@suqdiq @daveaitel @dguido @flyryan pulling valid creds or sessions is not useless, not sure why Dave said the vuln was
-
This Tweet is unavailable.
-
-
Replying to @jstnkndy
@jstnkndy@suqdiq@daveaitel@flyryan It requires attention to detail and does not easily scale as an attack vector. Shellshock does.3 replies 0 retweets 1 like -
Replying to @daveaitel
@daveaitel@dguido@jstnkndy@suqdiq@flyryan What? Have you talked to many IR folks? HB was *definitely* used in the wild. A lot.1 reply 0 retweets 1 like -
This Tweet is unavailable.
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.