Ben
418 posts

Ben
@benmcga
security researcher | views are my own
London เข้าร่วม Aralık 2010
846 กำลังติดตาม241 ผู้ติดตาม

🚨Container Breakout Vulnerability 🚨
A fix for the vuln(CVE-2024-21626) with the highest score in runc history has been released. As the maintainer of the OCI Runtime Spec, I strongly suggest you check the correspondence of the vendors you are interested in.
container breakout through process.cwd trickery and leaked fds
github.com/opencontainers…
runc 1.1.12 -- "Now you're thinking with Portals™!"
github.com/opencontainers…
I'd like to thank the vuln reporter and the runc developers who quickly identified and fixed the exact extent of the impact.
English

@ZephrFish Alfred with PowerPack, it can do pretty much everything Reycast can (apart from AI stuff) and is more customisable imo.
English

I’m in but playing on “re:Invent season hard mode”
Tanya Janca | Shehackspurple@shehackspurple
English
Ben รีทวีตแล้ว
Ben รีทวีตแล้ว

There is a big storm coming! 🌩️
A brand new #HTB fortress, powered by @awscloud is here for you to conquer!
✅ #Cloud exploitation
✅ #Web app #pentesting
✅ #AD abuse
Ready to attack? Find out more here: bit.ly/3nQD1J5
#HackTheBox #CloudHacking #CyberSecurity

English

@benmcga 3. Even with the error message, did you bring your TS4 back to Mac and verify the firmware version there? It is possible that even with the error message, your TS4 was still updated to 39 successfully. If not, please let us know.
This can be platform or driver issue.
English

slack.cncf.io for getting an invite to CNCF slack should be working again. Please holler if you still see a problem @CloudNativeFdn @kubernetesio #kubecon - Please RT
English

Well this is fun. How many days until a TravisCI “we’ve been breached” post shows up, are we taking bets?
Laurie Voss@seldo
According to GitHub, compromised credentials were used to access npm's own private code on GitHub, and potentially to access the AWS S3 buckets on which packages, including private packages, are stored: github.blog/2022-04-15-sec…
English







