initstring
@init_string
AT&F&C1&D2&K3%C0 http://initblog.com | http://github.com/initstring | @[email protected]
قد يعجبك
Drive-By Attack in Ollama Desktop v0.10.0 Found a bug in Ollama desktop GUI (not the core API) where malicious websites could hijack all private chats. Ollama crew patched it within hours. Make sure to update! Tech details, video, IoCs, and PoC here: gitlab-com.gitlab.io/gl-security/se…
A lot has happened in a year! I’ve refreshed the dynamic data sources for passphrase-wordlist and generated a new file. If you’re into cracking complex passwords, this may be for you. Enjoy! github.com/initstring/pas…
I'm not very active on here, and probably won't be on the next one either. But just in case, here's the new Mastodon profile I set up: @initstring@infosec.exchange
Spent some time recently formalizing our Red Team workflow at GitLab. The process is open-source, and we're sharing our issue templates to track logistics, goals, TTPs, reports, etc. about.gitlab.com/blog/2022/05/1…
I discovered a drive-by #RCE in the @gitlab Development Kit (it's now fixed). This took chaining multiple vulnerabilities and would have allowed me to remotely compromise developer machines. Details and tips to protect yourself from similar exploits here: about.gitlab.com/blog/2021/09/0…
Stealing Bitcoin w/ CSRF via Ride The Lightning + Umbrel. Thanks to the RTL devs for pushing a quick fix! Here's my write-up: initblog.com/2021/rtl-drive…
Great finding by @Sambal0x - and a good example of why e2e encryption is important in messaging apps. :)
Thanks to the @attackndefense team at @mozilla for inviting me on their blog! This is a more personal overview on the Firefox Android bug I disclosed recently.
Sharing my talk on Hacking Android Apps with Frida youtube.com/watch?v=iMNs8Y…
youtube.com
YouTube
Hacking Android Apps with Frida
This is so cool, thanks @dafthack for the nomination!
Cloud_enum will be giving $1577.7 to Doctors Without Borders @MSF_USA. Thanks @init_string! github.com/initstring/clo…
I found a few privilege escalation bugs in Google Cloud's OS Login. They've all been patched now. gitlab.com/gitlab-com/gl-…
The 4/25 training session for my Breaching the Cloud Perimeter course has reached max capacity but don't worry... I'm teaching it again on 5/28 for FREE. New registration link is here: attendee.gotowebinar.com/register/43640…
                                            On April 25th I'll be giving a FREE 4-hour training course (w/ labs) that I've built called Breaching the Cloud Perimeter. Space will be limited so get registered now: attendee.gotowebinar.com/register/12646… @BHinfoSecurity
                                                                            I've found a nice bug in @gitlab and blogged about the details: about.gitlab.com/blog/2020/03/3… #langsec #parserdifferentials
United States الاتجاهات
- 1. Cowboys 69.3K posts
 - 2. Nick Smith 15.9K posts
 - 3. Kawhi 4,482 posts
 - 4. Cardinals 31.2K posts
 - 5. #LakeShow 3,506 posts
 - 6. #WWERaw 63.5K posts
 - 7. Jerry 45.6K posts
 - 8. #WeTVAlwaysMore2026 595K posts
 - 9. Kyler 8,646 posts
 - 10. Blazers 8,187 posts
 - 11. Jonathan Bailey 27.9K posts
 - 12. Logan Paul 10.4K posts
 - 13. No Luka 3,771 posts
 - 14. Valka 4,972 posts
 - 15. Jacoby Brissett 5,761 posts
 - 16. Dalex 2,643 posts
 - 17. Pacers 13.4K posts
 - 18. Pickens 6,707 posts
 - 19. Bronny 14.8K posts
 - 20. Javonte 4,432 posts
 
قد يعجبك
- 
                                                
                                                    
                                                        Google VRP (Google Bug Hunters)
@GoogleVRP - 
                                                
                                                    
                                                        XSS Payloads
@XssPayloads - 
                                                
                                                    
                                                        Nicolas Grégoire
@Agarri_FR - 
                                                
                                                    
                                                        [email protected]
@0xdea - 
                                                
                                                    
                                                        Lee Chagolla-Christensen
@tifkin_ - 
                                                
                                                    
                                                        Niemand
@niemand_sec - 
                                                
                                                    
                                                        spaceraccoon | Eugene Lim
@spaceraccoonsec - 
                                                
                                                    
                                                        terjanq
@terjanq - 
                                                
                                                    
                                                        Gynvael Coldwind
@gynvael - 
                                                
                                                    
                                                        Spiros Fraganastasis
@m3g9tr0n - 
                                                
                                                    
                                                        Alvaro Muñoz
@pwntester - 
                                                
                                                    
                                                        pyn3rd
@pyn3rd - 
                                                
                                                    
                                                        Mikhail Klyuchnikov
@m1ke_n1 - 
                                                
                                                    
                                                        Eduardo Vela
@sirdarckcat - 
                                                
                                                    
                                                        Fisher
@Regala_ 
Something went wrong.
Something went wrong.