wr

@wr@infosec.exchange
121 Followers
425 Following
475 Posts

KREATIVITY FOR KATS

This sequence of pure ASCII characters is detected as a malware by ClamAV only https://www.virustotal.com/gui/file/54cbb91ff49341b40cf59f4e71b179ba14c7e174580df1b6c3bec2199a325539

Profile background picture is a photograph I took from the Sky Garden at 20 Fenchurch Street (the Walkie-Talkie building) in London
Full image https://media.infosec.exchange/infosec.exchange/accounts/headers/109/301/641/361/950/965/original/13ba24fb04112568.jpg

GitHubhttps://wllm-rbnt.github.io
AFL++ v4.33c released! Instrumentation of hidden edges (+5% edges), better syncing, corner case features, bug fixes :-) https://github.com/AFLplusplus/AFLplusplus/releases/tag/v4.33c #afl #fuzzer #fuzzing
Release v4.33c · AFLplusplus/AFLplusplus

Version ++4.33c (release) afl-fuzz: Use AFL_PRELOAD_DISCRIMINATE_FORKSERVER_PARENT if you use AFL_PRELOAD to disable fork, see docs (thanks to @alexandredoyen29) Fix for FAST power schedules (int...

GitHub

🎉 Just dropped a new Kunai release! 🎉

We've been working hard on some exciting new features and performance boosts that we can't wait for you to try out! Here's what's new:

New Features:
🔍 Track io_uring operations with new io_uring_sqe events!
📝 Get more context with parent command line information for execve and execve_script events.
🔎 Get information about matching filtering rules in final events.
🧪 Test your filters with ease using the new test command.

Improvements:
⚡ Experience performance boosts thanks to changes in the event matching engine and code refactoring.

Ready to dive in? Check out the full release notes here: https://github.com/kunai-project/kunai/releases/tag/v0.6.0

Don't hesitate to give Kunai a try and share your feedback! Let's make Kunai even better together!

#Linux #ThreatHunting #ThreatDetection #DFIR #DetectionEngineering #OpenSource

Release v0.6.0 · kunai-project/kunai

Release Notes New Features Enhanced Event Tracking: Added support for io_uring_sqe events, improving the tracking of I/O operations. Parent Command Line Information: Added parent command line info...

GitHub

CIRCL - Virtual Summer School (VSS) 2025

https://www.circl.lu/pub/vss-2025/

CIRCL » CIRCL - Virtual Summer School (VSS) 2025

CIRCL - Virtual Summer School (VSS) 2025

Bienvenue à la DGA https://www.defense.gouv.fr/dga, sponsor bronze de Unlock your Brain, Harden Your System.

Merci de nous permettre de fêter les 10 ans de l'événement !

#UYBHYS25

We had the pleasure of presenting at FIRST.org 2025, showcasing the Vulnerability-Lookup and GCVE.eu initiatives.

Slides are now available.

#cybersecurity #vulnerability #cve #threatintel

@gcve @circl
@firstdotorg

🔗 https://www.vulnerability-lookup.org/2025/06/25/beyond-cve-mastering-the-landscape-with-vulnerability-lookup/

Beyond CVEs: Mastering the Landscape with Vulnerability-Lookup

We had the pleasure of presenting at FIRST.org 2025, showcasing the Vulnerability-Lookup and GCVE.eu initiatives. Although CVEs are a cornerstone of vulnerability management, they often provide an incomplete view of the security landscape. Vulnerability-Lookup, a new open-source project developed by CIRCL, addresses this limitation by offering a comprehensive and enriched vulnerability intelligence platform that goes beyond basic CVE data. The platform aggregates and correlates information from diverse sources, including exploit databases, vulnerability scanners, product advisories, and community contributions. This integration delivers a more complete picture of vulnerability threats. We demonstrate how this enhanced level of detail empowers security professionals to move beyond simple patch management and adopt proactive, actionable, risk-based strategies.

🦩✨ Two countries, one week, and so many amazing humans! 💃

I just flapped my way through BSidesLuxembourg 🇱🇺 and BSidesLeeds 🇬🇧 — and wow, what an incredible adventure! 🎤💻 From hallway hacks to powerhouse talks, from café chats to deep dives into security nerdery, I made a whole flock of new friends (and possibly a few suspicious dance circles...).

Massive shout out to the fabulous teams who pulled it all together with style, sparkle, and serious skill!! 💖 Your hard work makes this community soar. 🛫

And of course, none of this would be possible without my human @rnbwkat who made sure I didn’t get tangled in badge lanyards or accidentally enroll in a #CTF team named “The Beaked Bandits.”

#BSidesLuxembourg #BSidesLeed @bsidesleeds @BSidesLuxembourg #CyberSecurity

SPONSOR WEEK
A big thanks to @passbolt our 2 years in row Platinum sponsor for their fantastic support 🙏🔥

Come to speak to them in Lille next week 🚀

SPONSOR WEEK
Let's start this sponsor week with a big thanks to Gandi (https://www.gandi.net/fr), our 3 years in a row Platinum sponsor 👏👏👏

I'm giving a talk at @passthesaltcon on Thursday next week, where I will show the weird things I find on @lookyloo.

I'm gathering a fresh batch of fun/terrible sites that mostly exist to take your money and/or sell your private information, and life is rough out there. As bad as it is in Europe, you should know that it is So Much Worse anywhere else in the world.

https://cfp.pass-the-salt.org/pts2025/talk/MMAXWW/

The Even Darker Web - Dirty tricks and questionable code choices on some of the world's largest websites. PTS2025

The talk will cover the three categories of websites we encounter: 1. Phishing and scams: make a quick crime buck. 1. Tracking on legitimate websites: build a user profile over time without getting sued to oblivion 3. WAT: probably AI generated and trying to sell you the memecoin of the day We will go through a few remarkable examples captures on Lookyloo, explain what weird or crazy thing happened from the instant the URL starts to load all the way to when the page is rendered. We'll also look at the data gathered along the way, and search in the existing dataset for similar captures.

Today at the @firstdotorg conference, we’re presenting Draugnet, an open-source, lightweight submission tool designed to make sharing cyber threat intelligence easier.

With @treyka @iglocska

@misp

🔗 https://github.com/draugnet/draugnet

#misp #threatintel #anonymity #informationsharing #cybersecurity

GitHub - draugnet/draugnet

Contribute to draugnet/draugnet development by creating an account on GitHub.

GitHub