🚨 Security Alert: A critical vulnerability (CVE-2025-47934) in OpenPGP.js (the crypto library Mailvelope is using) allows signature spoofing in signed & encrypted messages.
Update to Mailvelope v6.1.0 now to stay protected.
Details: github.com/mailvelope/mai…#infosec#OpenPGP…
I'm very happy to finally share the second part of my DOMPurify security research 🔥
This article mostly focuses on DOMPurify misconfigurations, especially hooks, that downgrade the sanitizer's protection (even in the latest version)!
Link 👇
mizu.re/post/exploring…
1/2
I created a blogpost about using internal redirection to compromise servers with no outbound traffic. 💻lsecqt.github.io/Red-Teaming-Ar…
With SharpRedirect, you can route traffic through internal Windows servers, bypass restrictions, and stay undetected.
github.com/lsecqt/SharpRe…
I don't use linpeas but it's capturing UUID, Machine ID, Root Access, Hostname, Username, OS Info, and Current Directory and sending it to a 3rd party.
NOT COOL.
I don't use linpeas but it's capturing UUID, Machine ID, Root Access, Hostname, Username, OS Info, and Current Directory and sending it to a 3rd party.
NOT COOL.
You don't need 20 GPUs to fine-tune a Large Language Model.
Lit-Parrot is a Python library by @LightningAI that lets you fine-tune the latest 7B Falcon model using 𝗼𝗻𝗹𝘆 𝟭 𝗚𝗣𝗨
And the best part?
It is just one pip install away from you 🦜↓
github.com/Lightning-AI/l…
Extreme PowerShell Obfuscation: blog.cerbero.io/?p=2709
The following is valid PowerShell code:
${;}=+$();${=}=${;};${+}=++${;};${@}=++${;};${.}=++${;};${[}=++${;};
${]}=++${;};${(}=++${;};${)}=++${;};${&}=++${;};${|}=++${;};…
JEB 4.30 was released today!🤖The associated blog shows how to recover statically-registered JNI natives or how to retrieve string constants that were entirely removed from a Dex. Details here: pnfsoftware.com/blog/recoverin…#ReverseEngineering
Lots of cyber security companies are going to fail this year. They will close their doors from running out of money or go to private equity asset sales. This is going to suck in the near term but be a good thing for the industry in the mid to long term. Many of these businesses…
667 Followers 4K FollowingI'm looking for a new freelance🇺🇸🇬🇧🇦🇺
that can work✍️on copywriting job for retyping into word document files,
Kindly send a DM for more info🧑💻
575 Followers 7 FollowingTHIS ACCOUNT IS A #BOT 🤖 (mostly)
Autonomous #malware sandbox && #C2 cartographer
Developed by @Abjuri5t and assistants
https://t.co/KrV5T8lDY2
2K Followers 438 FollowingCEO of @Oneleet | Pentester | YC alum | Hates charlatans and security theater | On a quest to kill security snake oil and to help companies get security right
15K Followers 0 FollowingConsultancy and Training from a trusted supplier of offensive security. Red Team and Adversary Simulation by ActiveBreach team | https://t.co/fqpbJ9WDXD | https://t.co/UvOhGA4Zou
96K Followers 2K FollowingHacker, marketer. I manage socials and produce amazing technical blogs for cybersecurity orgs. Founder of @hacker_content and @haksecio
5K Followers 1K FollowingSoftware Engineer ⚡️ Crafting some of the most popular Tailwind CSS plugins around. Bugs are my own. Dev-tooling & spec-reading fanatic 💻 #codeinpublic
2K Followers 551 FollowingFounder & Co-CEO @ZylonPrivateGPT. Private AI for the Enterprise. Creator of Private GPT, 54K+ Github stars: https://t.co/tHrUZNFvGW
7K Followers 256 FollowingHardware/Software/Firmware/IntelME Researcher. Opinions are my own and not the views of my employer. [email protected] |
https://t.co/A58bubMUjJ
19K Followers 2K Following🔬Founder & CEO @Binarly_io, #codeXplorer, #efiXplorer, @REhints and "Rootkits and Bootkits" book. Previously worked at Nvidia, Cylance, Intel, ESET, Yandex.
8K Followers 658 FollowingFounder @deserve_studio | Strategy, design & Framer dev for 70+ brands. Premium partner for ambitious teams. Recognized as the world’s leading @Framer agency.