the grugq's newsletter
Archives
Search
Subscribe
October 23, 2025
October 22, 2025
October 23, 2025 1/ Who wins in the Information Security AI arms race: Defenders? Attackers? or the new AI tools just cancel each other?Our answer...👇...
October 22, 2025
October 21, 2025
October 22, 2025 bed overheated because AWS-east was down. but um....... its good because it alerted them to the outage? i dont even know what to do with...
October 20, 2025
October 20, 2025
October 20, 2025 We recently took over an APT investigation from another forensic company. While reviewing analysis reports from the other company, we...
October 18-19, 2025
October 19, 2025
October 18-19, 2025 https://www.antipope.org/charlie/blog-static/2025/10/the-pivot-1.html 1/ UPDATE: South Korea's spy agency has finally broken its silence...
October 16, 2025
October 16, 2025
October 16, 2025 We learn of a F5 Networks breach by "a highly sophisticated nation-state" from an SEC filing:https://t.co/WwPFNPDjgM— Ryan Naraine...
October 15, 2025
October 15, 2025
October 15, 2025 My DEFCON talk about cryptomoney laundering techniques is out! At minute 20:30, I demonstrate how I use an AI agent to assist my...
October 14, 2025
October 14, 2025
October 14, 2025 The plan? At dusk, 50 people went to San Francisco's longest dead-end street and all ordered a Waymo at the same time.The world's first:...
October 12, 2025
October 12, 2025
October 12, 2025 Christopher Berry, one of the suspects in the China spy case, allegedly had secure communication apps used only by Beijing agents installed...
October 11, 2025
October 11, 2025
October 11, 2025 Apple's Real World CTF : you get the flag, you get the bountyhttps://t.co/gY6mayzpLy pic.twitter.com/i299t0U6P6— matteyeux (@matteyeux)...
October 9-10, 2025
October 10, 2025
October 9-10, 2025 https://understandingwar.org/research/cognitive-warfare/a-primer-on-russian-cognitive-warfare/ The Discord breach is another example of...
October 8, 2025
October 8, 2025
October 8, 2025 https://t.co/VswrXw9ZjZ pic.twitter.com/mukGkzNca6— Damin Toell (@damintoell) October 7, 2025 POChttps://t.co/6VziQNQ76p...
October 7, 2025
October 7, 2025
October 7, 2025 This was an interesting read, but to their credit, I was expecting a bit wider coverage. The coverage of IO in sync with kinetic strikes is...
October 5-6, 2025
October 6, 2025
October 5-6, 2025 GitHub - b1n4r1b01/n-daysContribute to b1n4r1b01/n-days development by creating an account on GitHub. GitHub - stealth/crash: crypted admin...
October 3-4, 2025
October 4, 2025
October 3-4, 2025 There is someone exposing IRGC (Islamic Revolutionary Guard Corps) stuff on GitHub.I'm not a IRGC geopolitical nerd, so I can't assess the...
October 2, 2025
October 2, 2025
October 2, 2025 Most #CyberSecurity classes focus on Western technology stacks, fueling #APT groups with TTPs to ravage our own networks. We are flipping the...
October 1, 2025
October 1, 2025
October 1, 2025 Pre-pandemic, the calculus was what the likelihood was of an employee being bribed to insert a USB stick into their work computer at the...
September 30, 2025
September 30, 2025
September 30, 2025 Just uploaded my RomHack slides about attack vectors against PsSetLoadImageNotifyRoutine and drivers that rely on it....
September 29, 2025
September 29, 2025
September 29, 2025 Writeup for CVE-2025-24085, an ITW mediaplaybackd vulnerability patched earlier this year https://t.co/XopOVNmfnc— binaryboy (@b1n4r1b01)...
September 28, 2025
September 28, 2025
September 28, 2025 Check out Titanis, my new C#-based protocol library! It features implementations of SMB and various Windows RPC protocols along with...
September 27, 2025
September 27, 2025
September 27, 2025 Precisely this: 👇Understanding how something is built helps you understand how it can break. The best way to understand how something is...
Newer archives
Older archives