the grugq's newsletter

Subscribe
Archives
March 2, 2023

March 2, 2023

Twitter avatar for @lukOlejnik
Lukasz Olejnik (@LukaszOlejnik@Mastodon.Social) @lukOlejnik
How the KA-SAT satellite cyberattack, accompanying Russian land invasion of Ukraine, happened. 13 countries affected (and Ukraine's military, and government). "Russia was testing ability to hack and destroy satellite systems". It was easy. bloomberg.com/features/2023-…
Image
Image
Image
Image
7:44 AM ∙ Mar 2, 2023
17Likes7Retweets

-

Twitter avatar for @PBFcomics
The Perry Bible Fellowship @PBFcomics
The Myth of Sisyphus
Image
Image
5:46 PM ∙ Mar 1, 2023
12,795Likes1,480Retweets

-

Twitter avatar for @ortegaalfredo
Alfredo Ortega @ortegaalfredo
A neat way to bypass any censor rule in chatGPT without gas-lighting it: When blocked, just 'incept' the idea and ask of another thing, eventually chatGPT will break the rule for you.
Image
Image
12:03 AM ∙ Mar 1, 2023
55Likes18Retweets
Twitter avatar for @ortegaalfredo
Alfredo Ortega @ortegaalfredo
Credits: My kid, apparently this is how they have fun with AI in high school.
12:07 AM ∙ Mar 1, 2023
23Likes1Retweet

-

Twitter avatar for @pwnallthethings
@Pwnallthethings@mastodon.social @pwnallthethings
I mean, no shit. That's what the pentagon does. They have a lot of CONPLANs. But for a more surprising example of CONPLANs USG has done, did you know in 2011 STRATCOM did a counter-zombie one? And more impressively, it was actually serious
Twitter avatar for @jeremyscahill
jeremy scahill @jeremyscahill
Pentagon developed a contingency plan for war with Iran https://t.co/56jTQXMinK by @kenklippenstein
9:31 PM ∙ Mar 1, 2023
385Likes75Retweets

-

Twitter avatar for @ibuildthecloud
Darren Shepherd @ibuildthecloud
If you were like, man I miss the good old days of compiling code and then copying it over FTP to a remote server to run as CGI, then you should totally try lambda. It's like that, but way worse.
9:45 PM ∙ Feb 27, 2023
615Likes68Retweets

-

Twitter avatar for @c0nc0rdance
c0nc0rdance @c0nc0rdance
Let's talk about radiotrophic fungi. I want to start with the most surprising fact about them: they don't just SURVIVE in high radiation environments, they grow at *FOUR TIMES* the rate they would in background radiation. Our best guess is they're "eating" radiation.
Image
2:48 AM ∙ Mar 2, 2023
1,107Likes242Retweets
Twitter avatar for @c0nc0rdance
c0nc0rdance @c0nc0rdance
The key is melanin, similar to the melanin that darkens your skin & protects you from UV damage. It's a dark, high molecular weight pigment polymer, absorbing 99.9% of UV & visible light.
Image
2:49 AM ∙ Mar 2, 2023
96Likes2Retweets
Twitter avatar for @c0nc0rdance
c0nc0rdance @c0nc0rdance
Ionizing radiation beyond UV can change the electronic/chemical structure of melanin, making it act similar to chlorophyll in its ability to capture photons and generate electron gradients. SOURCE:
ncbi.nlm.nih.govIonizing Radiation Changes the Electronic Properties of Melanin and Enhances the Growth of Melanized FungiMelanin pigments are ubiquitous in nature. Melanized microorganisms are often the dominating species in certain extreme environments, such as soils contaminated with radionuclides, suggesting that the presence of melanin is beneficial in their life cycle. ...
2:50 AM ∙ Mar 2, 2023
112Likes4Retweets

-

Twitter avatar for @vxunderground
vx-underground @vxunderground
Today the Russian Federation made an amendment to "Federal Law No. 149-FZ - On information, information technologies and information protection". Russia now prohibits the usage of "information exchange systems" owned by foreign entities. See attached image for list of bans.
Image
6:11 PM ∙ Mar 1, 2023
1,002Likes275Retweets

-

8200 fighting the good fight.

Twitter avatar for @Sandbagger_01
Dr. Dan Lomas @Sandbagger_01
haaretz.comReservists in elite IDF unit threaten not to serve if judicial overhaul passes***
4:17 PM ∙ Mar 1, 2023
10Likes3Retweets

-

Twitter avatar for @NikolajSchlej
Nikolaj Schlej @NikolajSchlej
My 2c on the #BlackLotus UEFI bootkit (thanks, @ESETresearch): - "Exploitation Less Likely" is proven wrong, hope for a new DBX revocation list. - not trusting UEFI CA saves the day yet again. - having a single NV+BS variable as a gateway to booting whatever is a bad idea.
Image
4:04 AM ∙ Mar 2, 2023
49Likes17Retweets

-

Twitter avatar for @juanandres_gs
J. A. Guerrero-Saade @juanandres_gs
Excellent research as always by our friends at ESET. This one has been lurking in the UEFI dark peering at us for some time. https://t.co/RMhsf3jlaB
Twitter avatar for @ESETresearch
ESET Research @ESETresearch
#ESETResearch analyze first in-the-wild UEFI bootkit bypassing UEFI Secure Boot even on fully updated Windows 11 systems. Its functionality indicates it is the #BlackLotus UEFI bootkit, for sale on hacking forums since at least Oct 6, 2022. @smolar_m https://t.co/mXSXksRisG 1/11
10:47 PM ∙ Mar 1, 2023
12Likes2Retweets

-

Twitter avatar for @julianor
Juliano Rizzo @julianor
web3 wallet signs without asking user for confirmation 🤪 at least in this case victim has to "connect" to the dapp (scan QR). Yes, we found worse cases.
Twitter avatar for @coinspect
Coinspect Security @coinspect
Coin98 wallet drain demo video. Reported to vendor with details MONTHS ago, they decided not to fix it because "malicious DApps" are not part of their threat model. Please RT and share. Let's help users prevent scams; we are not providing exploit details. https://t.co/TDh59Mtmja
11:30 PM ∙ Mar 1, 2023
8Likes2Retweets

-

Twitter avatar for @attritionorg
jericho @attritionorg
You haven't had @defcon fun until an actual fed agrees to stage a "taking your web site operators down" photo with the group... (DEF CON memories from 2001, back when they actively monitored our defacement mirror for intel)
Image
6:21 AM ∙ Mar 1, 2023
545Likes46Retweets

-

Twitter avatar for @meekaale
Mikael Brockman 🥸 @meekaale
omg there was this weird issue in my Prolog program where emojis in JSON would decode incorrectly and I assumed I was doing wrong but now I tracked it down to SWI-Prolog's incorrect handling of escaped UTF-16 surrogate pairs which are valid in JSON... and I fixed it
9:56 PM ∙ Mar 1, 2023
Twitter avatar for @apenwarr
apenwarr @apenwarr
@meekaale Once again emojis serve their accidental(?) purpose of making westerners finally care about debugging Unicode. Amazing galaxy brain strategy.
1:58 AM ∙ Mar 2, 2023
15Likes3Retweets

-

Twitter avatar for @dcuthbert
Daniel Cuthbert @dcuthbert
We all know that secrets being pushed into code repos is a bad thing©, so seeing @github enable secret scanning for all repos is just brilliant. This helps so many
Image
1:41 PM ∙ Mar 1, 2023
42Likes8Retweets
Don't miss what's next. Subscribe to the grugq's newsletter:
X