sh3llcode's profile picture.

sh3llcode

@sh3llcode

sh3llcode reposted

experimenting with a potentially superior way of utilizing the right mouse button. right click and hold -> then flick your mouse in one of 8 directions to do a thing feels so much faster, more efficient, and natural


sh3llcode reposted

🚨 I am giving away 1 seat each of our June Red team (CRTP) and Azure (CARTP) bootcamps. 🚨 Repost, like and reply to this tweet to participate. I will announce the winners on Monday (27th May). alteredsecurity.com/bootcamps #redteam #pentest #giveaway

nikhil_mitt's tweet image. 🚨 I am giving away 1 seat each of our June Red team (CRTP) and Azure (CARTP) bootcamps. 🚨

Repost, like and reply to this tweet to participate. I will announce the winners on Monday (27th May). 

alteredsecurity.com/bootcamps

#redteam #pentest #giveaway

sh3llcode reposted

Looks like Chrome is working on device bound sessions to prevent account takeovers through cookie theft. Isn't that amazing? The project is called Device Bound Session Credentials (DBSC). Check it out here 👇 github.com/WICG/dbsc #cybersecurity #infosec #appsec

payloadartist's tweet image. Looks like Chrome is working on device bound sessions to prevent account takeovers through cookie theft.

Isn't that amazing?

The project is called Device Bound Session Credentials (DBSC). Check it out here  👇

github.com/WICG/dbsc

#cybersecurity #infosec #appsec
payloadartist's tweet image. Looks like Chrome is working on device bound sessions to prevent account takeovers through cookie theft.

Isn't that amazing?

The project is called Device Bound Session Credentials (DBSC). Check it out here  👇

github.com/WICG/dbsc

#cybersecurity #infosec #appsec
payloadartist's tweet image. Looks like Chrome is working on device bound sessions to prevent account takeovers through cookie theft.

Isn't that amazing?

The project is called Device Bound Session Credentials (DBSC). Check it out here  👇

github.com/WICG/dbsc

#cybersecurity #infosec #appsec
payloadartist's tweet image. Looks like Chrome is working on device bound sessions to prevent account takeovers through cookie theft.

Isn't that amazing?

The project is called Device Bound Session Credentials (DBSC). Check it out here  👇

github.com/WICG/dbsc

#cybersecurity #infosec #appsec

sh3llcode reposted

This "xz" and "liblzma" backdoor story is increasingly looking like a sophisticated effort to target FOSS supply chains, getting this backdoor into Debian and Kali etc. It's also not the only library the backdoor author has added code too, libarchive and others may have issues.


sh3llcode reposted

wild stuff re: xz/liblzma backdoor news.ycombinator.com/item?id=398658…

zer0pwn's tweet image. wild stuff re: xz/liblzma backdoor news.ycombinator.com/item?id=398658…

sh3llcode reposted

CVE-2023-51385: OpenSSH before 9.6, OS command injection might occur if a user name or host name has shell metacharacters, ... vin01.github.io/piptagole/ssh/…

cyber_advising's tweet image. CVE-2023-51385: OpenSSH before 9.6, OS command injection might occur if a user name or host name has shell metacharacters, ...
vin01.github.io/piptagole/ssh/…

sh3llcode reposted

Aaaaaaaand prompt injection in VT’s new feature. Puppies can’t be malicious. (Not the creator, sent to me) virustotal.com/gui/file/264be…

_mattata's tweet image. Aaaaaaaand prompt injection in VT’s new feature. Puppies can’t be malicious.

(Not the creator, sent to me)

virustotal.com/gui/file/264be…

This kills the CTF. /s First one to get prompt injection via crafted ELF wins the internet. gogogogogogo



sh3llcode reposted

Today VirusTotal announced that each sample uploaded will be accompanied by "Code Insight". Code Insight uses Sec-PaLM, one of the generative AI models by Google, to explain what the malicious binary is doing. Code Insight is available to all users. tl;dr "they took my job"

vxunderground's tweet image. Today VirusTotal announced that each sample uploaded will be accompanied by "Code Insight". Code Insight uses Sec-PaLM, one of the generative AI models by Google, to explain what the malicious binary is doing.

Code Insight is available to all users.

tl;dr "they took my job"

sh3llcode reposted

any of my fellow millennials remember we were using altavista for a while & then all of a sudden there was this thing called google everyone was using instead? that shit completely surprised me. anyway my knees sometimes hurt for no reason now


sh3llcode reposted

Just working on preparing a write-up for an unfixed bug in Chromium. Here's a little sneak peak.


sh3llcode reposted

Last night, 1.8 million tanks of hot water could have been heated with surplus energy available from wind. €1.5 million was the estimated retail value of this 5,569 MWh zero carbon energy that was wasted. #energypoverty #EnergyCloud @Dept_ECC @DeptHousingIRL @ESBGroup

EnergyCloud_org's tweet image. Last night, 1.8 million tanks of hot water could have been heated with surplus energy available from wind. €1.5 million was the estimated retail value of this 5,569 MWh zero carbon energy that was wasted. #energypoverty #EnergyCloud @Dept_ECC @DeptHousingIRL @ESBGroup

sh3llcode reposted

This will be a thread discussing a real world breach involving a drone delivered exploit system that occurred this summer Some details I am not able to discuss, however for the blue teams & red teams out there I hope this provides a good measure of capability. 🧵🚁 🎮🖥️🦠


sh3llcode reposted

Ever come across a file running on a Linux box that was deleted from the disk? Did you know you can likely use DD to recover the file without any non-standard tools?

ippsec's tweet image. Ever come across a file running on a Linux box that was deleted from the disk? Did you know you can likely use DD to recover the file without any non-standard tools?

sh3llcode reposted

What we absolutely need this week: ✔️ go cold turkey on Russian gas ✔️ link alternative flows ✔️ enhanced humanitarian & military solidarity ✔️ extend SWIFT sanctions to ALL 🇷🇺 banks 🛑 Stop Putin’s war NOW ! 🛑

60% of Germans polled by INSA/BILD say 🇩🇪should stop importing gas from Russia. Remarkable. Almost half of Germans polled (48%) say sanctions are not sufficiently far-reaching. Only 16% say they go too far (less than combined AfD/Left vote share).

thorstenbenner's tweet image. 60% of Germans polled by INSA/BILD say 🇩🇪should stop importing gas from Russia. 
Remarkable. 
Almost half of Germans polled (48%) say sanctions are not sufficiently far-reaching. Only 16% say they go too far (less than combined AfD/Left vote share).


sh3llcode reposted

Amidst the horror and the mass murder of civilians by Putin we need a complete EMBARGO on Russian gas and oil immediately & cut of ALL Russian banks from SWIFT !

guyverhofstadt's tweet image. Amidst the horror and the mass murder of civilians by Putin we need a complete EMBARGO on Russian gas and oil immediately & cut of ALL Russian banks from SWIFT !

sh3llcode reposted

The billion euro question… … and the follow-up question: how do we set up an EU energy union to lower prices, safeguard provisions and raise revenue to pay for solidarity measures going forward? Entire overhaul of EU ahead !

Something innovative will need to be done across the EU to help cushion energy price rises. How about an EU loan facility to enable reductions in energy taxes, to be repaid with energy taxation revenue when world prices are lower again but EU prices need to be higher due to CC?



sh3llcode reposted

Ukrajinsky prezident @ZelenskyyUa na Vaclavaku🙏🏻🇺🇦 #StandWithUkraine


sh3llcode reposted

President @ZelenskyyUA signed #EU membership application for #Ukraine. This is the choice of 🇺🇦 and Ukrainian people. We more than deserve it.

Denys_Shmyhal's tweet image. President @ZelenskyyUA signed #EU membership application for #Ukraine. This is the choice of 🇺🇦 and Ukrainian people. We more than deserve it.

sh3llcode reposted
Ukraine's tweet image.

sh3llcode reposted

Can we discuss again the brilliance of this meme?

technollama's tweet image. Can we discuss again the brilliance of this meme?

Loading...

Something went wrong.


Something went wrong.