the grugq's newsletter

Subscribe
Archives
March 20, 2024

March 20, 2024

March 20, 2024

Wallet Drainers Starts Using Create2 Bypass Wallet Security Alert

Wallet Drainers Starts Using Create2 Bypass Wallet Security Alert - Scam Sniffer

Wallet Drainers are exploiting Create2 to bypass security alerts in certain wallets by generating new addresses for each malicious signature.Drainer behind this has stolen nearly $60 million from around 99,000 victims in the past six months.


internet-wide Log4J exploitation is going in the opposite direction we want pic.twitter.com/iHpfFCs7Dy

— Andrew Morris (@Andrew___Morris) March 13, 2024

“When bugs are reported to vendors they die and make everyone safer”

The vendors do not make everyone safer. That is simply not what the evidence shows. Patching bugs on target machines makes them safer, and the patch existing is step one of that process, but it is not sufficient. The patch’s existence, without the installation of the patch, makes everyone less safe.


Here is a 72-byte alphanum MD5 collision with 1-byte difference for fun:
md5("TEXTCOLLBYfGiJUETHQ4hAcKSMd5zYpgqf1YRDhkmxHkhPWptrkoyz28wnI9V0aHeAuaKnak")
=
md5("TEXTCOLLBYfGiJUETHQ4hEcKSMd5zYpgqf1YRDhkmxHkhPWptrkoyz28wnI9V0aHeAuaKnak")

— Marc Stevens (@realhashbreaker) March 19, 2024


We've updated the vx-underground Windows malware paper collections. We've got more to come too 🫡

- 2024-03-08 - Manipulating Token Attribute structures
- 2024-02-25 - Keylogging in the Windows kernel with undocumented data structures
- 2024-02-16 - InflativeLoading
- 2023-12-29… pic.twitter.com/RXM2ZDnjLR

— vx-underground (@vxunderground) March 20, 2024


If you really want to explore the alien the intelligence that is LLM's, you peek inside the latent space.

Take the vector for "Mother" and remove from it the concept of "Mom", you get these wild, ethereal, beautiful sentences, like: THE TERMINATION OF NEARLY ALL SACRED PLACES pic.twitter.com/87QjCsrptE

— Defender (@DefenderOfBasic) March 20, 2024


The full schedule for #Pwn2Own Vancouver is now available. We start tomorrow morning at 9:30 with @abdhariri targeting the #Adobe Reader for $50,000. Stay tuned for all the results. https://t.co/iuLS3dfc8b

— Zero Day Initiative (@thezdi) March 20, 2024


Fun fact: When my kid watches "Terminator" I will have to explain the concept of a phonebook, but not an autonomous robot killing machine.

— The Asa Who Taits (@AsaTait) March 20, 2014


Titan.

With mighty Saturn behind.

This is one of my favourite images from space. pic.twitter.com/QfMlLszyFc

— Paul Byrne (@ThePlanetaryGuy) March 20, 2024


Don't miss what's next. Subscribe to the grugq's newsletter:
Start the conversation:
X