@buherator

89 Followers
50 Following
3.1K Posts
A drunken debugger
ThinkPad keyboards used to be legendary, still using the one on my t410. This shit is from the 3rd island keyboard I had to install on my t460 @[email protected]

EBCDIC is coming back in 2022 :)

RT @[email protected]

I have a feeling @[email protected] 's https://www.mdsec.co.uk/2021/09/nsa-meeting-proposal-for-proxyshell/ about @[email protected] & @[email protected] bugs might still be relevant for #ProxyNotShell - Can't we just bypass the @[email protected] rule `(?=.*autodiscover)(?=.*powershell)` by Request Encoding e.g. https://gist.github.com/irsdl/0f61ed38a4cc7a86b1b48180b6af15ba 🔮 https://twitter.com/wdormann/status/1578751627598888962

NSA Meeting Proposal for ProxyShell - MDSec

As part of Microsoft Exchange April and May 2021 patch, several important vulnerabilities were fixed which could lead to code execution or e-mail hijacking. Any outdated and exposed Exchange server...

MDSec
Thanks @[email protected], I needed to hear this!

Confession: I *hated* this book.

RT @[email protected]

The best time to learn C was 50 years ago. The second best time is now.

Still looking for the original quote saying that real experts can tell what you *don't* have to do. We really should stop wasting each others time.
Still looking for the original quote saying that real experts can tell what you *don't* have to. We really should stop wasting each others time.

Condolences to the fellow who had to manage Azure API permissions for this ;)

RT @[email protected]

Fancy Bear (APT28) abusing Microsoft Graph API for C2 operations and using OneDrive to download Encrypted payload then executed in-memory. I extracted the decrypted payload, details can be seen in below. @[email protected]

Oh, I used computers around that time!

RT @[email protected]

Are you confused about the term "Universal XSS"?

We are looking at the history of these issues from BEFORE they got their modern name! Maybe it helps to understand what it actually is about ;)

Let's go back to ~1998!
https://www.youtube.com/watch?v=gVblb-QhZa4

The Age of Universal XSS

YouTube
Let this be a warning to all unreliable bluetooth devices