November 23, 2022
The Swedes are rolling up a lot of Russian spies recently.
Swedish couple who immigrated from Russia more than 20 years ago arrested for espionage. They worked in the "import-export" business which should have been enough of a red flag (apologies to any legitimate "impex international businessmen" that do exist:)
New arrests in Sweden this morning, two individuals have been apprehended. One is suspected of gross illicit intelligence collection targeting both Sweden and an unnamed foreign power, the other is suspected of aiding and abetting this.
Yet more spy arrests in Sweden. They follow Sweden's arrest of two other suspected Russian spies earlier this month, Norway's arrest of a suspected GRU illegal in October, the Netherlands' arrest of another in June (now jailed in Brazil) & Poland's arrest of yet another in March.
Tony Ingesson @tonyingesson
-
-
European Parliament is discussing 0day vulnerabilities on Thursday.
-
"Diagnosis made by hallucinatory voices"
Woman hears voices asking her to get a CT scan because they claim she has a brain tumour. Her psychiatrist orders a scan to reassure her but they actually find the tumor. After her surgery the voices thank her for listening and disappear
She Extends (Read Pinned!) @68tilinfinity
-
.@EufyOfficial - Couple of Q's
Why is my "local storage" #doorbellDual storing every face, without encryption, to your servers?
Why can I stream my camera without #authentication?!
But crucially, is this really the AES key for my video footage? Please tell me it's not.
-
-
So a new thing happened. A paper we submitted got rejected by a journal after automated plagiarism detection. It turned out two students in India had plagiarised our preprint and then published online reports. So we've been accused of copying them. Fun.
https://someone.elses.computer/@jackstilgoe/109387380974508737
-
So a new thing happened. A paper we submitted got rejected by a journal after automated plagiarism detection. It turned out two students in India had plagiarised our preprint and then published online reports. So we've been accused of copying them. Fun.
-
Mind the gap: googleprojectzero.blogspot.com/2022/11/mind-t… Part of project zero's remit is to drive structural improvements across the ecosystem.
-
A few years ago Twitter censored a link to a single @nypost story about Hunter Biden's laptop for TWO DAYS, then reversed the decision. Conservatives still talk about it. Twitter has been censoring ALL LINKS to ddosecrets dot come over TWO YEARS
-
The "#Vulnerabilities 1001: C-Family Software Implementation Vulnerabilities" free course by #OpenSecurityTraining2 is awesome and very recommended to all developers and beginner code auditors.
Also, make sure to check out all the other high-quality, free #OST2 training courses.
https://infosec.exchange/@raptor/109389711077567099
-
-
-
@jevinskie Thank you! 🙂
Still wip but I'm exploring different routes for benefits of microcode control
Up to now I implemented:
- fast software breakpoints for fuzzing
- conditional hw breakpoints for perf profiling
- constant time hw division
- and yes x86 PAC 😁
Suggestions are welcome!
-
A confectionery producer in Kazakhstan dropped a new ad for their chocolate bar called “Kazakhstan”. In it, what looks like a Russian draft dodger walks over to Kazakhstan and is handed a chocolate bar. He asks what it is and is told, “It’s the taste of freedom.” Absolute fire.
-
The video record of my Black Hat USA 2022 talk is up!
@BlackHatEvents
"DirectX: The New Hyper-V Attack Surface"
-
🔓 Google Pixel Lock Screen Bypass (CVE-2022-20465), wow just wow
- Make failed attempts to unlock device
- Remove SIM, & insert your own SIM
- Enter wrong SIM PIN thrice
- Enter your SIM's PUK & change SIM PIN
- Voila, unlocked!
bugs.xdavidhu.me/google/2022/11…
#infosec #cybersecurity
-
Video from our @BlackHatEvents talk by Iain Smart ( @smarticu5 ) & Viktor Gazdag ( @wucpi ) on "RCE-as-a-Service: Lessons Learned from 5 Years of Real-World CI/CD Pipeline Compromise" is available now
-