Uncovered screen recordings from threat actors! 👀 Real footage of cybercriminals using anti-detect browsers and infostealer malware logs for session hijacking, and another using GraphSpy to read their Entra ID victim's emails in Outlook! 💀 Video: https://t.co/p94bhFgGgY
I just finished a big update for the EDR Telemetry website. We’re preparing for many exciting updates and want to make sure we’re ready 🙂
Check it out and let me know what you think - https://t.co/mTj9lJz6eb
My son said to me "Dad, today I watched someone do 50 pushups, do you think you could do that?"…
I said, son, I don't want to brag but I could probably watch someone do 100 pushups
This is a really cool book. I am sure it will help to many malware analysts, and be a guiding light and an inspiration for people who want to learn more. I feel honoured that I could have my small contribution in the project. Thank you for the gift, @d4rksystem !
I am genuinely impressed
Google has quietly released “Learn about” a genius new AI tool:
You can enter any topic you want to learn and you'll be able to dive right in VERY easily.
It suggests the related aspects, simplifies, illustrates, etc. More below:
🚨We’re seeing reports of a large-scale #spearphishing campaign targeting multiple sectors, including government and IT. A foreign threat actor is sending phishing emails with malicious RDP files to gain network access. Take proactive measures. More info: https://t.co/V9t7sZy5Ep
So, depends on what your interested in learning.
Looks like you have some nice remote access options setup, and VMWare/Vsphere?
You might be able to already setup
VMWare memory tiering with your existing hardware, or buy some additional:
https://t.co/V7Ao2o1vg4
You might setup a nested VMWare lab setup:
https://t.co/N2YA5Tf9pK
(not VMWare related) Setup a local LLM optimized for offensive security:
https://t.co/EXLVKtEUi2
Build self-hosted attack labs:
https://t.co/NZflnyXAyM
https://t.co/KajyMzm6jl
Offensive Security notes 🔥📢
Welcome to the Linux Privilege Escalation Guide within my OSCP (Offensive Security Certified Professional) notes. 🚀🚀🚀
"Access to my OSCP Linux Privilege Escalation notes is limited to a select group.
First 10,000 people are eligible to receive access to OSCP Notes
If you'd like to receive these notes, please
👉follow me , 👉repost and drop 👉‘Yes’ and send me a private direct message.
This offer is exclusively for verified users, not new accounts."
In this comprehensive resource, we will explore the intricacies of escalating privileges on Linux systems, providing you with the knowledge and techniques necessary to navigate the challenging world of ethical hacking and penetration testing. From basic concepts to advanced strategies, this guide aims to equip you with the skills needed to elevate your privileges on Linux platforms, an essential skill for any cybersecurity professional.
📣 To my wonderful fans, your support means the world to me. Your unwavering encouragement keeps me going every day, and I'm truly grateful for each one of you.
😎😎😎😎😎😎😎😎😎😎😎😎😎😎
#Cybersecurity #Linux #PrivilegeEscalation #OSCP #EthicalHacking #InfoSec #PenetrationTesting #Security
#ITSecurity #Hacker #OnlinePrivacy
#DigitalSecurity #CyberAware #DataProtection #NetworkSecurity
CISA and review board torches Microsoft internal response and how bad the 2023 compromise actually was.
It was way worse than what was communicated from Microsoft - way way way worse and avoidable.
This is a good read and something folks really need to equate in their own threat models and risks in cloud - especially one as high profile as Microsoft/Azure.
Extremely alarming imo. Key highlights below is scary AF.
Also bang up job on this report from @CISAgov - grade A disclosure and documentation and analysis. Also, this isn’t me bashing the amazing folks that work at Microsoft.
Some of the most brilliant folks out there. What is clear is that there needs to be some serious and concerted effort on monitoring and massive momentum on additional security controls (esp keys to kingdom ?!) to protect their cloud infrastructure that other cloud providers already have that Microsoft is seriously lagging behind in.
Excerpt below:
“Given Microsoft’s inability to determine how and when the adversary was able to steal its signing key, all CSPs should review and revise as appropriate their logging and overall forensics capabilities around their identity systems and other systems that enable environment-level compromise, such as root key material.
1. the cascade of Microsoft’s avoidable errors that allowed this intrusion to succeed;
2. Microsoft’s failure to detect the compromise of its cryptographic crown jewels on its own, relying instead on a customer to reach out to identify anomalies the customer had observed;
3. the Board’s assessment of security practices at other cloud service providers, which maintained security controls that Microsoft did not;
4. Microsoft’s failure to detect a compromise of an employee's laptop from a recently acquired company prior to allowing it to connect to Microsoft’s corporate network in 2021;
5. Microsoft’s decision not to correct, in a timely manner, its inaccurate public statements about this incident, including a corporate statement that Microsoft believed it had determined the likely root cause of the intrusion when in fact, it still has not; even though Microsoft acknowledged to the Board in November 2023 that its September 6, 2023 blog post about the root cause was inaccurate, it did not update that post until March 12, 2024, as the Board was concluding its review and only after the Board’s repeated questioning about Microsoft’s plans to issue a correction.”
https://t.co/OSKXeh8Vph