Mike

36.7K posts

Mike banner
Mike

Mike

@mstefan

Grumpy old man who writes code. Believer in science, objective reality and human rights. The Earth is an oblate spheroid. Emojis in Unicode are a blight.

Southern California Katılım Mart 2008
998 Takip Edilen1.1K Takipçiler
Mike
Mike@mstefan·
My feelings about all the people out here going to Coachella.
Mike tweet media
English
0
0
0
7
ぴろん🌸
ぴろん🌸@pirooooon3·
楽しそうだね これって1人前なのかな? アメリカ人ってめっちゃ食べるんだな
日本語
366
29
537
16.2K
Mike
Mike@mstefan·
@IGADON2 There are no alligators in Nebraska. Hence, there is no Nebraska Man to wrestle them. Now you know.
English
0
0
0
8
いがどんー
いがどんー@IGADON2·
めちゃくちゃフロリダにだけ様々なはなしがくる。 ネブラスカとかアーカンソーとかコネチカットとかメリーランドとかこの辺の話も聞きたい。州名ぐらいしか知らんのだ
いがどんー tweet media
日本語
868
82
1.8K
61K
Mike retweetledi
vx-underground
vx-underground@vxunderground·
Yeah, so pretty much this cpuid.com malware is a pain in the ass. I'd have to spend a good bit of time trying to bonk it with a stick and reconstruct some of it. Whoever developed this malware actually cares about evasion and made some intelligent decisions when developing this malware payload. This appears to only impact HWMonitor 64bit. It appears (based on user reports) cpuid became malicious around 7PM EST, April 10th, 2026. However, it is possible it was much earlier than this, this is just when people began noticing and discussing it online. From an extremely high-level overview, it appears the ultimate goal of this malware is data theft, specifically browser credentials. However, I could be wrong in that assessment, but I'm fairly confident in it. I'm guessing this is the end goal because when I emulated it I can see it messing with Google Chrome's IElevation COM interface (trying to dump and decrypt saved passwords). However, between this it does a bunch of other stuff too. 1. They (an unknown Threat Actor) compromised cpuid.com to deliver malware from HWMonitor. It impacts the actual installer as well as the portable installer. It downloads stuff from supp0v3-dot-com, the same domain used from a previous malware campaign targeting FileZilla in the beginning of March, 2026 initially reported by MalwareBytes. 2. HWMonitor comes packaged with a malicious CRYPTBASE.dll. CRYPTBASE.dll is a legitimate Windows library, but they made a fake one to blend in (malware masquerading). This DLL is responsible for connecting to their C2 and downloading the other malware stages. 3. It tries to detect emulation and prevent reverse engineering by checking for the presence of specific registry keys on the machine. However, they failed doing this and didn't account for everything. Notably, they only check for VirtualBox (whomp, whomp). 4. It downloads a .cs file from a remote C2 and then compiles it manually on the machine by invoking .NET stuff. This is an interesting strategy. It does all of this via Powershell (LOLBIN nonsense). 5. The .cs file it compiles is a .NET binary with NTDLL exports. The main HWMonitor binary performs process injection using this compiled .NET binary. This is an interesting strategy. 6. Almost everything it does is performed in-memory. I would have to do through this and manually bonk all of this stuff with a stick and determine precisely how it operates. However, I don't think that is necessary because at this point we know this is malware and we know it's trying to steal browser credentials. +2 points for IElevation COM Interface credential dumping +1 point for inline Powershell CLI DLL compilation +1 point for .NET assembly NTDLL export proxying -1 point for botched anti-emulation +2 points for website compromise and supply chain attack +1 point for memory persistence -3 points for recycling the same C2 from March, 2026 campaign Overall I give this malware a B-. This is pretty good malware.
vx-underground tweet media
English
42
160
2.1K
153.5K
Mike
Mike@mstefan·
@JenMsft ... it's from inside the house!
English
0
0
1
12
Jen Gentleman 🌺
Jen Gentleman 🌺@JenMsft·
Trying to figure out where the beep is coming from
GIF
English
8
1
40
1.8K
LadyValor
LadyValor@lady_valor_07·
Nope, not ornaments. My friend is going through the house where her grandma and aunt lived their whole lives and finding weird stuff. Apparently these are solid and very heavy; too heavy to hang on a tree. What are they
LadyValor tweet media
English
4.1K
62
885
124.1K
Mike
Mike@mstefan·
@UK_Daniel_Card jeebus christmas, what weird times we find ourselves mired in
English
0
0
1
22
mRr3b00t
mRr3b00t@UK_Daniel_Card·
lol
8
0
31
2.8K
Mike
Mike@mstefan·
@sevdaloji What's funny is the app first said your post was translated from Japanese, but read as perfect English. When I clicked on it, it "fixed" itself to say translated from Turkish. A minor bug, but so far it's fairly impressive.
English
0
0
0
8
Sevda
Sevda@sevdaloji·
ben bu tweeti türkçe yazıyorum siz hangi dilde okuyorsunuz🌸
Türkçe
2.3K
139
4.2K
104.3K
Mike
Mike@mstefan·
@ai_for_success It reads like it's been written in English. Impressive stuff.
English
0
0
0
4
AshutoshShrivastava
AshutoshShrivastava@ai_for_success·
तो X ने ऑटोमैटिक ट्रांसलेशन लॉन्च कर दिया है। क्या इसका मतलब है कि मैं हिंदी में लिख सकता हूँ और आपको फिर भी यह इंग्लिश में दिखेगा? मैं आमतौर पर हिंदी में नहीं लिखता, बस जिज्ञासा है। आपको यह पोस्ट किस भाषा में दिख रही है?
हिन्दी
2.7K
132
3.6K
129.9K
Mike
Mike@mstefan·
@Jackywine @elonmusk Let's work on keeping people alive on our moon for a few weeks before talking about Mars, or Dyson spheres. 🙄
English
0
0
1
13
Jackywine
Jackywine@Jackywine·
@elonmusk The whole world should do something greater together, such as building a Dyson sphere or colonizing Mars, instead of focusing on competing for this little resource on the earth!!!!!!!
English
1
0
1
304
Mike
Mike@mstefan·
@dogsmellsgood Only 14-16%? I assumed it was something anyone could do. Now I'm feeling special.
English
0
0
0
6
🦂finn
🦂finn@dogsmellsgood·
Holy fucking shit. Finally found the name for it. Im going to cry Ive never been able to explain this to anyone they never know what im talking about
🦂finn tweet media
English
3.5K
2.2K
37.3K
3.7M
Mike
Mike@mstefan·
@mistressdivy I scroll X and Reddit, inevitably come across various relationship posts, which makes me happy that I don't have a wife or girlfriend.
English
0
0
0
4
Mistress Dividend
Mistress Dividend@mistressdivy·
Single men who live alone, with no wife or girlfriend… what do you guys do on the nights you feel really lonely?
English
5.9K
245
6.6K
4.2M
Mike
Mike@mstefan·
@davepl1968 @_jameshatfield_ I think that's it, exactly. Our educational system is a relic of the industrial age where the goal was to teach kids how to be obdeient, efficient factory workers (right down to the ringing bells telling kids when there's a "shift" change and its time for their next class.)
English
0
0
1
299
Dave W Plummer
Dave W Plummer@davepl1968·
That's kind of my point - that SOME kids will really flourish in certain tasks. Computers are one of them. Music is another. Drafting. Acting. Math. Whatever. But if you don't expose them to it, it shows up. I don't see the educational system so much as a Marxist thing as a relic of the factory/industrial/military system that needed a steady supply of fresh recruits. If we knew how to do it well, we should split kids into different tracks based on their abilities/interests. Not sure that we know how, though.
English
3
1
45
8.8K
Dave W Plummer
Dave W Plummer@davepl1968·
I taught the elementary kids' computer lab at the local elementary school for about ten years. By about fourth grade, the kids vary widely in PC ability. You'll have one kid porting Doom and one kid crying because CAPS LOCK is on and he can't log in. One kid trying to eat toner while another fixes the projector. A lot of that is comfort - you can tell some kids use a PC at home a great deal while others have seemingly no exposure. Does it matter? No idea! I understand limiting screen time and so on, but sometimes kids who genuinely have a knack for it are being held back by good intentions! When I sold my company, we donated all the extra PCs and monitors to the school... a couple of dozen Dell Dimension 4200s and so on. Absolutely required for any mid-2000s computer lab!
Cigarette Nostalgia@CigsMake

The kids today don’t know the dopamine rush of going to the computer lab

English
104
476
11.5K
1.2M
Mike
Mike@mstefan·
@Freyy_is It *is* the most versatile word in the English language, after all.
English
0
0
0
2
Freyy
Freyy@Freyy_is·
a woman accidentally said “fuck” in a grocery store after dropping her phone and a kid standing behind her repeated it instantly. she turned around absolutely horrified ready to apologize and the mother was crying. her son is nonverbal and 10 years old and just said his first word ever. the word was fuck. they got invited to a pool party. this is the most beautiful and chaotic story i have read this week.😭
English
165
2.5K
65.5K
2.7M
Crisis of Conscience
Crisis of Conscience@crisisofconsc·
Imagine relying on Microsoft products in space lolololol
Latest in space@latestinspace

#NEWS 🚨: Artemis II crew experienced issues with Outlook this morning and had to ask ground crew for assistance "We have two Microsoft Outlooks and neither one is working"

English
26
12
304
21.9K
Mike
Mike@mstefan·
@vee_dimple @luxemiaa It's just the natural result of his two functioning brain cells fighting for third place.
English
0
0
1
71
Vee 🎀💕
Vee 🎀💕@vee_dimple·
@luxemiaa The craziest part isn’t even that he was wrong, it’s how confidently he kept going like he really created his own definition and then tried to educate you with it. That level of misplaced confidence needs to be studied
English
3
3
82
11K
Mike
Mike@mstefan·
@JenMsft On X, every day is April Fools day.
English
0
0
1
17
Jen Gentleman 🌺
Jen Gentleman 🌺@JenMsft·
It's April fools day, and so like any other day you should use critical thinking to assess the validity when reading posts from other people you don't know
English
14
7
82
3.5K
Mike
Mike@mstefan·
@crisisofconsc We will find you and return you home safely.
English
0
0
1
6
Crisis of Conscience
Crisis of Conscience@crisisofconsc·
I'm actually really starting to like Microsoft Teams. Seems like a great product.
English
51
2
111
4.2K