the grugq's newsletter

Subscribe
Archives
September 5, 2025

September 5, 2025

September 5, 2025

🚨 Czech cybersecurity agency NÚKIB issues HIGH threat warning about data transfers to China and remote administration of technical assets (smartphones, cloud services, IP cameras, smart meters, photovoltaic inverters) from Chinese territories. Laws allow unlimited government… pic.twitter.com/RpjQSj18Xz

— Lukasz Olejnik (@lukOlejnik) September 4, 2025


A great examination of unintended consequences.


If you ever feel like a fraud, remember there's men who call themselves Alpha Males and they're too terrified to click a link in a little allegedly suspicious email

— rekdt (@rekdt) September 4, 2025


Reverse engineering of Apple's iOS 0-click CVE-2025-43300https://t.co/weebsGAEF2

— H4x0r.DZ (@h4x0r_dz) September 4, 2025


an unfortunately unsurprising but cosmically unfair reward for trying to make your browser faster. https://t.co/YGkQO2s7vd pic.twitter.com/C8DWvmOuc9

— J⩜⃝mie Williams (@jamieantisocial) September 4, 2025


You are probably gonna hate me for the title of this blogpost, but, here is a quick peek into one of the most surprising components of our @DARPA AIxCC CRS: DiscoveryGuy.https://t.co/QQOFtdql4V

(Planning to publish a few more of these "quick peek" into the system 👀)

— Fabio (@degrigis) September 4, 2025


Cool DFIR tool:https://t.co/PN1R6DCpf3

— mRr3b00t (@UK_Daniel_Card) September 4, 2025


The Taliban are now displaying a digital watch said to have belonged to founder Mullah Omar. From the grainy photo it looks like a Casio, possibly a cousin of the infamous F91W? It’s never just a watch. pic.twitter.com/tMV5CmhM7y

— Watches of Espionage (@watchesofespion) September 4, 2025


🔍We tracked 330+ Ubiquiti devices displaying "HACKED" banners from a campaign dating back to 2016. Though we observed a 75% decline in these banners since 2022, Internet scanning continues to surface long-forgotten compromised infrastructure. https://t.co/B6Y1IC0Xfu pic.twitter.com/Rdl6IYnSZr

— Censys (@censysio) September 4, 2025


For those missing the talk,
Blog: https://t.co/XBvFMbsfi0
Slides: https://t.co/krDj6hHuXm https://t.co/X3wnid0xWR

— Mickey Jin (@patch1t) September 4, 2025


Linux nailed it 😁👏 pic.twitter.com/4hjHRkycbm

— Lingo.dev (@lingodotdev) September 4, 2025


Blog post by Norbert Szetei on his ongoing ksmbd fuzzing efforts. Interestingly (to me at least) I could see this going on when I was auditing it a few months ago, but there were no collisions with the bugs I found manually. https://t.co/0DvITPkLoR

— Sean Heelan (@seanhn) September 5, 2025


Top Secret Mission into #NorthKorea in 2019: „U.S. Navy SEALs shot and killed a number of North Korean civilians during a botched covert mission to plant a listening device in the nuclear-armed country…“ https://t.co/B9mkjG91yf

— Florian Flade (@FlorianFlade) September 5, 2025


Don't miss what's next. Subscribe to the grugq's newsletter:
Start the conversation:
X