Decided to publish the Lexmark printer exploit + writeup + tools instead of sell it for peanuts. 0day at the time of writing: https://t.co/YptEXw3CjJ -- enjoy!
@spale75 @S1D_@lufthansa You cannot use two tickets for the same passenger, so they have to refund. If they refuse, simply undo the original charge with your card issuer. Works pretty well.
We (@winterdeaf@kientuong114 and I) took a deep dive on Threema, a Swiss-made secure messaging app. We found 6 new cryptographic vulnerabilities. Full paper at https://t.co/XMu8SZBCc3; mini-thread follows. #threema
Does anyone have a copy or working link to original netcat 1.00 (version 951010), file nc100.tgz or is that lost forever? I can only find dead ftp links or a MinGW fork or v1.10 versions.
TIL: @netzclub speichert Passwörter im Klartext, gibt Mitarbeitern eine API um "die ersten 3 Zeichen abzufragen" und der Support fordert von den Kunden ihr passwort zu verraten.
WTF!?
Sogar als 2010 der Laden gegründet wurde war sowas schon absolutes No-Go o.O
@red5heep I did try the archive, but only searched for the file name. It could be on some iso file of distributed CDs of course. If you have an idea on how to search there and find it, let me know.
If you sent an API request to Twitter with an e-mail address, and an incorrect password, the API returned a JSON response containing the username associated with the account.
A Threat Actor compiled 221,608,279 entries.
This list includes celebrities, politicians, and more...
@RandChange @jerblack@Slav636@vxunderground If I read that documentation and there is a limit on authentication, that would be the 450 requests per 15 minutes, right?
With 1000 bearer tokens in parallel, you can check 1 billion emails in 23 days.