the grugq's newsletter
Archives
Search
Subscribe
April 14, 2025
April 14, 2025
April 14, 2025 Happy Songkran! It’s Thai new year over here (it’s a week long party, apparently right beneath my window) so expected reduced output. North...
April 13, 2025
April 13, 2025
April 13, 2025 Great summary of the new Google paper on defeating prompt injection by design by increasing control and data flow separation with privileged...
April 12, 2025
April 12, 2025
April 12, 2025 pic.twitter.com/JIWVNP4uRx— Josh Kamdjou (@jkamdjou) April 10, 2025 Witness History - The Reichstag fire - BBC SoundsIn February 1933, the...
April 11, 2025
April 11, 2025
April 11, 2025 In iOS 18.4, Apple introduced a bug in dynamic symbol resolutions for some specific exports. @0xf4b took a long journey down a rabbit hole to...
April 10, 2025
April 10, 2025
April 10, 2025 I was there. It was meant literally.“JD Work — now on the US NSC — shocked some by warning that the US would take lethal action against...
April 9, 2025
April 9, 2025
April 9, 2025 Episode 4 of Where Warlocks Stay Up Late featuring Skyper is now live on our YouTube and Spotify channels 🧙Skyper, aka Eduart Steiner (an...
April 8, 2025
April 8, 2025
April 8, 2025 I've added a local CORS proxy, added some more FREE enrichments and some other bits and bobs:https://t.co/bdJdwb9YP6— mRr3b00t...
April 7, 2025
April 7, 2025
April 7, 2025 April 4th Noah Urban a/k/a "King Bob", an alleged member of the infamous "Scattered Spider" group, plead guilty to all charges in all cases.Mr....
April 6, 2025
April 6, 2025
April 6, 2025 EU: These are scary times – let's backdoor encryption! https://www.theregister.com/2025/04/03/eu_backdoor_encryption/?td=rt-3a One Bug to Rule...
April 5, 2025
April 5, 2025
April 5, 2025 No words pic.twitter.com/EyHtRLbIpq— Andy Yen (@andyyen) April 3, 2025 April is #SupplyChainIntegrityMonth! NCSCgov and its partners are asking...
April 4, 2025
April 4, 2025
April 4, 2025 Home | MIT Secure Hardware DesignMIT 6.5950/6.5951 Cracking the CrackersReversing the TNT team macOS crack library to understand if there is...
April 3, 2025
April 3, 2025
April 3, 2025 🎥 DistrictCon Year 0 recordings are now live on YouTube! Check out the AMAZING content from our Track 1 Speakers, Junkyard competitors, and...
April 2, 2025
April 2, 2025
April 2, 2025 I got 14 new Apple CVEs in this release😎 https://t.co/kut6EI5xdE pic.twitter.com/e0U2Khf3hv— Mickey Jin (@patch1t) April 1, 2025 A while back...
April 1, 2025
April 1, 2025
April 1, 2025 Synthetics Implemented Right @leveragesir has been hacked for $355kThis is a clever attack. In the vulnerable contract Vault...
March 31, 2025
March 31, 2025
March 31, 2025 What would you do if you could spy on SMS messages? @theredguild and @opsek_io have identified SLOVENLY COMET, a threat actor which has been...
March 30, 2025
March 30, 2025
March 30, 2025 A good read: The Security Conversation – Adversary Fan Fiction Writers GuildIs Offensive Security just security testing? No. Offensive...
March 29, 2025
March 29, 2025
March 29, 2025 BlackLock Ransomware Exposed After Researchers Exploit Leak Site VulnerabilityBlackLock's misconfigured leak site exposed internal commands,...
March 28, 2025
March 28, 2025
March 28, 2025 Status update For those of you who reached out about the earthquake, I’m fine thank you. I spent a few hours sitting outside with my dog....
March 27, 2025
March 27, 2025
March 27, 2025 grugq on cyber in Europe I spoke to Sven at Interface yesterday about some cyber issues with Europe. The video is online already: EXCLUSIVE:...
March 26, 2025
March 26, 2025
March 26, 2025 THC's memexec now supports x86_64, aarch64, arm6/7 and mips64. The perl version is a 1-liner (cat /usr/bin/id | memexec) :> Helps to overcome...
Newer archives
Older archives