the grugq's newsletter

Subscribe
Archives
December 11, 2023

December 11, 2023

December 11, 2023

Humans tend to fail the Turing Test: “Almost half of our participants (42%) decided that their conversational partner (that was in every case a human being) was a computer program.” pic.twitter.com/cEDY7nuYUe

— Ethan Mollick (@emollick) December 9, 2023


Due to an issue in ext4 with data corruption in kernel 6.1.64-1, we are a pausing the 12.3 image release for today while we attend to fixes. Please do not update any systems at this time, we urge caution for users with UnattendeUpgrades configured.… https://t.co/cxCONqC4iE

— The Debian Project (@debian) December 9, 2023


This seems like it will age well pic.twitter.com/Ejwp2eEPF9

— taylor (@tayroga) December 8, 2023

Voice cloning takes me less than 2 minutes to complete to fool these systems and steal money.
Friends don’t let friends use voice ID.https://t.co/QVglMcEmZG https://t.co/uE0uLhfCZG

— Rachel Tobac (@RachelTobac) December 9, 2023

60 Minutes hired an ethical hacker to show how easy it is to be scammed. She conned our unsuspecting colleague using artificial intelligence. https://t.co/CjFSdAAIda pic.twitter.com/xwUCCxXWUe

— 60 Minutes (@60Minutes) May 21, 2023

Google's search engine is jumping the shark.

1. Half the page is ads.
2. There's one result on the page.
3. Then recommendations for more questions.

It's almost like their mission is to sell ads rather than organize information.

What's better? Startpage? Kagi? Something else? pic.twitter.com/3WAjy4SwoJ

— ᴅᴀɴɪᴇʟ ᴍɪᴇssʟᴇʀ ☕️ (@DanielMiessler) February 8, 2022

I know a LOT of people who are going out of their way to try the Panera lemonade that kills people.

I am sure they will be fine.

but what scares me is what will happen when other food companies learn about this new form of viral marketing

— Rob DenBleyker (@RobDenBleyker) December 10, 2023


Cybersecurity Services, Solutions & Products. Global Provider | Group-IB

Leading provider of cybersecurity solutions: Threat Intelligence, antifraud, anti-APT. Protect better, respond faster to network security attacks and threats.


Stuntman trainingpic.twitter.com/MgdineNolo

— Massimo (@Rainmaker1973) December 10, 2023


Me: there's more to Chicago than negative stereotypes

CPD: if you have any info about this gun crime please contact sergeant kielbasa https://t.co/Q6RBfNuoaO

— please be nice to patrick (@ruff_bluffs) June 23, 2022

Help the CPD identify this person. Subject is a person of interest suspected of committing an Agg Batt w/ Handgun. Have info? Contact Area Three Detective Kielbasa #20234 at 312-744-8261. Submit an anonymous tip at https://t.co/qJl7i6aShy. #CPDMediaCarhttps://t.co/nQRKhOdotN

— Chicago Police (@Chicago_Police) June 23, 2022


Super interesting vulnerability in Bluetooth HID specs. Pre-auth (auth bypass actually) keystroke injection in Bluetooth keyboards in Linux, Android, iOS and MacOS!

Also, can’t believe I got to quote myself 3 times in a week on a point but here we go: https://t.co/K8Xcr3NvBL pic.twitter.com/ANnwVN1XxF

— Hamid Kashfi (@hkashfi) December 10, 2023


Catspin

Catspin rotates the IP address of HTTP requests making IP based blocks or slowdown measures ineffective. It is based on AWS API Gateway and deployed via AWS Cloudformation.https://t.co/voCq0iIQrM#cybersecurity #pentesting #bugbounty pic.twitter.com/YFj1nj8pnt

— HackGit (@hack_git) December 10, 2023


Remote code execution and elevation of local privileges in #Mitel Unify #OpenStage and #OpenScape VoIP phoneshttps://t.co/nAZY4ECB5Z

I especially like attack number 5 💚https://t.co/8xJcQQEC9Vhttps://t.co/wyyCw0xKFZ

— raptor@infosec.exchange (@0xdea) December 10, 2023


Looking at old newspaper front pages for a thing and this one deserves a special prize pic.twitter.com/3B76G8L7bE

— Tom Hamilton (@thhamilton) December 10, 2023


When life gives you lemons, make lemonade

Lemonade: *kills you*

— eLeni ❄️ (@eleniZarro) December 10, 2023


Is it just me or does this thing have either too many wheels on one side or not enough wheels on the other?

Is it being designed by Renault? pic.twitter.com/FzU7WKAL0U

— Matt Linton (@0xMatt) December 10, 2023


Security analysis and exploitation of Phoenix Contact industrial HMIs
Excellent research work by Gabriele Quagliarella (@nozominetworks)

Part 1: https://t.co/aYwwRHAjqb
Part 2: https://t.co/lPMWaOPyo4
Part 3: https://t.co/hnWKIERY6U#cybersecurity #embedded pic.twitter.com/vDrfjRF0C2

— 0xor0ne (@0xor0ne) December 10, 2023

Don't miss what's next. Subscribe to the grugq's newsletter:

Start the conversation:

Be the first to share your thoughts

X