June 25, 2022
Cheers to @itm4n for inspiration, @topotam77 for PetitPotam, and @tiraniddo for NtObjectManager.
New post detailing #RPC auditing with NtObjectManager
-
https://infrequently.org/2022/06/apple-is-not-defending-browser-engine-choice/-
Inbox: After Roe is struck down, @RonWyden calls on Congress to pass "legislation protecting people’s data so their web searches, text messages" and tech companies to "limit the collection and retention of customer data"
-
The Anonymous collective assembled for Ukraine against Russia will include people who are angry about the Roe v Wade decision, and the accompanying banning of abortion rights. Hacktivists have a history of social justice action, and it is reasonable to assume this will be no different.
-
I co-wrote a paper on USD dominance in age of financial sanctions. TLDR: there cannot be a major shift away from the USD any time soon. In many ways, the Ukraine War is paradoxically underpinning the existing monetary order, rather than undermining it. 1/
-
PowerShell scriptblock logging plus real-time detection for the use of System.Reflection.AssemblyName() takes so many tools and techniques off the table for attackers and has a very low false positive rate. I cannot recommend this approach enough.
-
The new solid-propellant short-range ballistic missile. has a range of 110 km and an apogee of 25 km. (North Korea may have tested it again on June 5.) It is explicitly designated as being nuclear-armed.
-
https://www.libertyhumanrights.org.uk/issue/liberty-wins-landmark-snoopers-charter-case/-
Friday’s glasshouse session is up on YouTube
-
https://github.com/drduh/macOS-Security-and-Privacy-Guide-
The USB drive with files on 460k people that was lost after a guy went out drinking and slept on the street, has been found! Yay.
https://www3.nhk.or.jp/nhkworld/en/news/20220624_27/-
Weird and interesting
There's one element which tells you more than anything else: the windows. It's not foolproof, since every church is a palimpsest built over centuries, but it's a good bet.-
-
Multiple tech companies are saying they'll pay for employees to travel for abortions. (Employees who probably already have resources to do so unlike many Americans.)
I've heard zero about how these companies intend to protect user data from being used to criminalize abortion.
-
Microsoft Office has been a long favorite delivery mechanism for malicious payloads, from pen-testers to nation-state threat actor groups, and for good reason. Look back over the years detailing some of the most abused vulnerabilities.
inquest.net/blog/2022/06/2…
#malware #Follina
-
I know it’s been Discoursed to death already, but it’s still very funny that all these other blockbusters are green screened to the point of using simulacrums of dead people instead of real actors and Tom Cruise was like “yeah, I’m gonna need an actual aircraft carrier.”
-
-
-
Share this, if you need something to give to ppl.
We've updated our Abortion & Pregnancy Privacy Guide with this quick mobile settings graphic to save and share.
These tips can help ensure these sensitive experiences are less able to be easily accessed by looking through your device. Full instructions at:
digitaldefensefund.org/abortion-priva…
-
-
-
Don't miss what's next. Subscribe to the grugq's newsletter: