@7666 I wasn't implying that you were lying. I was asking because I am not an actual CISSP.
Notices by sp00ky cR0w ๐ด (cr0w@infosec.exchange)
-
Embed this notice
sp00ky cR0w ๐ด (cr0w@infosec.exchange)'s status on Wednesday, 15-Oct-2025 02:50:09 JST sp00ky cR0w ๐ด
-
Embed this notice
sp00ky cR0w ๐ด (cr0w@infosec.exchange)'s status on Wednesday, 15-Oct-2025 02:49:35 JST sp00ky cR0w ๐ด
@7666 But are you an actual CISSP?
-
Embed this notice
sp00ky cR0w ๐ด (cr0w@infosec.exchange)'s status on Wednesday, 15-Oct-2025 02:49:20 JST sp00ky cR0w ๐ด
Yeah, I'm a CISSP: Certified Information Security Shit Poster.
-
Embed this notice
sp00ky cR0w ๐ด (cr0w@infosec.exchange)'s status on Saturday, 11-Oct-2025 05:11:15 JST sp00ky cR0w ๐ด
RE: https://infosec.exchange/@da_667/115351550577837727
Phishing testing as it's implemented is checkbox wanker bullshit and I love any time people help other people fuck with it.
-
Embed this notice
sp00ky cR0w ๐ด (cr0w@infosec.exchange)'s status on Friday, 10-Oct-2025 16:13:07 JST sp00ky cR0w ๐ด
In conversation from infosec.exchange permalink Attachments
-
Embed this notice
sp00ky cR0w ๐ด (cr0w@infosec.exchange)'s status on Friday, 10-Oct-2025 16:13:06 JST sp00ky cR0w ๐ด
In conversation from infosec.exchange permalink Attachments
-
Embed this notice
sp00ky cR0w ๐ด (cr0w@infosec.exchange)'s status on Friday, 10-Oct-2025 16:13:06 JST sp00ky cR0w ๐ด
In conversation from infosec.exchange permalink Attachments
-
Embed this notice
sp00ky cR0w ๐ด (cr0w@infosec.exchange)'s status on Wednesday, 08-Oct-2025 13:01:07 JST sp00ky cR0w ๐ด
My partner bought a dog treat bag and it came with a training clicker. I wouldn't even think twice about it if it weren't for this lovely, educational place. But you better believe I'm taking this thing to conferences to see who responds to it.
In conversation from infosec.exchange permalink -
Embed this notice
sp00ky cR0w ๐ด (cr0w@infosec.exchange)'s status on Wednesday, 08-Oct-2025 00:55:57 JST sp00ky cR0w ๐ด
@mattly Feels weirdly similar to another ongoing discourse in tech... ๐ค
In conversation from infosec.exchange permalink -
Embed this notice
sp00ky cR0w ๐ด (cr0w@infosec.exchange)'s status on Wednesday, 08-Oct-2025 00:02:15 JST sp00ky cR0w ๐ด
Example eleventy billion that we could easily get rid of most phishing, and therefore most breaches, simply by going back to plain text email.
In conversation from infosec.exchange permalink -
Embed this notice
sp00ky cR0w ๐ด (cr0w@infosec.exchange)'s status on Tuesday, 07-Oct-2025 03:43:13 JST sp00ky cR0w ๐ด
@mattly :dumpster_fire_gif: :coolhhHHAAAHHH: :dumpster_fire_gif:
In conversation from infosec.exchange permalink -
Embed this notice
sp00ky cR0w ๐ด (cr0w@infosec.exchange)'s status on Tuesday, 07-Oct-2025 03:39:18 JST sp00ky cR0w ๐ด
I'm still waiting to have someone explain to me how the security controls, processes, and procedures are somehow different for emails composed by an LLM vs by a human. I simply don't understand why I'm supposed to give a fuck about AI-assisted phishing.
In conversation from infosec.exchange permalink -
Embed this notice
sp00ky cR0w ๐ด (cr0w@infosec.exchange)'s status on Tuesday, 07-Oct-2025 03:38:43 JST sp00ky cR0w ๐ด
@mattly Oh. Oh no. That sounds like a horrible thing that shouldn't exist.
In conversation from infosec.exchange permalink -
Embed this notice
sp00ky cR0w ๐ด (cr0w@infosec.exchange)'s status on Friday, 03-Oct-2025 02:14:26 JST sp00ky cR0w ๐ด
Fedi in a nutshell.
In conversation from infosec.exchange permalink Attachments
-
Embed this notice
sp00ky cR0w ๐ด (cr0w@infosec.exchange)'s status on Thursday, 02-Oct-2025 03:11:54 JST sp00ky cR0w ๐ด
Not sure how I'll top last year's pumpkin in both spookiness and confusion of the neighbors.
In conversation from infosec.exchange permalink Attachments
-
Embed this notice
sp00ky cR0w ๐ด (cr0w@infosec.exchange)'s status on Sunday, 28-Sep-2025 03:09:45 JST sp00ky cR0w ๐ด
๐ถ The best part of waking up
Is screaming What The Fuck ๐ถIn conversation from infosec.exchange permalink -
Embed this notice
sp00ky cR0w ๐ด (cr0w@infosec.exchange)'s status on Friday, 26-Sep-2025 06:43:10 JST sp00ky cR0w ๐ด
A backdoored MCP? I'm shocked. Shocked! Well, not that shocked.
https://www.koi.security/blog/postmark-mcp-npm-malicious-backdoor-email-theft
Since version 1.0.16, it's been quietly copying every email to the developer's personal server. I'm talking password resets, invoices, internal memos, confidential documents - everything.
In conversation from infosec.exchange permalink -
Embed this notice
sp00ky cR0w ๐ด (cr0w@infosec.exchange)'s status on Friday, 26-Sep-2025 04:43:46 JST sp00ky cR0w ๐ด
RE: https://infosec.exchange/@cR0w/115231558276357271
And now we have a watchTowr write-up. :dumpster_fire_gif: :blobcatpopcorn: :dumpster_fire_gif:
https://labs.watchtowr.com/is-this-bad-this-feels-bad-goanywhere-cve-2025-10035/
I also appreciate them publishing it despite the conclusion. It's insightful despite not reaching their research goal, and they don't make wild speculations like some researchers tend to.
In conversation from infosec.exchange permalink Attachments
-
Embed this notice
sp00ky cR0w ๐ด (cr0w@infosec.exchange)'s status on Thursday, 25-Sep-2025 04:07:44 JST sp00ky cR0w ๐ด
It's not imposter syndrome if your entire field is ineffective.
In conversation from infosec.exchange permalink -
Embed this notice
sp00ky cR0w ๐ด (cr0w@infosec.exchange)'s status on Wednesday, 24-Sep-2025 22:11:00 JST sp00ky cR0w ๐ด
@catsalad Junior analyst halfway through their first Major Incident.
In conversation from infosec.exchange permalink