Rob
@Ghostly_Box
Does Cyber things... Eternal n00b. No CVE's to my name and pretty happy about that.
I just solved the strangest tech problem I've ever come across. My wifi kept dropping packets, confirmed by ping. It would look something like the first image (packets dropping, then it comes back to life). After a while the connection would just stop working completely and drop…
Looking for exploit kings with experience with Scudo / Jemalloc: - 100% remote working environment - Leet colleagues from 3 continents - Fantastic salary and bonuses - 2x yearly team meets worldwide! - MUST HAVE European, North American or Australian / NZ citizenship! PM 📩
I made a website that lets you generate VBA macro docs in your browser (using rust+wasm!): vba.rw.md ^just for fun, inb4 "motw kills macros" etc. 😅
🔒 Secure Bits 💡 Did you know 𝘆𝗼𝘂 𝗰𝗮𝗻 𝗵𝗶𝗱𝗲 𝗗𝗼𝗺𝗮𝗶𝗻 𝗔𝗱𝗺𝗶𝗻𝘀 from standard discovery—even from other admins? Active Directory is a “𝗿𝗲𝗮𝗱-𝗺𝗮𝗻𝘆” 𝗱𝗶𝗿𝗲𝗰𝘁𝗼𝗿𝘆 by design. But 𝗟𝗶𝘀𝘁 𝗢𝗯𝗷𝗲𝗰𝘁 𝗠𝗼𝗱𝗲 (𝗟𝗢𝗠) can change that. 🕵️♂️ Martin Handl…
The Reform UK party's former leader in Wales - Nathan Gill - has pleaded guilty to eight counts of bribery relating to pro-Russia statements he made in the European Parliament, as well as newspaper opinion pieces.
I absolutely love this paper, so much reverse engineering alpha the researchers who won the rpi hacking challenge came together to describe in detail how they overcame the defenses of a secure-by-design chip, incl. custom laser fault injection and single instruction skips
Finishing off the week with a writeup of CVE-2025-0309 - Netskope Windows Client LPE This was one of the bugs we demo’d in our DEF CON #ZeroTrustTotalBust talk. Also releasing a NachoVPN plugin and our 🆙skope PoC. Details on the @AmberWolfSec blog: blog.amberwolf.com/blog/2025/augu…
no matter how hard you cyber, there will ~ALWAYS~ be another registry persistence you've never heard of.
FortiGuard Labs highlights an SEO-poisoning campaign that targets Chinese-speaking users. Attackers manipulate search rankings with SEO plugins and lookalike domains, delivering malware families such as Hiddengh0st and Winos. fortinet.com/blog/threat-re…
Every lens leaves a blur signature—a hidden fingerprint in every photo. In our new #TPAMI paper, we show how to learn it fast (5 mins of capture!) with Lens Blur Fields ✨ With it, we can tell apart ‘identical’ phones by their optics, deblur images, and render realistic blurs.
EXCLUSIVE: 'Hypocrite' Nigel Farage didn't pay £44k stamp duty then blasted Angela Rayner mirror.co.uk/news/uk-news/h…
this is my short analysis of a little-known security feature built into Windows that inadvertently broke one of our authenticode signatures recently elastic.co/security-labs/…
Visiting NCC Group’s blogs right now feels like a CTF challenge: decipher the mangled text while dodging XSS pop-ups. Better to use web archive to see the original content but they have even changed the URLs! Example: nccgroup.com/research-blog/… The fox-it.com etc are…
【Cobalt Strike BOF】ScreenshotBOF - 替代Cobalt Strike的屏幕截图功能,它使用 WinAPI,不执行fork & run。屏幕截图下载到内存中。 github.com/CodeXTF2/Scree…
🌌✨ The Saga Continues: MSI Strikes Back ✨🌌 TL;DR: Bypass for CVE-2024-12908 - Code execution via Delinea's protocol handler is back. Patch now!
For every retweet of this post, I will donate £1 to the @VC_and_GC_Assoc up to £50,000. Time is running out following @I_W_M’s decision to close the Lord Ashcroft Gallery. Visit while you still can, to honour the bravery of those who risked so much to protect our great nation.
Since Nothing decided to ignore my report, I decided to release it publicly. You can find the source code and full details here: github.com/R0rt1z2/fenrir It only supports the Nothing Phone 2a for now but it should apply to more MediaTek devices from what I've seen so far.
Someone just dropped almost 1.4k email address list used by North Korean IT workers. gofile.io/d/mh6DUE
United States Trends
- 1. FINALLY DID IT 794 B posts
- 2. The BONK 242 B posts
- 3. The ORE 33,1 B posts
- 4. #DigitalBlackoutIran 192 B posts
- 5. #FanCashDropPromotion 1.921 posts
- 6. Algorhythm Holdings N/A
- 7. ICE Watch 177 B posts
- 8. #LawEnforcementAppreciationDay N/A
- 9. #FursuitFriday 7.083 posts
- 10. Ketel Marte N/A
- 11. The BULLISH 39,5 B posts
- 12. Good Friday 76,3 B posts
- 13. #FridayVibes 4.104 posts
- 14. The SEC 135 B posts
- 15. Jon-Eric Sullivan 3.823 posts
- 16. Blade 25,9 B posts
- 17. Hail Mary 7.834 posts
- 18. Publix 1.331 posts
- 19. The WHITEWHALE 14,6 B posts
- 20. KACEY N/A
Something went wrong.
Something went wrong.