Physical copy arrived and the print work is amazing @lcamtuf@infosec.exchange
Taylor Parizo
Threat Hunting and former Threat Intelligence | “Doubt is not a pleasant state, but certainty is a ridiculous one” - Voltaire
New rack arrived today. The audio setup is finally complete.
We got a little excited at the nursery. There’s spinach, bell pepper, jalepeno, cayenne, Carolina reaper, cinnamon basil, tomatoes and tomatillos. Cilantro is in its own pot because we ran out of space. #gardening
MOIST KEYCHAIN!? We cannot be serious 😂
In early February 2026, the Iranian state-aligned cyber espionage group MuddyWater (also tracked as Seedworm, MERCURY, Static Kitten, MOIST KEYCHAIN, and Mango Sandstorm)
https://krypt3ia.wordpress.com/2026/03/20/threat-intelligence-report-mango-sandstorm-indoor-fakeset-activity/
#ThreatIntel
@cR0w@infosec.exchange Or when the vendor feeds push any reference of an RFC1918 address into an indicator list. Yeah lemme enrich 192.168.2.134, see if any adversaries are using that IP and block it. I sure hope it doesn't appear in our logs or we're cooked 🙃🙃🙃
I've been habitually taking my camera with me when I go out so I take more photos. I thought I'd take more at the museum over the weekend but only ended up taking one. Not even mad because this is one of the more creative ones in a long time. Inside looking out a window so I metered the window light rather than the average room light.
#Fujifilm
I used to take apart electronics when I was very young mainly because it was cool to see what was inside these common electronics around the house. Kind of wish I stuck with that curiosity because lately I've been interested in hardware hacking and I realized I'm revisiting past interests from 15+ years ago. This post was very interesting to see what tools exist today but I was curious if anyone has their own recommended list? Anyone else do this as a hobby or career?
#HardwareHacking #IoT
https://www.redfoxsec.com/blog/getting-started-with-hardware-hacking
Someday I'll learn how to use a computer. Fought network issues for an hour until I rage quit and restarted the server. That was it. A restart literally fixed it.
Nice list. Some tools have a lot of feature overlap which make enrichment much easier. I’m in Censys, Validin, and Hunt.io (didn’t see mentioned) almost daily. I need to familiarize myself with using BGP tables more though.
https://github.com/curated-intel/Attribution-to-IP
Internet is down so it’s a perfect time to make use of my record collection
My ideal employer should learn how to accurately list a job posting.
We got a Telnet vulnerability older than some GTA 6 developers.
A reminder to use google ads transparency center for a quick pivot on some phishing domains.
#phishing #clickfix #ThreatIntel
https://sakshamanand.com/blog/clickfix-google-ads-discovery/
This just sounds like a Nuclei vuln scanner with extra steps ✨but make it AI so the industry freaks out✨
https://www.utoronto.ca/news/u-t-researchers-demonstrate-ai-worm-could-target-any-online-device
@cR0w@infosec.exchange Oh for sure I don't think you can vibe code any of this with an ounce of reproducibility. I don't have Cursor to test these prompts so I'm curious how close some of these claims even get.
New post where I explore Zeek, Arkime and JA4+.
#ThreatHunting
https://blog.axelarator.net/we-have-packet-capture-at-home/
So happy to not only see GW3 is happening after 14 years since GW2 released but they also aren't killing any prior live services and will continue to update GW2 even after 3 releases. I created a new character in GW2 last night and bought the first 4 DLCs. I logged countless hours in this game a decade ago and this announcement brought me back.
https://www.guildwars2.com/en/news/future-of-the-guild-wars-franchise/
I'm not pirating, I'm training a local model on my Plex library
