Elektrine lite

โ† Feed

AmmarSpaces

AmmarSpaces@infosec.exchange

<p>I like information security, and silly elves. Mostly posting thing I read blending with my view. Or, just my views of the what happened at world in general.</p><p>Shall we go?</p>

Posts

  • Post #4493197

    If you are in Europe, and you bought Steam&#39;s hardware products, you might want to check your e-mail from Steam. There is a 3rd party logistic partner breach (CEVA Logistics) occoured, where your: - Name - Street address, city and postal code - Country - Phone number - Email address linked to the Steam account - Type and price of the hardware ordered Might be exposed. Stay safe out there. #cybersecurity #infosec #databreach #steam #europe #valve #gaming

  • Post #4469609

    On unrelated post, if you are into cryptography and vtubing, go check out kurenaif on YouTube. In this video, they covered about Isogeny cryptography. It has english subtitle :D (Yeah, I haven&#39;t finished the video, but still, sharing is caring right?) https://www.youtube.com/watch?v=JlhSM0sKZXI #cybersecurity #infosec #cryptography #isogenycrypto #vtuber

  • Post #4469201

    Ok looks like this year DEFCON and Black Hats has tons of interesting talks... But, I want tp wait to cover anything related to that conferences until the talks uploaded to YT...

  • Post #4451646

    Got this info via @InternationalCyberDigest@infosec.exchange. For a company having &quot;hacker&quot; in their name, this is an insult towards hacking community. If you value the &#39;hacker&#39; value, DO NOT SUPPORT any form of ID Verification. Fight this shit to oblivion. If you are in only for the money, do not mind YOUR ID handled by 3rd party (meaning you should not call yourself a hacker), then sure, embrace this. https://docs.hackerone.com/en/articles/8399430-id-verification #hackero...

  • Post #4401267

    RE: https://cyberplace.social/@GossiTheDog/117045200596075081 No, we cannot fucking allow this to let slide. It&#39;s already too much &#39;ugh fine&#39; moment, the scarcity are artificial, not because of any disaster situation. These fucking tech manufacture companies must keep provide the consumer with fair price before AI boom. If they can&#39;t or don&#39;t obey they must be punished! Hardware scarcity is threat to tech security, threat to security means threat to cyber security. Thre...

  • Post #4401129

    Reddit rolled &#39;LLM Powered&#39; AutoMod to automatically detect and delete posts that are not following community rules. I am being neutral in the situation, but false deletion might still happens, because LLMs are still machine, they can&#39;t decide nuances yet. https://www.dexerto.com/entertainment/reddit-is-giving-ai-the-power-to-remove-posts-and-comments-3395228/ #cybersecurity #AI #reddit #automod

  • Post #4376910

    Hey, hey, it&#39;s been a long time since the last huge supply chain attack (what about AUR? it&#39;s for nerds). NPM Supply Chain Attack returned again, this time infecting more than 444 packages with accumulation of 2B (yeah B for billion) downloads. The malware used is Shai-hulud again, but this time, the culprit is Copycat of TeamPCP. What should you do? - Check if you are affected, if so, downgrade your library version - Rotate your keys and do 2FA - Search for infected accounts in your s...

  • Post #4369035

    BREAKING Someone on X selling &#39;Github Source code for $65.000&#39; . Yeah, I do not know the legitimacy, or either the post author joking (it is only their only tweet, so I think they are &#39;not joking&#39;). #cybersecurity #infosec #github #leak

  • Post #4367785

    Reading through Black Hat vendor summary from SecurityWeek. And, ugh... AI AI AI AI AI AI everywhere.. https://www.securityweek.com/black-hat-usa-2026-summary-of-vendor-announcements-part-1/ #cybersecurity #infosec

  • Post #4366236

    Heard that Illinois, Coloradi, and California has passed law on digital id at OS level... Hope those higher ups, burned in hell for eternity. ๐Ÿ–•

  • Post #4323780

    Hey, did you know North Korea has their own Antivirus? Originally, found in 2018, by Check Point, now they used open source resource as their base. https://nkinternet.com/2026/08/01/a-new-silivaccine-north-koreas-antivirus/ #cybersecurity #infosec #security #antivirus #northkorea

  • Post #4279150

    Heard a Darknet Diaries episode yesterday, but I forgot which one, the speaker talks about a time where Turla (Russian) APT used Instagram comment at Britney Spears account as a way to communicate with their C2 server. Looking up the source, it&#39;s almost ten years huh. https://www.welivesecurity.com/2017/06/06/turlas-watering-hole-campaign-updated-firefox-extension-abusing-instagram/ #cybersecurity

  • Post #4277865

    Boss: Bro, so have you traced where the problem at the network from? Bro: Not yet sir. Boss: Have you tried using traceroute? Bro: I did, but... Boss: ๐Ÿ˜ญ https://zombofant.net/@jssfr/116991231175179589 #network #tech #technology #traceroute #badapple #traceroutehacking

  • Post #4275820

    So, apperently there is a CodeIgniter RCE via file upload tracked as CVE-2026-63223. Other than that there are also 3 more critical CVEs: - SQL Injection (CVE-2026-63221) - Path traversal (CVE-2026-63222) - HTTP Header Spoofing (CVE-2026-63220) Did people still use CodeIgniter? Anyway, if your org still using it and it has anything related to file upload, might be a good time to update it. https://securityonline.info/codeigniter4-rce-vulnerability/ #cybersecurity #infosec #codeigniter #...

  • Post #4263991

    This is a bit off topic, but many commercial building like malls and banks in Jakarta and other major cities at Indonesia are starting to plant high fences. There is a possibility of a big or chaos demonstration might return this August. I advice people who were planning to go to Indonesia this August, might reconsider your plan and wait for next month. @indonesia@fedigroups.social #indonesia #security

  • Post #4258845

    Recent news of OpenAI and now Claude oopsies show that you can&#39;t trust any big tech with &#39;powerful tech&#39;, and open source is always the best way... But, dumbfucks will only gallop and say &quot;OOOO AUTONOMOUS HACKING IS HERE WE ARE DOOMED, LETS GIVE THESE MF WHO FAILED TO GUARDRAIL ITS AI MORE MONEY&quot;

  • Post #4240144

    Recently, East Java police cybercrime unit arrested a cybercrime actor that broke access to around 260 Indonesia&#39;s websites and 1570 websites globally. The website acess then sold the access credentials to a buyer to promote online gambling. The threat actor gained access to the victim website by uploading malicious files (I am assuming this is a shell script). Src: detiknews #indonesia #cybersecurity #cybercrime #onlinegambling

  • Post #4193334

    Russia: You are now under arrest warrant, Durov. Telegram:

  • Post #4175166

    I guess, I am in another non productivity phase again. There are two hypothesis for the culprit: 1. Every time I opened my Laptop in my apartment, my brain just don&amp;#39;t like doing any serious things, it prefer to open social media. So far, I can only manage to do things that are not technical. I think I need to do something with my apartment. 2. The job at my office, I think because of the uncertainty on what to do now (the company is just starting up), I do not feel any necessity on job...

  • Post #4175165

    RE: https://infosec.exchange/@AmmarSpaces/116552700393637374 If you stumbled upon my post from 2 months ago... The link to the presentation is invalid in that post, I have edited it. Sorry &amp;gt;w&amp;lt;

  • Post #4175164

    RE: https://defcon.social/@defcon/116974933305967853 Really sad to hear. But, I am afraid the situation will be like the abandonment of DEFCON China. Because it is clear that Middle East situation will be uncertain for years to come. I hope I am wrong though.

  • Post #4175163

    Hmm, I guess I should also start writing... But, idk. Let&amp;#39;s see a week from now

  • Post #4175162

    Recently there is a YT hack involving hundreds of artists account being &amp;#39;compromised&amp;#39; to deliver random videos. Apperently the &amp;#39;hack&amp;#39; were sourced from exploited 3rd party app that just too easy to fool. https://www.youtube.com/watch?v=aiy4VyP5Eps #cybersecurity #youtube #artist

  • Post #4148060

    RE: https://infosec.exchange/@PagedOut/116992388889042756 PagedOut issue 9 is here, go grab it and have a good read. #cybersecurity #infosec #pagedout

  • Post #4128680

    What to love about Cybersecurity is, even though we are in &quot;vibing&quot; era, there are still so many stories to tell. Like how the hacking occoured, what kind of data found (if you hack a cyber criminal like scammerz), etc.... ๐ŸคŸ #cybersecurity #hacking #opinion

  • Post #4109125

    Finally, TempleOS has its &#39;first&#39; malware. Github repo: https://github.com/dzumq/Messup-Virus https://www.youtube.com/watch?v=XkKGeV943ik #cybersecurity #infosec #malware #templeos

  • Post #4107580

    Look back at 10 years after Phineas Fisher last online appearance that never caught (thankfully). They are being famous to hack Spyware firms Gamma Group and Hacking Team. I only aware about Hacking Team about last year? Here, have a read. Report writeen by Lorenzo Franceschi-Bicchierai (@lorenzofb@infosec.exchange) https://techcrunch.com/2026/07/25/the-hacker-who-humiliated-spyware-makers-and-was-never-caught/ #cybersecurity #infosec #hacktivismo #hacktivism #hacktivist #hackingteam #gam...

  • Post #4097956

    Almost vomit myself reading a techbro comparing LLM to Industry Revolution. I am being serious. Good lord.

  • Post #4063046

    Today&#39;s random opinion: It is no longer interesting thing to put out you found a vuln by using an LLM. Just jump straight to the case explaining the vuln. The beauty is in how the vuln found and the mechanism of the vuln. Not what model you use. #cybersecurity #opinion

  • Post #4053927

    LAPSUS$ announcing their retirement from cybercrime because they said &#39;they have achieved their goals&#39;. They also mentioned their beef with Team PCP. Thing to note: All the original members of LAPSUS$ have been arrested by law enforcement, the current one (which we encounter now) is another iteration of the group. Screenshot credit: Dominic Alvieri (AlvierID on X) #infosec #cybersecurity #cybercrime #security #lapsus