GrapheneOS a retiré tous ses serveurs d’OVHcloud et quitté la France en évoquant des attentes de backdoors dans le chiffrement, des menaces policières/judiciaires etc
Meilleure décision et preuve de fiabilité en partant !
Les vrais risques sont progressifs :
⚠️ Réglementations qui obligent les OS à collecter des données (âge, ID)
⚠️ Durcissement de Google contre les ROM custom
⚠️ Pressions sur les fabricants (Motorola/Lenovo)
Mais @GrapheneOS préfère être interdit dans certains endroits plutôt que de trahir ses principes 🙏
#Privacy
THIS IS SCARY!!
Someone just open-sourced software that can track you through walls using only WiFi.
> It shows your exact body position in real time.
> No cameras. No devices. No sensors.
> Just your home router.
> It’s completely open source.
Reversing Microsoft Defender's signatures for evasion.
Deep dive into VDM guts - a gzip-compressed files with no encryption to evade entire signatures with just 1 byte change.
A research by RETooling crew (@DrCh40s && @t0nvi). Nicely done, chaps!
Post: https://t.co/RibfSrsMZR
#redteam #blueteam #maldev #evasion #reverseengineering #antivirus #malwaredevelopment
The French Government Launches an LLM Leaderboard Comparable to LMarena, Emphasizing European Languages and Energy Efficiency
And (not) surprisingly, their french model Mistral Medium is top of class, outperforming every other model out there.
Europe is making itself more ridiculous every day.
If you can't find a benchmark where you are top of class, invent the benchmark yourself.
Awesome new threat report from Google Threat Intel Group documenting how threat actors are leveraging Gemini. A lot of information and actionable avalable in the report! Great work 👌
https://t.co/0ktEQbUhmq
Geostationary satellites are leaking critical data, transmitting sensitive communications in the clear. With just $800 of consumer hardware, researchers intercepted military, telecom, retail, and infrastructure traffic. No state-grade tools required. Captured data included full voice calls, SMS, IMS signaling, SIP, RTP, and GTP tunnels—unencrypted, no IPsec, no TLS. Telecom backhaul exposed user messages, phone numbers, session keys, and IMSIs. Mexican military traffic leaked live telemetry, asset positions, logistics, and narcotics intelligence—broadcast openly across half a continent.
🧬 csc.exe + process hollowing
Use C# and native .NET tooling to compile a payload that spawns calc.exe, then hollows it out in memory using Win32 APIs. No files dropped.
Csc Python: https://t.co/RkSIDOZJDe
#RedTeam#Infosec#Redteam#Offsec#Logisek
I recommend this if you’re tired of doomscrolling X or chasing updates across a dozen security slacks
If you’re into good old RSS feeds or just want a weekly blog-style summary of what happened in DFIR, check out "This Week in 4n6" by @phillmoore & @hexplates
a human-curated, no-BS roundup:
https://t.co/ycJlAPmAL9
🔡 L’ANSSI partage en #Opensource fuzzysully, un fuzzer permettant d’évaluer la sécurité de l’implémentation du protocole OPC UA utilisé dans le secteur industriel.
Plus d'informations sur :
🔗 https://t.co/be2Ey8wpnW
🆕New version of our #ransomware mapping is out on our GitHub!
➡️https://t.co/M9vmt1UZzj
V28 (!) includes latest newcomers and recent ecosystem evolutions.🔍
As always, feedback is welcome!
#cti#threatintel#blackbasta#ransomhub#lockbit
During various Incident Response projects, I verified all executable (EXE and DLL) files to identify those without clear evidence of their source. This involves collecting all files and then removing the known ones from the list. The process may rely on digital signatures and/or file hashes, which is why a hash database may be necessary. Each environment has its own binaries (and therefore its own hashes), but there is also a common set. This led me to create a solution that allows me (or my scripts) to quickly check a hash. Although it is far from being ready for publication, the goal is to gradually make it more open, including open source. Since such a database must be fully trusted, for the public version, I am using only the NSRL (2024.03.1 Full + 2024.06.1 Delta + 2024.09.1 Delta + 2024.12.1 Delta) database in the "minimal" set, which contains the same number of hashes as the "modern" one. You can see the result here: https://t.co/JYcszQCiCx
And if you don't want to host your own solution yet, my server is ready to serve hashes from https://t.co/kR4soQyCQy It's relatively fast, which means I do not plan to limit anyone yet, but please be polite :)
➡️ A little reminder during this holiday season. The #MageCart threat is still present.
Today, I decided to buy a metal detector for my nephew and chose to purchase it from a somewhat buggy professional website. (1/2)
🚀 Big Announcement! 🚀
After 8+ years of working on PayloadsAllTheThings, I’m excited to release it as an ebook on Leanpub! 📖✨
To celebrate, I’m gifting 5 free copies to random retweeters! 🔥
👉 Retweet for a chance to win
Thank you all for your incredible support! 🙌
This cheatsheet has been a labor of love and countless hours of dedication.
👉 Grab your copy now: https://t.co/SNs7mSgXAJ
The results will be announced on 25th December. Entries will close Tuesday 24th, December at 12:00 PM (GMT) 🕐
#CyberSecurity #Infosec #PayloadsAllTheThings #EbookRelease
🤩 L'@ANSSI_FR via le @CERT_FR publie son panorama de la menace sur le secteur de l'eau !
👷♀️ Comme c'est l'usage désormais, le guide contient également des recommandations pour se prémunir de ce type de menace !
https://t.co/AFJRlVyv9B