razaborg
@razaborgTweets are my own. Un jour j'irai vivre en théorie, parce qu'en théorie, tout se passe bien.
2024-11-14 (Thursday): #RaspberryRobin infection chain uses WebDAV share, today at 2z[.]si@ssl\u\. Victim downloads a zip archive, then extracts and double-clicks an HTA file, which loads and runs a Raspberry Robin DLL from the WebDAV share. Details at bit.ly/3O9XMwA
Miller : un outil Open Source pour le traitement de données en ligne de commande. Il permet de manipuler des fichiers CSV, TSV et JSON avec des opérations telles que awk, sed, cut, join et sort. 👉 Projet : github.com/johnkerl/miller 👉 Documentation : miller.readthedocs.io/en/6.12.0/
Project Zero blog: LLMs find 0days now! 👀 And: our fuzzer setup did *not* reproduce it! googleprojectzero.blogspot.com/2024/10/from-n…
Hey :) We published a blog talking about ORB networks and a summarise of the purpose, use cases and more: team-cymru.com/post/an-introd… This blog is also a teaser for more blogs to come 👀 @teamcymru_S2
Some personal news: I will be joining @Meta's security team (focusing on WhatsApp) starting next week. This is a big life change, I'm also moving to London permanently. I took this opportunity to reflect on the state of threat intel: blog.kwiatkowski.fr/threat-intel-t… LMK if it resonates!
ESET researchers have discovered new Rust-based tooling leading to the deployment of Embargo ransomware. The new toolkit consists of a loader and an EDR killer, named MDeployer and MS4Killer. welivesecurity.com/en/eset-resear…
🚨 Breaking: A zero-day vulnerability (CVE-2024-47575) has been observed impacting Fortinet FortiManager devices, posing serious risks. Learn how the exploit works, and how to defend against the threat. Read more -> bit.ly/4hbqmuR #ThreatIntelligence
🔍 Struggling to track RMMs? Meet LOLRMM — your one-stop solution for detecting & managing RMMs! 🚨💻 ⚔️ lolrmm.io 🔥 ✨ Benefits of LOLRMM: • 🗂️ Single source for ALL RMMs • ⚡ Optimized for speed across SIEMs (KQL, Splunk, etc.) • 🚫 No more duplicates —…
Samsung’s scarce advisory on CVE-2024-44068 makes no mention of itw exploitation, but Google researcher Xingyu Jin, who was credited for reporting the flaw in July, and Google TAG researcher Clement Lecigene, warn that an exploit exists in the wild. securityweek.com/google-warns-o…
Ne faites pas comme [organisation étatique qui a changé son nom de domaine], gardez l'ancien nom en fonctionnement : il y a partout des hyperliens et des signets qui s'y réfèrent ! #timeout #NomDeDomaine #BonnePratique
Hello Twitter Est ce que quelqu’un aurait des places #UYBHYS24 ? Si oui, je suis intéressé 🙏 cc @UYBHYS
Well, this was a stupid insomnia project, but... 😂 Playground code is here: github.com/JohnHammond/re…
ludus.cloud is magic. I set up, ran 3 commands, went to sleep, and have an SCCM/AD lab this morning with tons of issues to explore. Thanks @badsectorlabs for Ludus and @synzack21 and @M4yFly for the labs! Check out posts.specterops.io/automating-scc… and mayfly277.github.io/posts/SCCM-LAB…!
This is cool: Common PIN Analysis from @haveibeenpwned: github.com/Slon104/Common…
An unexpected journey into Microsoft Defender's signature World retooling.io/blog/an-unexpe…
A taille supérieure ou égale, pour copier un disque, on peut utiliser la commande "pv" (Pipe Viewer) Parfois + rapide que "dd", équivalent à "cat", elle permet d'avoir une barre de progression ! "pv" peut être utilisé dans un pipe avec tar, mysqldump , ... pour avoir un suivi.
Notre bon vieux "dd" sous Linux pour cloner des disques. Les 2 connectés en USB 3 :)
Internet Avantage : tout le monde peut écrire Inconvénient : tout le monde peut écrire (Piqué sur framapiaf.org/@gub/113006147…
This is the most research I've done for a blog post. Ever. It's taken months, reviewing hundreds of papers, standards, RFCs, interviews, etc. I was lucky to get to talk to some people from the original P802. This is the History of Ethernet. lostintransit.se/2024/08/21/eth…
I like this website, it's super handy! It has all the reverse shells you need 👇 #infosec revshells.com
United States Trends
- 1. #OnlyKash 59,1 B posts
- 2. Starship 199 B posts
- 3. Jaguar 64,1 B posts
- 4. Sweeney 12 B posts
- 5. Nancy Mace 88,8 B posts
- 6. Celtics 17,8 B posts
- 7. SpaceX 215 B posts
- 8. Medicare and Medicaid 3.253 posts
- 9. Jim Montgomery 4.164 posts
- 10. Jose Siri 2.909 posts
- 11. Dr. Phil 8.651 posts
- 12. $MCADE 1.367 posts
- 13. Linda McMahon 3.708 posts
- 14. Monty 11,4 B posts
- 15. Dr. Mehmet Oz 8.092 posts
- 16. Stephen Vogt 1.362 posts
- 17. #LightningStrikes N/A
- 18. Cenk 15,1 B posts
- 19. Lichtman 1.407 posts
- 20. #SpiteMoney N/A
Something went wrong.
Something went wrong.