syngularity

438 posts

syngularity banner
syngularity

syngularity

@syngularity1

Punk Rock Warlord. Breaker of Ciphers, Destroyer of Networks, Mad Professor of Dark Arts. I did it #35minutesago Aut inveniam viam aut faciam - Hannibal Barca

Views and opinions are my own. เข้าร่วม Temmuz 2021
153 กำลังติดตาม172 ผู้ติดตาม
ทวีตที่ปักหมุด
syngularity
syngularity@syngularity1·
If you saw my @AppSec_Village talk at @defcon on #connectwise #screenconnect and my new #exploit technique "HTTP status code injection" , the PoC code is available: github.com/SYNgularity1/H… Not sure if their site still works, but it works with all kinds of #SSRF against many things beyond their port test page! DO NOT use this for abuse or evil. #ASV #APPSECVILLAGE #DEFCON31 #defcon #hacking #exploit
English
0
1
2
695
syngularity รีทวีตแล้ว
cyb3rh0und
cyb3rh0und@cyb3rh0und·
What an amazing opportunity! @agreenbhm @syngularity1 Are world class researchers! I got the opportunity to partake in the research for Living of the Land inside your WiFi! Thank you for all the Q&A during our work shop it you all see what we see!
IoT Village@IoTvillage

Last day of @defcon 🥹Please come by and say hi. We have so many activities waiting for you starting at 10am!

English
0
2
3
147
syngularity
syngularity@syngularity1·
Finding #0days and developing #exploits is like fly swatting with a sledgehammer. You will wildly swing around before you hit your target. The less clumsy or inefficient you are, the better. Always consider abuse of functionality and tools, test for unintended results. Attacks don't need to be clever or elegant to accomplish your task... they just need to work. #infosec #pentesting #cybersecurity #bugbounty #Hacking
English
0
0
0
145
Tim Medin
Tim Medin@TimMedin·
We're looking for more folks on the Wednesday Offensive. It is only 30 minutes, and no slides! If you have a cool topic, let me know and we'll schedule a time for you. DM me if you're interested.
English
4
17
38
9K
syngularity
syngularity@syngularity1·
"What started as a simple web application vulnerability, upon closer inspection, turned out to be two previously-unreported flaws affecting hundreds of thousands of devices, according to Pyle, from routers and printers to cable modems. One bug is a denial-of-service vulnerability that a hacker could use to take the switches, and the networks that rely on them, offline. Another flaw could reveal sensitive information about a switch’s configuration." Oh, I had a *lot* more control *that night* than a #hacking a paltry few hundred thousand devices, TV, radio, broadcasts.... True story. cyberscoop.com/shmoocon-cisco…
English
0
0
0
103
syngularity
syngularity@syngularity1·
youtu.be/d2ASPQSHwJ4?si… *fade in to man with #ssh window and @PortSwigger #burpsuite on monitor, chugging energy drink.* "So I obliterated this entire #switch ecosystem (cisa alert) and started getting curious about what it got me into when...." *DOZENS of #CVE across all sorts of critical infrastructure... Or about 45 minutes later.* "I gotta talk to someone at @DHSgov. Fast. I broke a whole lot of stuff." *cliffhanger*
YouTube video
YouTube
English
1
0
0
168
syngularity
syngularity@syngularity1·
In response to the 50 texts I just got about the #eas Emergency Alert System test: No, I'm not responsible... But pretty sure my work @defcon @IoTvillage was a factor. 😂😂🔥🔥 #hacking #defcon Still awesome.. Never did get a apology for calling me crazy from a few folks.
syngularity tweet media
English
1
4
7
8K
syngularity
syngularity@syngularity1·
@defcon Maybe next year I'll #cfp the entire untold story in all of its awesome glory. It is one of the craziest stories you will ever hear. I am still releasing #exploit work and research from that night. (2019) I broke so much stuff across so many things there are multiple #cisa @CISAgov alerts #cve for years. Just never told the tale or put the pieces together. #warstories #keepreceipts #pocorgtfo
syngularity@syngularity1

@defcon No hard feelings @defcon I still show up every year and put on a show.

English
0
0
1
68
syngularity
syngularity@syngularity1·
There's this rumor going around that you need to be a speaker at @defcon to get a #defcon speaker flag. Not true. You just need $20 and someone with social engineering skills.
syngularity tweet media
English
1
0
2
338
syngularity
syngularity@syngularity1·
To all of you trying to hack the #eas in @IoTvillage #defcon31 @defcon... Here is the only hint I'm going to provide: Back in 2019, I popped the system in just a few minutes. (I've waited YEARS for the payoff with this..) The second coolest thing I did in 2022 was disclose my EAS work and make headlines... The answer is staring you in the face. Real goths don't wear black, they sack Rome. @briankrebs
syngularity tweet media
English
0
0
3
647
syngularity รีทวีตแล้ว
IoT Village
IoT Village@IoTvillage·
@syngularity1 is hacking away, come join the crowd and see what Cybir is up to! We'll be here all day😎
IoT Village tweet media
English
0
1
1
113