Takip Edilen217 Takipçiler
Julien P. retweetledi
banteg
banteg@banteg·
mini shai-hulud song
Eesti
19
37
165
33.5K
Julien P. retweetledi
Feross
Feross@feross·
You don’t see this every day: attackers hiding C2 infrastructure inside computer science essays on Pastebin using character-level steganography, then wiring it into 26 typosquatted npm packages impersonating some of the ecosystem’s most widely-used libraries. Socket detected the cluster within minutes of publication, uncovering a disciplined, multi-stage operation linked to the Contagious Interview campaign that delivers a full infostealer and RAT stack built to harvest developer credentials. socket.dev/blog/stegabin-…
English
13
163
688
41.9K
Iceman
Iceman@herrmann1001·
🧊 Proxmark3, Release v4.21128 "Permafrost" Released: 2026-02-25 Download release [v4.21128](github.com/RfidResearchGr…) Now go flash your devices and stay frosty. 🧊
English
3
10
34
4.2K
Julien P. retweetledi
Justin Elze
Justin Elze@HackingLZ·
"So, whatever you believe is the current “State of the Art” probably is wrong and is just what you see inside your bubble. We have zero idea about what other Red Teams are doing, or what tricks they have in their bags as result of internal researchs." This is weird because there is significantly more back channel and collab than ever before it just doesn't happen here. The reason it doesn't happen here is some decides to blog for internet points. x-c3ll.github.io/posts/Rant-Red…
English
5
18
104
10.2K
Julien P. retweetledi
blackorbird
blackorbird@blackorbird·
CVE-2026-24061 GNU InetUtils Security Advisory: remote authentication by-pass in telnetd The telnetd server invokes /usr/bin/login (normally running as root) passing the value of the USER environment variable received from the client as the last parameter. If the client supply a carefully crafted USER environment value being the string "-f root", and passes the telnet(1) -a or --login parameter to send this USER environment to the server, the client will be automatically logged in as root bypassing normal authentication processes. This happens because the telnetd server do not sanitize the USER environment variable before passing it on to login(1), and login(1) uses the -f parameter to by-pass normal authentication. openwall.com/lists/oss-secu… codeberg.org/inetutils/inet…
English
0
4
25
3.8K
Julien P. retweetledi
Jack Rhysider 🏴‍☠️
Jack Rhysider 🏴‍☠️@JackRhysider·
Episode 168 is here! 🔊 📶 "LoD" The Legion of Doom (LoD) wasn’t just a “hacker group”, it captured the essence of underground hacking in the 80s/90s. BBSes, phreaking, rival crews, and the crackdowns that changed everything. From those humble beginnings came a legacy that still echoes through modern security culture today. darknetdiaries.com/episode/168
Jack Rhysider 🏴‍☠️ tweet media
English
14
68
327
25.1K
Julien P. retweetledi
Marius Avram
Marius Avram@securityshell·
Holy shit… the exploitation of CVE-2025-55182 has reached a new level. There’s now a publicly available Chrome extension on GitHub that automatically scans for and exploits vulnerable sites as you browse. Absolutely wild. 🤦‍♂️
Marius Avram tweet media
English
61
407
3.4K
550.4K
Julien P. retweetledi
LuemmelSec
LuemmelSec@theluemmel·
If you want to extend #BloodHound a little bit and use it for other stuff such as passwordaudits, choke point detection and remediation tracking, increase your session data again etc, than this one's for you. luemmelsec.github.io/Whos-a-good-boy NO OpenGraph extension - sorry fan boys
LuemmelSec tweet media
English
1
15
57
5.8K
Julien P. retweetledi
LaurieWired
LaurieWired@lauriewired·
You’ve heard of the Unix 2038 Problem. I bet you haven’t heard of the GPS 2038 problem. Every GPS navigation device in existence experiences an integer overflow every 19.6 years. Last time, it wiped out iPhones, NOAA weather buoys, and a number of flights in China:
LaurieWired tweet mediaLaurieWired tweet media
English
32
163
2.2K
192.7K
Julien P. retweetledi
Pass the SALT Conference
Pass the SALT Conference@passthesaltcon·
SAVE THE DATE! The organisation of the #pts26 edition is starting 😎 📣 Info we can already share are: - 🗓️ Tuesday June 30 to Thursday July 2, 2026 ✅ - 📍as asked in your feedback answers, we will be again at Université Catholique de Lille 🎉 Website & more are coming soon! 😘
GIF
English
0
3
11
630
Julien P. retweetledi
Today In Infosec
Today In Infosec@todayininfosec·
1995: The movie Hackers was released. Yes, 30 years ago today. 🤯 It grossed just $7 million at the box office against a budget of $20 million. Ouch. A box office failure, but today it's a cult classic. Crash Override. Acid Burn. Rollerblades. Floppy disks. Hack the Gibson!!!
Today In Infosec tweet media
English
2
70
243
21.4K
Julien P. retweetledi
Crusaders of Rust
Crusaders of Rust@cor_ctf·
Say hello to Eternal Tux🐧, a 0-click RCE exploit against the Linux kernel from KSMBD N-Days (CVE-2023-52440 & CVE-2023-4130) willsroot.io/2025/09/ksmbd-… Cheers to @u1f383 for finding these CVEs + the OffensiveCon talk from gteissier & @laomaiweng for inspiration!
English
11
199
755
81.6K
Julien P. retweetledi
Mari0n
Mari0n@pinkflawd·
Huge thanks to the @hexacon_fr team for bringing BlackHoodie to Paris! A free 4-day security workshop for women by women Oct 6-9. So grateful for our amazing trainers: Sonia (Linux Forensics) Paula (Web/Mobile Sec) & Jiska (iOS Hacking)! blackhoodie.re/Hexacon2025/
Mari0n tweet media
English
1
9
34
6.8K
Julien P. retweetledi
Justin Elze
Justin Elze@HackingLZ·
Zero Cool day!
Justin Elze tweet media
English
14
121
592
42.2K
Julien P. retweetledi
Michael Bargury
Michael Bargury@mbrg0·
we got a persistent 0click on ChatGPT by sharing a doc that allowed us to exfiltrate sensitive data and creds from your connectors (google drive, sharepoint, ..) + chat history + future conversations it gets worse. we deploy a memory implant #DEFCON #BHUSA @tamirishaysh
English
21
190
804
79.7K
Julien P.
Julien P.@luminouw·
@bouyguestelecom Besoin d'un éclaircissement sur l'offre Pure Fibre, DM open quand vous êtes dispos : )
Français
1
0
0
53
Julien P. retweetledi
Lord Sugar
Lord Sugar@Lord_Sugar·
40 YEARS AGO - I launched the Amstrad CPC6128. Having a built-in disc drive opened up the machine to more serious business computing and gaming - see youtube.com/watch?v=T14izU… The demo at 15:06 shows off the sound and graphics handling - brilliant for 1985. Discs held 1.4MB 💾
YouTube video
YouTube
English
44
56
225
78.9K
Julien P. retweetledi
hashcat
hashcat@hashcat·
hashcat v7.0.0 released! After nearly 3 years of development and over 900,000 lines of code changed, this is easily the largest release we have ever had. Detailed writeup is available here: hashcat.net/forum/thread-1…
hashcat tweet media
English
21
369
1.2K
79.3K