Мир сегодня с "Юрий Подоляка"
Мир сегодня с "Юрий Подоляка"
Труха⚡️Україна
Труха⚡️Україна
Николаевский Ванёк
Николаевский Ванёк
Мир сегодня с "Юрий Подоляка"
Мир сегодня с "Юрий Подоляка"
Труха⚡️Україна
Труха⚡️Україна
Николаевский Ванёк
Николаевский Ванёк
BlackBox (Security) Archiv avatar

BlackBox (Security) Archiv

👉🏼 Latest viruses and malware threats
👉🏼 Latest patches, tips and tricks
👉🏼 Threats to security/privacy/democracy on the Internet
👉🏼 Find us on Matrix: https://matrix.to/#/!wNywwUkYshTVAFCAzw:matrix.org
TGlist 评分
0
0
类型公开
验证
未验证
可信度
不可靠
位置
语言其他
频道创建日期Nov 19, 2018
添加到 TGlist 的日期
Jul 12, 2024
关联群组

"BlackBox (Security) Archiv" 群组最新帖子

⚠️ The time has come, we need to destroy Tør, join our forces! ⚠️

Law Enforcement Undermines Tor


https://r00t.monster/

#tor #undermining #lawenforcement
📡@cRyPtHoN_INFOSEC_IT
📡
@cRyPtHoN_INFOSEC_FR
📡
@cRyPtHoN_INFOSEC_EN
📡
@cRyPtHoN_INFOSEC_DE
📡
@BlackBox_Archiv
Security research on Private Cloud Compute

Private Cloud Compute (PCC) fulfills computationally intensive requests for Apple Intelligence while providing groundbreaking privacy and security protections — by bringing our industry-leading device security model into the cloud. In our previous post introducing Private Cloud Compute, we explained that to build public trust in the system, we would take the extraordinary step of allowing security and privacy researchers to inspect and verify the end-to-end security and privacy promises of PCC. In the weeks after we announced Apple Intelligence and PCC, we provided third-party auditors and select security researchers early access to the resources we created to enable this inspection, including the PCC Virtual Research Environment (VRE).

Today we’re making these resources publicly available to invite all security and privacy researchers — or anyone with interest and a technical curiosity — to learn more about PCC and perform their own independent verification of our claims. And we’re excited to announce that we’re expanding Apple Security Bounty to include PCC, with significant rewards for reports of issues with our security or privacy claims.

https://security.apple.com/blog/pcc-security-research

#security #research #pcc #vre #apple
📡@cRyPtHoN_INFOSEC_IT
📡
@cRyPtHoN_INFOSEC_FR
📡
@cRyPtHoN_INFOSEC_EN
📡
@cRyPtHoN_INFOSEC_DE
📡
@BlackBox_Archiv
Ransomware Tool Matrix

This repository contains a list of the tools used by each ransomware or extortion gang.

As defenders, we should take advantage of the fact that many of the tools used by these cybercriminals are often reused.

We can threat hunt, deploy detections and block these tools to deny adversaries the ability to launch intrusions.

https://github.com/BushidoUK/Ransomware-Tool-Matrix/

#ransomware #tools #matrix
📡@cRyPtHoN_INFOSEC_IT
📡
@cRyPtHoN_INFOSEC_FR
📡
@cRyPtHoN_INFOSEC_EN
📡
@cRyPtHoN_INFOSEC_DE
📡
@BlackBox_Archiv
Harden Windows Security | A New Threat to Malware

Harden Windows Safely, Securely, Only With Official Microsoft Methods.

https://github.com/HotCakeX/Harden-Windows-Security

#windows #security #hardening
📡@cRyPtHoN_INFOSEC_IT
📡
@cRyPtHoN_INFOSEC_FR
📡
@cRyPtHoN_INFOSEC_EN
📡
@cRyPtHoN_INFOSEC_DE
📡
@BlackBox_Archiv
Is using Signal Desktop considered secure?

https://x.com/i/grok/share/fXnEHsFFRAgEAxfHapnm3KViD

https://x.com/mysk_co/status/1811364535573360787

https://x.com/mysk_co/status/1811163783613862039

https://x.com/mysk_co/status/1811383323677057100

#signal #secure #thinkabout
📡@cRyPtHoN_INFOSEC_IT
📡
@cRyPtHoN_INFOSEC_FR
📡
@cRyPtHoN_INFOSEC_EN
📡
@cRyPtHoN_INFOSEC_DE
📡
@BlackBox_Archiv
Google Chrome gives all *.google.com sites full access to system / tab CPU usage, GPU usage, and memory usage. It also gives access to detailed processor information, and provides a logging backchannel.

This API is not exposed to other sites - only to *.google.com.

https://x.com/lcasdev/status/1810696257137959018

#google #chrome #extension #privacy
📡@cRyPtHoN_INFOSEC_IT
📡
@cRyPtHoN_INFOSEC_FR
📡
@cRyPtHoN_INFOSEC_EN
📡
@cRyPtHoN_INFOSEC_DE
📡
@BlackBox_Archiv
Mozilla is an advertising company now

Mozilla has acquired Anonym, a [blah blah blah] raise the bar for the advertising industry [blah blah blah] while delivering effective advertising solutions.

Anonym was founded with two core beliefs: [blah blah blah] and second, that digital advertising is critical for the sustainability of free content, services and experiences.

As we integrate Anonym into the Mozilla family, we are excited about the possibilities this partnership brings. While Anonym will continue to serve its customer base, together, we are poised to lead the industry toward a future where privacy and effective advertising go hand in hand, supporting a free and open internet.

Anonym was founded in 2022 by former Facebook executives Brad Smallwood and Graham Mudd. The company was backed by Griffin Gaming Partners, Norwest Venture Partners, Heracles Capital as well as a number of strategic individual investors.

https://www.jwz.org/blog/2024/06/mozilla-is-an-advertising-company-now/

#ff #firefox #mozilla #browser #anonym #advertising
📡@cRyPtHoN_INFOSEC_IT
📡
@cRyPtHoN_INFOSEC_FR
📡
@cRyPtHoN_INFOSEC_EN
📡
@cRyPtHoN_INFOSEC_DE
📡
@BlackBox_Archiv
Stealing everything you’ve ever typed or viewed on your own Windows PC is now possible with two lines of code — inside the Copilot+ Recall disaster

https://doublepulsar.com/recall-stealing-everything-youve-ever-typed-or-viewed-on-your-own-windows-pc-is-now-possible-da3e12e9465e

#windows #copilot #recall
📡@cRyPtHoN_INFOSEC_IT
📡
@cRyPtHoN_INFOSEC_FR
📡
@cRyPtHoN_INFOSEC_EN
📡
@cRyPtHoN_INFOSEC_DE
📡
@BlackBox_Archiv
Very big cyber incident playing out at Snowflake, who describe themselves as “AI Data Cloud”. They have a free trial where anybody can sign up and upload data… and they have.

Threat actors have been scraping customer data using a tool called rapeflake, for about a month.

https://cyberplace.social/@GossiTheDog/112536407633131499

#snowflake #cybersecurity #rapeflake #hacked
📡@cRyPtHoN_INFOSEC_IT
📡
@cRyPtHoN_INFOSEC_FR
📡
@cRyPtHoN_INFOSEC_EN
📡
@cRyPtHoN_INFOSEC_DE
📡
@BlackBox_Archiv
no-defender

A slightly more fun way to disable windows defender.


There's a WSC (Windows Security Center) service in Windows which is used by antiviruses to let Windows know that there's some other antivirus in the hood and it should disable Windows Defender.

This WSC API is undocumented and furthermore requires people to sign an NDA with Microsoft to get its documentation, so I decided to take an interesting approach for such a thing and used an already existing antivirus called Avast. This AV engine includes a so-called wsc_proxy.exe service, which essentially sets up the WSC API for Avast.

With a little bit of reverse engineering, I turned this service into a service that could add my own stuff there.

https://github.com/es3n1n/no-defender

#reverseengineering #windows #defender #microsoft
📡@cRyPtHoN_INFOSEC_IT
📡
@cRyPtHoN_INFOSEC_FR
📡
@cRyPtHoN_INFOSEC_EN
📡
@cRyPtHoN_INFOSEC_DE
📡
@BlackBox_Archiv
CensysGPT Beta

CensysGPT beta simplifies building queries and empowers users to conduct efficient and effective reconnaissance operations. The tool enables users to quickly and easily gain insights into hosts on the internet, streamlining the process and allowing for more proactive threat hunting and exposure management.

https://gpt.censys.io/

#cybersecurity #infosec #ai #censys #gpt
📡@cRyPtHoN_INFOSEC_IT
📡
@cRyPtHoN_INFOSEC_FR
📡
@cRyPtHoN_INFOSEC_EN
📡
@cRyPtHoN_INFOSEC_DE
📡
@BlackBox_Archiv
Foxit PDF “Flawed Design” Exploitation

Check Point Research has identified an unusual pattern of behavior involving PDF exploitation, mainly targeting users of Foxit Reader. This exploit triggers security warnings that could deceive unsuspecting users into executing harmful commands. Check Point Research has observed variants of this exploit being actively utilized in the wild. Its low detection rate is attributed to the prevalent use of Adobe Reader in most sandboxes or antivirus solutions, as Adobe Reader is not susceptible to this specific exploit. Additionally, Check Point Research has observed various exploit builders, ranging from those coded in .NET to those written in Python, being used to deploy this exploit.

https://research.checkpoint.com/2024/foxit-pdf-flawed-design-exploitation/

#exploit #foxit #pdf
📡@cRyPtHoN_INFOSEC_IT
📡
@cRyPtHoN_INFOSEC_FR
📡
@cRyPtHoN_INFOSEC_EN
📡
@cRyPtHoN_INFOSEC_DE
📡
@BlackBox_Archiv
Tornado Cash Developer Found Guilty of Laundering $1.2 Billion of Crypto

Alexey Pertsev, cofounder of the crypto-anonymizing tool, has been sentenced to more than five years behind bars.


https://www.wired.com/story/tornado-cash-developer-found-guilty-of-laundering-crypto/

#crypto #tornadocash #pertsev
📡@cRyPtHoN_INFOSEC_IT
📡
@cRyPtHoN_INFOSEC_FR
📡
@cRyPtHoN_INFOSEC_EN
📡
@cRyPtHoN_INFOSEC_DE
📡
@BlackBox_Archiv
Firefox now collects data about search queries

https://blog.mozilla.org/en/products/firefox/firefox-search-update/

#firefox #privacy
📡@cRyPtHoN_INFOSEC_IT
📡
@cRyPtHoN_INFOSEC_FR
📡
@cRyPtHoN_INFOSEC_EN
📡
@cRyPtHoN_INFOSEC_DE
📡
@BlackBox_Archiv

记录

23.10.202423:59
4.7K订阅者
31.10.202423:59
3300引用指数
17.05.202509:36
0每帖平均覆盖率
17.05.202509:36
0广告帖子的平均覆盖率
17.05.202509:36
0.00%ER
07.02.202520:40
0.00%ERR
订阅者
引用指数
每篇帖子的浏览量
每个广告帖子的浏览量
ER
ERR
JUL '24OCT '24JAN '25APR '25

BlackBox (Security) Archiv 热门帖子

登录以解锁更多功能。