the grugq's newsletter

Subscribe
Archives
August 26, 2025

August 26,2025

August 26,2025

excellent writeup that highlights how many 0-days are simply asking nicely for something. https://t.co/4GZmKR2wme pic.twitter.com/QfhZfZ2bSf

— J⩜⃝mie Williams (@jamieantisocial) August 25, 2025


it's interesting to see how far the investment in loaders will go to protect expensive/custom backdoors 🐼🪆 https://t.co/VkXlvqoncu pic.twitter.com/V08xKDqSWn

— J⩜⃝mie Williams (@jamieantisocial) August 25, 2025


I just noticed CVE-2025-25257 and had a giggle.
Not because it's yet another Fortinet remote bug.
But because it's a SQLi, in a WAF product. The irony...

— Hamid Kashfi (@hkashfi) August 25, 2025


Part 2: 11 Lithuanian KGB Counterintel Ops Against the West in 1955

Clandestine operations of KGB agents dispatched to the West revealed in the archives.


sometimes it feels like maldevs troll defenders with annoying C2 indicators.

andrefelipedonascime1753562407700.0461178[.]meusitehostgator[.]com[.]br https://t.co/ch7RRDflEI pic.twitter.com/VcoQ5VAxBh

— J⩜⃝mie Williams (@jamieantisocial) August 26, 2025


Lots of reporting today about alleged claims for what the KGB would have done in the UK in the event of a run up to war, to support a new book about MI5.

Lets look at actual Cold War MI5 documents, quoting Oleg Gordievsky (codename OVATION) to see what MI5 really thought... pic.twitter.com/aH8gIgFeqx

— Sir Humphrey (@pinstripedline) August 24, 2025

Thread by @pinstripedline on Thread Reader App – Thread Reader App

@pinstripedline: Lots of reporting today about alleged claims for what the KGB would have done in the UK in the event of a run up to war, to support a new book about MI5. Lets look...


Logit-Gap Steering: A New Frontier in Understanding and Probing LLM Safety

Logit-Gap Steering: A New Frontier in Understanding and Probing LLM Safety

New research from Unit 42 on logit-gap steering reveals how internal alignment measures can be bypassed, making external AI security vital.


Don't miss what's next. Subscribe to the grugq's newsletter:
Start the conversation:
X