Microsoft puts a feature flag in every vuln fix (my team published this 3 years ago). This makes N-day root cause id much simpler. Waiting to see which bugs they exploited! I’ve been impressed during my own N-day experiments but Opus still can’t crack the hardest bugs by itself
Frontier models are also really good at finding and exploiting n-day vulnerabilities, doing so on timescales of hours. Read about some recent work from my team studying these capabilities! https://t.co/668NzY2I2J
We are investigating unauthorized access to GitHub’s internal repositories. While we currently have no evidence of impact to customer information stored outside of GitHub’s internal repositories (such as our customers’ enterprises, organizations, and repositories), we are closely monitoring our infrastructure for follow-on activity.
Confirming this recent story from @razhael: https://t.co/sy1kmWtOBg In response to Mythos, CISA is considering a binding operational directive that would change the timelines for agencies to remediate vulnerabilities, including down to 3 days in some cases.
It has begun: AI tools are being used to perform OSINT to determine which orgs and people to target in a hack, write infostealer malware, determine the right ransom amount per victim, organize stolen documents, and write the emails.
AI doesn’t change the attack, it SCALES it.
https://t.co/Mrw7CuUwWf now has SIEM queries and a tool section for those looking to operationalize the data. Thanks to @Cyb3rMonk and @M_haggis for sharing the queries with the community!
Also shout out to @TenableSecurity for sharing the Nessus plugin, @Oddvarmoe for the powershell script, @rtfmkiesel for the super fast client, and finally @mgreen27 for the Velociraptor integration using YARA.
Let me know if we missed any tools that are out there on the wild implementing loldrivers 🙏
andrea gibson’s poetry is one of the few things that kept me together when everything felt meaningless. the world lost a beautiful spirit today and everyone should take the time to read their poetry if they haven’t already
🚨NEW INVESTIGATION: We just forensically unmasked #Paragon's Apple spyware.
Zero-click targets: Journalists. In 🇪🇺Europe.
Like 🇮🇹Italian reporter @ciropellegrino.
Reopen's #Italy's spyware scandal.
Follows our @citizenlab investigation of their Android spyware. 1/
I told Congress the story of how I got into hacking: winning the Hack the Air Force competition at 17, and helping start Stanford's bug bounty program as a freshman.
While we've made progress, we need to do more to normalize security research. I called on Congress to reform the Computer Fraud and Abuse Act by exempting good-faith security research.
The FBI has released a FLASH report to provide technical details associated with Funnull Technology Inc., a company that provides infrastructure for thousands of websites linked to cryptocurrency investment fraud, often referred to as “pig butchering” https://t.co/3VPFnYncVJ
The largest Sanskrit text corpus is only 500M tokens. GPT-2 used 50x more.
We could get a GPT-2 size Sanskrit corpus if we OCR a ton of documents, but we first need to bootstrap a VLM to do the OCR!
How? Synthetic data. Announcing Samhitika-0.0.1📜: a translation of BookCorpus.
In only 4 days we're now at 18 (!!!) @WISPorg Scholars covered for @defcon@BlackHatEvents@DianaInitiative@_squadcon to show their skills & find their next job! Thank you @wendiwhitmore, Jake, Sara, Helen, anons! Who can help us hit 20 scholars today??!
https://t.co/U9iYQHvZ6m
⚠️ This is Bad News — A new wave of ransomware attacks is on the way
Whenever there is a leak or publication of ransomware code or builders, there is a spree of attacks using it. It happened with LockBit Black/3.0 and Babuk for ESXi.