B'ad Samurai :ifin:
badsamurai@infosec.exchange
<p><a href="https://infosec.exchange/tags/security" class="mention hashtag" rel="tag">#<span>security</span></a> <a href="https://infosec.exchange/tags/automation" class="mention hashtag" rel="tag">#<span>automation</span></a> <a href="https://infosec.exchange/tags/soar" class="mention hashtag" rel="tag">#<span>soar</span></a> <a href="https://infosec.exchange/tags/iac" class="mention hashtag" rel="tag">#<span>iac</span></a> and <a href="https://infosec.exchange/tags/tay" class="mention hashtag" rel="tag">#<span>tay</span></a></p><p>I love the PacNW / BC. When I'm not doing security shenanigans, you'll find me on a glacier, volcano, ski lot or sketching mushrooms on the trail.</p><p>I believe the outdoors heal and are for EVERYONE.</p><p>Keyoxide: aspe:keyoxide.org:6FO76WXKQECSKSK6
Posts
- View post
-
View post
RE: https://infosec.exchange/@ifin/117322531241621072 @ifin@infosec.exchange the only complaint will be that one weird Unix admin still using graph.no for the weather. But this site is also a good to confirm your block policies.
-
View post
What a week in netsec. Let’s see what happens at 4pm pacific today. And remember to push to prod.
-
View post
@Viss@mastodon.social right all show up provide Fibonacci or Cartesian shopping list calculations.
-
View post
The Isar launch site in Andøya Norway is ridiculously pretty.
-
View post
@neurovagrant@masto.deoan.org Wish I could get away with that IR plan, not get fired, AND cash out.
-
View post
Whale watching always makes me so happy. I highly recommend this for a team activity. #seattle #orca
-
View post
Palo: "Almost Half of Malware Samples Communicate Direct to IP" Also Palo: "We don't understand why you want to Block-by-ASN." https://unit42.paloaltonetworks.com/malware-bypass-dns-direct-to-ip/ #blueteam #asn #paloaltonetworks #unit42
-
View post
RE: https://infosec.exchange/@bobdahacker/117037360462544912 Block and monitor these absurdly high-risks. Here’s a list to get you started. https://github.com/BadSamuraiDev/bs-lists/blob/main/ai-meeting-notetakers.md
-
View post
My Moon Picnic with my goth & Wiccan spouse was really nice. Thanks kick-ass 99.7% moon and clear WA skies!
-
View post
Hearts in trees.#timber #tolt
-
View post
Boba buddy. #dogsofmastodon #goldenretriever
-
View post
https://nvd.nist.gov/vuln/detail/cve-2026-63795 #cve202663795 #cve #linux #cve_2026_63795
-
View post
Henry Jimothy! Jimothy. the hero we needed. l've decided to give 100 percent of the money made from this painting to Ballard food bank, a place that helped me through some of my hardest times. Make your offer in my DMs and the highest bid by midnight will get the painting and the ballard food bank will get a hook up they deserve. https://www.instagram.com/p/Da8opgCh6GS/ #ballard #jimothy
-
View post
https://www.theregister.com/off-prem/2026/07/17/billing-software-error-sends-billion-dollar-aws-estimates/5274521 #aws
-
View post
RE: https://live.acarsdrama.com/@acarsdrama/116927482262587381 They’re both named Oliver, are dating and someone put meat scraps in the vermicompst. The culprit was in fact their room mate Liam, again.
-
View post
RE: https://infosec.exchange/@urldna/116918452809633800 How Geoshitties are added: X Free sign-up with [@]duck email X No email verification X Custom images and AI generation X Allow redirects and links off-site And some good things: [+] No subdomains [+] Abuse contact form exists Mitigation of low-regret? Highly likely for most orgs since real use by partners and vendors would likely be behind a domain and use their paid hosting integrations to Google or Wix. https://github.com/BadSamuraiDe...
-
View post
Well good thing the American federal government doesn’t rely on a single privately-owned third-party digital identity provider operating on .me! #dns
-
View post
Anyway, 9 Webhooks-aaS and 7 LOTTs added to BS Lists. LOTT .tunnelapi.in/ (LOTT Download and Webhook-aaS) .free-tunnelapi.app/ (LOTT) .remote.it/ (LOTT) .optimistixtunnel.com/ (LOTT) .localcan.com/ (LOTT) .localcan.dev/ (LOTT) .ssh-j.com/ (LOTT) https://github.com/BadSamuraiDev/bs-lists/blob/main/living-off-trusted-tunnels.txt Webhook-aaS .tunnelapi.in/ .h00k.dev/ .hookray.com/ .hookrelay.dev/ (100 free/month) .webhookwizard.com/ .posthook.io/ (Webhook-aaS: 1000 free/month) .spiderhash.io/ .g...
-
View post
Long overdue. On-going collection of Cloudflare abuse in one place. Domains and URLs to start, then I’ll get hunts added for tunnels and other shenanigans. https://github.com/BadSamuraiDev/bs-lists/blob/main/cloudflare.md #cloudflare
-
View post
The state of software in 2026: Progress asking their customers to turn off their products, again. https://www.bleepingcomputer.com/news/security/progress-urges-sharefile-customers-to-shut-down-servers-over-credible-threat/
-
View post
#cloudflare #originStory
-
View post
My 30-year old Nas CD skips in my boombox. 🎵If I ruled .. the .. world .. imagine that 🎵 I like to think of it as earned patina.
-
View post
RE: https://mastodon.social/@bagder/116854899225802291 Presenting the first software supply chain attack via snail mail.
-
View post
RE: https://mastodon.social/@arstechnica/116835005737504430 In case y’all missed Yahoo and MSN Music, here’s a third memo.
- View post
-
View post
#ai #meta
-
View post
RE: https://vmst.io/@intrepidhero/116681172160789282 The outdoors are for everyone and a place folx can heal. https://www.queermountaineers.com/ https://qpochikers.com/ https://www.outventures.org/
-
View post
When a vendors intel doc has no IOCs and references esoteric product and org-specific tags/TAs. #threatintel
- View post