Windows Administrator Protection is set to replace UAC, but as a supported security boundary. James Forshaw breaks it down in a new Project Zero blogpost. The blogpost features a tricky bypass that leverages multiple subtle Windows kernel quirks.
#APT29 (#CozyBear) is back — this time with a twist of 🍷
📨 Fake diplomat wine event invites
🎯 Targeting government entities across Europe
🧬 New custom loader we’re calling #Grapeloader along with a new variant of #Wineloader
Read more --> https://t.co/l7s871LX0j
I shared an example earlier for fuzzing libxslt with Jackalope's grammar mutator. But Firefox has its own XSLT implementation, how do we fuzz browser code? The following .patch demonstrates how to do that. It is the setup that resulted in CVE-2025-1932. https://t.co/JAofTCIqgh
Microsoft Threat Intelligence Center discovered an active and successful device code phishing campaign by a threat actor we track as Storm-2372. Storm-2372’s targets include governments, NGOs, IT services and technology, defense, telecoms, health, higher education, and energy/oil and gas in Europe, North America, Africa, and the Middle East. Microsoft assesses with medium confidence that Storm-2372 aligns with Russian interests, victimology, and tradecraft.
Our ongoing investigation indicates that this campaign has been active since August 2024, with the actor creating lures that resemble messaging app experiences including WhatsApp, Signal, and Microsoft Teams. In device code phishing, threat actors exploit the device code authentication flow to capture authentication tokens, which they then use to access target accounts, and further gain access to data and other services that the compromised account has access to.
Read our research on the active threat represented by Storm-2372 and other threat actors exploiting device code phishing techniques, and get detection and mitigation guidance: https://t.co/D0FHTJVuGF
It finally happened -- thanks to people learning to write AI code, Python is now the top programming language on GitHub!
If you want to learn Python, check out https://t.co/zpIxRSuky4's free course AI Python for Beginners.
Stanford CS229: Building Large Language Models
This 1.5 hours lecture provides a concise overview of building a ChatGPT-like model, covering both pretraining (language modeling) and post-training (SFT/RLHF).
For each component, it explores common practices in data collection, algorithms, and evaluation methods.
Link in the next tweet!
_____
Find me → @akshay_pachaar ✔️
For more insights and tutorials on AI and Machine Learning!
Nitrogen Campaign Drops Sliver and Ends With BlackCat Ransomware
Analysis & reporting completed by @angelo_violetti, @0xtornado, & @v3t0_.
Audio: Available on Spotify, Apple, YouTube and more!
Report: https://t.co/ANgv6LjD9a
This strange tweet got >25k retweets. The author sounds confident, and he uses lots of hex and jargon. There are red flags though... like what's up with the DEI stuff, and who says "stack trace dump"? Let's take a closer look... 🧵1/n
#CrowdStrike Impacts by Region update at 1:20 pm UTC+04:00
Australia
- Media: ABC, SBS, Seven Network, Nine Network
- Airlines: Qantas, Virgin Australia, Jetstar
- Airports: Sydney, Melbourne
- Supermarkets: Woolworths, Coles
- Banks: NAB, ANZ, Commonwealth Bank, Bendigo Bank, Suncorp
- Retailers and Fast Food Chains: KFC, self-checkout systems
Canada
- TD Canada Trust mobile app outage.
Belgium
- Train ticket purchases, digital announcements
- Media: JOE, QMusic
- Banks, post services
- Airports: Brussels, Charleroi
France
- TV channels: TF1, TFX, LCI, Canal+
- Systems for the 2024 Paris Olympics
Croatia
- Central Health Information System
- Air Traffic Control
Germany
- Berlin Airport, Lufthansa
- Hospitals in Lübeck and Kiel
Hong Kong SAR
- Hong Kong International Airport
- Airlines: Cathay Pacific, Hong Kong Express, Hong Kong Airlines
India
- Airlines: Air India, Indigo, Akasa Air, SpiceJet, Vistara
- IT firms: Oracle, Nokia
Israel
- Magen David Adom
- Hospitals: Sheba, Laniado, Rambam
- Israel Post, banks, pharmaceutical companies
Malaysia
- Railway operator KTMB’s ticketing system
Netherlands
- Schiphol airport, KNAB bank, Transavia Airlines
- Government services, hospitals
New Zealand
- Banks: ANZ, ASB, Kiwibank, Westpac
- Supermarkets: Woolworths, Foodstuffs
- Auckland Transport, Christchurch Airport
Philippines
- Banks, telecommunications, broadcasts, supermarkets
- Cebu Pacific flights
South Korea
- Jeju Air
Singapore
- Changi Airport
Spain
- ENAIRE's Aena
Switzerland
- Zurich Airport
United Kingdom
- Sky News, CBBC
- Airports: Edinburgh, Gatwick
- Rail companies
- NHS services
- London Stock Exchange
- Ladbrokes Coral
United States
- Ground stops for United, Delta, American Airlines
- 911 service outages in Alaska, Arizona, New Hampshire
The list is destined to grow inexorably. Many other countries like Italy and UAE are reporting severe disruptions.
Shares of Microsoft and CrowdStrike dropped as a result of the outage.