mrblacyk

348 posts

mrblacyk

mrblacyk

@mrblacyk

DFIR, HTB, ATC, open source. https://t.co/0Lzxt87IwN

Katılım Aralık 2018
87 Takip Edilen99 Takipçiler
mrblacyk retweetledi
Bad Cyber
Bad Cyber@badcybercom·
Dieselgate, but for trains - some heavyweight hardware hacking. badcyber.com/dieselgate-but… Story about trains that broke down and analysis that discovered it was not a coincidence.
Bad Cyber tweet media
English
13
147
542
110.8K
mrblacyk retweetledi
Michał Kowalczyk 🇺🇦
Achievement unlocked: Cracking a train @q3k/111528162462505087" target="_blank" rel="nofollow noopener">social.hackerspace.pl/@q3k/111528162…
English
12
88
419
49.8K
mrblacyk retweetledi
vd
vd@vd·
so... flipper zero is now forbidden on hand luggage across uk airports. just got mine seized by security. ffs!
GIF
English
60
165
629
253.5K
mrblacyk retweetledi
vx-underground
vx-underground@vxunderground·
August 2023 (version 1.82) of Visual Studio Code now supports Port Forwarding to allow easier access from Threat Actors. inb4 Visual Studio Code as a C2? Very cool 👍 More information: code.visualstudio.com/docs/editor/po…
vx-underground tweet media
English
12
80
543
73.2K
mrblacyk retweetledi
Danny Lin
Danny Lin@kdrag0n·
Add "auth sufficient pam_tid.so" to /etc/pam.d/sudo and never type a sudo password again pam_tid.so + Magic Keyboard with Touch ID = 😘
Danny Lin tweet media
English
15
116
1.3K
179.7K
mrblacyk retweetledi
Mike Takahashi
Mike Takahashi@TakSec·
Google Dork - Sensitive Info inurl:email= | inurl:phone= | inurl:password= | inurl:secret= inurl:& site:target[.]com Emails/phone#s/tokens commonly cached directly in Google
Mike Takahashi tweet media
English
13
274
1.1K
98.2K
mrblacyk retweetledi
Maximilian Hils
Maximilian Hils@maximilianhils·
No, it was not a joke. "Our paying customers need X, when will you fix it?" may not be the best way to introduce yourself to an open source project. #TodayInOpenSource
Maximilian Hils tweet mediaMaximilian Hils tweet media
English
368
1.9K
19.9K
3.1M
mrblacyk retweetledi
Troy Hunt
Troy Hunt@troyhunt·
This is so cool, thanks @FBI 😊
Troy Hunt tweet mediaTroy Hunt tweet mediaTroy Hunt tweet media
English
139
85
3.4K
264.1K
mrblacyk retweetledi
LLM Security
LLM Security@llm_sec·
* People ask LLMs to write code * LLMs recommend imports that don't actually exist * Attackers work out what these imports' names are, and create & upload them with malicious payloads * People using LLM-written code then auto-add malware themselves vulcan.io/blog/ai-halluc…
English
77
2.1K
7.4K
1.8M
mrblacyk retweetledi
Matt Johansen
Matt Johansen@mattjay·
🚨 Woah. Crazy new research paper I just read. Remotely and inaudibly issue commands to Alexa, Siri, Google Assistant, etc. "allows attackers to deliver security-relevant commands via an audio signal between 16 and 22 kHz (often outside the range of human adult hearing)" 🔊
Matt Johansen tweet media
English
37
692
2.2K
542.2K
mrblacyk retweetledi
Nathan McNulty
Nathan McNulty@NathanMcNulty·
Did you know we can block gTLDs (and FQDNs) with Windows Firewall and Defender for Endpoint? 💡 This might be helpful if someone started selling TLD's you'll never do business with ;) Go to intune.microsoft.com under Endpoint security - Firewall, Reusable settings, click Add
Nathan McNulty tweet media
English
15
175
661
256.1K
mrblacyk retweetledi
Cody Thomas
Cody Thomas@its_a_feature_·
It's official! Mythic 3.0 is LIVE! Check out the blog post about it here: posts.specterops.io/c2-and-the-doc…. Highlights include: rpfwds, graph groupings, jupyter notebook, custom webhooks, tags, docker updates, and an entirely new back end!
GIF
English
2
80
168
52.6K
SwiftOnSecurity
SwiftOnSecurity@SwiftOnSecurity·
I GOT YOU ROBOT HUMANS REMAIN S TIER
SwiftOnSecurity tweet media
English
5
1
75
18.4K
SwiftOnSecurity
SwiftOnSecurity@SwiftOnSecurity·
If I was going back in history and could only have one thing I'd take the recipe for Gatorade/ORS then utterly dominate Europe militarily
English
6
7
130
47.3K
mrblacyk retweetledi
IAM!ERICA
IAM!ERICA@EricaZelic·
🧵Some of my favorite LDAP queries. I let you all infer which tools to use them with. Most of these are from places around the web, nothing new. Just a list. 1. Find all DCs: (&(objectCategory=Computer)(userAccountControl:1.2.840.113556.1.4.803:=8192))
English
7
112
451
65.1K