Brian Clark

@deepthoughts10@infosec.exchange
488 Followers
938 Following
3.9K Posts

#InfoSec #Cybersecurity #threatintel and Politics. I try my best.
Also @deepthoughts10@twitter.com

Searchable

Verified by Twittodonhttps://twittodon.com/share.php?t=Deepthoughts10&m=deepthoughts10@infosec.exchange
Find my tootsTootfinder

A busy ~ this week in security ~ just went out, with stories on the U.K. dropping its Apple backdoor demand, the first Scattered Spider hacker getting jail time, Workday becomes the latest tech giant to have its Salesforce database stolen, feds seize a massive DDoS-for-hire botnet, and a lot more.

Sign up for free, or read online: https://this.weekinsecurity.com/this-week-in-security-august-24-2025-edition/

this week in security — august 24 2025 edition

Plus: Age verification is breaking the internet, Lumma stealer bounces back, UK background checker breached, and more.

~this week in security~

Hey internet friends, I somehow landed myself a neat new gig heading up research at @vulncheck (there goes the neighborhood)!

We're doing a webcast next Tuesday, August 26 on 1H 2025 vulnerability and exploitation insights, including:

• 400+ CVEs were exploited for the first time and added to the VulnCheck KEV.
• 32% of VulnCheck KEVs had exploitation evidence on or before the day a CVE was disclosed.
• 180+ CVEs were newly attributed to known threat actors, but the vast majority of these had exploitation evidence (but no public attribution) before 2025.

If that sounds like we're threatening you with a good time, we are! Register here: https://wwv.vulncheck.com/1h-state-of-exploitation-webinar

VulnCheck | Webinar August 2025

For the record: Slavery was absolutely fucking awful
I have always resisted merchandising my...err...brand (ew), but I might just have to have some mugs or t-shirts made with a few of these quotes (someone sent me this and it made me lol)
First they came for the oh shit the fuckers are here for me already that was fast
Life comes at you fast

Heads up, folks:

Michael Kan reports that National Public Data is back under new owners: https://www.pcmag.com/news/site-behind-major-ssn-leak-returns-with-detailed-data-on-millions-how-to

Here is the direct link to their opt-out page instructions:
https://nationalpublicdata.com/optout.html

I had opted out previously after their humongous #databreach last year. When I checked my name now, it did not find my profile, so if you opted out before, you may still be opted out, but better safe than sorry: check and opt-out if needed.

#NPD #NationalPublicData #OptOut #DataBroker #Privacy

New Cyber Analyst course — now on YouTube! In eight episodes, learn key cybersecurity skills, from protocols and data protection to traffic monitoring and analysis, plus essential tools to boost your career: https://youtube.com/playlist?list=PLpPXZRVU-dX2iWgHkVUuZOemepnKVnb5k&si=q4eimAs4pshKOG-f

When you're not sure what's happening, but it looks fun, and you want to be a part of it.

#dog #dogs #puppy #puppies #jumprope #soundon #funny #humor #cute #fun

PSA to people who've been using gzip bombs to deter crawlers: I was wrong. It works.

At least to some extent: I started noticing recently that some of the disguising bots set accept-encoding: identity, likely to avoid those gzip bombs, for every request, including HTML. You made them play catch up! CONGRATS, genuinely!

Sadly, contrary to my previous assumption, a header like this in itself is not a good indicator, because there are legit cases where a real browser will send it: such as when requesting a video, for example.

However, there's no good reason to set identity;q=1, *;q=0.

×
Epic series of tweets by Gavin Newsom. He nailed the style perfectly. Hilarious. 🤣🤣🤣

@carnage4life

🤣 🤣 🤣 🤣 🤣 🤣 🤣 😊

@carnage4life Hes still a total dick but if a total dick wants to nail trump and give him sads Im down.

@carnage4life

He is the perfect "Anti-Trump"

@carnage4life Perfect. With the exception that they are perfect: coherent with no misspellings or grammatical errors.
@carnage4life don’t like the guy (Tony Blair with avocado IMHO) but someone had to do it and if it’s him that’s fine.
@carnage4life I don't always agree with Newsom, but I admire his talent for trolling the MAGA morons.
@carnage4life I hate his transphobic smarmy ass but God damn that is epic
@carnage4life Nice! But what is the actual reform coming? Creative election maps is so skewed. Devide and conquer..
@carnage4life Trump should be in prison. The system let us down.