Mark Puckett 🇺🇸

236 posts

Mark Puckett 🇺🇸 banner
Mark Puckett 🇺🇸

Mark Puckett 🇺🇸

@Mpuckett

Leading our awesome cybersecurity team at @RaxisOne | Building cool tech in ATL!

Atlanta, GA Katılım Ağustos 2021
590 Takip Edilen212 Takipçiler
Mark Puckett 🇺🇸
Mark Puckett 🇺🇸@Mpuckett·
Rough one for Stryker. Reports say an Iranian-linked group (Handala) used compromised Intune access to remotely wipe over 200k devices across 79 countries overnight. Even personal phones enrolled for work got hit! This shows how quickly things can go sideways when privileged access like MDM gets abused. Worth double-checking those configs, permissions, and enrollment policies right now… you know it had to be a simple oversight that know one knew about that let them in the door.
Hedgie@HedgieMarkets

🦔 Medical technology giant Stryker is offline after an Iranian-linked hacktivist group called Handala deployed wiper malware across its network. The attackers claim they stole 50 terabytes of data and wiped over 200,000 systems, servers, and mobile devices, forcing offices in 79 countries to shut down. Employees report devices were remotely wiped in the middle of the night through the company's mobile device management system, including personal phones enrolled for work access. Stryker filed an 8-K with the SEC confirming a global disruption to its Microsoft environment and says it has no timeline for restoration. My Take Stryker makes surgical equipment, neurotechnology, cardiac monitors, stretchers used in ambulances. EMS workers are already reporting they can't transmit patient data to hospitals, and when a medic calls in with a weird EKG and the doctor can't see it, that's a gap where people can die. Offices in 79 countries are reverting to pen and paper for medical device operations while tensions with Iran are at a peak and Hormuz is closed. The attack vector appears to be Microsoft Intune, the mobile device management system. Hackers got in, pushed a mass wipe to every enrolled device, and took down the whole company. I wrote about the cybersecurity selloff a few weeks ago when the sector was getting hammered despite obvious escalating threats, and this is exactly the scenario that made that selloff look insane. Companies have been cutting security budgets and offshoring security roles for years because it looked like an easy place to save money. You can move the labor overseas but you can't move the consequences when Iranian hackers wipe your entire infrastructure in one night. Hedgie🤗

English
0
0
0
192
A Gene Robinson
A Gene Robinson@AlBuffalo2nite·
🚨BREAKING: U.S. F-15E Strike Eagle crashes in Kuwait during heightened operations tied to Iran tensions. Eyewitness video shows the aircraft descending rapidly before impact, with smoke and flames visible. At least one pilot is seen ejecting. According to official U.S. military statements via CENTCOM, this was NOT an Iranian shoot-down. Preliminary reports indicate an apparent friendly-fire incident in which Kuwait’s air defense systems mistakenly engaged multiple U.S. F-15E aircraft operating in the area. All crew members ejected safely and were recovered in stable condition. Investigation ongoing. Details developing. #SilentMajoritySpeaks #AStoneGroove
English
7
1
24
4.3K
Mark Puckett 🇺🇸 retweetledi
Mark Gadala-Maria
Mark Gadala-Maria@markgadala·
This story is actually insane: • dude drops $2000 on a DJI robot vacuum like a lunatic • refuses to use the normal app like a peasant • Sammy Azdoufal fires up Claude to crack the API so he can drive it with an xbox controller • Claude delivers the goods • pulls an auth token from their servers, connects successfully • except the system thinks he controls 7000 vacuums • checks again • yep, seven thousand • DJI built authentication with zero device ownership verification • any valid token works for any unit on the planet • Sammy now has eyes inside homes across 24 countries • live vacuum camera feeds everywhere • full floor plans from the mapping data • some guy in germany eating cereal at 3am, unaware his roomba is snitching • one API call away from being the most informed burglar in history • all he wanted was to steer his vacuum with a joystick • does the right thing and reports it • DJI fixes it in two days • back to normal life with his stupidly expensive floor cleaner • IoT companies stay undefeated at shipping garbage security
Mark Gadala-Maria tweet media
English
1.1K
9.9K
64.5K
8.6M
Top 1% Men
Top 1% Men@dtop1percentmen·
If a man has no friends, pay attention...
English
442
5.4K
23K
1.4M
Richard - Thought Criminal
Richard - Thought Criminal@nowiknowmyabcs·
For those of you who don’t travel a lot, let me fill you in on something you probably don’t know. These particular hotels are not owned by Hilton. They are owned and operated by an independent company called everpeakhotels.com who basically pay Hilton as well as Marriott and Choice Hotels and possibly others, to use their name on their buildings. @HiltonHotels can and should use whatever leverage they have to get this turned around ASAP, but these decisions are not being made at the Hilton corporate level. They are being made by a bunch of leftist activists who happen to own some local hotels. Anger is good. Accurately directed anger is better.
Richard - Thought Criminal tweet media
English
1K
1.6K
8.2K
344K
Homeland Security
Homeland Security@DHSgov·
NO ROOM AT THE INN! @HiltonHotels has launched a coordinated campaign in Minneapolis to REFUSE service to DHS law enforcement. When officers attempted to book rooms using official government emails and rates, Hilton Hotels maliciously CANCELLED their reservations. This is UNACCEPTABLE. Why is Hilton Hotels siding with murderers and rapists to deliberately undermine and impede DHS law enforcement from their mission to enforce our nation’s immigration laws?
Homeland Security tweet mediaHomeland Security tweet media
English
25.5K
34.8K
110K
18.6M
Mark Puckett 🇺🇸 retweetledi
The Hacker News
The Hacker News@TheHackersNews·
Hackers are busy. ⚠️ CISA says TP-Link Wi-Fi extenders can be reset + hijacked — and since they’re end-of-life, no fixes are coming. ⚠️ WhatsApp + Apple flaws are being chained in a spyware campaign, quietly targeting fewer than 200 people. Details you don’t want to miss ↓ thehackernews.com/2025/09/cisa-a…
The Hacker News tweet media
English
5
71
179
24.5K
Mark Puckett 🇺🇸 retweetledi
The Hacker News
The Hacker News@TheHackersNews·
Your Salesforce scans aren’t telling you everything. Automated tools show what’s already there. Only human-led penetration testing shows what could happen — uncovering hidden attack paths your scanners miss. Here’s why most teams remain exposed → thehackernews.com/expert-insight…
English
1
4
25
8.6K
Mark Puckett 🇺🇸 retweetledi
ALI TAJRAN
ALI TAJRAN@alitajran·
Over 28,000 Microsoft Exchange servers remain exposed to the internet with a critical vulnerability (CVE-2025-53786)! This affects hybrid environments where an on-premises Exchange Server connects to Microsoft 365. If attackers gain admin rights on-premises, they could breach your cloud systems unnoticed. Suppose you don't have an Exchange Server running anymore, but have previously configured the Hybrid Configuration Wizard or OAuth authentication between Exchange Server and your Exchange Online organization. You must still run the script to delete all certificates of the Office 365 Exchange Online first-party application's Service Principal. If you're unsure whether action is needed, run the script to remove any leftover certificates! Service Principal clean up: alitajran.com/clean-up-certi… CVE-2025-53786 (Microsoft): msrc.microsoft.com/update-guide/v… #ExchangeServer #ExchangeOnline #Cybersecurity #Microsoft365 #PowerShell
ALI TAJRAN tweet media
English
2
43
163
15.1K