the grugq's newsletter

Subscribe
Archives
May 22, 2023

May 22, 2023

May 22, 2023

I asked ChatGPT to write a HackerOne Report like the hacking gods from the 90's would, was not disappointed. pic.twitter.com/qWjLNYaCGN

— Patrik Fehrenbach (@ITSecurityguard) May 21, 2023

Clandestine communications in cyber-denied environments - Numbers stations and radio in the 21st century (2023) https://t.co/cqYN7eeBRi

Open Access article by Tony Ingesson (@tonyingesson) and Magnus Andersson, published in @PICTJournal. pic.twitter.com/tRUDT0u3CB

— Matthijs R. Koot (@mrkoot) May 21, 2023

https://twitter.com/mestizoqueso/status/1660315805727195144

This is crazy. An iOS KeePass app was sending the clipboard contents *unencrypted via UDP* to a server. The developer "fixed" it by still sending it via UDP, but this time with fixed key and IV. 🤦‍♂️

The app is simply a credential stealer and probably in violation of some laws. pic.twitter.com/yjzok2jkB1

— stacksmashing (@ghidraninja) May 21, 2023

Here’s how I used AI to clone a 60 Minutes correspondent’s voice to trick a colleague into handing over her passport number. I cloned Sharyn’s voice then manipulated the caller ID to show Sharyn’s name with a spoofing tool.
The hack took 5 minutes total for me to steal the info. https://t.co/bYUooZWOiH

— Rachel Tobac (@RachelTobac) May 21, 2023

#ICYMI All videos from #HITB2023AMS CommSec Track and Main Track talks have been released on our Youtube channel: https://t.co/mvYuQ6FYeK #video #youtube #hackers #security

— HITBSecConf (@HITBSecConf) May 22, 2023

The BOM (Bill of Materials) for the Apple Headset leaked online in Chinese. I translated it for the english people below. It's a long post:👇

"Recently, Apple announced that it will hold the WWDC from June 6th to 10th, and may release the first-generation MR headset. We held an…

— cix — e/acc (@cixliv) May 20, 2023

Just in - China's Office of Central Cyberspace Affairs Commission announced today that #Micron's products sold in China have not passed the cybersecurity review, and so China's operators of critical information infrastructure should cease the procurement of Micron's products. pic.twitter.com/b0I8swjnRk

— Wen-Yee Lee 李玟儀 (@Wenyee_Lee) May 21, 2023

Full announcement of Meta/Facebook 1.2bn fine here. It is HUGE! #GDPR. Also turns out that “industry standard” technical hand-waving like “TLS” or “AES” is not sufficient. Welcome to privacy technologies and meaningful data protection impact assessments. https://t.co/I7BUHEiN5B pic.twitter.com/nRG1537k9H

— Lukasz Olejnik, Ph.D, LL.M (@lukOlejnik) May 22, 2023

Six months.

That's how much time Facebook/Meta has to adapt to the decision.

If they don't (or the EU doesn't get along with the US) - Facebook/Instagram will have to be shut down in Europe. Facebook a hostage in the negotiations between the European Union and the US? #GDPR https://t.co/s91OBubxZe

— Lukasz Olejnik, Ph.D, LL.M (@lukOlejnik) May 22, 2023

Don't miss what's next. Subscribe to the grugq's newsletter:

Start the conversation:

Be the first to share your thoughts

X