tuckner

5K posts

tuckner banner
tuckner

tuckner

@tuckner

Finding bad software extensions at @SocketSecurity (acquired @secureannex). #️⃣ https://t.co/KGANHVF6BP

Kansas City, MO Katılım Mayıs 2008
851 Takip Edilen3.1K Takipçiler
tuckner retweetledi
Florian Roth ⚡️
Florian Roth ⚡️@cyb3rops·
“Deleting GitHub accounts” is the new “we blocked their IP address”
toasts@t0asts

@cyb3rops deleting their github account was the LAST thing that should've been considered

English
4
18
209
22.5K
ɐʞsǝs
ɐʞsǝs@akses_0x00·
@tuckner Bro this tool would have saved me a lot of frustration a few months ago I can’t even tell you
English
1
0
1
27
tuckner
tuckner@tuckner·
@PeteMarkowsky It just started because I didn't want to download a file to get a hash 😅
English
0
0
0
25
tuckner
tuckner@tuckner·
@PeteMarkowsky Haven't thought about it much to be honest with you! Makes sense but I wasn't intending on crawling deeply - just working off manual searches. That said it does seem possible!
English
1
0
0
68
tuckner
tuckner@tuckner·
Added a dead simple AI triage to user reported malware in #githash
tuckner tweet media
English
1
0
15
1.7K
Zack Korman
Zack Korman@ZackKorman·
The biggest threat AI poses to cybersecurity isn't the vulnerability apocalypse. It's that it’s now trivially cheap for security vendors to build products that look like they work but don’t. The real threat actors are the unethical vendors we met along the way.
English
39
34
261
9.8K
tuckner
tuckner@tuckner·
Githash - view hashes and find relations of files on GitHub. This app makes it really easy to get hashes of files in repositories without having to download anything. I'll only be saving what folks search for now, but as the corpus grows it will allow folks to identify prevalence and search across GitHub by SHA256. Also added some lightweight tagging of files which will follow the hash across repositories. Give it a try! githash.org/breardon2011/m…
English
2
4
22
1.7K
tuckner retweetledi
Vulnerable U
Vulnerable U@vuln_u·
Thousands of internal repos were compromised through a single malicious VS Code extension. Normal developer tools are becoming one of the easiest ways into major organizations 🗝️
English
1
4
14
3.3K
Indy Singh
Indy Singh@indy_singh_uk·
@tuckner Didn't you only have this idea like 2 days ago? 🤯
English
1
0
1
30
tuckner
tuckner@tuckner·
Added graph and timeline views too
tuckner tweet mediatuckner tweet media
English
0
1
6
1.1K
tuckner
tuckner@tuckner·
This git hash searching is quite fun already. You can see symlinks and also go view the target file reference.
tuckner tweet media
English
0
0
12
838
Zack Korman
Zack Korman@ZackKorman·
I’m thinking I might go to this “def con” thing this year. Who here is going? I’m trying to decide whether I like enough of you to make it worth it
English
70
2
130
15.6K