Justin Elze(@HackingLZ) 's Twitter Profileg
Justin Elze

@HackingLZ

Hacker/CTO @TrustedSec | Former Optiv/SecureWorks/Accuvant Labs/Redspin | Race cars

ID:14539104

calendar_today26-04-2008 03:27:52

45,7K Tweets

52,4K Followers

4,9K Following

Sprocket Security(@SprocketSec) 's Twitter Profile Photo

Dive into the technical details of patch diffing CVE-2024-3400 using a Palo Alto NGFW Marketplace AMI.

Learn how Sprocket Security analyzed the vulnerability by mounting snapshots and comparing patched and vulnerable versions.
sprocketsecurity.com/resources/patc…

account_circle
BleepingComputer(@BleepinComputer) 's Twitter Profile Photo

Google patches third exploited Chrome zero-day in a week - Sergiu Gatlan
bleepingcomputer.com/news/google/go…

bleepingcomputer.com/news/google/go…

account_circle
Nathan McNulty(@NathanMcNulty) 's Twitter Profile Photo

The way Microsoft chose to implement this in Conditional Access is fundamentally broken (forcing use of Device platform)

Be sure to read rootsecdev's blog post on how to test and alternative options to secure this better 🔥

account_circle
dreadnode(@dreadnode) 's Twitter Profile Photo

Hack web APIs using agents: github.com/dreadnode/rigg…

Memory, goals, context pinning, actions, etc.

hanspetrich has been hacking on this stuff internally

account_circle
Volexity(@Volexity) 's Twitter Profile Photo

.Volexity shares new observations following its discovery of CVE-2024-3400 + exploitation of the GlobalProtect feature in Palo Alto Networks firewalls and offers guidance for detecting compromise.

More here: volexity.com/blog/2024/05/1…

account_circle
Clint Gibler(@clintgibler) 's Twitter Profile Photo

🔬 XZ Utils Made Me Paranoid

@trustedsec's Kevin Haubris built a scanner to detect backdoors like XZ Utils

It identifies hooks in process memory, and compares them with on-disk binaries

🛠️ VerifyELF - tool repo
github.com/trustedsec/Ver…

trustedsec.com/blog/xz-utils-…

account_circle
Nathan McNulty(@NathanMcNulty) 's Twitter Profile Photo

4 FREE solutions, low complexity, huge security dividends

1) Use Windows LAPS
2) Use Hello for Business
3) Use Windows Firewall, default to Block all inbound (define rules)
4) Use AppLocker to restrict users from running admin tools like PowerShell, WMIC, MSBuild, certutil, etc

account_circle
Alexander Leslie(@aejleslie) 's Twitter Profile Photo

Developing situation…

Absolute *madness* unfolding in the CTI grifter community right now, as social media influencers scramble to find a new source of spooky “dark web” screenshots to spread FUD and farm engagement.

account_circle
Kuba Gretzky(@mrgretzky) 's Twitter Profile Photo

Short demo of how Evilginx Pro uses dynamic JavaScript obfuscation to protect your scripts, injected into phishing pages, from automated pattern recognition. 🙈🐟

Evilginx Pro is still in development and will be available exclusively to BREAKDEV RED members later this year. 🥳

account_circle
Justin Elze(@HackingLZ) 's Twitter Profile Photo

Watching throw back car videos I forgot about how popular this was way back. Now the same age group is debating how safe FSD is 😂

youtu.be/j72KYQcTFzg?si…

account_circle
Caitlin(@TheGamblingBird) 's Twitter Profile Photo

In response to the challenge of becoming a first-time people leader, I've interviewed cybersecurity practitioners I respect on LinkedIn! If you are just starting to manage a team I hope you find these answers from Ryan K as valuable as I did!

linkedin.com/pulse/leadersh…

account_circle
visi stark ( @invisig0th.bsky.social )(@invisig0th) 's Twitter Profile Photo

Can't wait for the marketing folks to realize they can capitalize on dissatisfaction with GenAI content by promoting 'human authored' content as a bespoke counter culture movement 😁

account_circle
Spencer McIntyre(@zeroSteiner) 's Twitter Profile Photo

n00py @Metasploit just added channel binding in github.com/rapid7/metaspl… and signing in github.com/rapid7/metaspl… for both NTLM and Kerberos. The channel binding will go out in this week's release; the signing went out last week.

account_circle