GNU social JP
  • FAQ
  • Login
GNU social JPは日本のGNU socialサーバーです。
Usage/ToS/admin/test/Pleroma FE
  • Public

    • Public
    • Network
    • Groups
    • Featured
    • Popular
    • People

Notices by cR0w (cr0w@infosec.exchange)

  1. Embed this notice
    cR0w (cr0w@infosec.exchange)'s status on Friday, 12-Jun-2026 06:47:29 JST cR0w cR0w
    in reply to
    • Matthew Lyon

    @mattly Did you tell them that it wouldn't be as fun that way or what?

    In conversation about 2 days ago from infosec.exchange permalink
  2. Embed this notice
    cR0w (cr0w@infosec.exchange)'s status on Friday, 12-Jun-2026 06:41:10 JST cR0w cR0w

    Like, have y'all tried just not being so vulnerable? Maybe try that and see if the breaches stop.

    In conversation about 2 days ago from infosec.exchange permalink
  3. Embed this notice
    cR0w (cr0w@infosec.exchange)'s status on Wednesday, 10-Jun-2026 09:48:12 JST cR0w cR0w

    While it's fun making fun of AI failures, be sure to attribute the failures to the orgs and people responsible, especially when talking to people outside of this bubble. We can't let them keep getting away with blaming it all on AI growing pains and not the intentional business decisions that enabled the failures.

    In conversation about 4 days ago from infosec.exchange permalink
  4. Embed this notice
    cR0w (cr0w@infosec.exchange)'s status on Wednesday, 10-Jun-2026 08:02:18 JST cR0w cR0w

    If you have any Palo Alto GlobalProtect portals, maybe take a look for successful authentications from AS215540, especially 92.118.112.230, 89.185.80.144, or 89.185.80.183.

    #GAYINT

    In conversation about 4 days ago from infosec.exchange permalink
  5. Embed this notice
    cR0w (cr0w@infosec.exchange)'s status on Tuesday, 09-Jun-2026 09:40:17 JST cR0w cR0w

    It's not arson, we're vibe hunting for dinner.

    In conversation about 5 days ago from infosec.exchange permalink

    Attachments


    1. https://media.infosec.exchange/infosec.exchange/media_attachments/files/116/717/225/378/254/688/original/e76d45d4030d756e.png
  6. Embed this notice
    cR0w (cr0w@infosec.exchange)'s status on Friday, 05-Jun-2026 06:51:55 JST cR0w cR0w
    • Kevin Beaumont

    @GossiTheDog I already grabbed that but it's funny how quiet it's been since that listing was published. I'm still hammering it to try to get people to give a fuck about VS Code extensions but it isn't working.

    In conversation about 9 days ago from infosec.exchange permalink
  7. Embed this notice
    cR0w (cr0w@infosec.exchange)'s status on Friday, 05-Jun-2026 06:47:34 JST cR0w cR0w

    That whole GitHub breach sure got quiet fast.

    In conversation about 9 days ago from infosec.exchange permalink
  8. Embed this notice
    cR0w (cr0w@infosec.exchange)'s status on Friday, 05-Jun-2026 05:51:29 JST cR0w cR0w

    Reminder: Security companies exist to protect the wealthy. Community protects community.

    In conversation about 9 days ago from infosec.exchange permalink
  9. Embed this notice
    cR0w (cr0w@infosec.exchange)'s status on Friday, 05-Jun-2026 00:55:57 JST cR0w cR0w
    in reply to
    • darf :BlobhajMlem:

    @darfplatypus It's not. I'm a dummy and not blissful.

    In conversation about 9 days ago from infosec.exchange permalink
  10. Embed this notice
    cR0w (cr0w@infosec.exchange)'s status on Friday, 05-Jun-2026 00:55:56 JST cR0w cR0w
    in reply to
    • tehfishman
    • darf :BlobhajMlem:

    @tehfishman @darfplatypus Okay but also see

    In conversation about 9 days ago from infosec.exchange permalink

    Attachments


    1. https://media.infosec.exchange/infosec.exchange/media_attachments/files/116/692/585/830/542/598/original/77f748a637f0db2b.png
  11. Embed this notice
    cR0w (cr0w@infosec.exchange)'s status on Thursday, 04-Jun-2026 23:54:04 JST cR0w cR0w
    in reply to
    • Dr. Christopher Kunz
    • Will Dormann

    @christopherkunz @wdormann Here's a new one to take a look at. I haven't gone through it and can't vouch for its legitimacy, but y'all know what you're doing more than I do anyway: https://github.com/Vanquishermacdetach/CVE-2026-41089-509

    In conversation about 9 days ago from infosec.exchange permalink

    Attachments

    1. Domain not in remote thumbnail source whitelist: opengraph.githubassets.com
      GitHub - Vanquishermacdetach/CVE-2026-41089-509: CVE-2026-41089 PoC — Netlogon CLDAP stack buffer overflow (CVSS 9.8 CRITICAL)
      CVE-2026-41089 PoC — Netlogon CLDAP stack buffer overflow (CVSS 9.8 CRITICAL) - Vanquishermacdetach/CVE-2026-41089-509
  12. Embed this notice
    cR0w (cr0w@infosec.exchange)'s status on Wednesday, 03-Jun-2026 12:52:29 JST cR0w cR0w

    RE: https://infosec.exchange/@cR0w/116682616422398554

    I think what bugs me about this is:

    • They don't care.
    • It's clearly intentional.
    • We all know nothing will change.
    In conversation about 10 days ago from infosec.exchange permalink

    Attachments

    1. No result found on File_thumbnail lookup.
      care.it
      This domain may be for sale!
    2. No result found on File_thumbnail lookup.
      cR0w (@cR0w@infosec.exchange)
      from cR0w
      :dumpster_fire_gif: :blobcatpopcorn: :dumpster_fire_gif: https://www.kb.cert.org/vuls/id/615987 >CVE-2026-10629 Verizon IMS deployments were observed transmitting SIP signaling without integrity protection. REGISTER exchanges lacked Security-Client, Security-Server, and Security-Verify headers, and no ESP-encapsulated SIP traffic was detected during subsequent signaling such as INVITE, MESSAGE, BYE, and UPDATE. This pattern persisted across devices, operating systems, and network conditions, indicating a deliberate network configuration rather than a transient issue. >Per 3GPP TS 33.203 and GSMA IR.92, SIP signaling between the UE and P-CSCF must be protected using IPsec ESP following IMS AKA authentication, with negotiation occurring during registration. The absence of this protection allows attackers to manipulate SIP signaling undetected, enabling call hijacking, spoofing, denial-of-service, and misrouting of emergency calls. >Verizon initially acknowledged the issue and stated that integrity support would be available upon request and extended broadly later in the year. However, the company has since ceased participation in coordination, including follow-up discussions and draft review, and has not provided verifiable evidence of mitigation. As remediation remains unconfirmed, this disclosure proceeds to inform users of an ongoing security exposure. >Independent verification would require observation of successful SIP security negotiation, ESP-protected traffic, or official confirmation from Verizon.
  13. Embed this notice
    cR0w (cr0w@infosec.exchange)'s status on Saturday, 30-May-2026 02:08:34 JST cR0w cR0w

    The amount of bluetooth shit being added to critical infrastructure systems in this the year of our cryptid 2026 is extremely concerning.

    In conversation about 15 days ago from infosec.exchange permalink
  14. Embed this notice
    cR0w (cr0w@infosec.exchange)'s status on Saturday, 23-May-2026 07:55:37 JST cR0w cR0w
    in reply to
    • nyanbinary

    @nyanbinary Ask CatSalad. They figured it out.

    In conversation about 22 days ago from infosec.exchange permalink
  15. Embed this notice
    cR0w (cr0w@infosec.exchange)'s status on Friday, 22-May-2026 04:19:04 JST cR0w cR0w

    EITW ../ in Trend Micro Apex One. :brdAlert:

    https://success.trendmicro.com/en-US/solution/KA-0023430

    CVE-2026-34926

    TrendAI has released updates to Apex One (on-premise), Apex One as a Service and Vision One - Standard Endpoint Protection (SEP) to resolve multiple vulnerabilities.

    In conversation about 23 days ago from infosec.exchange permalink

    Attachments


  16. Embed this notice
    cR0w (cr0w@infosec.exchange)'s status on Thursday, 21-May-2026 00:12:31 JST cR0w cR0w

    Microsoft is aware of a security feature bypass vulnerability in Windows publicly referred to as "YellowKey". The proof of concept for this vulnerability has been made public violating coordinated vulnerability best practices.

    I know people here probably don't want to rehash the disclosure discussion for the 683,547,329th time, but fuck Microsoft and this passive aggressive bullshit trying to frame their own interests as "best practices" in a vuln mitigation publication. Your shit is getting torn apart. Act like you've been there before because we all know you have.

    https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-45585

    In conversation about 24 days ago from infosec.exchange permalink
  17. Embed this notice
    cR0w (cr0w@infosec.exchange)'s status on Wednesday, 20-May-2026 23:55:42 JST cR0w cR0w
    in reply to
    • Soatok Dreamseeker
    • IFIN - The Independent Federated Intelligence Network

    @soatok Hey @ifin what's your email address?

    In conversation about 24 days ago from infosec.exchange permalink
  18. Embed this notice
    cR0w (cr0w@infosec.exchange)'s status on Wednesday, 20-May-2026 06:51:23 JST cR0w cR0w

    https://gptzero.me/news/investigations/ey

    Ernst & Young (EY) Canada published a cybersecurity report on loyalty program safeguards. We chased down every citation. Most were hallucinated.

    Shocked. Shocked! Well, not that shocked.

    In conversation about a month ago from infosec.exchange permalink

    Attachments


  19. Embed this notice
    cR0w (cr0w@infosec.exchange)'s status on Wednesday, 20-May-2026 04:21:10 JST cR0w cR0w

    :exclamation_rainbow: catte.exe has encountered an error

    In conversation about a month ago from infosec.exchange permalink

    Attachments


    1. https://media.infosec.exchange/infosec.exchange/media_attachments/files/116/455/784/197/696/146/original/ce8c4e52fd5b56e4.png
  20. Embed this notice
    cR0w (cr0w@infosec.exchange)'s status on Tuesday, 19-May-2026 06:24:19 JST cR0w cR0w

    RE: https://infosec.exchange/@briankrebs/116597569851456486

    BRB, I need more popcorn for that screenshot alone. :blobcatpopcorn:

    In conversation about a month ago from infosec.exchange permalink

    Attachments

    1. Domain not in remote thumbnail source whitelist: media.infosec.exchange
      BrianKrebs (@briankrebs@infosec.exchange)
      from BrianKrebs
      Attached: 1 image New, by me: CISA Admin Leaked AWS GovCloud Keys on GitHub Until this past weekend, a contractor for the Cybersecurity & Infrastructure Security Agency (CISA) maintained a public GitHub repository that exposed credentials to several highly privileged AWS GovCloud accounts and a large number of internal CISA systems. Security experts said the public archive included files detailing how CISA builds, tests and deploys software internally, and that it represents one of the most egregious government data leaks in recent history. https://krebsonsecurity.com/2026/05/cisa-admin-leaked-aws-govcloud-keys-on-github/
  • Before

User actions

    cR0w

    cR0w

    Analyst

    Tags
    • (None)

    Following 0

      Followers 0

        Groups 0

          Statistics

          User ID
          161036
          Member since
          18 Aug 2023
          Notices
          441
          Daily average
          0

          Feeds

          • Atom
          • Help
          • About
          • FAQ
          • TOS
          • Privacy
          • Source
          • Version
          • Contact

          GNU social JP is a social network, courtesy of GNU social JP管理人. It runs on GNU social, version 2.0.2-dev, available under the GNU Affero General Public License.

          Creative Commons Attribution 3.0 All GNU social JP content and data are available under the Creative Commons Attribution 3.0 license.