Fuck Cybersecurity Awareness Month, October is Pitbull Awareness Month.
Remote
Sir cR0w Ravenshire
@cR0w@infosec.exchange
Analyst
0 Followers
389 Following
50 Posts
Joined October 28, 2022
Pronouns:
He / Him
Open post
RE: https://mastodon.social/@campuscodi/117377454167316988
Gonna be fun when Ivanti and Citrix and Palo and Fortinet and Cisco and F5 all keep their gov contacts because they're "PQC Ready" but keep getting popped by URI encoding and BoFs from 20 years ago, not to mention all the TAGs they can't be bothered to boot from their own networks, making that PQC essentially pointless against the majority of threats.
Open quoted post
Quoting
NSA announced it is accelerating it's PQC timeline 👀 👀 👀
All systems must be PQC hardened by the start of next year
All legacy systems that don't support PQC must be phased out by 2030
https://www.nsa.gov/Press-Room/Press-Releases-Statements/Press-Release-View/Article/4615285/nsa-announces-post-quantum-cryptography-measures-to-safeguard-national-security/
Open quoted post 90
0
63
0
Open post
RE: https://flipboard.com/@theseattletimes/tech-news-goc90q5pz/-/a-pHHWW4X9TSm3q4Mxb_c9HA%3Aa%3A2857557016-%2F0
Fuck that guy.
Open quoted post
Quoting
Newsom vetoes measure that would have penalized the use of smart glasses to secretly record people
https://www.seattletimes.com/nation-world/nation/newsom-vetoes-measure-that-would-have-penalized-the-use-of-smart-glasses-to-secretly-record-people/?utm_source=flipboard&utm_medium=activitypub
Posted into Tech News @tech-news-TheSeattleTimes
Open quoted post 49
0
41
0
Open post
Recorded Future lists infosec.exchange as malware.
Malware category: Trojan
Malware family: FakeUpdates
You've made it, @jerry@infosec.exchange . 
1
1
0
0
Open post
Seeing domains get moved from the "Hate Speech" category to the "Parked and For Sale Domains" category is very feelsGoodManDotPng.
1
0
0
0
Open post
I don't know how many of you have public call centers, but you might want to figure out how to deal with AI agents "calling on behalf of" human employees or customers or similar. I've seen it a ton lately and it's creepy as Hell. They're aggressive and weird ( negative ).
49
1
31
0
Open post
Open post
You can always tell when vendors like Palo Alto are getting ready to announce a new product because they start making their existing shit even worse so they can say "that's fixed with this new product."
1
0
0
0
Open post
ANNOUNCING The CrowdStrike Cyber Superintelligence Lab
24
3
12
0
Open post
Go hack some AI SOC shit.
https://github.com/beenuar/AiSOC/security/advisories/GHSA-7q37-2wfw-xrx7
Three functions in services/actions build CrowdStrike Real-Time Response (RTR) command strings by string interpolation, with no escaping, from caller-supplied parameters. The resulting command string is sent to the CrowdStrike Falcon agent and executed on the target endpoint as the EDR agent's privilege (SYSTEM/root).
11
1
5
0
Open post
Yet another sign I need to log off for a while: My truck rolled from 11111 to 11112 miles and I was temporarily confused why it wasn't 100000.
13
1
1
0
Open post
RE: https://cyberplace.social/@GossiTheDog/117343821114841048
I'm not under NDA and don't use Citrix so if anyone wants to send it to me, I'm more than happy to post it for you. Without naming the source, obviously.
Open quoted post
Open quoted post
Quoting
Citrix patches are out on the main support site now.
You will need to check every box after patching for webshells. Citrix are locking the script behind an NDA as apparently they’re from 1996… hopefully one of the NCSCs publishes a script again as the NDA thing is crap.
To be clear patching alone doesn’t remove the backdoors being placed.
12
0
9
0
Open post
bong rip
hold
hold
...
hold
exhale
Fuck a non profit GAYINT should be a church.
11
7
4
0
Open post
RE: https://infosec.exchange/@ajn142/117349300525417657
When the puppygirl polycule finds a new top.
Open quoted post
Quoting
Oh god, I thrunted once and now my coworkers keep asking me to thrunt for them.
Open quoted post 10
1
3
0
Open post
Yet another perfect 10 this morning. This one from a company that knows its way around perfect 10s. 🥳
https://www.cve.org/CVERecord?id=CVE-2026-92931
sev:CRIT 10.0 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
CWE-918: Server-Side Request Forgery in the Progress @progress/sitefinity-nextjs-sdk npm package versions 15.1.8326 through 15.4.8637 may allow a remote attacker to make server-side requests to an attacker-controlled host, potentially exposing sensitive information.
1
0
0
0
Open post
More old vulns finally getting CVEs but a couple perfect 10s in a tool to allow AI agents to make trades on your behalf is just too... expected.
Vibe-Trading is an open-source research workspace for turning finance questions into runnable analysis. It connects natural-language prompts to market-data loaders, strategy generation, backtest engines, reports, exports, and persistent research memory.
It is designed for research, simulation, and backtesting — and, when you choose, autonomous trading through a broker you authorize yourself (e.g. Robinhood Agentic Trading). It holds no funds and never trades outside the limits you set, and you can halt it instantly.
https://github.com/HKUDS/Vibe-Trading/security/advisories/GHSA-jqmf-mx4f-hfr6
https://github.com/HKUDS/Vibe-Trading/security/advisories/GHSA-v2f8-6655-7grj
1
1
1
0
Open post
Open post
Patch your fruity phones, there's another EITW 0day.
https://support.apple.com/en-us/149226
Processing a maliciously crafted file may lead to arbitrary code execution. Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals on versions of iOS before iOS 27.
7
1
5
0
Open post
Of all the bullshit I expected from the current US regime, going from cops threatening dogs with their 9mm to cops threatening dogs with their 9cm was not on that list.
6
1
0
0
Open post
Replying to
@huronbikes@cyberplace.social It's not a security product, it's an AI product. They don't count because they're the future.
3
1
0
0
Open post
Replying to
4
2
0
0
Open post
Replying to
4
1
1
0
Open post
Replying to
re: Lots of CVEs ( Debian )
...
CVE-2026-90286
CVE-2026-90287
CVE-2026-90290
CVE-2026-90291
CVE-2026-90292
CVE-2026-90293
CVE-2026-90294
CVE-2026-90295
CVE-2026-90296
CVE-2026-90297
CVE-2026-90298
CVE-2026-90302
CVE-2026-90303
CVE-2026-90307
CVE-2026-90308
CVE-2026-90309
CVE-2026-90313
CVE-2026-90314
CVE-2026-90316
CVE-2026-90318
CVE-2026-90319
CVE-2026-90322
CVE-2026-90325
CVE-2026-90327
CVE-2026-90329
CVE-2026-90334
CVE-2026-90341
CVE-2026-90344
CVE-2026-90348
CVE-2026-90352
CVE-2026-90353
CVE-2026-90354
CVE-2026-90357
CVE-2026-90358
CVE-2026-90360
CVE-2026-90361
CVE-2026-90362
CVE-2026-90364
CVE-2026-90366
CVE-2026-90368
CVE-2026-90370
CVE-2026-90372
CVE-2026-90373
CVE-2026-90374
CVE-2026-90375
CVE-2026-90378
CVE-2026-90380
CVE-2026-90382
CVE-2026-90383
CVE-2026-90385
CVE-2026-90386
CVE-2026-90387
CVE-2026-90388
CVE-2026-90389
CVE-2026-90390
CVE-2026-90391
CVE-2026-90392
CVE-2026-90393
CVE-2026-90394
CVE-2026-90395
CVE-2026-90397
CVE-2026-90398
CVE-2026-90399
CVE-2026-90400
CVE-2026-90402
CVE-2026-90403
CVE-2026-90404
CVE-2026-90407
CVE-2026-90410
CVE-2026-90411
CVE-2026-90413
CVE-2026-90414
CVE-2026-90415
CVE-2026-90416
CVE-2026-90418
CVE-2026-90419
CVE-2026-90420
CVE-2026-90426
CVE-2026-90428
CVE-2026-90430
CVE-2026-90431
CVE-2026-90433
CVE-2026-90434
CVE-2026-90435
CVE-2026-92476
CVE-2026-92477
CVE-2026-92481
CVE-2026-92484
CVE-2026-92488
CVE-2026-92489
CVE-2026-92490
CVE-2026-92491
CVE-2026-92494
CVE-2026-92495
CVE-2026-92496
CVE-2026-92497
CVE-2026-92498
CVE-2026-92501
CVE-2026-92502
CVE-2026-92504
CVE-2026-92506
CVE-2026-92507
CVE-2026-92508
CVE-2026-92509
CVE-2026-92510
CVE-2026-92511
CVE-2026-92512
CVE-2026-92514
CVE-2026-92515
CVE-2026-92519
CVE-2026-92521
CVE-2026-92522
CVE-2026-92523
CVE-2026-92524
CVE-2026-92525
CVE-2026-93037
CVE-2026-93039
CVE-2026-93040
CVE-2026-93041
CVE-2026-93042
CVE-2026-93045
CVE-2026-93046
CVE-2026-93048
CVE-2026-93049
CVE-2026-93050
CVE-2026-93051
CVE-2026-93052
CVE-2026-93053
CVE-2026-93054
CVE-2026-93055
CVE-2026-93056
CVE-2026-93061
CVE-2026-93062
CVE-2026-93063
CVE-2026-93064
CVE-2026-93065
CVE-2026-93067
CVE-2026-93070
CVE-2026-93071
CVE-2026-93072
CVE-2026-93073
CVE-2026-93082
CVE-2026-93083
CVE-2026-93084
CVE-2026-93085
CVE-2026-93086
CVE-2026-93089
CVE-2026-93090
CVE-2026-93091
CVE-2026-93092
CVE-2026-93093
CVE-2026-93095
CVE-2026-93097
CVE-2026-93098
CVE-2026-93101
CVE-2026-93102
CVE-2026-93103
CVE-2026-93107
CVE-2026-93108
CVE-2026-93109
CVE-2026-93110
CVE-2026-93113
CVE-2026-93114
CVE-2026-93115
CVE-2026-93117
CVE-2026-93118
CVE-2026-93119
CVE-2026-93120
CVE-2026-93121
CVE-2026-93123
CVE-2026-93126
CVE-2026-93128
CVE-2026-93130
CVE-2026-93131
CVE-2026-93132
CVE-2026-93133
CVE-2026-93134
CVE-2026-93136
CVE-2026-93137
CVE-2026-93138
CVE-2026-93140
CVE-2026-93141
CVE-2026-93142
CVE-2026-93145
CVE-2026-93149
CVE-2026-93150
CVE-2026-93151
CVE-2026-93152
CVE-2026-93155
CVE-2026-93156
CVE-2026-93158
CVE-2026-93159
CVE-2026-93160
CVE-2026-93161
CVE-2026-93162
CVE-2026-93163
CVE-2026-93165
CVE-2026-93167
CVE-2026-93170
CVE-2026-93172
CVE-2026-93173
CVE-2026-93174
CVE-2026-93177
CVE-2026-93178
CVE-2026-93182
CVE-2026-93183
CVE-2026-93184
CVE-2026-93185
CVE-2026-93186
CVE-2026-93188
CVE-2026-93189
CVE-2026-93190
CVE-2026-93191
CVE-2026-93192
CVE-2026-93203
CVE-2026-93204
CVE-2026-93205
CVE-2026-93206
CVE-2026-93207
CVE-2026-93208
CVE-2026-93209
CVE-2026-93210
CVE-2026-93211
CVE-2026-93212
CVE-2026-93213
CVE-2026-93214
CVE-2026-93215
CVE-2026-93219
CVE-2026-93222
CVE-2026-93223
CVE-2026-93224
CVE-2026-93226
CVE-2026-93228
CVE-2026-93229
CVE-2026-93234
CVE-2026-93235
CVE-2026-93236
CVE-2026-93238
CVE-2026-93239
CVE-2026-93240
CVE-2026-93242
CVE-2026-93245
CVE-2026-93247
CVE-2026-93250
CVE-2026-93252
CVE-2026-93256
CVE-2026-93259
CVE-2026-93261
CVE-2026-93262
CVE-2026-93264
CVE-2026-93268
CVE-2026-93269
CVE-2026-93271
CVE-2026-93273
CVE-2026-93274
CVE-2026-93275
CVE-2026-93278
CVE-2026-93279
CVE-2026-93280
CVE-2026-93281
CVE-2026-93283
CVE-2026-93286
CVE-2026-93287
CVE-2026-93288
CVE-2026-93781
CVE-2026-93782
CVE-2026-93783
CVE-2026-93784
CVE-2026-93785
CVE-2026-93786
CVE-2026-93787
CVE-2026-93788
CVE-2026-93789
CVE-2026-93790
CVE-2026-93791
CVE-2026-93792
CVE-2026-93793
CVE-2026-93794
CVE-2026-93795
CVE-2026-93796
CVE-2026-93797
CVE-2026-93798
CVE-2026-93799
CVE-2026-93800
CVE-2026-93801
CVE-2026-93802
CVE-2026-93803
CVE-2026-93804
CVE-2026-93805
CVE-2026-93806
CVE-2026-93807
CVE-2026-93808
CVE-2026-93810
CVE-2026-93811
CVE-2026-93812
CVE-2026-93813
CVE-2026-93814
CVE-2026-93815
CVE-2026-93816
CVE-2026-93817
CVE-2026-93818
CVE-2026-93819
CVE-2026-93820
CVE-2026-93821
CVE-2026-93822
CVE-2026-93823
CVE-2026-93824
CVE-2026-93825
CVE-2026-93826
CVE-2026-93827
CVE-2026-93828
CVE-2026-93829
CVE-2026-93830
CVE-2026-97407
CVE-2026-97408
CVE-2026-97409
CVE-2026-97410
CVE-2026-97411
CVE-2026-97412
CVE-2026-97413
CVE-2026-97414
CVE-2026-97415
CVE-2026-97416
CVE-2026-97417
CVE-2026-97418
CVE-2026-97419
CVE-2026-97420
CVE-2026-97421
CVE-2026-97425
CVE-2026-97427
CVE-2026-97428
CVE-2026-97429
CVE-2026-97430
CVE-2026-97434
CVE-2026-97435
CVE-2026-97436
CVE-2026-97437
CVE-2026-97438
CVE-2026-97439
CVE-2026-97440
CVE-2026-97441
CVE-2026-97442
CVE-2026-97443
CVE-2026-97444
CVE-2026-97445
CVE-2026-97446
CVE-2026-97448
CVE-2026-97449
CVE-2026-97450
CVE-2026-97451
CVE-2026-97452
CVE-2026-97453
CVE-2026-97454
CVE-2026-97455
CVE-2026-97456
CVE-2026-97472
CVE-2026-97473
CVE-2026-97475
CVE-2026-97476
CVE-2026-97481
CVE-2026-97482
CVE-2026-97483
CVE-2026-97484
CVE-2026-97485
CVE-2026-97486
CVE-2026-97487
CVE-2026-97488
CVE-2026-97489
CVE-2026-97490
CVE-2026-97491
CVE-2026-97492
CVE-2026-97494
CVE-2026-97495
CVE-2026-97496
CVE-2026-97497
CVE-2026-97500
CVE-2026-97502
CVE-2026-97504
CVE-2026-97505
CVE-2026-97506
CVE-2026-97507
CVE-2026-97508
CVE-2026-97509
CVE-2026-97510
CVE-2026-97512
CVE-2026-97514
CVE-2026-97516
CVE-2026-97517
CVE-2026-97518
CVE-2026-97520
CVE-2026-97521
CVE-2026-97522
CVE-2026-97523
CVE-2026-97524
CVE-2026-97539
CVE-2026-97540
CVE-2026-97541
CVE-2026-97542
CVE-2026-97543
CVE-2026-97544
CVE-2026-97545
CVE-2026-97546
CVE-2026-97547
CVE-2026-97551
CVE-2026-97552
CVE-2026-97555
CVE-2026-97556
CVE-2026-97557
CVE-2026-97560
CVE-2026-97562
CVE-2026-97564
CVE-2026-97568
CVE-2026-97572
CVE-2026-97573
CVE-2026-97575
CVE-2026-97576
CVE-2026-97577
CVE-2026-97578
CVE-2026-97579
CVE-2026-97581
CVE-2026-97582
CVE-2026-97583
CVE-2026-97584
CVE-2026-97587
CVE-2026-97592
CVE-2026-97595
CVE-2026-97596
CVE-2026-97598
CVE-2026-97599
CVE-2026-97600
CVE-2026-97601
CVE-2026-97602
CVE-2026-97604
CVE-2026-97605
CVE-2026-97606
CVE-2026-97607
CVE-2026-97608
CVE-2026-97611
CVE-2026-97612
CVE-2026-97613
CVE-2026-97616
CVE-2026-97617
CVE-2026-97899
CVE-2026-97900
CVE-2026-97902
CVE-2026-97904
CVE-2026-97905
CVE-2026-97907
CVE-2026-97908
CVE-2026-97909
CVE-2026-97910
CVE-2026-97915
CVE-2026-97916
CVE-2026-97917
CVE-2026-97920
CVE-2026-97921
CVE-2026-97922
CVE-2026-97923
CVE-2026-97924
CVE-2026-97925
CVE-2026-97926
CVE-2026-97927
CVE-2026-97929
CVE-2026-97930
CVE-2026-97931
CVE-2026-97936
CVE-2026-97940
CVE-2026-97945
CVE-2026-97948
CVE-2026-97951
CVE-2026-97952
CVE-2026-97953
CVE-2026-97954
CVE-2026-97957
CVE-2026-97958
CVE-2026-97959
CVE-2026-97961
CVE-2026-97963
CVE-2026-97964
CVE-2026-97965
CVE-2026-97966
CVE-2026-97967
CVE-2026-97968
CVE-2026-97969
CVE-2026-97970
CVE-2026-97973
CVE-2026-97976
CVE-2026-97977
CVE-2026-97978
CVE-2026-97979
CVE-2026-97981
CVE-2026-97982
CVE-2026-97984
CVE-2026-97985
CVE-2026-97986
CVE-2026-97987
CVE-2026-97990
CVE-2026-97991
CVE-2026-97992
CVE-2026-97993
CVE-2026-97994
CVE-2026-97995
CVE-2026-97996
CVE-2026-97998
CVE-2026-98001
CVE-2026-98006
CVE-2026-98007
CVE-2026-98008
CVE-2026-98009
CVE-2026-98010
CVE-2026-98011
CVE-2026-98012
CVE-2026-98013
CVE-2026-98014
CVE-2026-98015
CVE-2026-98016
CVE-2026-98017
CVE-2026-98018
CVE-2026-98020
CVE-2026-98021
CVE-2026-98022
CVE-2026-98023
CVE-2026-98024
CVE-2026-98025
CVE-2026-98026
CVE-2026-98027
CVE-2026-98028
CVE-2026-98029
CVE-2026-98030
CVE-2026-98031
CVE-2026-98037
CVE-2026-98039
CVE-2026-98041
CVE-2026-98045
CVE-2026-98046
CVE-2026-98051
CVE-2026-98052
CVE-2026-98054
CVE-2026-98055
CVE-2026-98056
CVE-2026-98057
CVE-2026-98059
CVE-2026-98063
CVE-2026-98064
CVE-2026-98066
CVE-2026-98068
CVE-2026-98069
CVE-2026-98070
CVE-2026-98071
CVE-2026-98072
CVE-2026-98074
CVE-2026-98075
CVE-2026-98076
CVE-2026-98077
CVE-2026-98078
CVE-2026-98080
CVE-2026-98081
CVE-2026-98082
CVE-2026-98083
CVE-2026-98086
CVE-2026-98088
CVE-2026-98089
CVE-2026-98090
CVE-2026-98091
CVE-2026-98092
CVE-2026-98094
CVE-2026-98095
CVE-2026-98096
CVE-2026-98097
CVE-2026-98098
CVE-2026-98102
CVE-2026-98103
CVE-2026-98104
CVE-2026-98105
CVE-2026-98107
CVE-2026-98108
CVE-2026-98109
CVE-2026-98110
CVE-2026-98111
CVE-2026-98113
CVE-2026-98114
CVE-2026-98116
CVE-2026-98121
CVE-2026-98122
CVE-2026-98123
CVE-2026-98126
CVE-2026-98127
CVE-2026-98128
CVE-2026-98129
CVE-2026-98130
CVE-2026-98142
CVE-2026-98151
CVE-2026-98152
CVE-2026-98154
CVE-2026-98155
CVE-2026-98157
CVE-2026-98158
CVE-2026-98159
CVE-2026-98160
3
1
0
0
Open post
Replying to
@theorangetheme@en.osm.town @i0null@infosec.exchange Shhhh shhhh shhhh.... You go sleep now.
3
1
0
0
Open post
sev:CRITs in Dayforce Payroll. Go patch and protect that shit before your pay gets fucked.
https://cert.pl/en/posts/2026/09/CVE-2026-73640/
3
1
2
0
Open post
Replying to
re: non-veg food
@catsalad@infosec.exchange You'll never get people to stop eating crow. 🫦
3
0
0
0
Open post
Replying to
@kajer@infosec.exchange The status page was still up. That means the disruption isn't total.
4
1
0
0
Open post
Replying to on mastodon.social
@Viss@mastodon.social @ai6yr@m.ai6yr.org @kajer@infosec.exchange I expect this one is just another bad Cyber Security something something acronym but I still noped out as soon as I had the screenshot.
2
0
0
0
Open post
Open post
Replying to
@johntimaeus@infosec.exchange If others can launder money that way we might as well use it to help people.
2
2
0
0
Open post
Open post
Replying to
2
0
0
0
Open post
Replying to
re: Lots of CVEs ( Debian )
@Epic_Null@infosec.exchange I think it's more the crybaby Linux kernel nerds publishing a CVE for every bug because they can't be bothered to pull their heads out of Linus' ass long enough to understand risk. Despite bragging about being a secure OS.
1
0
0
0
Open post
Replying to
@theorangetheme@en.osm.town As long as I get paid I don't care what it's called.
1
0
0
0
Open post
Replying to
1
1
0
0
Open post
Replying to on mastodon.social
@hrbrmstr@mastodon.social At least I'm not digging into 0day and making people work over the weekend. 😅
1
0
0
0
Open post
Replying to
@DaveMWilburn@infosec.exchange Yeah. I liked being oblivious of such things but now that I'm looking for work again, I can't hide from it anymore. 
1
0
0
0
Open post
Open post
Replying to
@krypt3ia@infosec.exchange I worked in the food court where I could trade Panda for a milkshake so this isn't news.
0
1
0
0
Open post
Replying to
@krypt3ia@infosec.exchange All their Monsters shows have some that crap, haven't they?
0
1
0
0
Open post
Open post
Replying to
@krypt3ia@infosec.exchange That sucks. Especially for stories so well known and so crazy without changing them.
0
0
0
0
Open post
Replying to
@huronbikes@cyberplace.social I prefer to let my weird brain be the context. But thanks. 
0
0
0
0
