🔴2024: EL AÑO DE LA PONZIDEMIA
Este año metí esta palabra inventada en la conversación pública para difundir la epidemia de esquemas piramidales y estafas ponzis en redes sociales.
Va un hilo, en orden cronológico, de videos e info que fui publicado desde inicios de año.👇
Fallo inédito: a una pyme le robaron casi $8 millones del homebanking, el dueño demandó al banco por pocas medidas de seguridad informáticas y la justicia obligó al banco a devolverle $12 millones más intereses
🚨🚨NO NO NO, @renaper_ar de nuevo NO!
Sí, de nuevo publican abiertamente 65 millones de registros de #RENAPER
No se puede creer lo que han publicado😭: BD, código fuente, API, contraseñas, TODO.
Fotos y huellas en venta.
IMPACTO INFINITO EN TODOS LOS SERVICIOS DE ARGENTINA.
🤯 The level of sophistication of the XZ attack is very impressive! I tried to make sense of the analysis in a single page (which was quite complicated)!
I hope it helps to make sense of the information out there. Please treat the information "as is" while the analysis progresses! 🧐 #infosec #xz
Nuevo #phishing de @MovistarArg.
Es un .COM registrado el 13/03 y roba datos personales y de la Tarjeta de Crédito.
Como a Google NO le importa tu seguridad, aparece listado primero.
Simple, reemplaza esa porquería por otro buscador: https://t.co/xKJ2ocCUyv
Venga, a ver si me da tiempo mientras me tomo un café a analizar el supuesto leak de hoy con 13Gb de cuentas de usuario de Linkedin robadas. Lo primero descargar el fichero, OJO con esto que puedes incurrir en un delito de Descubrimiento y Revelación de Secretos.⛔️ HILO
🚨🚨Nuevo troyano #mekotio llega en email de multas y citaciones.
Como siempre, utiliza HTML Smugling para pasar desapercibido y saltear protección.
Descarga automáticamente ZIP con MSI incluido.
Al menos 60 IPs de descarga!
16f9ffa7de101a52c8d5e6a61dda3e4e
Detección AV: 8/61
🔐 New combolists discovered.
🇦🇷 #Argentina: 88.863 users impacted (907 gov accounts), with government domains AFIP, Diputados, Fiscalía (GBA), Presidencia, Ministerio de Seguridad & Ministerio de Defensa among them.
🔎 #ThreatIntel: @chum1ng0 (¡Gracias!)
#Cybercrime
Un equipo de investigadores chinos afirma haber roto el cifrado RSA-2048 con un ordenador cuántico de 372 qubits, usando un nuevo algoritmo de factorización y un método de optimización cuántica. Este avance podría poner en riesgo la seguridad de la mayoría de las comunicaciones online que se basan en este tipo de cifrado asimétrico.https://t.co/knd9w9WTFB
😳😳Probably the best thing you'll see today.🤯🤯
🔒 Free Offensive Security Notes PDF Courses + Video on OSCP, OSWE, OSEP, OSED, OSDA, OSWA, OSWE, OSWP, EXP301, EXP312, WEB300, CEH , CEH v3, CEH v12, CCC , CKLP, Cisco CCNA 200-125 and more!
🌐 Found Interesting Information! 🌐
I came across some fascinating information on the web through Google and twiter.
I wanted to share it with all of you.
Please note that this content is not mine, and I do not own it.
All credit goes to the original source.
Also, thanks to my friend for sharing the URL!!!!!! 👉0xTib3rius
If you have any questions or concerns, please communicate with the content owner directly.
Let's enjoy learning and exploring together!
Knowledge is meant to be shared. 📚🌍 #KnowledgeSharing #OnlineDiscovery"
Let's enjoy learning and exploring together! Knowledge is meant to be shared. 📚🌍 #KnowledgeSharing #OnlineDiscovery
📚 Get your hands on these resources:
🚀🚀Offensive Security-EXP301-Windows.User.Mode.Exploit.Development/
🚀🚀Offensive Security-EXP312-Advanced macOS Control Bypasses OSMR Certification/
🚀🚀Offensive Security-EXP312-Advanced macOS Control Bypasses OSMR Certification/
🚀🚀Offensive Security-WEB300-Advanced.Web.Attacks.&.Exploitation/
🚀🚀Offensive Security OSCP 2023-Penetration with kali
🚀🚀Offensive Security OSDA - Foundational Security Operations and Defensive Analysis
🚀🚀Offensive Security OSED - Windows User Mode Exploit Development/
🚀🚀Offensive Security OSEP - Advanced Evasion Techniques and Breaching Defenses
🚀🚀Offensive Security OSWA - Foundational Web Application Assessments with Kali Linux
🚀🚀Offensive Security OSWE - Advanced Web Attacks& Exploitation
🚀🚀Offensive Security OSWP - Foundational Wireless Network Attacks
🚀🚀Certified CyberCop- Certified Kali Linux Pentester
🚀🚀Certified Ethical Hacker (CEH) Complete Video Course, 3rd
🚀🚀Certified Ethical Hacker (CEH) v12- Videos + PDF Lessons
🚀🚀Certified Ethical Hacker. Security, Penetration, Protecti
🚀🚀Certified Ethical Hacker CEH v12 - Videos + PDF Lessons +
🚀🚀Certified Ethical Hacker CEH v12/
🚀🚀Certified Professional Ethical Hacker (CPEH )
🚀🚀Cybersecurity.practica. Networks. and. web
🚀🚀Cybersecurity.practica.Servers. and
🚀🚀Cisco ASA Firewall Fundamentals Basics of Network Security
🚀🚀Cisco CCNA 200-125/
🚀🚀Cisco CCNA 200-301 Exam Complete
🚀🚀Course with practical lal
🚀🚀Cisco CCNA 200-301 in Spanish/
🚀🚀Cisco Packet Tracer/workstations/
💻 Sharpen your skills with cutting-edge materials!
Always use knowledge ethically. Share & spread the word!
Repo: https://t.co/vDHi7IBoe6
Remember, always use this knowledge ethically and legally to make the digital realm safer for all!
Follow me🚀🚀
🙏🙏If you find this content valuable, please share it, give it a like 👍, and comment "YES" for more insights! 💻🔒
🤯Super Credit and BigThanks to 0xTib3rius 🤌🤌🤌🤌🤌🤌🤌🤌🤌🤌🤌🤌🤌🤌🤌🤌🤌🤌
Share this post to spread the word!
👍 #Infosec #Cybersecurity #EthicalHacking #FollowMe #Cybersecurity #Infosec
#infosec #Hacking #infosecurity #Malware #bugbountytips #CTF #BugBounty #vulnerability #pwn #CyberSecurityAwareness #CyberSecurity #cybersecuritytips @SaveToNotion@threadreaderapp #oscp #osed #oswe #osep #osce³ #pentest #hacking #infosecnotes #cybersecurity
En nuestro 2do webinar de #CyberChat4All, contamos con la valiosa participación de @FortinetLATAM (@edgarled). Recomendó esta guía de #Ciberseguridad especialmente diseñada para los más pequeños.
📘¡Descárgala y protege a tus hij@s en línea: https://t.co/uoU2Li08ti! 👧👦🔒
Simplemente alucinante🤪
Atacantes chinos robaron una clave de firma MSA en abril/2021 y accedieron a cuentas de Exchange y Outlook en mayo/2023🤯
https://t.co/rUPlnhw5RS
Me pasaría horas mirando este "dibujito" (c)@mattjay Sí, así de mal estoy 🤓
Its been a year and seriously this is one of the most interesting tech migrations stories.
Cloudflare ditching NGINX
At first glance I thought: what is wrong with NGINX? So let me summarize and I’ll link up the article and my full video coverage if you want to learn more
NGINX is process based (like Postgres), processes are isolated and each have their own dedicated memory and having worker processes pinned to a CPU is valuable to avoid context switching. But I we have to remember what NGINX is used for.
It is a reverse proxy.
This means it needs to turn around and connect to the backend server. The worker process must do that. Which means it will create a connection, get a file descriptor and that process and that process only will be the one read and write to this backend connection. Other processes won’t see this connection. You might say so? whats bad about this.
Imagine having 40 CPU cores mapped to 40 worker processes if you used defaults. The request running in a core must pick from existing connections established only from that process or create new ones from that process even though existing connections to that backend might already exist in other processes.
This is how NGINX architecture work, this is regardless of SO_REUSEPORT or not. This means that backend connections are scattered and isolated and can’t be reused.
Not only you are making more connections to the backend (more CPU) you can’t use connections across process workers as the file descriptors live in the worker process and those are dedicated.
Cloudflare is building their own home grown reverese proxy (Pingora) to have a single connection pool to address this. I’m craving details on this beauty (white paper please).
Could cloudflare fixed NGINX by creating a shared connection pool? probably but the cost of changing that architecture is so engraved into NGINX that a rewrite made better sense for them.
Read full article here,
https://t.co/Km1UiuZ2nM
Watch my video
Cloudflare is moving away from NGINX | The Backend Engineering Show
https://t.co/R44eIxQvjT
p.s.: Sounds like Envoy has the same problem as NGINX, connection pool per worker thread. https://t.co/uYIsi7hslp
Queues vs Pub/Sub 📦
Prepared this quick little visual explanation with the difference between Queues and Pub/Sub processing as an experiment. I might start doing more of these.