Tweetovi
- Tweetovi, trenutna stranica.
- Tweetovi i odgovori
- Medijski sadržaj
Blokirali ste korisnika/cu @curtw
Jeste li sigurni da želite vidjeti te tweetove? Time nećete deblokirati korisnika/cu @curtw
-
Curt Wilson, human proslijedio/la je Tweet
Cybercriminals selling access to an MSP for $600? It’s real. Check out how we worked with
@datto and@ConnectWise to discover, social engineer, and expose an attacker on the dark web.#MSPs#cybersecurity#hackersgonnahackhttps://hubs.ly/H0mSZgh0Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Curt Wilson, human proslijedio/la je Tweet
The Hacker Factor Blog: Deanonymizing Tor Circuits https://www.hackerfactor.com/blog/index.php?/archives/868-Deanonymizing-Tor-Circuits.html …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Curt Wilson, human proslijedio/la je Tweet
2020-02-05: [Breaking]

"
Pro-Russian CyberSpy #Gamaredon#aPT Intensifies Ukrainian
Security Targeting"
The 'Fifth Domain': Gamaredon Wages Silent War with Ukranian Military & Law Enforcement
5k Victim Scope in Ukraine Along 'Separation Line'
https://labs.sentinelone.com/pro-russian-cyberspy-gamaredon-intensifies-ukrainian-security-targeting/ …pic.twitter.com/tbt6meM8Rw
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Curt Wilson, human proslijedio/la je Tweet
It should be
#CVE-2019-1367 rather than#CVE-2020-0674, and seems targeting#China from#Darkhotel#APT group.https://twitter.com/pjcampbe11/status/1222556092242317315 …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Curt Wilson, human proslijedio/la je Tweet
If you have agile continuous deployment for your flagship app, but not for OS patching, stop saying “devops” like you know what it means.https://twitter.com/iheartmalware/status/1224722448257556486 …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Curt Wilson, human proslijedio/la je Tweet
Backdoor is basically: - Enable Telnet on HiSilicon chips via 9530/tcp - Use one of six hardcoded root accounts to log in A PoC to test if your device uses HiSilicon SoCs and is vulnerable is available here: https://github.com/Snawoot/hisilicon-dvr-telnet …pic.twitter.com/Gwl2Ee0nuX
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Curt Wilson, human proslijedio/la je Tweet
Brilliant Dilbert meme describing every IT manager lolpic.twitter.com/HU9lQW98r3
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Curt Wilson, human proslijedio/la je Tweet
Every foreign nation that has ever been lectured on electoral transparency by American officials is owed an apology.https://twitter.com/MauraBarrettNBC/status/1224697811431837697 …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Curt Wilson, human proslijedio/la je Tweet
1\ I've written a little compiler to ship ML models as standalone Yara rules, and done proof of concept detectors for Macho-O, RTF files, and powershell scripts. So far I have decision trees, random forests, and logistic regression (LR) working. https://github.com/inv-ds-research/yaraml_rules …pic.twitter.com/sfuXEkHeNO
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Curt Wilson, human proslijedio/la je Tweet
I've transformed the expressions from my "Top Base64 Encodings" learning aid into a YARA and Sigma rule and published them in the respective repos Learning Aid https://gist.github.com/Neo23x0/6af876ee72b51676c82a2db8d2cd3639 … YARA https://github.com/Neo23x0/signature-base/blob/master/yara/gen_powershell_susp.yar#L204 … Sigma https://github.com/Neo23x0/sigma/blob/master/rules/windows/process_creation/win_powershell_frombase64string.yml …pic.twitter.com/5C5MRGGFaL
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Curt Wilson, human proslijedio/la je Tweet
[Educational] One of the best blog posts that I ever read about going from 0 to unauth RCE in f**king Mikrotik OS step by step:https://medium.com/@maxi./finding-and-exploiting-cve-2018-7445-f3103f163cc1 …
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Curt Wilson, human proslijedio/la je Tweet
Capture NTLM Hashes using PDF (Bad-Pdf)http://www.hackingarticles.in/capture-ntlm-hashes-using-pdf-bad-pdf/ …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Curt Wilson, human proslijedio/la je Tweet
NEW: With 30 million card details put up for sale on Joker's Stash, the Wawa card breach may rank as one of the biggest of all times, second to the Home Depot and Target breaches only https://www.zdnet.com/article/wawa-card-breach-may-rank-as-one-of-the-biggest-of-all-times/ …pic.twitter.com/OTPQ5qe2EC
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Curt Wilson, human proslijedio/la je Tweet
Windows Defender got you feeling down? Here is a simple trick to load your meterpreter payloads past Windows Defender https://hacker.house/lab/windows-defender-bypassing-for-meterpreter/ …pic.twitter.com/dxBieW2ZQv
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Curt Wilson, human proslijedio/la je Tweet
PInjectra’s Stack Bombing Process Injection example was only the beginning. I wrote a practical implementation of it that performs process migration using shared Memory, self-loading/linking DLLs, and an RWX ROP chain. Https://github.com/Crypt0s/Ampulex Also included: a detection for it
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Curt Wilson, human proslijedio/la je Tweet
Wish more ISACs shared via MISP rather than commercial TIPs or email distros.https://twitter.com/MISPProject/status/1221746851600392193 …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Curt Wilson, human proslijedio/la je Tweet
#redteam tip: use logman.exe with -b, -rf, -s, and -rc to create highly-privileged local, and remote scheduled tasks. They are deeply hidden in the Task Scheduler GUI, especially as the actions are masked under "Custom Handler". And no one looks for attackers in Perfmon/DCS.Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Curt Wilson, human proslijedio/la je Tweet
NYTimes journalist targeted w/ mobile spyware Pegasus from NSO Group; evidence also suggests an NSO Group operator may have been infecting targets while impersonating the Washington Post in the weeks leading up to and after Khashoggi’s killing in 2018https://citizenlab.ca/2020/01/stopping-the-press-new-york-times-journalist-targeted-by-saudi-linked-pegasus-spyware-operator/ …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Curt Wilson, human proslijedio/la je Tweet
For more on all of this, check out the multiple reports on both sets activity by the teams at
@TalosSecurity and@Fireeye which are well worth your time https://blog.talosintelligence.com/2019/04/seaturtle.html … https://blog.talosintelligence.com/2018/11/dnspionage-campaign-targets-middle-east.html …https://www.fireeye.com/blog/threat-research/2019/01/global-dns-hijacking-campaign-dns-record-manipulation-at-scale.html …Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Curt Wilson, human proslijedio/la je Tweet
#trickbot Maldoc dropping and running OSTAP. Splash page almost got the natural English thing right. VBA uses CallByName, embedded table, Spanish language print statements to obfuscate and appear benign. 5cde4a660fae1ae13198ff5b83244a5a21bd0afdaa905ccd3b9e2202243afa22Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
Čini se da učitavanje traje već neko vrijeme.
Twitter je možda preopterećen ili ima kratkotrajnih poteškoća u radu. Pokušajte ponovno ili potražite dodatne informacije u odjeljku Status Twittera.