Elektrine
Log in Register
Paige Chat Timeline Gallery Friends Email Drive DNS Private DNS Domains VPN Kairo Nerve
Remote

Scott Helme

@ScottHelme@infosec.exchange
mastodon 4.8.0-alpha.3+glitch
  • Open on infosec.exchange

Hacker, researcher, builder of things. Founded
securityheaders.com and report-uri.com, Pluralsight author, BBC hacker in residence, award winning entrepreneur. Likes cars.

0 Followers
0 Following
8 Posts
Joined November 06, 2022
Open post
Scott Helme @ScottHelme@infosec.exchange
· 5mo ago

We're tracking an active Magecart campaign targeting ecommerce sites.

The malware hides from admins, adapts to the platform, and changes how it steals payment data!

Write-up: https://scotthelme.co.uk/fighting-an-active-magecart-campaign/

scotthelme.co.uk
0
0
1
0
Open post
Scott Helme @ScottHelme@infosec.exchange
· 3mo ago
Do we think these AI companies should have used AI to build passkey support into their sites? 🤖🔑 https://whynopasskeys.com/tld/ai
whynopasskeys.com
0
0
0
0
Open post
Scott Helme @ScottHelme@infosec.exchange
· 3mo ago
It hasn't changed in over a decade, so I've just given my captive portal buster a new look! 😎 http://httpforever.com
httpforever.com
0
0
0
0
Open post
Scott Helme @ScottHelme@infosec.exchange
· 3mo ago
This looks like it could be really promising! Connection Allowlist: a network firewall, built into the browser https://scotthelme.co.uk/connection-allowlist-a-network-firewall-built-into-the-browser/
scotthelme.co.uk
0
0
0
0
Open post
Scott Helme @ScottHelme@infosec.exchange
· 2mo ago
We've released a new version of report-uri/dbsc-php thanks to community contributions! Full details: https://github.com/report-uri/dbsc-php/releases Background: https://scotthelme.co.uk/open-sourcing-dbsc-php-a-server-library-for-device-bound-session-credentials-in-php/
github.com
0
0
0
0
Open post
Scott Helme @ScottHelme@infosec.exchange
· 2mo ago
Stripe just made CSP a compliance requirement. Merchants completing their annual PCI assessment are now asked to attest that they’ve deployed a Content Security Policy. That’s a major shift from “you should deploy CSP” to “confirm that you have.” Full details: https://blog.report-uri.com/stripe-now-asks-you-to-attest-that-youve-deployed-a-csp/
blog.report-uri.com
0
0
0
0
Open post
Scott Helme @ScottHelme@infosec.exchange
· 1mo ago
AOS!!! Weather satellite image download, first attempt. 137.9 MHz — Meteor-M N2-4 Dipole antenna @ 120°, aimed north Raspberry Pi 4B + £40 USB dongle Thirteen minutes as it passes 800 km overhead. No idea yet whether it'll work...
0
0
0
0
Open post
Scott Helme @ScottHelme@infosec.exchange
· 2w ago
A bunch of these domains went from first registration to being flagged in our threat intel feed in just 30 hours! There's a massive IoC list at the end of the post 💪 https://blog.report-uri.com/chasing-a-clickfix-campaign-from-one-domain-to-a-macos-stealer/
blog.report-uri.com
0
0
0
0
Back
313k7r1n3
Elektrine

Tor hidden service

elekhj7afj4qnrr4yd3bkzslsyo5jgfxw3orgjkhlcxifueodybyiiad.onion

I2P eepsite

j6b6cyk6gjmepjih7jjadxgxvvf3lzzujljuu2v4biemzpg3naya.b32.i2p

Platform

  • Email
  • Chat
  • Timeline
  • VPN
  • DNS

Company

  • About
  • Contact
  • FAQ
  • Lite (no JS)

Legal

  • Terms of Service
  • Privacy Policy
  • Transparency Report
  • Report Abuse
  • Warrant Canary
  • VPN Policy

Support

  • support@elektrine.com
  • Report Security Issue
Mail client setup IMAP mail.elektrine.com:993 POP3 mail.elektrine.com:995 SMTP mail.elektrine.com:465
© 2026 Elektrine. All rights reserved. Server: 21:41:47 UTC