Apple knows how to sell stuff. You buy watches for $500, it has annoying metallic clip which scratches your laptop. You buy a clipless band for additional $100.
OMG C# is the best! Since C# 8.0 you can write
```
using var file = new System.IO.StreamWriter("myFile.txt");
// code
```
Instead of
```
using (var file = new System.IO.StreamWriter("myFile.txt"))
{
// code
}
```
No crazy nesting anymore ❤️
⚠️ We recently discovered over 200 malicious packages in the #npm registry.
In case you missed it, @byte89 shared the findings and insights of the targeted attacks aimed at businesses and corporations that Snyk was able to detect.
snyk.co/ueDK3
Got C/C++ on your mind? 🧠
Check out this post by @byte89, where he takes a look at how directory traversal vulnerabilities work on web servers written on C/C++, as well as how to prevent them. #CPPsnyk.co/uesgU
This article isn't about typosquatting or benign "malicious" modules. It's about disclosing the underlying security research and its findings.
A really great write-up by Kirill Efimov (@byte89) and the work done by @snyksec's security research team
🚨 A malicious actor targeting a still unknown company is using an internal #JS package "gxm-reference-web-auth-server". If your company uses this package, make sure to inform your #AppSec team.
More info here. 👇 #npm#JavaScriptsnyk.co/uewZH
A short time ago, we started supporting C/CPP here at @snyksec :) 🦮
So we created a non-intimidating introductory to C/CPP vulnerabilities and exploitation (while using a lot of Harry Potter refs UwU)
Check it out!
snyk.io/blog/unintimid…@snyksec
We 💜 Capture the Flag (CTF) challenges.
That's why we're thrilled to host a hands-on #CTF 101 workshop! Join us on Apr. 28 to learn how to solve your first CTF challenge (with live support).
Tag someone who'd be great at it.
Register here! ⬇️
snyk.co/uescx
🌍 Living in a C/C++ world?
Check out this post by @byte89, where he takes a look at how directory traversal vulnerabilities work on web servers written on C/C++, as well as how to prevent them. #CPPsnyk.co/uesgU
Read my post about new directory traversal vulnerabilities in popular C and #CPP web servers! snyk.io/blog/exploring…
All CVEs from the post are discovered by @snyksec research team 💪
My writeup on visibly invisible malicious npm packages is out!
I invite you to (not 👹) see how such an attack can compromise your systems (and yes - your devs are targeted first)
@snyksecsnyk.io/blog/visibly-i…
71 Followers 217 FollowingHelios is a developer platform that helps increase dev velocity at all stages of the developer journey when building cloud-native applications.
21K Followers 23K FollowingJoe Perry+Aerosmith fanatic. YouTuber. Also Solutions Architect at @GetHydrolix. Authored a few books on English learning https://t.co/mYOJqaWKOq Tweets my own.
13K Followers 2K FollowingPresident @Infosecdiversty @infoseckids, Chair @owasp, RB @Blackhatevents ASIA @devseccon, #DevRel 🥑@snyksec Tweets are my own
483 Followers 691 FollowingLucky husband & proud father to two awesome boys. Software architect, tech & guitar enthusiast. Opinions here are my own...
▫ CTO @PenacityLLC ▫
41K Followers 9K FollowingInformation security - #SIEM, #DFIR, #EDR formerly at Gartner! Now @GoogleCloud Office of the #CISO; host of @CloudSecPodcast https://t.co/VpKtfz8nXG
1K Followers 3K FollowingChief Information Security Officer, Seeker of Knowledge, Gamer, Geek & Gadget Enthusiast. Seek First to Understand then to be Understood
811 Followers 920 FollowingSr. Malware Research Mgr @ GoDaddy / Sucuri Inc. | Web Malware Analysis | Reverse Eng | Passionate about protecting the Web | Tweets and Thoughts are my own
5K Followers 1K FollowingPronounced: “Vay-lid”. An official CULT OF THE DEAD COW projekt. Social Media shouldn’t be monetized. Users are not a commodity. Privacy Matters.
49K Followers 339 FollowingSecurity researcher in Google Project Zero. Author of Attacking Network Protocols. Tweets are my own etc. Mastodon: @[email protected]
124K Followers 1 FollowingTrue stories from the dark side of the Internet. Host @jackrhysider.
New episodes released on the first Tuesday of each month.
Discord: https://t.co/bZZRR8C59R
101K Followers 147 FollowingA portable multi-tool device in a toy-like body for pentesters and hardware geeks. Buy worldwide here ➡️ https://t.co/n09EKVnqri
1K Followers 1K FollowingHardware and Kernel Hacker
Worked for #Porsche cuz I'm where cyber becomes dangerous
Holding Guinness record - 100% Toothpaste Utilisation
My own opinion
14.9M Followers 62 FollowingThe Chairman of the Board of @Alwaleed_Philan The Chairman of the Board of @Kingdom_KHC The Chairman @RotanaMedia & @RotanaMusic
43K Followers 900 FollowingCo-founder of @centrahq/@detectify/@poweredbyingrid. I do not advertise doing hacking services, do not trust the ones telling you I do.
13K Followers 2K FollowingPresident @Infosecdiversty @infoseckids, Chair @owasp, RB @Blackhatevents ASIA @devseccon, #DevRel 🥑@snyksec Tweets are my own
241K Followers 202 FollowingBreaking cybersecurity and technology news, guides, and tutorials that help you get the most from your computer. DMs are open, so send us those tips!
59K Followers 538 FollowingTypos and segfaults. I write curl. On team @wolfSSL. I don't know anything. @[email protected]
My weekly email: https://t.co/9UYYYMLWaw
2K Followers 30 FollowingWe are SRLabs, a hacking research collective and consulting think tank. Follow us to stay on top of the latest hacking research.
https://t.co/GtjRnKnr9N
1K Followers 369 FollowingWorking on supply chain security for JS. meet.js Poland organizer. Node.js user since v0.8.
Addicted to teaching.
Fediverse with me @[email protected]