GNU social JP
  • FAQ
  • Login
GNU social JPは日本のGNU socialサーバーです。
Usage/ToS/admin/test/Pleroma FE
  • Public

    • Public
    • Network
    • Groups
    • Featured
    • Popular
    • People

Notices by John Hammond (johnhammond@infosec.exchange)

  1. Embed this notice
    John Hammond (johnhammond@infosec.exchange)'s status on Thursday, 13-Nov-2025 23:48:40 JST John Hammond John Hammond

    Previously there was a report of threat actors using .URL files pointed at a WebDAV server, which made for, air quotes, "remote code execution", and was tracked as CVE-2025-33053. Turns out, you can do the same thing with a regular Windows Shortcut. Video: https://youtu.be/1Ymnvd1uyzQ

    In conversation about 22 days ago from infosec.exchange permalink

    Attachments


    1. https://media.infosec.exchange/infosec.exchange/media_attachments/files/115/542/751/761/150/441/original/ee626285e645564f.png
    2. microsoft turned me down
      from John Hammond
      https://jh.live/drata || Bring Governance, Risk and Compliance into the modern age with Drata: https://jh.live/dratahttps://research.checkpoint.com/2025/stea...
  2. Embed this notice
    John Hammond (johnhammond@infosec.exchange)'s status on Monday, 17-Feb-2025 23:11:43 JST John Hammond John Hammond

    Quick showcase disabling the Windows+R hotkey -- preventing opening the Run dialog box and helping limit the ClickFix malware attack surface! Though the video is longer than just that... I chat about all the reCAPTCHA craziness and conundrum... 👀🙃 https://youtu.be/Wm0kqSlyEjE

    Big thanks to @AnyDesk for sponsoring this video! Join the fight against scammers alongside AnyDesk, with fast remote desktop software and access from anywhere! https://jh.live/anydesk

    In conversation about 10 months ago from infosec.exchange permalink

    Attachments


    1. https://media.infosec.exchange/infosec.exchange/media_attachments/files/114/019/586/187/331/196/original/66e22314b0eb895e.png
    2. stop falling for this (disable Win+R run dialog)
      https://jh.live/anydesk || Join the fight against scammers alongside AnyDesk, with fast remote desktop software and access from anywhere! https://jh.live/any...
    3. Domain not in remote thumbnail source whitelist: anydesk.com
      Download AnyDesk for Free
      Download AnyDesk for free and access, control and administrate all your devices when working remotely.

User actions

    John Hammond

    John Hammond

    Hacker. Friends. Cybersecurity Researcher.

    Tags
    • (None)

    Following 0

      Followers 0

        Groups 0

          Statistics

          User ID
          133713
          Member since
          2 Jun 2023
          Notices
          2
          Daily average
          0

          Feeds

          • Atom
          • Help
          • About
          • FAQ
          • TOS
          • Privacy
          • Source
          • Version
          • Contact

          GNU social JP is a social network, courtesy of GNU social JP管理人. It runs on GNU social, version 2.0.2-dev, available under the GNU Affero General Public License.

          Creative Commons Attribution 3.0 All GNU social JP content and data are available under the Creative Commons Attribution 3.0 license.