@autohypnotik Profile picture

Ben Sleek

@autohypnotik

Security Engineer

Similar User
Jamie Thompson photo

@bishabosha

slnk11 photo

@slnk1111

michaelvrlaku photo

@michaelvrlaku

TC.Hppolat🇹🇷 photo

@Hppolat1

GMTMA photo

@gmtma

Sally Sennert photo

@volcanessa

Shivansh Kumar photo

@Mr_7i74N

Ben Sleek Reposted

No other state shows the restraint that the US does in its operations. I’m confident this is an unpopular and biased looking opinion. But having been on the inside I’m telling you if the gloves came off it wouldn’t be a contest. Id prefer if we could agree civ infra is off limits


DuckDuckGo knocked it out of the park with this. youtu.be/QWpPyYlZXNI via @YouTube


Ben Sleek Reposted

Secure Code Reviews meetup.com/OWASP-Delaware… May 24, 2024 at 6 PM - Route 9 library in New Castle, Delaware. By @owasp #CyberSecurity #devops


Ben Sleek Reposted

Chrome 0day is being exploited now for CVE-2022-1096; update immediately forbes.com/sites/daveywin…

Tweet Image 1

Have a need to do a keyword extraction from a corpus of code files in a source repository. Eg. if a method determined price of apples...may return ["buy","apples","price"] etc. Hope something like this exists???


User Agent Spoofing has been commonly accepted. I’m interested in ideas to prevent or raise the difficulty here of forging headers. Can we do better? #owasp #infosec


Not supporting password managers can encourage users to choose less-secure passwords.

Tweet Image 1

Curl piped to sh? You Rust devs live on the wild side. #Rust

Tweet Image 1

Personally identifiable info is valuable and tradable so any business offer claiming to be free and requiring non-essential personal info could be misleading you and not free at all.


Anyone else put on hold with the recording “we are experiencing a high volume of calls…”, but never “we are experiencing an average volume of calls but have staffing issues.” Very curious how these analytics are captured. 🧐


#Log4j CVE-2021-44832 AKA if you let a known serial killer into your house as your personal chef.. he may try to poison you.


Ben Sleek Reposted

Hello Grim Community, It is with heavy hearts that we inform you that our platform was exploited today by an external attacker roughly 6 hours ago. The attackers address has been identified with over 30 million dollars worth of theft here ftmscan.com/address/0xdefc…


Ben Sleek Reposted

Log4j 2.17.0 is out and protects against infinite recursion DoS. CVSS 7.5 logging.apache.org/log4j/2.x/secu…

Log4j 2.16.0 is out and completely disables JNDI by default. logging.apache.org/log4j/2.x/chan…



Ben Sleek Reposted

Good morning folks. If you're patching #log4j today on an Internet facing service, you need to be doing an incident response too. The reality is that someone else almost certainly beat you to it. Patching doesn't remove the existing compromise.


Ben Sleek Reposted

Nothing says "brace for impact" on a vulnerability like coin miners being deployed. This is bottom feeder activity, consider it like a low water mark.

Log4j 2.16.0 is out and completely disables JNDI by default. logging.apache.org/log4j/2.x/chan…



Someone please explain… How are defi bug bounties sponsored? Wouldn’t there be some degree of centralization to raise funding? #DeFi #blockchain #immunefi


Requesting faucet funds into 0x6ab887aa077455c44794b9cC73B0C3eD9B4FFacf on the #Rinkeby #Ethereum test network.


We need more games like Metroid Dread.


Requesting faucet funds into 0x6ab887aa077455c44794b9cC73B0C3eD9B4FFacf on the #Rinkeby #Ethereum test network.


Loading...

Something went wrong.


Something went wrong.