the grugq's newsletter

Subscribe
Archives
September 16, 2025

September 16, 2025

September 16, 2025

When we decompile an APK and see an unreadable https://t.co/BbQf3H943H.bundle, it could be Hermes bytecode. Using https://t.co/DBonMwpUBM we can make it readable and look for interesting endpoints, keys, or app flows.#bugbounty

— Aditi Singh (@aditi_singghh) September 14, 2025


Have you seen? Microsoft just completely restructured their fundamental security guidance, and it's awesome! ✨

This guidance serves as a perfect starting point for those aiming to better protect their M365 tenants! As well as this, I've also written some guidance for you on how… pic.twitter.com/9EZ4tqorYT

— Daniel Bradley (@DanielatOCN) September 15, 2025


Hey you accidentally made it more secure https://t.co/3n8nmAiaVj

— Justin Elze (@HackingLZ) September 15, 2025


🛡️ DEFCON Workshop: Putting EDRs in Their Place - 💀 Killing and Silencing EDR Agents Like an Adversary https://t.co/Of9CwS0Kyq #cyber #threathunting #infosec

— Blue Team News (@blueteamsec1) September 14, 2025


Black Hat has posted my full keynote from Black Hat USA 2025.
What an amazing stage, and 12,000 people in the audience. Thank You.
Here's the video. https://t.co/cYPQ0z2y8B

— @mikko (@mikko) September 15, 2025


Got access to an AWS infrastructure during your RedTeam and you don't know how to do access persistence other than just adding an AccessKey ? 🫤

Step up your game with new TTPs ! 🫡

From IAM modification to lambda hijacking, 1001 ways to keep access !https://t.co/XMFF1QUUTJ

— OtterHacker (@OtterHacker) September 15, 2025


macOS Tahoe ships with a 0day ...based on a bug disclosed 8(!) years ago at #OBTS v1.0 🫣

New post: "From Spotlight to Apple Intelligence: Abusing an 0day to steal the data that fuels macOS AI": https://t.co/5lWdLBgozL ...with open-source PoC!

Takeaway? Always attend #OBTS 😄

— Patrick Wardle (@patrickwardle) September 15, 2025


Today, we present with *Phoenix*: 🔥 two new Rowhammer patterns + ⏱️ self-correcting refresh sync + 🔨 PC bit flips on all tested SK Hynix DDR5 DIMMs. More information: https://t.co/z1EQZkEQjd #Rowhammer #DDR5 #DRAM #HardwareSecurity #ETHZurich #COMSEC

— Patrick (@pjattke) September 15, 2025


Got 10 CVEs and 4 Acks in macOS Tahoe release. Probably the most I ever got for a single release. 😎

Upgrade your devices.https://t.co/nEt7ffsFvv

— Csaba Fitzl (@theevilbit) September 15, 2025


Google confirms hackers gained access to law enforcement portal - @LawrenceAbramshttps://t.co/nLgOsZrDtDhttps://t.co/nLgOsZrDtD

— BleepingComputer (@BleepinComputer) September 15, 2025


wowhttps://t.co/Pi7qCyZJTn

— Simone Margaritelli (@evilsocket) September 15, 2025


Find new associated domains with this simple Google dork:

"© <COMPANY>. all rights reserved." -".<COMPANY>.com"

Check this out 👇 pic.twitter.com/2BboZzJ0qO

— bugcrowd (@Bugcrowd) September 15, 2025


GitHub - volticks/CVE-2025-21692-poc: Proof of concept source code and misc files for my CVE-2025-21692 exploit, kernel version 6.6.75 - https://t.co/IFkx3bUHKG

— blueblue (@piedpiper1616) September 15, 2025


Don't miss what's next. Subscribe to the grugq's newsletter:
Start the conversation:
X