on After talking to security expert, I deleted all Chrome extensions: they see everything · c/prepper · 1 pts · 3y
on Naming Bash scripts · c/linux · 16 pts · 3yJust name your script with your credit card numbers, so you're pretty sure you won't have any collisions... Don't hesitate to let me know when you've done it :)
on SpyNote continues to attack financial institutions | Cleafy Labs · c/appsec · 2 pts · 3y"Oh, a strange SMS telling me to download an application. Say no more." Click
on [Chrome ITW sandbox escape] Integer overflow in SkSLVMCodeGenerator (skia) · c/exploitdev · 2 pts · 3yIt was a very interesting sharing and I thank you for it I didn't mean to sound mean, I just wanted to clarify something.
on What is the best answer to "Sell me this pen"? · c/asklemmy · 23 pts · 3y"No, it's mine, go and buy one by yourself" And now you've got a pen that you didn't have at the start of the interview, and you've given capitalism a lesson of capitalism.
on Compromised Microsoft Key: More Impactful Than We Thought | Wiz Blog · c/cybersecurity · 2 pts · 3yBelow is a more detailed report about the IOCs, but indeed, they don't seem to want to say anything about the original source of the key leak. https://www.microsoft.com/en-us/security/blog/2023/07/14/analysis-of-storm-0558-techniques-for-unauthorized-email-access/
on Compromised Microsoft Key: More Impactful Than We Thought | Wiz Blog · c/cybersecurity · 1 pts · 3y
on [Chrome ITW sandbox escape] Integer overflow in SkSLVMCodeGenerator (skia) · c/exploitdev · 2 pts · 3yThe bug is from April 2023 and has been closed for more than 14 weeks. This case is really interesting by the way.
on What are You Working on Wednesday · c/cybersecurity · 3 pts · 3yI wish you well, you're not the only one facing this kind of problem lol.
Just name your script with your credit card numbers, so you're pretty sure you won't have any collisions... Don't hesitate to let me know when you've done it :)
"Oh, a strange SMS telling me to download an application. Say no more." Click
It was a very interesting sharing and I thank you for it I didn't mean to sound mean, I just wanted to clarify something.
"No, it's mine, go and buy one by yourself"
And now you've got a pen that you didn't have at the start of the interview, and you've given capitalism a lesson of capitalism.
Below is a more detailed report about the IOCs, but indeed, they don't seem to want to say anything about the original source of the key leak.
https://www.microsoft.com/en-us/security/blog/2023/07/14/analysis-of-storm-0558-techniques-for-unauthorized-email-access/
The bug is from April 2023 and has been closed for more than 14 weeks. This case is really interesting by the way.
I wish you well, you're not the only one facing this kind of problem lol.