The path starts here
Follow & RT with #XboxKGSweepstakes for a chance to win a custom Kunitsu-Gami: Path of the Goddess Xbox Series X console bundle and 3-month Xbox Game Pass Ultimate membership.
Ages 18+. North America only. Ends 7/31/24. Rules: https://t.co/7GHqyavOlh
Automating SSRF using Autorepeater 🔒
In this window of Auto-Repeater, we can specify some regex to find urls. In this case, I'll use this regex.
👉 https?:\/\/(www\.)?[-a-zA-Z0–9@:%._\+~#=]{1,256}\.[a-zA-Z0–9()]{1,6}\b([-a-zA-Z0–9()@:%_\+.~#?&//=]*)
🚨ATTENTION🚨Microsoft partnered with CobaltStrike's developer, Fortra, to begin cracking down on cracked versions of CobaltStrike.
⚠If you are currently using CS Crack Edition and building in VPS, please note! Offline CS as soon as possible, otherwise there is a risk of banning!!
The official strike notice was published on April 6, 2023, and the technology was perfected to officially implement the plan on January, 24. Recently, the above behavior has been reported, and several anonymous VPS have been lost.
📊2k+ Services are found on the https://t.co/ZkWaUVRSkG
🔗Hunter:https://t.co/HC4U0M2NU7
📰Refer to https://t.co/7UuiWKKraY
#cobaltstrike #hunterhow #infosecurity
With @tlansec, we suspected a 0d and we notified MS few days ago. The infection chain was insane... Instead of a endless tweet @zcracga did a wonderful graphic.
2/4
Sigma rules are one of the most powerful tools for Threat Hunters. Do you know that (for most cases) you can easily convert Sigma into LiveHunt/RetroHunt YARA rules? Find all the details here, by @karlhiramoto:
https://t.co/WRYGpyuSdN
National Hackers of #Russia claim they will take down G4S, a private security company
Interesting to note that the company has had at least 2 data breachs in the last year so there is likely already exposed data
#cybersecurity#infosec#RussiaUkraineWar#UkraineRussiaWar
A detailed analysis of a Samsung in-the-wild exploit, attributed by TAG to a commercial surveillance vendor. All 3 bugs were 0-day at the time of the discovery of the sample. 1/3
https://t.co/o972gigMT3
Yet another DLL sideloading: ShellChromeAPI.dll does not exist, but built-in DeviceEnroller.exe tries to load it when /PhoneDeepLink parameter is present. If you drop your own DLL, it nicely loads.
I'm excited about this one 🎉 Hunt in Microsoft 365 Defender without KQL! Our new query builder is now in public preview
https://t.co/9kUFUpYmiy thanks @Taliash1