hi^^ (@collysucker) 's Twitter Profile
hi^^

@collysucker

ID: 49337732

calendar_today21-06-2009 15:16:40

725 Tweet

163 Followers

68 Following

hi^^ (@collysucker) 's Twitter Profile Photo

msrc.microsoft.com/update-guide/v… Microsoft Azure Portal CVE-2025-53792 CVSSv3.1 9.1 Afaik Microsoft claims the vulnerability was not public and no customer was affected. However Microsoft does not answer if they would have to logs/forensics to answer that. #infosec #azure #microsoft

Florian Roth ⚡️ (@cyb3rops) 's Twitter Profile Photo

Citrix forgot to tell you CVE-2025–6543 has been used as a zero day since May 2025 | by Kevin Beaumont doublepulsar.com/citrix-forgot-…

notEricaZelic (@iamericabooted) 's Twitter Profile Photo

Everyone who works in Microsoft Cloud, download this roadmap. Thank Merill Fernando and many others at Microsoft when you get a chance. This is the best work Microsoft has done for security, in my humble opinion. I used to be in the "Zero Trust is just an idea" camp. Microsoft has

Everyone who works in Microsoft Cloud, download this roadmap.  Thank <a href="/merill/">Merill Fernando</a> and many others at Microsoft  when you get a chance.  This is the best work Microsoft has done for security, in my humble opinion.

I used to be in the "Zero Trust is just an idea" camp.  Microsoft has
Florian Roth ⚡️ (@cyb3rops) 's Twitter Profile Photo

“The largest supply chain compromise in npm, Inc. history just happened, packages with a total of 2 billion weekly downloads just got turned malicious” LinkedIn Post linkedin.com/posts/advocate… More info on hacker news news.ycombinator.com/item?id=451696…

“The largest supply chain compromise in npm, Inc. history just happened, packages with a total of 2 billion weekly downloads just got turned malicious”

LinkedIn Post
linkedin.com/posts/advocate…

More info on hacker news 
news.ycombinator.com/item?id=451696…
hi^^ (@collysucker) 's Twitter Profile Photo

jira.atlassian.com/browse/CONFSER… Atlassian Confluence RCE CVE-2025-48734 CVSSv3.1 8.8 Confluence versions 7.19, 8.5-8.9, 9.0-9.5 and 10.0 affected. #infosec #atlassian #confluence

Florian Roth ⚡️ (@cyb3rops) 's Twitter Profile Photo

If you’re looking for ways to reduce the risk from compromised #NPM packages, here’s a solid post from Hacker News. I contains a few practical steps to harden your setup: - Use pnpm. It’s faster, takes less space, and blocks post-install scripts by default. Most of them are

If you’re looking for ways to reduce the risk from compromised #NPM packages, here’s a solid post from Hacker News. I contains a few practical steps to harden your setup:

- Use pnpm. It’s faster, takes less space, and blocks post-install scripts by default. Most of them are
Dirk-jan (@_dirkjan) 's Twitter Profile Photo

I've been researching the Microsoft cloud for almost 7 years now. A few months ago that research resulted in the most impactful vulnerability I will probably ever find: a token validation flaw allowing me to get Global Admin in any Entra ID tenant. Blog: dirkjanm.io/obtaining-glob…

Florian Roth ⚡️ (@cyb3rops) 's Twitter Profile Photo

Cisco just confirmed that multiple zero-days against ASA/FTD VPN web services were exploited in the wild. CISA followed up with an Emergency Directive ordering federal agencies to inventory, patch, or disconnect affected devices. The last 3 Cisco advisories are directly tied to

Cisco just confirmed that multiple zero-days against ASA/FTD VPN web services were exploited in the wild. CISA followed up with an Emergency Directive ordering federal agencies to inventory, patch, or disconnect affected devices.

The last 3 Cisco advisories are directly tied to
CISA Cyber (@cisacyber) 's Twitter Profile Photo

🚨 Nation-state affiliated threat actors have compromised F5’s systems & downloaded portions of its BIG-IP source code—posing serious risk to FCEB agencies. Follow the guidance in ED 26-01 immediately to protect systems from potential exploits. 🔗 go.dhs.gov/isY

Florian Roth ⚡️ (@cyb3rops) 's Twitter Profile Photo

New research shows Credential Guard can still leak creds By abusing Remote Credential Guard, attackers can request NTLMv1 challenge responses and recover NT hashes - even on fully patched Windows 11 with VBS and PPL - Microsoft confirmed and marked it “won’t fix.” - PoC called

New research shows Credential Guard can still leak creds

By abusing Remote Credential Guard, attackers can request NTLMv1 challenge responses and recover NT hashes - even on fully patched Windows 11 with VBS and PPL

- Microsoft confirmed and marked it “won’t fix.”
- PoC called
Azure Support (@azuresupport) 's Twitter Profile Photo

We’re investigating an issue impacting Azure Front Door services. Customers may experience intermittent request failures or latency. Updates will be provided shortly.

hi^^ (@collysucker) 's Twitter Profile Photo

#Azure down „Starting at approximately 16:00 UTC, we began experiencing Azure Front Door issues resulting in a loss of availability of some services. In addition. customers may experience issues accessing the Azure Portal.“ status.cloud.microsoft shows http 503 error

#Azure down

„Starting at approximately 16:00 UTC, we began experiencing Azure Front Door issues resulting in a loss of availability of some services. In addition. customers may experience issues accessing the Azure Portal.“

status.cloud.microsoft shows http 503 error