Introducing: https://t.co/FOcfQGdxtg ! 🛜🤖😂
A free prompt injection wargame to troubleshoot your local network with an AI assistant; and a challenge to have it leak some secrets!
Brought to you by @JustHackingHQ, @_ContinuumCon_, @d1gitalandrew Andrew Bellini & Eva Benn.
We’re happy to announce that our EDR Internals & Development training is now in its final stages of development.
Over the past several months, an enormous amount of work has gone into building this highly technical & detailed training. The course covers the internals of modern EDR from both user-mode and kernel-mode perspectives, including techniques like syscall hooking, filesystem minifilters, ETW telemetry, memory scanning, kernel callbacks, process instrumentation callbacks, call stack tracing, and anti-tampering mechanisms.
The course concludes with building a limited yet functional custom EDR agent and we test it against several malware techniques to gain practical experience with detection engineering and EDR internals.
This huge undertaking would not have been possible without @GigelV41464 who dedicated countless hours to analyzing different EDR products, building custom implementations, analyzing internal mechanisms, and documenting the techniques with excellent depth and clarity.
The official launch date is scheduled for June 15, 2026 but starting today, we're opening access to an early bird discount of 20% for a limited time.
EDR Internals & Development: https://t.co/oN6qcMjLr2
The best way to understand how LLMs work is to build one yourself.
In this handbook, Wisamul teaches you how to create a language-specific model step by step.
You’ll go from raw text data to a working chatbot you can customize and learn how these models work under the hood.
https://t.co/pUkmoK051v
In case you missed it: Security researcher @RayRedacted has a son named Sam. Sam set the Men's World Record at the Paris Olympics this year for speed climbing. Sam successfully climbed 15 meters (49 ft) in 4.74 seconds. The average Olympic athlete age is 27. Sam is 18 years old.
Malcore now has an IP threat feed. The feed is updated every 24 hours and provides you with 40,000 to 65,000 malicious IP addresses.
This feed is completely free. Example request in image.
Enjoy!
I've been reverse engineering the xz backdoor this weekend and have documented the payload format and written a proof-of-concept exploit for the RCE. The payloads are signed with an ED448 key, so I patched my own key into the backdoor for testing. :-)
https://t.co/CvKo3xPRkP
Breaking: In a shocking turn of events, sightings of flying bugs have been reported from the frontlines. According to the Ministry of Truth, no previous sightings have ever been recorded in history.
This has been my favorite book of the year so far. When we take courses or study, we often only get to see the “path that worked”. In my opinion, knowing what didn’t work is more valuable as that’s where the time is spent fixing things.
If you are curious about hacking or infosec, and you are still on Twitter despite all the chaos, there are ten people you absolutely must follow because they will make you better at what you do. In this thread, I am going to tell you who they are, and why you should follow them
Wow thanks for all the love on the Sailor Super Earth poster haha!
Here's my original drawing before I added all the sailor moon effects. I've been drawing a lot with the lasso tool via clip studio paint when I want to draw something quick!
#HELLDIVER2#HelldiversII#HellDivers
Our giveaway lineup:
December 8th: The Art of Malware Analysis course giveaway. 10 Tickets.
December 11th: Hands-On Kusto Query Language for Security Analysts. 2 Tickets.
December 12th: Certified Red Team Professional for on-prem Active Directory exploitation. 3 Tickets
December 13th: Certified Azure Red Team Professional for Azure exploitation. 3 Tickets.
December 14th: Evilginx Mastery Course. 10 Tickets
December 15th: $500 worth-of-books giveaway
Total money donated on educational courses so far: $32,108.64