Elektrine
EN
Log in Register
Paige Chat Timeline Gallery Friends Lists Email Drive DNS Resolver Domains VPN Kairo Nerve
Remote

AmmarSpaces

@AmmarSpaces@infosec.exchange
mastodon 4.8.0-alpha.3+glitch
  • Open on infosec.exchange

I like Information Security, and silly elves. Mostly posting thing I read blending with my view. Or, just my views of the what happened at world in general.

Shall we go?

74 Followers
65 Following
50 Posts
Joined February 24, 2026
Open post
AmmarSpaces @AmmarSpaces@infosec.exchange
· 1mo ago
Today's random opinion: It is no longer interesting thing to put out you found a vuln by using an LLM. Just jump straight to the case explaining the vuln. The beauty is in how the vuln found and the mechanism of the vuln. Not what model you use. #cybersecurity #opinion
3
1
0
0
Open post
AmmarSpaces @AmmarSpaces@infosec.exchange
· 2mo ago
Replying to @jerry@infosec.exchange
@jerry@infosec.exchange AI bros and regular people reading the 'news':
3
0
0
0
Open post
AmmarSpaces @AmmarSpaces@infosec.exchange
· 1mo ago
Got this info via @InternationalCyberDigest@infosec.exchange. For a company having "hacker" in their name, this is an insult towards hacking community. If you value the 'hacker' value, DO NOT SUPPORT any form of ID Verification. Fight this shit to oblivion. If you are in only for the money, do not mind YOUR ID handled by 3rd party (meaning you should not call yourself a hacker), then sure, embrace this. https://docs.hackerone.com/en/articles/8399430-id-verification #hackerone #idverification #cybersecurity #infosec

ID Verification | HackerOne Help Center

Hackers: Explanation and walkthrough of ID Verification.

2
3
0
0
Open post
AmmarSpaces @AmmarSpaces@infosec.exchange
· 1mo ago

I guess, I am in another non productivity phase again.

There are two hypothesis for the culprit:
1. Every time I opened my Laptop in my apartment, my brain just don't like doing any serious things, it prefer to open social media. So far, I can only manage to do things that are not technical. I think I need to do something with my apartment.

2. The job at my office, I think because of the uncertainty on what to do now (the company is just starting up), I do not feel any necessity on jobs that has no clear time deadline. So, my brain is just tired to do assignment because of it and looking for any shortcut. Which I am afraid may be bad in long run. For this, I think I will try fresh brain restart for next week and having self deadline in mind.

Don't worry, I just need to express what inside my mind to clear things up.

2
0
0
0
Open post
AmmarSpaces @AmmarSpaces@infosec.exchange
· 1mo ago

If you are in Europe, and you bought Steam's hardware products, you might want to check your e-mail from Steam.

There is a 3rd party logistic partner breach (CEVA Logistics) occoured, where your:

  • Name
  • Street address, city and postal code
  • Country
  • Phone number
  • Email address linked to the Steam account
  • Type and price of the hardware ordered

Might be exposed.

Stay safe out there.

#cybersecurity #infosec #databreach #steam #europe #valve #gaming

1
1
2
0
Open post
AmmarSpaces @AmmarSpaces@infosec.exchange
· 1mo ago

Recently there is a YT hack involving hundreds of artists account being 'compromised' to deliver random videos. Apperently the 'hack' were sourced from exploited 3rd party app that just too easy to fool.

https://www.youtube.com/watch?v=aiy4VyP5Eps

#cybersecurity #youtube #artist

1
0
2
0
Open post
AmmarSpaces @AmmarSpaces@infosec.exchange
· 1mo ago
RE: https://infosec.exchange/@PagedOut/116992388889042756 PagedOut issue 9 is here, go grab it and have a good read. #cybersecurity #infosec #pagedout
1
0
0
0
Open post
AmmarSpaces @AmmarSpaces@infosec.exchange
· 1mo ago
Finally, TempleOS has its 'first' malware. Github repo: https://github.com/dzumq/Messup-Virus https://www.youtube.com/watch?v=XkKGeV943ik #cybersecurity #infosec #malware #templeos
1
0
0
0
Open post
AmmarSpaces @AmmarSpaces@infosec.exchange
· 1mo ago
Look back at 10 years after Phineas Fisher last online appearance that never caught (thankfully). They are being famous to hack Spyware firms Gamma Group and Hacking Team. I only aware about Hacking Team about last year? Here, have a read. Report writeen by Lorenzo Franceschi-Bicchierai (@lorenzofb@infosec.exchange) https://techcrunch.com/2026/07/25/the-hacker-who-humiliated-spyware-makers-and-was-never-caught/ #cybersecurity #infosec #hacktivismo #hacktivism #hacktivist #hackingteam #gammagroup #spyware #security #phineasfisher
1
0
1
0
Open post
AmmarSpaces @AmmarSpaces@infosec.exchange
· 1mo ago
Almost vomit myself reading a techbro comparing LLM to Industry Revolution. I am being serious. Good lord.
1
0
0
0
Open post
AmmarSpaces @AmmarSpaces@infosec.exchange
· 1mo ago

RE: @defcon@defcon.social

Really sad to hear. But, I am afraid the situation will be like the abandonment of DEFCON China.

Because it is clear that Middle East situation will be uncertain for years to come.

I hope I am wrong though.

1
0
0
0
Open post
AmmarSpaces @AmmarSpaces@infosec.exchange
· 1mo ago
Replying to @billy@billys.mom
@billy@billys.mom I think just saying your research was assisted with an LLM is enough. Unless you are a sales or sponsored by a LLM creator... you can specify the model. What make your report cool is if it is a rarer vuln, and you found it without AI.
1
0
0
0
Open post
AmmarSpaces @AmmarSpaces@infosec.exchange
· 1mo ago
LAPSUS$ announcing their retirement from cybercrime because they said 'they have achieved their goals'. They also mentioned their beef with Team PCP. Thing to note: All the original members of LAPSUS$ have been arrested by law enforcement, the current one (which we encounter now) is another iteration of the group. Screenshot credit: Dominic Alvieri (AlvierID on X) #infosec #cybersecurity #cybercrime #security #lapsus
1
0
0
0
Open post
AmmarSpaces @AmmarSpaces@infosec.exchange
· 1mo ago
Recently, East Java police cybercrime unit arrested a cybercrime actor that broke access to around 260 Indonesia's websites and 1570 websites globally. The website acess then sold the access credentials to a buyer to promote online gambling. The threat actor gained access to the victim website by uploading malicious files (I am assuming this is a shell script). Src: detiknews #indonesia #cybersecurity #cybercrime #onlinegambling
0
0
0
0
Open post
AmmarSpaces @AmmarSpaces@infosec.exchange
· 1mo ago
This is a bit off topic, but many commercial building like malls and banks in Jakarta and other major cities at Indonesia are starting to plant high fences. There is a possibility of a big or chaos demonstration might return this August. I advice people who were planning to go to Indonesia this August, might reconsider your plan and wait for next month. @indonesia@fedigroups.social #indonesia #security
0
1
0
0
Open post
AmmarSpaces @AmmarSpaces@infosec.exchange
· 2w ago
These companies are pure cartel and insanity. People in reply section said "just wait for the bubble to burst". No, when the bubble burst, they gonna force you to use Cloud based computer. You will not own anything anymore. What itch me are, that WE as tech user know this problem exist, but... there are lacks of collective action on forcing these AI companies to not mess with hardware availability. Like wth. #cybersecurity #supplychainsecurity #AI #Apple
0
1
0
0
Open post
AmmarSpaces @AmmarSpaces@infosec.exchange
· 1mo ago
On unrelated post, if you are into cryptography and vtubing, go check out kurenaif on YouTube. In this video, they covered about Isogeny cryptography. It has english subtitle :D (Yeah, I haven't finished the video, but still, sharing is caring right?) https://www.youtube.com/watch?v=JlhSM0sKZXI #cybersecurity #infosec #cryptography #isogenycrypto #vtuber
0
0
0
0
Open post
AmmarSpaces @AmmarSpaces@infosec.exchange
· 5d ago
I need to archive this first (in case it got deleted), I will make another post later after reading through the posts. But if you are @indonesia@fedigroups.social , feel free to read this. Also @safenet@mastodon.social Note: Sorry no alt text until I have a free time to read the whole thing to make a summary. And the screenshot are not by me ok, feds. #indonesia #indonesiaNews #censorship
0
0
2
0
Open post
AmmarSpaces @AmmarSpaces@infosec.exchange
· 1mo ago
Replying to @thevoid@infosec.exchange
@thevoid@infosec.exchange @InternationalCyberDigest@infosec.exchange Hmm, I am curious, what did you think the past bug bounty is dead?
0
1
0
0
Open post
AmmarSpaces @AmmarSpaces@infosec.exchange
· 3w ago
Previously, this post will be in Indonesian. Kalau kalian buka X, atau sosmed lain, mungkin kalian sudah melihat tulisan dari anggota TNI AU yang mengkritisi tentang militerisasi di bidang sipil. Update terbaru, yang bersangkutan meminta tulisannya dihapus karena alasan pribadi (ayolah kita rakyat ga bodoh ya ga). Jadi tulisannya ilang dong? Hehe, tenang, sudah diarsipkan: https://web.archive.org/web/20260828042633/https://suaranasional.com/2026/08/28/hipermiliterisasi-program-sipil/ @indonesia@fedigroups.social @safenet@mastodon.social Source: https://suaranasional.com/2026/08/28/penulis-minta-opini-soal-hipermiliterisasi-program-sipil-segera-dihapus/ #censorship #criticism #militirization #indonesia #indonesiaNews
0
0
0
0
Open post
AmmarSpaces @AmmarSpaces@infosec.exchange
· 2mo ago
So, more explanation of wp2shell recently just popped out. The vulnerability were found by GPT 5.6 Sol. By using modified prompt from how it found the solution of Cycle Double Cover conjecture. It was initially found a SQL Injection, but after asked again if it can be elevated to RCE, it confirms it in 4 hours. Technical explanation on the vulnearbility also can be found in this writeup, have a good read fellas. https://slcyber.io/research-center/exploit-brokers-pay-500000-for-a-wordpress-rce-i-found-one-with-gpt5-6/ #cybersecurity #infosec #security #wordpress #chatgpt #gptsol #wp2shell #airesearch #llm #vulnerability #vulnerabilityresearch
0
0
0
0
Open post
AmmarSpaces @AmmarSpaces@infosec.exchange
· 1mo ago
What to love about Cybersecurity is, even though we are in "vibing" era, there are still so many stories to tell. Like how the hacking occoured, what kind of data found (if you hack a cyber criminal like scammerz), etc.... 🤟 #cybersecurity #hacking #opinion
0
0
0
0
Open post
AmmarSpaces @AmmarSpaces@infosec.exchange
· 1mo ago

Hey, hey, it's been a long time since the last huge supply chain attack (what about AUR? it's for nerds). NPM Supply Chain Attack returned again, this time infecting more than 444 packages with accumulation of 2B (yeah B for billion) downloads. The malware used is Shai-hulud again, but this time, the culprit is Copycat of TeamPCP.

What should you do?

  • Check if you are affected, if so, downgrade your library version
  • Rotate your keys and do 2FA
  • Search for infected accounts in your system, if there is one, remove it... or kill it with cold blood.

More details: https://www.ox.security/blog/a-new-infostealer-worm-hits-npm-affecting-keyv-and-cacheable/

#cybersecurity #infosec #security #supplychainsecurity #supplychain #npm#shaihuludmalware

0
0
0
0
Open post
AmmarSpaces @AmmarSpaces@infosec.exchange
· 2mo ago
Replying to @colinstu@birdbutt.com
@colinstu@birdbutt.com Now either side cannot let you escape from goverment overreach.
0
0
0
0
Open post
AmmarSpaces @AmmarSpaces@infosec.exchange
· 1mo ago
Replying to @maxthecomputerfox@furry.engineer
@maxthecomputerfox@furry.engineer Oh, congrats btw on your acceptance... and good luck with your projects 👌
0
0
0
0
Open post
AmmarSpaces @AmmarSpaces@infosec.exchange
· 1mo ago
Replying to @faizalr@mstdn.social
@faizalr@mstdn.social @indonesia@fedigroups.social Takut dengan goblin coc 😂
0
0
0
0
Open post
AmmarSpaces @AmmarSpaces@infosec.exchange
· 1mo ago
Replying to @jimedrand@social.gnuweeb.org
@jimedrand@social.gnuweeb.org Hahaha, I also just found out about this. But it does make sense don't they? I mean, they also has their own version of Smartphone, Computer OS, and 'internet'
0
0
0
0
Open post
AmmarSpaces @AmmarSpaces@infosec.exchange
· 1mo ago
Replying to @BlackIkeEagle@mastodon.pirateparty.be
@BlackIkeEagle@mastodon.pirateparty.be I guess it would be on of argued thing in court, if someone brought it (they should). But, whether it is intentional or not, the org that made that model must pay for the damage they did and what is based on law, like unauthorized intrusion attempt or whatever. Pre-starting era of hackers received that treatment (even though from there, EFF created and hackers are now have better place), IF LLMs got away, this world is fucking corrupt as we know it.
0
0
0
0
Open post
AmmarSpaces @AmmarSpaces@infosec.exchange
· 1mo ago

RE: @AmmarSpaces@infosec.exchange

If you stumbled upon my post from 2 months ago...

The link to the presentation is invalid in that post, I have edited it. Sorry >w<

0
0
0
0
Open post
AmmarSpaces @AmmarSpaces@infosec.exchange
· 1mo ago
Reading through Black Hat vendor summary from SecurityWeek. And, ugh... AI AI AI AI AI AI everywhere.. https://www.securityweek.com/black-hat-usa-2026-summary-of-vendor-announcements-part-1/ #cybersecurity #infosec
0
0
0
0
Open post
AmmarSpaces @AmmarSpaces@infosec.exchange
· 2mo ago
Replying to @AmmarSpaces@infosec.exchange
This fucking sooooound like a marketing stunt imo
0
0
0
0
Open post
AmmarSpaces @AmmarSpaces@infosec.exchange
· 1mo ago
RE: https://cyberplace.social/@GossiTheDog/117045200596075081 No, we cannot fucking allow this to let slide. It's already too much 'ugh fine' moment, the scarcity are artificial, not because of any disaster situation. These fucking tech manufacture companies must keep provide the consumer with fair price before AI boom. If they can't or don't obey they must be punished! Hardware scarcity is threat to tech security, threat to security means threat to cyber security. Threats of cyber security are threat actors. Meaning hardware companies are no better than any APTs or cyber crooks out there. #cybersecurity #infosec #security #Fuckai
Open quoted post
Quoting
Kevin Beaumont
@GossiTheDog@cyberplace.social
All memory on track to be manufactured in 2027 by Samsung, SK hynix, and Micron is now sold out, with no additional supply planned. https://www.digitimes.com.tw/tech/dt/n/shwnws.asp?CnlID=1&id=0000763847_DVY7YHX65GMLYZ6UQEEMP
Open quoted post
0
0
0
0
Open post
AmmarSpaces @AmmarSpaces@infosec.exchange
· 1mo ago
Replying to @jimedrand@fedinet.waltuh.cyou
@jimedrand@fedinet.waltuh.cyou Haha, sad that this hasn't a thing yet
0
1
0
0
Open post
AmmarSpaces @AmmarSpaces@infosec.exchange
· 1mo ago
Recent news of OpenAI and now Claude oopsies show that you can't trust any big tech with 'powerful tech', and open source is always the best way... But, dumbfucks will only gallop and say "OOOO AUTONOMOUS HACKING IS HERE WE ARE DOOMED, LETS GIVE THESE MF WHO FAILED TO GUARDRAIL ITS AI MORE MONEY"
0
0
0
0
Open post
AmmarSpaces @AmmarSpaces@infosec.exchange
· 1mo ago
Heard a Darknet Diaries episode yesterday, but I forgot which one, the speaker talks about a time where Turla (Russian) APT used Instagram comment at Britney Spears account as a way to communicate with their C2 server. Looking up the source, it's almost ten years huh. https://www.welivesecurity.com/2017/06/06/turlas-watering-hole-campaign-updated-firefox-extension-abusing-instagram/ #cybersecurity
0
0
0
0
Open post
AmmarSpaces @AmmarSpaces@infosec.exchange
· 2mo ago
Replying to @jimedrand@fedinet.waltuh.cyou
@jimedrand@fedinet.waltuh.cyou Oh congratulations, even though I might cannot attend the summit. I hope the talk went smoothly.
0
0
0
0
Open post
AmmarSpaces @AmmarSpaces@infosec.exchange
· 1mo ago
BREAKING Someone on X selling 'Github Source code for $65.000' . Yeah, I do not know the legitimacy, or either the post author joking (it is only their only tweet, so I think they are 'not joking'). #cybersecurity #infosec #github #leak
0
0
0
0
Open post
AmmarSpaces @AmmarSpaces@infosec.exchange
· 2d ago
Still fresh, Pertamina (IIndonesian state-owned oil and gas company) fallen victim to Ransomhouse RaaS. Alleged data stolen: Risk analysis records, financial records, maintenance planning documents, pipeline records, refinery planning documents, investigation files, engineering drawings, cyber security incident records, confidential documents, personnel records Source: Hackmanac @indonesia@fedigroups.social #cybersecurity #infosec #pertamina #ransomware #ransomhouse #databreach #indonesia #indonesiaNews
0
0
2
0
Open post
AmmarSpaces @AmmarSpaces@infosec.exchange
· 1mo ago
Heard that Illinois, Coloradi, and California has passed law on digital id at OS level... Hope those higher ups, burned in hell for eternity. 🖕
0
0
0
0
Open post
AmmarSpaces @AmmarSpaces@infosec.exchange
· 1mo ago
Replying to @AmmarSpaces@infosec.exchange
I still haven't finished reading the latest Paged Out edition too
0
0
0
0
Open post
AmmarSpaces @AmmarSpaces@infosec.exchange
· 3w ago
Now the post will be in English, recently, there is an opinion piece published by a member of Indonesian Air Force, where basically he didn't agree with Hypermiliterization in civil piece at the current administration. Previously, his post are published in 3 media pieces, but all of them are now requested to be taken down by the author because of "personal reason" (yeah, right). The full archived piece can be seen here: https://web.archive.org/web/20260828042633/https://suaranasional.com/2026/08/28/hipermiliterisasi-program-sipil/ #indonesia #censorship #media #opinion #freespeech #militerization
Hipermiliterisasi Program Sipil
Suara Nasional

Hipermiliterisasi Program Sipil

Oleh: Wahyu Suryodarsono, seorang perwira aktif TNI Angkatan Udara yang juga menjabat sebagai dosen di Skuadron Pendidikan Siber AU MASIFNYA program-program

0
0
0
0
Open post
AmmarSpaces @AmmarSpaces@infosec.exchange
· 1mo ago
Hey, did you know North Korea has their own Antivirus? Originally, found in 2018, by Check Point, now they used open source resource as their base. https://nkinternet.com/2026/08/01/a-new-silivaccine-north-koreas-antivirus/ #cybersecurity #infosec #security #antivirus #northkorea
0
2
0
0
Open post
AmmarSpaces @AmmarSpaces@infosec.exchange
· 1mo ago
Reddit rolled 'LLM Powered' AutoMod to automatically detect and delete posts that are not following community rules. I am being neutral in the situation, but false deletion might still happens, because LLMs are still machine, they can't decide nuances yet. https://www.dexerto.com/entertainment/reddit-is-giving-ai-the-power-to-remove-posts-and-comments-3395228/ #cybersecurity #AI #reddit #automod
0
0
0
0
Open post
AmmarSpaces @AmmarSpaces@infosec.exchange
· 1mo ago

So, apperently there is a CodeIgniter RCE via file upload tracked as CVE-2026-63223.

Other than that there are also 3 more critical CVEs:

  • SQL Injection (CVE-2026-63221)
  • Path traversal (CVE-2026-63222)
  • HTTP Header Spoofing (CVE-2026-63220)

Did people still use CodeIgniter?

Anyway, if your org still using it and it has anything related to file upload, might be a good time to update it.

https://securityonline.info/codeigniter4-rce-vulnerability/

#cybersecurity #infosec #codeigniter #vulnerability

0
0
0
0
Open post
AmmarSpaces @AmmarSpaces@infosec.exchange
· 1mo ago

Hmm, I guess I should also start writing... But, idk. Let's see a week from now

0
0
0
0
Open post
AmmarSpaces @AmmarSpaces@infosec.exchange
· 1mo ago
Replying to @jimedrand@fedinet.waltuh.cyou
@jimedrand@fedinet.waltuh.cyou Wow, god damn
0
0
0
0
Open post
AmmarSpaces @AmmarSpaces@infosec.exchange
· 1mo ago
Russia: You are now under arrest warrant, Durov. Telegram:
0
0
0
0
Open post
AmmarSpaces @AmmarSpaces@infosec.exchange
· 1mo ago
Boss: Bro, so have you traced where the problem at the network from? Bro: Not yet sir. Boss: Have you tried using traceroute? Bro: I did, but... Boss: 😭 https://zombofant.net/@jssfr/116991231175179589 #network #tech #technology #traceroute #badapple #traceroutehacking
0
0
0
0
Back
313k7r1n3
Elektrine

Tor hidden service

elekhj7afj4qnrr4yd3bkzslsyo5jgfxw3orgjkhlcxifueodybyiiad.onion

Platform

  • Email
  • Chat
  • Timeline
  • VPN
  • DNS

Company

  • About
  • Contact
  • FAQ
  • Lite (no JS)
  • Source code

Legal

  • Terms of Service
  • Privacy Policy
  • Warrant Canary
  • VPN Policy

Support

  • support@elektrine.com
  • Report Security Issue
Mail client setup IMAP mail.elektrine.com:993 POP3 mail.elektrine.com:995 SMTP mail.elektrine.com:465
© 2026 Elektrine. All rights reserved. Server: 13:55:27 UTC