121 Followers
109 Following
126 Posts
Security Engineer | Clicker of Links | Pusher of Buttons | Cat Dad
:butterflyhttps://bsky.app/profile/cydave.bsky.social
:github:https://github.com/cydave
✍️​https://0dave.ch/

One more side project?  
🥭 🩸 🍯

#mongobleed #CVE-2025-14847

Quick update to ghmlwr.0dave.ch, you can now see their online status! 
ghmlwr | Suspects

New day, new malware on GitHub :(

Looks like the stargazers have increased as well this fine monday. Curious!

#malware #github

Malware on GitHub?!

If only there were bored people on the internet who would report those repositories. Wouldn't that be great.

https://ghmlwr.0dave.ch/

#malware #GitHub #security

Malware on GitHub?!
(yes, there's been malware on GitHub for quite some time now)

https://ghmlwr.0dave.ch/

#malware #GitHub #security

Friends don't let friends get harvested by AI.
Tell your twitter friends to migrate to mastodon.

This shit should NOT be opt-out.

https://x.com/EasyBakedOven/status/1816696187765838146

#twitter

Kimmy Bestie of Bunzy, Co-CEO Execubetch™️ (@EasyBakedOven) on X

Twitter just activated a setting by default for everyone that gives them the right to use your data to train grok. They never announced it. You can disable this using the web but it's hidden. You can't disable using the mobile app Direct link: https://t.co/lvinBlQoHC

X (formerly Twitter)

Horsing around with #confluence plugins as well 🐎  

#security #websecurity #xss #exploit

Horsing around with #jira plugins 🐴 

#security #webappsec #exploit

Building a thing...  🥧

#websecurity #tuwat #golang #go

I'm not saying the same malware pops up left and right on GitHub or anything.
I'm also not saying that I'm rate limited and can't report all of the fun things I find on there.

hxxps://github.com/search?q=in%3Areadme+%22%D0%A0%D0%B0ssw%D0%BErd+fr%D0%BEm+the+archive+is%22

#github #malware #i-tried-to-report-it-but-i-got-rate-limited-so-i-posted-it-here-instead