After Opus 4.8
Anthropic CEO prediction:
2026 - 90% code is written by Al
2027 - 100% code is written by Al
My prediction:
2026 - 90% code is written by Al
2027 - 100% code is written by Al
2028 - 10% code is written by Al, Senior SWEs paid 10x of today to clean up the Al-written code mess.
@mtrantalainen@deceptiq_@vxunderground The persistence technique fails for a standard user because https://t.co/mqXMcaS8sw is a fallback, not an override. You cannot trick Windows into loading a Mandatory Profile just by placing a file: you have to destroy the existing Standard Profile first, protected by permissions
@mtrantalainen@deceptiq_@vxunderground this specific variation of the attack fails because of Windows Boot Precedence.
In short: If ntuser.dat exists, Windows ignores https://t.co/mqXMcaS8sw.
@rad9800@deceptiq_@vxunderground The step that specifically triggers the "High Integrity" (Administrator) requirement is accessing and writing to the target user's profile folder while that user is offline.
You are stuck in a "Lock vs. Permission" paradox that forces you to be an Administrator
NetExec v1.5.0 has been released!🔥
Merry Christmas everyone!🎉 It's been a very long time since the last release, so there are a TON of new features!
Some of the highlights:
- Built-in LDAP signing and channel binding checks
- RDP command execution
- certipy find integration
The impeccable, brilliant Anthony Jackson. A must listen. Just as fresh today as then. One of my very favorite albums. Here with Steve Khan, Manolo Badrena, and Steve Jordan. 🔥
https://t.co/UWeCWi6UuV
Resharing this useful catalog of various EDR products "shell" and response functionalities by @cbecks_2 related to the Thread discussion below 👇
https://t.co/Hdc3AmKgmF
Presenting the #Wagmi traffer group (Героев нужно знать в лицо).
Collaborated with @g0njxa on this blog to raise awareness about these widespread scams on X, Discord, and other platforms. Too many people are falling victim, putting millions in the hands of threat actors. Stay vigilant! 🕵️
https://t.co/lHGbnii057
Today EUROPOL announced the takedown of a large and prolific CSAM (Child Sexual Abuse Material) website known online as "Kidflix" — a reference to Netflix.
Over 35 countries were involved in the operation which was lead by the State Criminal Police of Bavaria (Bayerisches Landeskriminalamt) and the Bavarian Central Office for the Prosecution of Cybercrime (ZCB).
Kidflix was infamous due to it's "unique" features for CSAM websites. It allowed users to filter by video quality, watch child abuse livestreams, and preview videos prior to purchase. Additionally, individuals who were active on the website, shared content, produced unique content, etc. could earn "Kidflix tokens" which allowed them to get other CSAM material for free. Furthermore, the site had 3.5 unique CSAM videos uploaded every hour, with a total of 6,288 hours (262 days) of CSAM videos present on the website.
Law enforcement learned over 1,800,000 people from all across the globe visited Kidflix. Kidflix contained over 72,000 videos of CSAM.
As a result of the takedown over 1,400 suspects have been identified and (thus far) 79 individuals have been apprehended and 39 children has been rescued from child predators.
This operation, dubbed "Operation Stream", is the largest pedophile network takedown European history. EUROPOL has stated they will continue to work with other countries law enforcement agencies to hold each person accountable for the crimes committed on Kidflix.