the grugq's newsletter

Subscribe
Archives
July 6, 2023

July 4-6, 2023

July 6, 2023

USBで10秒充電すれば使えるアークライター #shapolab pic.twitter.com/ieqoffeARd

— シャポコ🌵 (@shapoco) July 3, 2023

pic.twitter.com/zLYu6ZFq5m

— Joe Sonka 😐 (@joesonka) July 2, 2023

How Matteo Pisani added contactless payment to his F-91W digital watch https://t.co/psfVukuecD

— Daniel Cuthbert (@dcuthbert) July 3, 2023

British police are investigating an incident where a suspected hacker is believed to have accessed a school's internal email system to steal national exam papers and sell them online https://t.co/vX90kFSrY6

— The Record From Recorded Future News (@TheRecord_Media) July 3, 2023

https://twitter.com/jsrailton/status/1675864598660956161
https://www.nytimes.com/2023/07/03/technology/russia-ukraine-surveillance-tech.html

French politicians accuse platforms (Twitter, Snapchat, TikTok, etc.) of supporting riots. Immediate law proposal: platforms would have max 2 hours to remove such content. Otherwise, one year in prison and a fine of €250,000. Fast. #FranceOnFire #Emeutes https://t.co/WdNujYptEV pic.twitter.com/7el2KDmNfY

— Lukasz Olejnik (@lukOlejnik) July 4, 2023

Shameless plug - Sleuthcon videos are up! Check ‘em all out

Had fun taking 🇰🇵 #TA444 initial access methods for cryptoheists 💰 & first sighting of targeting 🍎 MacOS

thanks @JohnHultquist for letting an APT ghuy join the fun! https://t.co/52TbrYA3zs

— Greg Lesnewich (@greglesnewich) July 4, 2023

🧵 I want to highlight some papers, studies and other sources that sparked useful thoughts and helped with this special report. https://t.co/HZikd3H7sr pic.twitter.com/tnSseY3qK4

— Shashank Joshi (@shashj) July 3, 2023

As promised, i just released the blog post explaining how to exploit this bug https://t.co/zquKesE16b covering cross cache + msg_msg + user_key_payload + timerfd_ctx and finishing with ROP. The linux kernel version is 5.10.77. I hope you can enjoy it https://t.co/cIXCQq3oEG pic.twitter.com/GKrlySmOXR

— Javier Partido Rufo (@javierprtd) July 4, 2023

https://twitter.com/junlper/status/1676363633633132551

I wish more developers understood the constant stream of malware that is posted to npm, PyPI, and all package managers...

Here's just a taste of some crazy malware Socket identified in the past couple weeks...

All malware descriptions were FULLY WRITTEN by Socket AI.

— Feross (@feross) June 24, 2023

Demoscene accepted as UNESCO cultural heritage in The Netherlands - Demoscene - The Art of Coding

Today the demoscene was accepted as Dutch national intangible cultural heritage. We very happy about the success of the Dutch demoscene to be accepted as a living national cultural heritage! The Dutch inscription is continuing the success story of the demoscene as first digital culture accepted by the UNESCO. Previously the demoscene became cultural heritage …



Wash Trading Gone Wrong - How A $100M/Day Crypto Exchange Accidentally Bankrupted Itself

This is the story of BaseFEX - a crypto exchange that unintentionally bankrupted itself through wash trading.


https://www.theregister.com/2023/07/06/lockbit_nagoya_attack/

The U.N. Security Council is set to hold a first-ever meeting on the potential threats of artificial intelligence to international peace and security. https://t.co/s1rzeGnFJZ

— ABC News (@ABC) July 4, 2023

A friend asked me to find out why his connected lightbulb app was asking for his location, so I ducked out to Australia’s favourite hardware store, Bunnings, and grabbed one to check out.

The Android grid connect app has 500k+ downloads.

Let’s take a quick look! 🧵
(1/n) pic.twitter.com/RGZDjga8xE

— HaxRob (@haxrob) July 5, 2023
Don't miss what's next. Subscribe to the grugq's newsletter:

Start the conversation:

Be the first to share your thoughts

X