🧀🐀💰"A Telegram from Pyongyang" New @FoxIT research exposes how #Lazarus deploys 3 different RATs to target financial & cryptocurrency companies. #PondRAT#ThemeForestRAT#RemotePE IOCs & technical details ⬇️ https://t.co/WvjqhToPX1
NCC Group EDG @alexjplaskett and @_mccaulay will present Pioneering Zero Days at Pwn2Own Automotive 2024 where they will describe their Pioneer Pwn2Own chain and demonstrate a proof-of-concept vehicle spyware implant
This Saturday Alex Plaskett (@alexjplaskett) and McCaulay Hudson (@_mccaulay) from NCC EDG will present Revving Up: The Journey to Pwn2Own Automotive 2024 at @cybersaiyanIT in Rome, Italy.
Our latest research findings and articles are now live on the NCC Group website! Dive into cutting-edge cybersecurity insights here: https://t.co/gXMsbCJ9YQ 🔍
Stay updated by subscribing to our RSS feed: https://t.co/m8cDjKNt11 📡 #Cybersecurity#Research
Don't forget! Tomorrow, on the 8th at 11:20am PST @alexjplaskett and @robHerrera_ present Listen Up: Sonos Over-The-Air Remote Kernel Exploitation and Covert Wiretap at @BlackHatEvents#BHUSA
Check out this trick that allows you to run binaries on embedded Linux without crosscompiling https://t.co/LiPUcCYAIV #security#cybersecurity#infosec#linux
Do you want to learn more about Windows Exploit Engineering? @saidelike will be performing in-person training in Paris at @hexacon_fr on the 30th Sept-3rd of Oct https://t.co/eMhW5BkB0f
Listen up! @alexjplaskett and @robHerrera_ will present Sonos Over-The-Air Remote Kernel Exploitation and Covert Wiretap at BlackHat USA 2024 @BlackHatEvents They will demonstrate remote compromise and microphone capture! #BHUSA
https://t.co/wE8zs58tM3
Checkout the new NanoMIPS plugin/blog post that aided in reverse engineering a Mediatek-based 5G modem image! https://t.co/OwlQmtbFlx #cybersecurity#infosec#tech
Have you ever heard that 1 + 1 does not always equal 2? That's the case with prompt injection. In this post, @JoseSelvi describes the non-deterministic nature of prompt injection and how to avoid missdetecting such vulnerability. https://t.co/0xmfecq4F0
An update (1.5.1) has been released for Phoenix Contact CHARX SEC-3100 EV Charging Controllers which addresses vulnerabilities NCC Group EDG (@alexjplaskett@_mccaulay) exploited at Pwn2Own Automotive 2014.
https://t.co/afh3jNnPAF
https://t.co/aCu2fZFyG7
Recent investigations by NCC Group’s Digital Forensics and Incident Response Team in APAC have uncovered significant deviations in Lorenz’s Tactics, Techniques, and Procedures, shedding light on the group’s evolving strategies
https://t.co/ryuYxc0SgI
A race in time to find a replacement bug for Pwn2Own Toronto 2022!
EDG (@_mccaulay@alexjplaskett@saidelike@FidgetingBits) found and exploited another Netgear WAN command injection bug.
Blog: https://t.co/LYzURYQToF