the grugq's newsletter
Archives
Search...
Subscribe
October 5, 2024
October 5, 2024
October 5, 2024 “I still don’t have a clear idea of when I will retire or return to my country. For now, I will continue supporting the beautiful cause of...
October 4, 2024
October 4, 2024
October 4, 2024 A tour de force of modern exploit dev. Would love to know how they found the bug in the first place? Just code auditing ?...
October 3, 2024
October 3, 2024
October 3, 2024 HTTP Parameter Pollution in 2024! https://t.co/oJWTvI9b9j— /r/netsec (@_r_netsec) October 2, 2024 For over a year my free time has been spent...
October 2, 2924
October 2, 2024
October 2, 2924 ICYDK @neoeno makes nice materials (blogs, posters, videos) about file formats, analysis, crafting...Ex: https://t.co/AgdWoxYc98...
October 1, 2024
October 1, 2024
October 1, 2024 I asked my LLM agent (a wrapper around Claude that lets it run bash commands and see their outputs):>can you ssh with the username buck to...
September 30, 2024
September 30, 2024
September 30, 2024 strcpy bug in Tony Hawk's Pro to achieve RCEhttps://t.co/XY4wWgyOK5Credits @Grimdoomer#cybersecurity pic.twitter.com/T2fusrhPhD— 0xor0ne...
September 29, 2024
September 29, 2024
September 29, 2024 DHS IG finds serious problems w/ the govt's cyber threat information sharing portal.# of entities sharing CTI "declined to its lowest...
September 27-28, 2024
September 28, 2024
September 27-28, 2024 Attacking UNIX Systems via CUPS, Part IHello friends, this is the first of two, possibly three (if and when I have time to finish the...
September 26, 2024
September 26, 2024
September 26, 2024 A watering hole campaign against 25 Kurdish websites, which we named #SilentSelfie 📸: > 4⃣distinct variants identified;>📱Ranging from...
September 25, 2024
September 25, 2024
September 25, 2024 If you ever asked yourself why the 0day market is doing so well.This is why 👇🏻 https://t.co/mBMXWKcUnR— x0rz (@x0rz) September 24, 2024...
September 24, 2024
September 24, 2024
September 24, 2024 ITW! 🇰🇵👨💻Rad joint blog between consulting, AP, and the DPRK gang here at ol' Goog.I didn't have a hand in the blog but I've had the...
September 23, 2024
September 23, 2024
September 23, 2024 🧵 Europe Invasion Investigation1/ We dug into Europe Invasion, a blue tick X account spreading disinformation, xenophobia, and...
September 22, 2024
September 22, 2024
September 22, 2024 "Kyrylo Budanov, Chief of the Defence Intelligence of Ukraine, provided substantiated evidence that Russian special services have access...
September 21, 2024
September 21, 2024
September 21, 2024 https://www.bunniestudios.com/blog/2024/turning-everyday-gadgets-into-bombs-is-a-bad-idea/ Introduction to Security...
September 20, 2024
September 20, 2024
September 20, 2024 Most of cryptography research is developing a really nice mental model for what’s possible and impossible in the field, so you can avoid...
September 19, 2024
September 19, 2024
September 19, 2024 New: police have hacked Ghost, an encrypted app used by organized crime. I think this shows a fundamental shift: criminals are no longer...
September 18, 2024
September 18, 2024
September 18, 2024 The actual details of the pager attack, as reported by Reuters, are more interesting than I speculated earlier. They boomdoored the pagers...
Hezbollah Hacked? Pager Panic!
September 18, 2024
Hezbollah Hacked? Pager Panic! A supplement post to collect information on the attack targeting Hezbollah's pagers. Obviously, this is still a developing...
September 17, 2024
September 17, 2024
September 17, 2024 From Rob Heaton's blog: https://t.co/1knGydWYgJ— Andy Kong (@oldestasian) September 15, 2024 We’re launching the public beta phase of our...
September 16, 2024
September 16, 2024
September 16, 2024 How Lazarus Group laundered $200M from 25 hacks How Lazarus Group laundered $200M from 25+ crypto hacks to fiat … — Investigations By...
Newer archives
Older archives