@bartn_ Profile picture

Bartek Nowotarski

@bartn_

Security Research | Prev: Staff Software Engineer at @StellarOrg

Similar User
Jed McCaleb photo

@JedMcCaleb

Jake Urban photo

@jakeurban_

Tyler van der Hoeven photo

@kalepail

Anthony Barker photo

@anthony_barker

OnLuckyM45 photo

@Unluckym45

Stellarport photo

@stellarportio

Colony photo

@joincolony

Louisa Bai photo

@louisabai

Jesse Lund photo

@jesselund

overcat photo

@overcat_me

Mark Heynen photo

@markheynen

pawel mamcarz photo

@pawelmamcarz

Kuba Filipowski photo

@kubafilipowski

ella 🐻⛓️ photo

@ellaqiang9

Michael photo

@michaeldowling

Pinned

The case I've been working in 2024.Q1: The CONTINUATION Flood is a class of vulnerabilities within numerous HTTP/2 protocol implementations. A single TCP connection can lead to server crash. Check the advisory at: nowotarski.info/http2-continua…


Przypominam że @Stysz alarmował o możliwych powodziach w Polsce 3 miesięcy przed nimi (x.com/Stysz/status/1…)!

Za niespełna 2 tyg, od Prezydent Gdańska, gdy hale będą się zawalały pod ciężarem śniegu, usłyszymy, że pogoda ją zaskoczyła.



Bartek Nowotarski Reposted

Poland disclosed it's help for Ukraine. 1/x In relation to GDP:

Tweet Image 1

H1 2024 Global Threat Analysis: > In the first half of 2024, Web DDoS attacks saw a significant increase in frequency and intensity. A good portion of the activity can be attributed to hacktivists motivated by political tensions and new attack vectors such as HTTP/2 Rapid Reset…


Co (wg mnie) powinien zrobić rząd/wojsko w sprawie #Powódź z zakresu IT (i możliwe że robi po cichu)? 1. Koordynacja, 2. Walka z dezinformacją, 3. Infrastruktura krytyczna 🧵 1. Koordynacja Aktualnie głównym problemem wydaje się być koordynacja pomocy zarówno materialnej (woda,…


People, wear your apple watches! I fell down the stairs today (I'm fine, just some pain in the ankle, not broken) and it triggered the fall detention. If it had been more serious it would have called SOS or my emergency contract. It definitely can save lifes!


Exploiting authorization by nonce in WordPress plugins nowotarski.info/wordpress-nonc…


This seems to be a valid point. From what I've read the fix will not be automatic because systems are crashing at boot stage. Admins need to manually update each and every Windows machine in their infrastructure ☠️ #Crowdstrike

I don’t think it’s too early to call it: this will be the largest IT outage in history



Bartek Nowotarski Reposted

Faced with the problem of illegal migration on the Polish-Belarusian border, along with @Poland_MOD and @Straz_Graniczna, we are sending a clear message to all potential immigrants: don't try to cross the border. Don’t let Belarusian and Russian services take advantage of you❗️


Bartek Nowotarski Reposted

Oddaj krew dla naszego Brata❗ Gdzie i kiedy? ✔️ 5 czerwca: 8:00 -11:30 placówka Straży Granicznej - Czeremcha ✔️ ⁠7 czerwca: 7:20 -11:45 Terenowy Oddział Krwiodawstwa - Hajnówka ✔️ ⁠9 czerwca: 10: 00 - 14:00 k. kościoła - Zabłudów ❗ Nasz Brat został zraniony nożem w trakcie…

Tweet Image 1

Conferences I'm attending in coming weeks if you want to say 'hi!': - 27-28.05 CONFIDENCE @ Kraków - 03-06.06 M3AAWG General Meeting @ Vienna (I'll be presenting CONTINUATION Flood 🙌)


Locked Shields starting today. Fingers crossed for 🇵🇱+🇫🇮 team.


Bartek Nowotarski Reposted

Warning: Multiple vulnerabilities within HTTP/2 protocol implementations known as #CONTINUATION Flood. Exploiting these #vulnerabilities can lead to servers crashing or performance degradation. Avoid this by applying the necessary updates! cert.be/en/advisory/wa… #patch #patch


Gdyby ktoś chciał pogadać o "CONTINUATION Flood" to można mnie spotkać na konferencjach w kwietniu: 15.04 - INSECON.pl">INSECON.pl Poznań 16.04 - INSECON.pl">INSECON.pl Poznań 17.04 - Secure.edu.pl Warszawa

The case I've been working in 2024.Q1: The CONTINUATION Flood is a class of vulnerabilities within numerous HTTP/2 protocol implementations. A single TCP connection can lead to server crash. Check the advisory at: nowotarski.info/http2-continua…



Ciekawe jak działa żabka nano 🤭

Amazon Fresh is killing off its 'Just Walk Out' technology, and has admitted it relied on 1,000 staff in India to check purchases before sending receipts. I'd suggested this in 2021, based on the odd time gap between shopping & getting a receipt. gizmodo.com/amazon-reporte…

Tweet Image 1
Tweet Image 2


War crime

🧵1/9 An Israeli drone fired three missiles one after the other at a World Central Kitchen convoy escorting an aid truck to a food warehouse in Deir al-Balah, according to defense sources familiar with the details haaretz.com/israel-news/20…



Loading...

Something went wrong.


Something went wrong.