NEW LAB: Scattered Spider (UNC3944) 🕷️🕸️
Scattered Spider hits indie studio AB Projekt Blue, deploying ransomware and stealing unreleased game code.
Test your skills on:
👀 Social Engineering & MFA Fatigue
👀 Credential Theft via OST Files
👀 Bring Your Own Vulnerable Driver…
> check in at hotel
> receptionist asks what I’m in town for
> tell her DEF CON
> she says “oh management told me to tell attendees to stay away from the elevator”
> I chuckle in response, grab my stuff and go to my room
> mfw someone has a shell on the rpi running the screen
We discoverd New Fivem 0day exploit - PoC 🚨
⚠️ Unauthorized access to the Vmenu Admin panel on any FiveM server can be achieved by exploiting game network traffic packets.
Credit : @Mohnad@Omarzzu@N4waF_Almutairi
root. for. your. friends. 🤼
it's more than a phrase, it's a deeply held belief. it's way of living, really.
if you want to reject jealousy and thrive in your work and relationships, check out my latest blog post.
knowing how to secure something is MUCH easier when you know all the attacks.
the vulnerablemcp[.]info is a fantastic resource for understanding all the ways that MCP servers can be vulnerable/malicious.
link below.
Rogue MCP servers on the internet are a botnet waiting to happen.
Also, CSRF -> RCE due to poor security in MCP.
And this is just the tip of the iceberg imo.
@atomicbyte_'s blog breaks down how a short collab with @J0R1AN resulted in multiple Critical findings (🔗 below)
564K Followers 954 FollowingContributing editor of https://t.co/i6XvCQ62PW, author of One Nation Under Blackmail. Follow me on Nostr + other Twitter alternatives (see link tree below)
877 Followers 396 FollowingCan we hack it?? Yes we can!!! 😎😎😎
Hey Im BobDaHacker an ethical hacker 🤓 idk what else to say Oh maybe that Im Non Binary 😋
Thx 4 coming to my ted talk
6K Followers 1 FollowingAlternate account for the S2 Underground. Reserved mostly for behind-the-scenes content that is more casual and less professional than the main account.
2K Followers 13 Following📣 We tweet malicious packages detected on npm in real-time. 🚨 Not affiliated with @npmjs or @github. 🛡 Powered by the @SocketSecurity threat feed. ✨
196K Followers 6K Followingcanadian startup founder. prev eng @ x, stripe. yacine_kv on insta
i make my memes with https://t.co/pWRBfY8kn2 -
I write a subscriber only blog. Subscribe!
3K Followers 1K FollowingExterminator H1-6102 Salesforce | Most Impactful Team H1-0131 AWS x Amazon | Best collab H1-407 - Epic Games | Bootstrapped a 7 figs biz | Victor Poucheret
68K Followers 1K FollowingArtemis Cultist. Loosh Harvester. Peattard. At eternal war with Rome. Infinite love is the only truth everything else is illusion!!!!!🇺🇸
11K Followers 298 FollowingTruth Seeker.
Catholic.
Hacker.
Prompter.
Techno-Ethicist.
Chasing my Apotheosis.
Views are correct.
Truth is at the intersection of Athens & Jerusalem
35K Followers 255 FollowingWe help secure the world’s most targeted organizations and products. We combine security research with an attacker mentality to reduce risk and fortify code.
6K Followers 21 Followingthe newest pwn star on the block(chain)! won $8M+ bounty✨ for protecting $300M+ funds at risk🔥| Whitehat @Immunefi Hall of Fame 🏆| @Offside_Labs CTO
3K Followers 316 FollowingBug bounty wizard - All Stars @immunefi. I cast Exorcise on vulnerabilities and Heal on protocols. Prevented exploits worth over $150M.