the grugq's newsletter

Subscribe
Archives
September 6, 2023

September 6, 2023

September 6, 2023

Electrospaces.net: On the 10th anniversary of the Snowden revelations

A weblog about Signals Intelligence, Communications Security and top level telecommunications equipment


Windows has a buitin protocol that allows for a psuedo-RDP like session over P2P radio, doesn't kick the current user out, and allows for hardware (keyboard, mouse, etc..) input over an RTSP stream called User Input Back Channel.
Is crying in the corner part of your threat model? pic.twitter.com/I7Pl8gXFWB

β€” remyπŸ€ (@_mattata) September 5, 2023

I wrote about this feature and technology and included a PCAP here: https://t.co/k5mzSDTc7s

Once I wrap up my Bluetooth shenanigans this year, WiFi Direct is my next target.

β€” remyπŸ€ (@_mattata) September 5, 2023

Well, for starters the PCAP provided on the blog wasn't captured from the machine itself... because Wireshark and Windows tooling literally couldn't observe the P2P interface. I had to capture it with a WiFi USB in monitor mode from another machine to even see the traffic 🫠

β€” remyπŸ€ (@_mattata) September 5, 2023

Today I’m launching Open Interpreter, an open-source Code Interpreter that runs locally.

Summarize PDFs, visualize datasets, and control your browser β€” all from a ChatGPT-like interface in your terminal.

● https://t.co/UuqbbqUhPk
$ pip install open-interpreter
$ interpreter pic.twitter.com/2daKWUH48v

β€” killian (@hellokillian) September 5, 2023

[POC2023] - SPEAKER UPDATE2⃣

πŸ’β€β™‚οΈ@wh1tc @edwardzpeng OLE object are still dangerous today - Exploiting Microsoft Office#POC2023 pic.twitter.com/WLADsl5B0y

β€” POC_Crew πŸ‘¨β€πŸ‘©β€πŸ‘¦β€πŸ‘¦ (@POC_Crew) September 5, 2023

Whoa! Nice to see folks are still keeping an eye on OLE in Office. :) https://t.co/zpk7nbk8Kl

β€” Haifei Li (@HaifeiLi) September 5, 2023

‼️ The АРВ28 #hacking group associated with russian special services attempts an attack on critical power infrastructure facility of UkraineπŸ‘‡
🌐 https://t.co/F9KNpILKx5#cybercrime #cyberattack #hacker #cybersecurity #spy #cyber #cyberwar #hybridwar #malware pic.twitter.com/HZCvqjEVsh

β€” SSSCIP Ukraine (@SSSCIP) September 6, 2023

WILD third act twist on this one pic.twitter.com/Uww1SJ179j

β€” Emily Murnane (@emily_murnane) September 4, 2023

Four parts series teaching ELF file format internals by @IntezerLabs

Part 1: https://t.co/KNFUXdWnnc
Part 2: https://t.co/ZQMrfmelT8
Part 3: https://t.co/QqZaOn9bZ6
Part 4: https://t.co/liIW0CnqGa #Linux #elf pic.twitter.com/dtYC0Ew6Ml

β€” 0xor0ne (@0xor0ne) September 4, 2023

Saturday Morning Breakfast Cereal - Eye

Saturday Morning Breakfast Cereal - Eye


Don't miss what's next. Subscribe to the grugq's newsletter:

Start the conversation:

Be the first to share your thoughts

X