@aytobrihuega@plataforma_bri está bien no permitir acceder en coche, pero si ponéis servicio de autobuses, que menos que hacerlo bien al menos, no? un mínimo de limpieza.. revisar que el aire funcione, cosas normales con 35 grados #brihuega#bus
Pensamos que nos quedan 20, 40 o 50 años de vida. Pero es mentira. La vida se mide en veces.
Te pongo un ejemplo:
A mí me vuelve loco esquiar.
Pero siendo realistas, voy 2 veces al año.
El año que voy 3, ya soy un privilegiado.
Si asumo que me quedan 15 años esquiando a tope, la cuenta sería así:
• No me quedan 15 años de esquí.
• Me quedan 30 veces.
• Solo voy a subir a la nieve 30 días más en toda mi vida.
Lo mismo pasa con la gente.
Piensa en ese primo al que ves solo en las comidas familiares.
Si lo ves una vez al año durante 3 horas y crees que te quedan 20 años de vida…
Realmente te quedan 60 horas con él. Un fin de semana largo.
Eso es todo lo que te queda antes de morirte.
Es una mierda. Una mierda pinchada en un palo.
Cuando hago este cálculo, me entra la paranoia.
Miro fotos mías con 18 o 20 años y pienso que tenía que estar saltando de felicidad. Pero no me enteraba de qué iba la película.
En esa época regalaba los minutos. Pasaba la vida como si nada.
La vida es súper injusta en eso. Pero hacer este cálculo te obliga a dejar de regalar el tiempo y aprovechar hasta el último segundo.
No te quedan años. Te quedan momentos.
Aprovéchalos.
Not many cybersecurity people work with an AI sidekick other than asking ChatGPT some questions here and there.
Here's a very powerful combo:
Burp MCP + CAI/Codex.
Basically, the AI agent takes direct input from your Burp activity and can execute numerous actions.
The pentesting landscape has been changing very rapidly this year and many professionals are left behind. It's still time though...
@thsottiaux@embirico@ah20im@PortSwigger
Some additional details emerge about the F5 breach: the hackers were in the company's network for at least 12 months, according to people familiar with the investigation. F5 sent customers on Wednesday a threat hunting guide for Brickstorm, which is leveraged by the UNC5221 Chinese APT group. BTW, 12 months is just a bit short of the 393 days that is the average dwell time for UNC5221. Story by Patrick Howell O'Neill and colleagues: https://t.co/9PyeJQjaBd
🚨 New 5G attack discovered.
Researchers built Sni5Gect, a tool that can hijack the 5G handshake, crash phones, or silently downgrade them to 4G — no fake cell tower needed.
Here’s the full story → https://t.co/5R35rKudS8
In this dystopian future, hacking isn’t polished or clean. It’s bone, wire, and spite held together with duct tape and bad decisions.
But don’t get it twisted: this isn’t just about aesthetic.
It’s about depth. Real hacking means understanding the guts of technology – protocols, memory, logic, timing – and doing things no one expected. Things that weren’t meant to be possible.
Installing Kali and running Burp with someone else’s extension isn’t hacking. It’s clicking buttons on the surface.
Hacking goes deeper. To the flesh of the machine.
Windows SMB Client Elevation of Privilege Vulnerability
CVSS Score: 8.8
Attack Vector: Network
Attack Complexity: Low
Privileges Required: Low
User Interaction: None
Do I have to say more?
https://t.co/SbFqsTWTSN
A Dutch university has shared its technical post-incident report drafted by @foxit. The attack was detected when the actor tried to disable the backups. The report is an interesting read with lots of hunting/detection potential.
https://t.co/l6uuTynSkN