NightWolf
129 posts

NightWolf
@nightwolf780
Possible CTF Addict Member of CXP CTF team
Katılım Temmuz 2019
568 Takip Edilen368 Takipçiler
NightWolf retweetledi

#flareon12 is coming in hot and fast this year and will only run for 4 weeks this year instead of the usual 6. Don't miss it! flare-on.com
English

Did you miss our @defcon panel this year? It's hacker history storytime hosted by @richinseattle @netspooky @chompie1337 with special guests! Check it out: youtube.com/watch?v=TW-D1I…

YouTube
English
NightWolf retweetledi

@_JohnHammond @BSidesTampa Excellent! I've been looking forward to this!
English

Back in 2023, the assessment of the pre-authentication vulnerability in SSH was that it wasn't exploitable on Linux.
For my OffensiveCon 2025 keynote, I wrote enough of an exploit to show, with the right heap groom and stabilization, it's likely exploitable. Then I tried to have AI do it.
Up to @taviso whether that merits switching to Windows 98 :)
youtube.com/watch?v=Y1naY3…

YouTube
Tavis Ormandy@taviso
If someone get a working OpenSSH exploit from this bug, I'm switching my main desktop to Windows 98 😂 (this bug was discovered by a Windows 98 user who noticed sshd was crashing when trying to login to a Linux server!)
English

@rootsecdev Probably true. But it makes me laugh every time regardless.
English
NightWolf retweetledi

It is a lot of fun seeing the First Bloods channel fill up for #NahamCon2024 CTF now that the game is running -- get your own team name up there! jh.live/nahamcon-ctf (5/23-5/25)

English
NightWolf retweetledi

There is now a publicly available proof of concept and active exploitation for the ScreenConnect vulnerability. All bets are off...
Know that exploitation will nuke current user accounts on the system!
John Hammond@_JohnHammond
@watchtowrcyber Bam, watchTowr is the first to blow the whistle! 😁
English
NightWolf retweetledi

.@HuntressLabs security researchers have successfully created an exploit for #ScreenConnect <=23.9.7. We're being purposely tight-lipped but 100% agree w/@ConnectWise’s 10 CVSS score. Can confirm server-side #RCE w/ability to pivot to endpoints. PATCH NOW. connectwise.com/company/trust/…

English

@chompie1337 @FuzzySec Huzzah! I've been waiting for this to be up.
English

Rootkits, keyloggers, and DKOM (oh my!). The video is finally up for @FuzzySec and I’s BlackHat talk: Close encounters of the advanced persistent kind: Leveraging rootkits for post-exploitation. Check it out ☺️
youtu.be/t7Rx3crobZU?si…

YouTube
English
NightWolf retweetledi

I try an avoid this hellsite, but I did a quick dive into sudo in Windows and here are my initial findings. tiraniddo.dev/2024/02/sudo-o…
The main take away is, writing Rust won't save you from logical bugs :)
English
NightWolf retweetledi

@_JohnHammond Congratulations! It's been an awesome journey to watch. I think you got the haircut figured out eventually. 😉
English

There are some excellent challenges in the pool. Come check it out!
John Hammond@_JohnHammond
Our #NahamCon2023 CTF is coming up in JUST FIVE DAYS 😱 Game starts this Thursday, June 15 at 12:00 PM PDT! We've had an absolute blast hosting this each year -- you can register and sign up to play right now! ctf.nahamcon.com
English

We're gifting 3 people access to our private malware database
*Work in progress, not entire VXUG collection
*Searchable by hash, tag, etc.
*IOCs extracted from (some) binaries
Specials thanks to @CERT_Polska_en & @hatching_io for the help!
Comment for a chance to get access:)




English

@0x1h3r @_JohnHammond @optionalctf Read the "How to Register" page on the right sidebar. It has more information.
English

Coming in hot, this time without our accounts being yeeted into one :D
John Hammond@_JohnHammond
Today is the day for #hacktivitycon2021 CTF :) ctf.hacktivitycon.com
English

@z3ro_daze @_JohnHammond Check the "How To Register" page. There are further directions there.
English

pssst... registration for #hacktivitycon2021 CTF is finally open and online. go do it. plz retweet for visibility cuz the game in A WEEEEEKKKK
ctf.hacktivitycon.com
September 16 - September 18!

English
NightWolf retweetledi

Hypeee, registration for Hacktivitycon 2021 ctf (ctf.hacktivitycon.com) is up, Get registered because it's gonna be awesome.
#hacktivitycon2021 #ctf #ctf4hire
English











