jw4lsec's profile picture. Linux fanboy
@jwalsec.bsky.social on BlueSky
he/him

Jace

@jw4lsec

Linux fanboy @jwalsec.bsky.social on BlueSky he/him

There's so much gloom and doom about social media all the time, I am happy that Nepal is relieving some of that by showing how social media can empower people to control their destinies.


Jace reposted

BREAKING. From a reliable source. MITRE support for the CVE program is due to expire tomorrow. The attached letter was sent out to CVE Board Members.

0xTib3rius's tweet image. BREAKING.

From a reliable source. MITRE support for the CVE program is due to expire tomorrow. The attached letter was sent out to CVE Board Members.

Verifying myself: I am stingily8589 on Keybase.io. 8Hu2tw4E8-j76yGNVDgQtK6yXQ_gDZU3yajP / keybase.io/stingily8589/s…


Jace reposted

This year we're starting off strong. First and foremost, we've got some new sponsors. Our friends over at @Binary_Defense and @TrustedSec have helped us out tremendously lately. We'd especially like to thank @HackingDave for helping the little nerds out and keeping malware cool…


Jace reposted

Detection Engineering is sometimes hard, and may fail. Still a lot of things can be learned by the process. In this blog I cover a lot. I had a detection, currently it's broken but MS is on it :D falconforce.nl/detection-engi…


@jwalsec.bsky.social please follow me so I can follow you and together we can be free of this cancerous platform 🙏❤️


Its an extremely high quality con without the corpo bullshit. Go if you can.

In addition to some of the best keynote speakers in the industry, conference attendees can expect to find hands-on labs, focused “villages”, and engaging workshops in a highly-interactive environment. We hope to see ya in February for WWHF @ Mile High 2025! -The WWHF Crew



Jace reposted

Here’s the thing folks. I’ve been coding 32 years. When something like this happens it’s an organizational failure. Yes, some human wrote a bad line. Someone can “git blame” and point to a human and it’s awful. But it’s the testing, the Cl/CD, the A/B testing, the metered…


🏳️‍🌈Pride month fact: The AIDS Memorial Quilt, is a memorial to celebrate the lives of people who have died of AIDS, consisting of more than 50,000 individual panels (to over 110,000 people). Weighing an estimated 54 tons, it is the largest piece of community folk art in the world.


Jace reposted

Check out ARC Labs' analysis of the #Wineloader backdoor for tips on strengthening defenses, detecting threats, and dissecting obfuscated JavaScript code found in HTA files. Read the full blog below. #StaySecure #ThreatResearch bit.ly/3x08l0g


Jace reposted

Half of the vx-underground roster were still not fully potty trained at 13, so we find this profoundly impressive.


Jace reposted

JK Rowling is a holocaust denier.

AssignedMale's tweet image. JK Rowling is a holocaust denier.
This post is unavailable.

😂

You might need to check your Teams Admin Center.. 😩 It looks like the defaults for 3rd party apps changed so users can now add over 2300 apps to Teams without requiring approval To change this, click Actions - Org-wide app settings, turn off 3rd party apps (more in next tweet)

NathanMcNulty's tweet image. You might need to check your Teams Admin Center.. 😩

It looks like the defaults for 3rd party apps changed so users can now add over 2300 apps to Teams without requiring approval

To change this, click Actions - Org-wide app settings, turn off 3rd party apps (more in next tweet)


I mean really, who makes PHP malware for windows?

Research by @jw4lsec reveals that MalSync malware (a DuckTail PHP variant) uses Facebook API calls for data theft, targeted social media credential theft, sophisticated data extraction functions, and communication with a command-and-control server. hubs.la/Q02q12Vw0

binarydefense.com

MalSync Teardown: From DLL Hijacking to PHP Malware for Windows  

uniqid()); # Execute the PE $d = shell_exec($fiEnc); # Strip white space from the return of the execution $d = trim($d); # Replace an escaped double quote…



Document scanner at a title company > chinese food delivery > tech support > tech support > shady computer cleanup/possible scam > tech support > jr sysadmin > sr sysadmin > sr security engineer > threat researcher/hunter

washed cars at dealership > detailed cars > computer repair > systems eng > systems eng > system eng > network eng > pentest > pentest > red team/pen > red team/pen > red team/pen > red team > red lead/Dir research > director of bunch of things > CTO x.com/_xpn_/status/1…



Non Linux people on the CLI 👀

Do you mean that you and your colleagues don't have to relearn Git every day?



For whatever reason, I want to say Bitrex.


Jace reposted

Coming to a MDR near you......👀👀 @Binary_Defense CC: @HackingDave @Jason__V__

JonnyJohnson_'s tweet image. Coming to a MDR near you......👀👀 @Binary_Defense 
CC: @HackingDave @Jason__V__
JonnyJohnson_'s tweet image. Coming to a MDR near you......👀👀 @Binary_Defense 
CC: @HackingDave @Jason__V__

Loading...

Something went wrong.


Something went wrong.