April 26, 2022
Crypto. NFT. Fraud. Rinse. Repeat.
Thomas spitting straight fire
Cyberwar is hard.
A hacking tool for STUN etc servers.
https://github.com/firefart/stunnerCurated list of cyber attacks against Ukraine.
https://github.com/curated-intel/Ukraine-Cyber-OperationsI am honestly curious how the Instagram account was hijacked. Crypto has been amazing for security. All sorts of novel attacks are being exposed and documented.
https://watcher.guru/news/bayc-instagram-and-discord-hacked-over-13-million-in-nfts-stolenI have some reservations about some books on this list, but there are several that I think are good.
Send your recommendations for future learning and share away!List of container breakout vulnerabilities, for those who like to look into that sort of thing.
https://www.container-security.site/attackers/container_breakout_vulnerabilities.htmlThis is a weird find. A dummy charge on a rail line in Russia.
Important legal news for cyber.
Another slide deck from zer0con
Cool work. A bounty for reversing blur redaction of an image was claimed.
Fuck around:
Find out:
Privesc by misconfiguration.
There’s a war on. No, the other one.
What is really wild about this is that there are so many insane things that “aren’t war” but which are the new normal. Here we have a proxy war operator, building IED loitering UAVs, for a non-state actor, who was tracked so precisely that special forces were able to interdict him in transit. That is some future war shit right there.
Get this, apparently Facebook doesnt know exactly what happens with the data it collects. I am absolutely astounded.
The whole “pay people to install malware” attack is still viable. I guess “buy the company” is also an attack vector. There’s just a lot of vulnerability that appears as soon as money shows up.
If everything is reduced to transactional relationships, then clearly companies will be outbid by attackers. Obviously, then, the solution is to not reduce everything to a transactional relationship. Things that money can’t buy… etc.
Speaking of symbolism
The cyber war is heating up. Chess.com is banned in Russia.
https://www.chess.com/news/view/chess-com-banned-by-russia