Mor

58 posts

Mor

Mor

@morwnbrg

Staff Software Innovation Engineer | Threats Hunter | ❤️ Software Supply Chain Security | Security Researcher | ex-Microsoft

Katılım Temmuz 2015
714 Takip Edilen67 Takipçiler
Mor
Mor@morwnbrg·
@MsftSecIntel This is the inevitable tax we pay for treating community-maintained open source as if it were a hardened enterprise service. Until the industry invests in open source the way it depends on it, this won't be the last incident of this magnitude.
English
0
0
1
115
Microsoft Threat Intelligence
Microsoft Threat Intelligence@MsftSecIntel·
Microsoft is investigating mistralai PyPI package v2.4.6 compromise. Attackers injected code in mistralai/client/__init__.py that executes on import, downloads hxxps://83[.]142[.]209[.]194/transformers.pyz to /tmp/transformers.pyz, and launches a second-stage payload on Linux. The file name transformers.pyz appears deliberately chosen to mimic the widely used Hugging Face Transformers library and blend into ML/dev environments. The main payload is a credential stealer, but it also includes country-aware logic; it avoids Russian-language environments and contains a geo fenced destructive branch that has 1-in-6 chance of executing rm -rf / when the system appears to be in Israel or Iran. To mitigate this threat: isolate affected Linux hosts, block 83[.]142[.]209[.]194, hunt for /tmp/transformers.pyz, pgmonitor[.]py, and pgsql-monitor.service, and rotate exposed credentials.
Microsoft Threat Intelligence tweet media
English
118
700
4.9K
4.1M
Omri Segev Moyal
Omri Segev Moyal@GelosSnake·
Iranian MOIS - ministry of intelligence is the home of the most notorious threat actors targeting business, gov and citizens around the world for years. Now it’s on fire. Let them burn.
English
4
0
6
777
Mor
Mor@morwnbrg·
@GelosSnake Careful what you wish for - fewer threat actors = fewer cyber budgets 😅
English
1
0
2
51
Mor
Mor@morwnbrg·
@urlichsanais @AquaSecTeam It’s been fantastic working with you! Your contributions and energy will be greatly missed at @AquaSecTeam . Best of luck in your next adventure! 🚀
English
0
0
1
100
Anaïs Urlichs
Anaïs Urlichs@urlichsanais·
1) If I don't post it now, I never will. All great things have to come to an end eventually. Yesterday was my last day @AquaSecTeam. I'm leaving an incredible team and the best place to work. Huge shoutout to everyone who made the past 2.5 years as amazing as they were♥️
Anaïs Urlichs tweet media
English
19
2
140
7.6K
Mor
Mor@morwnbrg·
@CryptoAidIsrael Your donation site is being targeted by a SMS-based phishing campaign. @Google and @MicrosoftEdge have already been notified. Donors, please be aware
Mor tweet media
English
0
0
1
20
Mor retweetledi
Aqua Security
Aqua Security@AquaSecTeam·
Are you attending #44CON in London this week? Join @morwnbrg for a hands-on workshop and disocver practical ways to fortify your software supply chain and protect your digital assets. 🗓️ September 14 at 12:00 pm 📍 44CON at the Novotel London West More details: lnkd.in/eJvnEed #44CON2023 #sdlc #supplychainsecurity #softwaresupplychain
44CON@44CON

We're thrilled to announce that Mor Weinberger (@morwnbrg) will be leading a hands-on workshop on "Securing Your Software Supply Chain – Practical Approaches to Assess and Improve Software Security" at #44CON2023

English
0
1
1
790
Mor
Mor@morwnbrg·
@FeedTechILUncen 3. אם הלקוח לא מתייחס לקוד שלו כ״מניח שנפרץ״ ולא מעיף משם סיסמאות וטוקנים, ולא סורק באופן תדיר למציאת חולשות וסיכונים..דיינו 4. מוזמנים להמשיך
עברית
0
0
1
109
Mor
Mor@morwnbrg·
@FeedTechILUncen לא שופט אבל 1. אם הלקוח נתן גישה מלאה לכל הריפוז שלו ולא רק לריפוז/סביבת טסט, לסטארטאפ במיוחד אם הוא צעיר בלי רגולציות וסוקז..דיינו 2. אם הסטארטאפ מראש מתבסס על שמירה של קטעי קוד של הלקוחות שלו לשרת ולא הגה פתרון נטול דיינו..לפחות סניטציה כלשהיא??
עברית
1
0
0
1.6K
פידטק וידויים אנונימיים ללא צנזורה
עובד בסטארטאפ, פלטפורמה לתיעוד קוד של לקוחות (גישה מלאה לריפוז שלהם). הייתה טעות שגרמה לכל הקוד של הלקוחות להישלח ל Datadog ומשתיקים אותנו מלספר. המצפון שלי לא שקט, במיוחד לאור הצביעות וכמה שהחברה מפחדת שחלילה נשלח קוד של החברה ל AI. *התוודו אנונימית -> bit.ly/3GCanEe
עברית
11
2
46
17.7K
Mor
Mor@morwnbrg·
@Cyburgerim @AquaSecTeam היא אחת מהשגרירות ומהמאמצות המוקדמות של הטכנולוגיה
עברית
0
0
6
633
Cyburger
Cyburger@Cyburgerim·
מלא eBPF בסייבר לאחרונה 🐝 היו מלא דיבורים בצד היזמים והקרנות לפני שנתיים+, אולי עכשיו קצת יותר יוצאים מסטלת'. משתף קצת מהניסיון שלי, אשמח לקבל משלכם >>
Cyburger tweet media
עברית
8
1
46
25.7K
Mor retweetledi
Aqua Security
Aqua Security@AquaSecTeam·
What if you were told that you had a misconfigured registry with hundreds of millions of #software artifacts containing highly confidential and sensitive proprietary code and secrets exposed in your environment right now? New Aqua Nautilus research has found just that in some of the world’s largest organizations, including five Fortune 500 companies. @MoragAssaf @morwnbrg Find out if you're affected: blog.aquasec.com/250m-artifacts…
English
1
3
6
1K
Mor
Mor@morwnbrg·
@shodanhq seems to be down for the last couple of hours
Mor tweet media
English
0
0
0
28
Mor
Mor@morwnbrg·
@mbrg0 Oh boy, but look on the bright side, it might help the sec team to find data violations like PII, CC & passwords much easier..wait a second..but 👹 would do the same.. bad idea, bad idea!
GIF
English
0
0
1
196
Michael Bargury
Michael Bargury@mbrg0·
#Microsoft has just released a way for every business user to connect your business data straight into ChatGPT w/o asking anyone Move fast and break things!
Michael Bargury tweet media
English
6
13
47
15.6K
Mor
Mor@morwnbrg·
Next week, I will speak at Cloud Native Security Con in Seattle about Crypto Jacking Techniques in Cloud Native. Let me know if you would be around @AquaSecTeam #CloudNative
Mor tweet media
English
1
1
9
363