Tweetovi
- Tweetovi, trenutna stranica.
- Tweetovi i odgovori
- Medijski sadržaj
Blokirali ste korisnika/cu @PO3T1985
Jeste li sigurni da želite vidjeti te tweetove? Time nećete deblokirati korisnika/cu @PO3T1985
-
PO3T proslijedio/la je Tweet
Introducing my newest project: I got phished The goal is to notify IT-security representatives about phishing victims within their constituency
https://igotphished.abuse.ch/
A big thanks to @JayTHL who initiated the project!
For bug reports and feature requests -> DM mepic.twitter.com/PvY4AWtvFt
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
PO3T proslijedio/la je Tweet
Ladies and gentlemen, I present you a working Remote Code Execution (RCE) exploit for the Remote Desktop Gateway (CVE-2020-0609 & CVE-2020-0610). Accidentally followed a few rabbit holes but got it to work! Time to write a blog post ;) Don't forget to patch!pic.twitter.com/FekupjS6qG
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
PO3T proslijedio/la je Tweet
PoC (Denial-of-Service) for CVE-2020-0609 & CVE-2020-0610 Please use for research and educational purpose only. https://github.com/ollypwn/BlueGate …pic.twitter.com/R43AHUwGV0
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
I agree though that you need some kind of emergency patching procedure, otherwise you'll eventually get hit like in this case. If you run threat intel, trigger that procedure, if you see that you won't last till next cycle.
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Correction: Most companies have patching ^^ Anyhow, lets keep in mind that most of these companies have to do some testing, before rolling out patches - this is not single clients like at home where you can immediately patch to production - and even those fail sometimes ;)
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
All companies have patching - but that takes time and resources. There is definitely some lessons to be learned here, this sort of reporting though is not helping. So go easy, will ya?
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
-
#NetWire#RAT still making the rounds. As in the past using cloud file sharing.https://app.any.run/tasks/b29d4a0f-80ab-4084-9a22-6fe3ad97432d …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
@likethecoins@MITREattack and all contributers: you guys rock my world. Thank you so much for your hard work - it is priceless.Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
For the past 3+ years I've been building Security Incident Management, Threat Intel, Threat Hunding, Vulnerability Mgmt, Security Posture Assessments and more services from scratch. MITRE and ATT&CKcon gave me tons of new insights and ideas - worth taking a look.https://twitter.com/MITREattack/status/1216802587736932358 …
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
A customer of mine has Skype/Lync Federation active. His ATP now alerts possible C2 connection, as some domains it tries to connect to, are on their providers' s***list. Whats the solution here? Exclude clean domains, exclude Skype server from ATP? Other? Any thoughts?
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
More
#opendir#phishing mails going for webmail credentials. I had to LOL reading that techour sites' description. Advanced IT training... Web programming my a** https://app.any.run/tasks/ae4d58bd-374a-4b8d-af7b-9035bd610061 … Secure your site gents.pic.twitter.com/hoVosNJECD
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Same C2 actually, just another IP dbanks.duckdns[.]org
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
#adwind RAT distributed in@DHLUS themed mails (last Friday). Payload being hosted on@discordapp https://app.any.run/tasks/c9c2255c-41fe-4b23-a1dc-fc68462ffb9c … Hmm, might be the competition? Address in the message is a UPS store
Other C2 than @ffforwardpic.twitter.com/4ZSkUzzpRs
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
-
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
-
Whats even worse, I can't find a single statement on your feeds like "guys, we're on it". Instead you chose to ignore it while promoting tools like Phish Hunter to your customers? https://forsyteit.com/phish-hunter/?utm_source=t.co&utm_medium=referral … These issues don't go away if you chose to ignore em - they get worse.
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
... and this specific site is still up and running after 36 hours (or was last I checked, around 3 hours ago).
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Just saying cuz this seems to be going on for a while now...https://www.zscaler.com/blogs/research/abusing-microsofts-azure-domains-host-phishing-attacks …
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Far be it from me to judge you, but if my services were used to attack my customers and they'd have to report it to me (instead of me detecting it myself), I'd be forcing a couple egg heads to do some overtime to get this fixed asap...
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
Čini se da učitavanje traje već neko vrijeme.
Twitter je možda preopterećen ili ima kratkotrajnih poteškoća u radu. Pokušajte ponovno ili potražite dodatne informacije u odjeljku Status Twittera.



All opinions expressed here are my own, not those of my employer.