:CrowHeartRainbow:
cR0w@infosec.exchange
<p>Analyst</p>
Posts
-
View post
@Viss@mastodon.social @ai6yr@m.ai6yr.org @kajer@infosec.exchange I expect this one is just another bad Cyber Security something something acronym but I still noped out as soon as I had the screenshot.
-
View post
Oh fuck that job.
-
View post
sev:CRITs in Dayforce Payroll. Go patch and protect that shit before your pay gets fucked. https://cert.pl/en/posts/2026/09/CVE-2026-73640/
-
View post
Reminder: It's a good idea to limit ingress to your routers' BGP service to your known peers. Please don't leave it open to the whole Internet.
-
View post
Patch your fruity phones, there's another EITW 0day. https://support.apple.com/en-us/149226 Processing a maliciously crafted file may lead to arbitrary code execution. Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals on versions of iOS before iOS 27.
-
View post
I don't know how many of you have public call centers, but you might want to figure out how to deal with AI agents "calling on behalf of" human employees or customers or similar. I've seen it a ton lately and it's creepy as Hell. They're aggressive and weird ( negative ).
-
View post
RE: https://infosec.exchange/@ajn142/117349300525417657 When the puppygirl polycule finds a new top.
-
View post
Of all the bullshit I expected from the current US regime, going from cops threatening dogs with their 9mm to cops threatening dogs with their 9cm was not on that list.
-
View post
bong rip hold hold ... hold exhale Fuck a non profit GAYINT should be a church.
-
View post
Yet another sign I need to log off for a while: My truck rolled from 11111 to 11112 miles and I was temporarily confused why it wasn't 100000.
-
View post
@hrbrmstr@mastodon.social At least I'm not digging into 0day and making people work over the weekend. 😅
-
View post
ANNOUNCING The CrowdStrike Cyber Superintelligence Lab
-
View post
RE: https://cyberplace.social/@GossiTheDog/117343821114841048 I'm not under NDA and don't use Citrix so if anyone wants to send it to me, I'm more than happy to post it for you. Without naming the source, obviously.
-
View post
You nerds are all right. :heart_pride:
-
View post
RE: https://infosec.exchange/@cR0w/117309634264998866 Hire me and it's a 2-for-1 deal. I come with my own accountabillabuddy.
-
View post
It's 08:00 on Monday and my work buddy has had enough. Same, TBH. #dogsOfMastodon
-
View post
It's been a while since I had to get a new job. Am I supposed to send the dog pic bribes with the resume or how does that work these days?
-
View post
@elebertus@eigenmagic.net That's kind of what I figured based on the struggles everyone else is having to find jobs.
-
View post
Hey, so, anyone out there looking to hire a remote nerd? I've spent the past 4-5 years doing threat hunting, detection engineering, threat intel, and incident response for large US West utilities. Gotta be full WFH though due to health reasons. Non-LinkedIn, non-ghost job links appreciated. Edit to add that I did a bit of vuln management too. That's something that I think you can ask fellow fedi friends about since I was sharing so much of it here for a while. #getFediHired
- View post
-
View post
RE: https://infosec.exchange/@kajer/117322455423025585 hashtag threat intel
-
View post
RE: https://infosec.exchange/@nyanbinary/117322397007013550 LET US BLOCK BY ASN YOU FUCKING COWARDS
-
View post
If I have one more "security expert" tell me that all of my IOCs should have lifetime or expiration dates defined, I'm going to flip some tables.
-
View post
@icing@chaos.social @christopherkunz@chaos.social WHAT ARE YOU DOING YOU'LL CRASH THE WHOLE INSTANCE
-
View post
@christopherkunz@chaos.social @icing@chaos.social ../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../../...
-
View post
I've talked a lot of shit about Lantronix and other similar vendors, and I feel bad that I haven't shared many details beyond "LOL, DoS by SYN." So here you go: https://revrb.net/2026/09/21/revrb-lantern.html cc: @da_667@infosec.exchange
-
View post
Reminder: Vendors want you to treat their agentic bullshit as employees rather than the computer programs they are so that when they inevitably fuck up, it's a personnel issue rather than a technical issue and they can simply walk away from it.
-
View post
@da_667@infosec.exchange https://www.d6fault.dev/#research
-
View post
EITW 0day in F5 APM. https://my.f5.com/manage/s/article/K000162605 When a BIG-IP APM access policy and an OAuth profile are configured on a virtual server, specific malicious traffic can lead to remote code execution (RCE). (CVE-2026-94127) This vulnerability allows an unauthenticated attacker to perform RCE. The BIG-IP system in Appliance mode is also vulnerable. This is a data plane issue; there is no control plane exposure.
-
View post
RE: https://infosec.exchange/@suricata/117309241594395404 https://nvd.nist.gov/vuln/detail/cve-2026-94083 sev:CRIT 9.4 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:L https://nvd.nist.gov/vuln/detail/cve-2026-94084 sev:CRIT 9.4 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:L