scriptjunkie
sj@social.scriptjunkie.us
<p><a href="https://www.scriptjunkie.us/" target="_blank" rel="nofollow noopener" translate="no"><span class="invisible">https://www.</span><span class="">scriptjunkie.us/</span><span class="invisible"></span></a><br /><a href="https://social.scriptjunkie.us/tags/infosec" class="mention hashtag" rel="tag">#<span>infosec</span></a> <a href="https://social.scriptjunkie.us/tags/security" class="mention hashtag" rel="tag">#<span>security</span></a><br />nostr npub10mx0gx3r2lszrrut8kvr5mt2m8r9ffhnycm2nqhsr8dj8c979ease95gs3<br /><a href="https://x.com/scriptjunkie1" target="_blank" rel="nofollow noopener" translate="no"><span class="invisible">https://</span><span class="">x.com/scriptjunkie1</span><span class="invisible"></span></a></p><p>the rules: <a href="https://social.scriptjunkie.us/about
Posts
-
Post #3920001
So I read the election files and the main takeaways, aside from a zillion ineligible people registered to vote, are: - All the PII has probably been breached and - Voting machines and registration systems have vulns too So states and counties running election related things (but also the rest of you) should do the following: - Back up data files regularly - Audit data integrity and implement alerts - Test out your backups - Watch out for phishing, re-used passwords, enable MFA - Watch out...
-
Post #2626978
So many browser exploit chains that Pwn2Own is rejecting fully demonstrated submissions. I&#39;m sure it&#39;s a fine time to be browsing the internet. https://x.com/ggwhyp/status/2053775203256393981
-
Post #2626977
I&#39;m a steakholder. Add me to your quick syncs.
-
Post #2626976
I appreciate everyone dropping linux privesc 0days in the current AI renaissance, but to really make it feel like the good ol days someone needs to drop a weaponized pre-auth SMB or RDP RCE. We haven&#39;t had a good Windows worm in AGES.
- Post #2626975
-
Post #2626974
If your site takes 15 seconds to load or log in and has 100,000 user visits in a year, then the CEO should be mandated to spend 15*100k seconds, or 17 days in jail next year. Our time is now your time.
-
Post #1910990
Find a vuln? Your disclosure options: 1. Exploit it! Plant ransomware, steal cryptocurrency 2. Sell it to a broker. Add "journalist hacked" to the muted words list. Ignorance is bliss 3. Sell to your country's military. Patriotic. 4. Tell people who are affected by disclosing it
-
Post #1794906
No! The protocol my botnet uses leaked https://www.ietf.org/archive/id/draft-meow-mrrp-00.html
-
Post #1794902
Remember, if all you do is delete random lines of code, you never show up in &quot;git blame&quot;
-
Post #1794901
I knew the SPLC could be scummy, but man, that is another level
-
Post #1794900
Why would I spend 25 to get a brand new part when I can spend 35 to get a repair tool for this obscure problem
-
Post #1794899
@computerywar In this case, road bikes, for which my maintenance arsenal will continue to expand, because you just never know...
-
Post #1794898
&quot;Guys, they told me to delete the incriminating evidence before it got revealed. This is such a good idea, I never would have thought of it. That&#39;s why I&#39;m telling you, in this email I&#39;m sending. So smart!&quot; *Clicks send*
- Post #1794895
-
Post #1794894
https://copy.fail/ Oh yeah
-
Post #1794893
I will never understand why airlines prohibit inexpensive ticket holders from buying upgrades or changes. It&#39;s free money!
-
Post #262522
GitHub is broken. Post memes.
-
Post #151991
Everyone on the left in my feed today: "we hate ICE, we're even going to try to cancel companies that give law enforcement discounts, we're fighting the fascist authoritarians" Every Democrat and 1/4 of Republicans today: "we just voted to give them a kill switch in your car lol"