Elektrine
EN
Log in Register
Paige Chat Timeline Communities Gallery Videos Email DNS VPN Uptime Kairo
Back to Timeline
Remote

Johannes Ullrich (maybe not a bot)

@jullrich@infosec.exchange
  • Open on infosec.exchange

Dean of Research, http://SANS.edu College | SANS Internet Storm Center | Intrusion Detection | Web App Security | Connoisseur of fine packets and honeypot logs

0 Followers
0 Following
14 Posts
Joined November 05, 2022
web:
https://isc.sans.edu/handler_list.html#johannes-ullrich
home:
Jacksonville, FL
twitter:
twitter.com/johullrich
github:
https://github.com/jullrich

Posts

Open post
jullrich
Johannes Ullrich (maybe not a bot) @jullrich@infosec.exchange · Nov 18, 2024
Johannes Ullrich (maybe not a bot)
@jullrich@infosec.exchange

Dean of Research, http://SANS.edu College | SANS Internet Storm Center | Intrusion Detection | Web App Security | Connoisseur of fine packets and honeypot logs

infosec.exchange

@screaminggoat @buherator@infosec.place you saw current models are affected? Or just that the old one never got fixed.

infosec.place

infosec.place

0
0
0
0
Open post
jullrich
Johannes Ullrich (maybe not a bot) @jullrich@infosec.exchange · Nov 18, 2024
Johannes Ullrich (maybe not a bot)
@jullrich@infosec.exchange

Dean of Research, http://SANS.edu College | SANS Internet Storm Center | Intrusion Detection | Web App Security | Connoisseur of fine packets and honeypot logs

infosec.exchange

@screaminggoat not my find. I just saw the expo I’ll being used.

1
0
0
0
Open post
jullrich
Johannes Ullrich (maybe not a bot) @jullrich@infosec.exchange · Jun 18, 2024
Johannes Ullrich (maybe not a bot)
@jullrich@infosec.exchange

Dean of Research, http://SANS.edu College | SANS Internet Storm Center | Intrusion Detection | Web App Security | Connoisseur of fine packets and honeypot logs

infosec.exchange

Due to the June 19th holiday and travel, there will be no podcast for Wednesday and Thursday.

5
0
0
0
Open post
jullrich
Johannes Ullrich (maybe not a bot) @jullrich@infosec.exchange · Jun 18, 2024
Johannes Ullrich (maybe not a bot)
@jullrich@infosec.exchange

Dean of Research, http://SANS.edu College | SANS Internet Storm Center | Intrusion Detection | Web App Security | Connoisseur of fine packets and honeypot logs

infosec.exchange

Good weekend with some good dog walks. Need more of it.

9
0
0
0
Open post
jullrich
Johannes Ullrich (maybe not a bot) @jullrich@infosec.exchange · Jun 10, 2024
Johannes Ullrich (maybe not a bot)
@jullrich@infosec.exchange

Dean of Research, http://SANS.edu College | SANS Internet Storm Center | Intrusion Detection | Web App Security | Connoisseur of fine packets and honeypot logs

infosec.exchange

The mini PCs for #SANSFIRE arrived. We will give them away during our honeypot workshop and possibly for other raffles.

infosec.exchange

Infosec Exchange

3
0
0
0
Open post
jullrich
Johannes Ullrich (maybe not a bot) @jullrich@infosec.exchange · Jun 04, 2024
Johannes Ullrich (maybe not a bot)
@jullrich@infosec.exchange

Dean of Research, http://SANS.edu College | SANS Internet Storm Center | Intrusion Detection | Web App Security | Connoisseur of fine packets and honeypot logs

infosec.exchange

June 4th, 1989, Tiananmen Square, Beijing. I always think the "Tank Man" image is too clean and does not show the actual brutality of what happened when a brutal dictatorship felt challenged. hashtag#TiananmenSquareMassacre hashtag#freedom hashtag#tiananmen hashtag#毋忘六四 hashtag#june4

17
0
18
0
Open post
jullrich
Johannes Ullrich (maybe not a bot) @jullrich@infosec.exchange · Jun 03, 2024
Johannes Ullrich (maybe not a bot)
@jullrich@infosec.exchange

Dean of Research, http://SANS.edu College | SANS Internet Storm Center | Intrusion Detection | Web App Security | Connoisseur of fine packets and honeypot logs

infosec.exchange

OS Command Injection. It doesn't get much more severe than that regarding web application/API vulnerabilities. Still, these issues keep coming up in security devices. https://isc.sans.edu/j/osinjection

4
0
2
0
Open post
jullrich
Johannes Ullrich (maybe not a bot) @jullrich@infosec.exchange · May 28, 2024
Johannes Ullrich (maybe not a bot)
@jullrich@infosec.exchange

Dean of Research, http://SANS.edu College | SANS Internet Storm Center | Intrusion Detection | Web App Security | Connoisseur of fine packets and honeypot logs

infosec.exchange

Interested in joining me at #SANSFIRE? We have some great special events planned. Honeypot Fest, ISC Keynote, great classes, and more. I will be teaching SEC522.. see https://www.youtube.com/watch?v=S81x1I6Ti5c

infosec.exchange

Infosec Exchange

2
0
2
0
Open post
jullrich
Johannes Ullrich (maybe not a bot) @jullrich@infosec.exchange · May 16, 2024
Johannes Ullrich (maybe not a bot)
@jullrich@infosec.exchange

Dean of Research, http://SANS.edu College | SANS Internet Storm Center | Intrusion Detection | Web App Security | Connoisseur of fine packets and honeypot logs

infosec.exchange

I have traveled quite a bit over the years (less recently). Usually, I try to get an exit seat. In probably 100+ flights with different airlines, I remember only ONE instance where a flight attendant did a thorough exit row briefing. She explained how to open the door, what to watch out for, to wait for signals from the cabin crew before opening, and a couple of other things.

Usually, they do the “verbal yes” to acknowledge that you are in an exit row.

Yesterday, the flight attendant didn’t even do that and only made some jokes about the Delta credit card… no wonder most people look at their phones instead of the emergency briefing. :(

3
0
0
0
Open post
jullrich
Johannes Ullrich (maybe not a bot) @jullrich@infosec.exchange · Mar 29, 2024
Johannes Ullrich (maybe not a bot)
@jullrich@infosec.exchange

Dean of Research, http://SANS.edu College | SANS Internet Storm Center | Intrusion Detection | Web App Security | Connoisseur of fine packets and honeypot logs

infosec.exchange

A quick note about the xz-utils backdoor:
1 - luckily, no mainstream distros are affected.
2 - most run xz-utils 5.2/5.4. 5.6 is vulnerable
3 - quick check: `xz -V`
4 - This makes you wonder what else is happening. Thanks to people who paid attention
https://www.cisa.gov/news-events/alerts/2024/03/29/reported-supply-chain-compromise-affecting-xz-utils-data-compression-library-cve-2024-3094

16
3
15
0
Open post
jullrich
Johannes Ullrich (maybe not a bot) @jullrich@infosec.exchange · Mar 21, 2024
Johannes Ullrich (maybe not a bot)
@jullrich@infosec.exchange

Dean of Research, http://SANS.edu College | SANS Internet Storm Center | Intrusion Detection | Web App Security | Connoisseur of fine packets and honeypot logs

infosec.exchange
18
0
4
0
Open post
jullrich
Johannes Ullrich (maybe not a bot) @jullrich@infosec.exchange · Dec 26, 2022
Johannes Ullrich (maybe not a bot)
@jullrich@infosec.exchange

Dean of Research, http://SANS.edu College | SANS Internet Storm Center | Intrusion Detection | Web App Security | Connoisseur of fine packets and honeypot logs

infosec.exchange
Replying to @securopean@infosec.exchange
@securopean@infosec.exchange Back in the day, 1Password had a brilliant peer-to-peer syncing feature. As long as both devices were connected to the same network, they would sync. No cloud was required. No self-hosted server was required. But that went away when they went subscription. Let's face it: This breach results from technical decisions driven by their business model to sell subscriptions. All password managers offering cloud-syncing are vulnerable to some extend.
1
0
0
0
Open post
jullrich
Johannes Ullrich (maybe not a bot) @jullrich@infosec.exchange · Nov 20, 2022
Johannes Ullrich (maybe not a bot)
@jullrich@infosec.exchange

Dean of Research, http://SANS.edu College | SANS Internet Storm Center | Intrusion Detection | Web App Security | Connoisseur of fine packets and honeypot logs

infosec.exchange
Replying to @sergedroz@infosec.exchange
@sergedroz@infosec.exchange The reason terms like “technical debt” exist is that there are business leaders who think they can get away with it.
3
1
1
0
Open post
jullrich
Johannes Ullrich (maybe not a bot) @jullrich@infosec.exchange · Nov 20, 2022
Johannes Ullrich (maybe not a bot)
@jullrich@infosec.exchange

Dean of Research, http://SANS.edu College | SANS Internet Storm Center | Intrusion Detection | Web App Security | Connoisseur of fine packets and honeypot logs

infosec.exchange

Each day Twitter remains running, CEOs worldwide will ask more questions about why they are paying so much for their IT staff. Make sure you are not paying for some executive’s bonus with your mental/physical health.

114
10
60
0

Remote instance

infosec.exchange
Open on original server

Media

313k7r1n3
Elektrine

Tor hidden service

elekhj7afj4qnrr4yd3bkzslsyo5jgfxw3orgjkhlcxifueodybyiiad.onion

Platform

  • Email
  • Chat
  • Timeline
  • Communities
  • VPN
  • DNS

Company

  • About
  • Contact
  • FAQ

Legal

  • Terms of Service
  • Privacy Policy
  • Warrant Canary
  • Lite (no JS)
  • VPN Policy
  • Source code

Support

  • support@elektrine.com
  • Report Security Issue
Mail client setup IMAP mail.elektrine.com:993 POP3 mail.elektrine.com:995 SMTP mail.elektrine.com:465
© 2026 Elektrine. All rights reserved. Server: 20:07:19 UTC