the grugq's newsletter

Subscribe
Archives
May 30, 2024

May 30, 2024

May 30, 2024

May 22nd security research @GossiTheDog was able to get Microsoft Recall. His wrote a long thread on Mastodon regarding it. The full thread is linked at the bottom of this if you're interested in the photos he shared.

tl;dr highlights:
- Enabled by default and globally in…

— vx-underground (@vxunderground) May 29, 2024

Kevin Beaumont: "For those who aren’t aware, Microsoft have decide…" - Cyberplace

Attached: 1 video For those who aren’t aware, Microsoft have decided to bake essentially an infostealer into base Windows OS and enable by default. From the Microsoft FAQ: “Note that Recall does not perform content moderation. It will not hide information such as passwords or financial account numbers." Info is stored locally - but rather than something like Redline stealing your local browser password vault, now they can just steal the last 3 months of everything you’ve typed and viewed in ...


two people who actually matched each others freak pic.twitter.com/0iDAMiF9ln

— Clare Considine (@macrotargeting) May 22, 2024


Over the past couple of weeks several high-profile Threat Actors, believed to be operating out of the United States or United Kingdom, suddenly disappeared

There is no evidence of rebrand or exit. All contact addresses are active, logs still present. They just vanished 🤔

— vx-underground (@vxunderground) May 30, 2024

Over the past couple of weeks several high-profile Threat Actors, believed to be operating out of the United States or United Kingdom, suddenly disappeared

There is no evidence of rebrand or exit. All contact addresses are active, logs still present. They just vanished 🤔

— vx-underground (@vxunderground) May 30, 2024

Based on the timing of the Breach seizure ...

1. Several individuals were arrested or raided at or around the same time

2. Several individuals were arrested or raided which resulted in others to go into hiding

3. They all decided to meet together for a cool summer vacation

— vx-underground (@vxunderground) May 30, 2024


We forget about the deception tricks that are so foundational in war.

Ukrainian military decoys and their production process. BMP-2, ATGMs, Humvee, M777, HIMARS, Starlinkhttps://t.co/d1RVR2KxXc pic.twitter.com/IqL1whDbNW

— Special Kherson Cat 🐈🇺🇦 (@bayraktar_1love) May 29, 2024


Good morning pic.twitter.com/pDbvMTYMRf

— Joe Słowik 🌻 (@jfslowik) May 28, 2024


The @roboform password regeneration source code and technical notes are up! https://t.co/WbQebgksDJ

— Joe Grand (@joegrand) May 30, 2024


Today we spoke with multiple individuals privy to and involved in the alleged TicketMaster breach.

Sometime in April an unidentified Threat Group was able to get access to TicketMaster AWS instances by pivoting from a Managed Service Provider. The TicketMaster breach was not…

— vx-underground (@vxunderground) May 30, 2024


"Anatomy of the eSIM profile" video recording of #osmocom #OsmoDevCon2024 talk has been released https://t.co/G6SELFYkkK #gsma #telecom #simcards #esim - thanks to @c3voc

— LaForge - @LaF0rge@chaos.social (@LaF0rge) May 30, 2024

"my hobby dabbles at examining network traces" video recording of #osmocom #OsmoDevCon2024 talk by Neels Hofmeyr has been released https://t.co/ogJZuvgkRE #gsm #3gpp #telecom - thanks to @c3voc

— LaForge - @LaF0rge@chaos.social (@LaF0rge) May 30, 2024


pic.twitter.com/0pkl5kuWse

— Alh4zr3d (@Alh4zr3d) May 28, 2024


average presidential candidate https://t.co/yBfosmJnMY

— Onion Weigher 𓄽 𓍝 (@onionweigher) May 28, 2024


A surprised novice exclaimed, "Master, the AWS bill is higher than expected!"

The wise one responded, "Attachment to expectations leads to suffering. Embrace the bill as a lesson in mindfulness."#zenofAWS

— Corey Quinn (@QuinnyPig) May 29, 2024


Apple elaborates on iOS 17.5 bug that resurfaced deleted photos - 9to5Mac

Earlier this week, Apple released iOS 17.5.1 to address a rare problem where deleted photos would reappear on a user’s...


First successful QR code output from a PDP-10. pic.twitter.com/xHRyjXUXVh

— Lars Brinkhoff (@larsbrinkhoff) May 29, 2024

-

https://www.reddit.com/r/talesfromtechsupport/comments/2coi5n/the_entire_state_is_offline_get_in_there_now_fix/


SIREN 1: you absolutely cannot make them do it again
SIREN 2: I really can i'll do it right now
SIREN 3: is this a nice thing to be doing
SIREN 1: wtf stephanie
SIREN 2: this is our culture
SIREN 1: fuck you stephanie seriously
SIREN 2: its a billionaire steph its not a person https://t.co/aAAeoift9z

— Oliver Darkshire 🌈 (@deathbybadger) May 28, 2024


Don't miss what's next. Subscribe to the grugq's newsletter:
Start the conversation:
X