How to fix the Crowdstrike thing:
1. Boot Windows into safe mode
2. Go to C:\Windows\System32\drivers\CrowdStrike
3. Delete C-00000291*.sys
4. Repeat for every host in your enterprise network including remote workers
5. If you're using BitLocker jump off a bridge
Crowdstrike Analysis:
It was a NULL pointer from the memory unsafe C++ language.
Since I am a professional C++ programmer, let me decode this stack trace dump for you.
OST cannot be stopped. Here is a technique we tested internally 9 months ago: blocking EDR telemetry by leveraging the Windows Filtering Platform. Considered it so evil that we didn't publish it that time. It was pointless, now here it is by @netero_1010: https://t.co/TxxJrefTcW
Fancy a macOS 0day local privilege escalation for GOG Galaxy? Although reported almost a year ago, there is still no patch. Full details for the vulnerability: https://t.co/BCz6VD2dKA
Microsoft launched the best course on Generative AI.
The free 12 lesson course is available on Github and will teach you everything you need to know to start building Generative AI applications.
Each lesson includes:
- a short video introduction to the topic
- a written lesson located in the README
- a Jupyter Notebook with code examples (for project-based lessons)
- a challenge or assignment to apply your learning
- links to extra resources to continue your learning
I’ve just publicly released SQLRecon v3.3. This release includes many features that were used privately by the @xforcered Adversary Services team on real-world red team operations. Please share, enjoy, and use responsibility. Hmu if you have any questions! https://t.co/lACpTXx94o
Today I learned: By using an HDR <video>, a website can display a very bright white, like ~7 times brighter than #FFFFFF, on an iPhone/iPad.
This can be used to e.g. show a bright QR code for easy scanning despite user’s low brightness settings.
https://t.co/zZ8SLomPun