Elektrine
Log in Register
Paige Chat Timeline Gallery Friends Email Drive DNS Private DNS Domains VPN Kairo Nerve
Remote

Johannes Ullrich (maybe not a bot)

@jullrich@infosec.exchange
mastodon 4.8.0-alpha.3+glitch
  • Open on infosec.exchange

Dean of Research, http://SANS.edu College | SANS Internet Storm Center | Intrusion Detection | Web App Security | Connoisseur of fine packets and honeypot logs

0 Followers
0 Following
14 Posts
Joined November 05, 2022
web:
https://isc.sans.edu/handler_list.html#johannes-ullrich
home:
Jacksonville, FL
twitter:
twitter.com/johullrich
github:
https://github.com/jullrich
Open post
Johannes Ullrich (maybe not a bot) @jullrich@infosec.exchange
· 47mo ago

Each day Twitter remains running, CEOs worldwide will ask more questions about why they are paying so much for their IT staff. Make sure you are not paying for some executive’s bonus with your mental/physical health.

114
10
60
0
Open post
Johannes Ullrich (maybe not a bot) @jullrich@infosec.exchange
· 28mo ago

June 4th, 1989, Tiananmen Square, Beijing. I always think the "Tank Man" image is too clean and does not show the actual brutality of what happened when a brutal dictatorship felt challenged. hashtag#TiananmenSquareMassacre hashtag#freedom hashtag#tiananmen hashtag#毋忘六四 hashtag#june4

17
0
18
0
Open post
Johannes Ullrich (maybe not a bot) @jullrich@infosec.exchange
· 31mo ago
18
1
4
0
Open post
Johannes Ullrich (maybe not a bot) @jullrich@infosec.exchange
· 30mo ago

A quick note about the xz-utils backdoor:
1 - luckily, no mainstream distros are affected.
2 - most run xz-utils 5.2/5.4. 5.6 is vulnerable
3 - quick check: `xz -V`
4 - This makes you wonder what else is happening. Thanks to people who paid attention
https://www.cisa.gov/news-events/alerts/2024/03/29/reported-supply-chain-compromise-affecting-xz-utils-data-compression-library-cve-2024-3094

Cybersecurity and Infrastructure Security Agency CISA

Reported Supply Chain Compromise Affecting XZ Utils Data Compression Library, CVE-2024-3094 | CISA

16
3
15
0
Open post
Johannes Ullrich (maybe not a bot) @jullrich@infosec.exchange
· 28mo ago

Good weekend with some good dog walks. Need more of it.

9
0
0
0
Open post
Johannes Ullrich (maybe not a bot) @jullrich@infosec.exchange
· 28mo ago

Due to the June 19th holiday and travel, there will be no podcast for Wednesday and Thursday.

5
0
0
0
Open post
Johannes Ullrich (maybe not a bot) @jullrich@infosec.exchange
· 28mo ago

OS Command Injection. It doesn't get much more severe than that regarding web application/API vulnerabilities. Still, these issues keep coming up in security devices. https://isc.sans.edu/j/osinjection

isc.sans.edu
4
0
2
0
Open post
Johannes Ullrich (maybe not a bot) @jullrich@infosec.exchange
· 28mo ago

The mini PCs for #SANSFIRE arrived. We will give them away during our honeypot workshop and possibly for other raffles.

infosec.exchange
3
0
0
0
Open post
Johannes Ullrich (maybe not a bot) @jullrich@infosec.exchange
· 29mo ago

I have traveled quite a bit over the years (less recently). Usually, I try to get an exit seat. In probably 100+ flights with different airlines, I remember only ONE instance where a flight attendant did a thorough exit row briefing. She explained how to open the door, what to watch out for, to wait for signals from the cabin crew before opening, and a couple of other things.

Usually, they do the “verbal yes” to acknowledge that you are in an exit row.

Yesterday, the flight attendant didn’t even do that and only made some jokes about the Delta credit card… no wonder most people look at their phones instead of the emergency briefing. :(

3
1
0
0
Open post
Johannes Ullrich (maybe not a bot) @jullrich@infosec.exchange
· 28mo ago

Interested in joining me at #SANSFIRE? We have some great special events planned. Honeypot Fest, ISC Keynote, great classes, and more. I will be teaching SEC522.. see https://www.youtube.com/watch?v=S81x1I6Ti5c

Welcome to SANSFIRE 2024

2
0
2
0
Open post
Johannes Ullrich (maybe not a bot) @jullrich@infosec.exchange
· 22mo ago

@screaminggoat not my find. I just saw the expo I’ll being used.

1
0
0
0
Open post
Johannes Ullrich (maybe not a bot) @jullrich@infosec.exchange
· 47mo ago
Replying to
@sergedroz@infosec.exchange The reason terms like “technical debt” exist is that there are business leaders who think they can get away with it.
3
1
1
0
Open post
Johannes Ullrich (maybe not a bot) @jullrich@infosec.exchange
· 46mo ago
Replying to
@securopean@infosec.exchange Back in the day, 1Password had a brilliant peer-to-peer syncing feature. As long as both devices were connected to the same network, they would sync. No cloud was required. No self-hosted server was required. But that went away when they went subscription. Let's face it: This breach results from technical decisions driven by their business model to sell subscriptions. All password managers offering cloud-syncing are vulnerable to some extend.
1
0
0
0
Open post
Johannes Ullrich (maybe not a bot) @jullrich@infosec.exchange
· 22mo ago

@screaminggoat @buherator@infosec.place you saw current models are affected? Or just that the old one never got fixed.

0
1
0
0
Back
313k7r1n3
Elektrine

Tor hidden service

elekhj7afj4qnrr4yd3bkzslsyo5jgfxw3orgjkhlcxifueodybyiiad.onion

I2P eepsite

j6b6cyk6gjmepjih7jjadxgxvvf3lzzujljuu2v4biemzpg3naya.b32.i2p

Platform

  • Email
  • Chat
  • Timeline
  • VPN
  • DNS

Company

  • About
  • Contact
  • FAQ
  • Lite (no JS)

Legal

  • Terms of Service
  • Privacy Policy
  • Transparency Report
  • Report Abuse
  • Warrant Canary
  • VPN Policy

Support

  • support@elektrine.com
  • Report Security Issue
Mail client setup IMAP mail.elektrine.com:993 POP3 mail.elektrine.com:995 SMTP mail.elektrine.com:465
© 2026 Elektrine. All rights reserved. Server: 16:01:04 UTC