Ryan Emmons(@ChairNectar) 's Twitter Profileg
Ryan Emmons

@ChairNectar

Hello, thanks for stopping by! This profile is my own, and my tweets don't represent my employer.

https://t.co/D9PuJ9Ur9m

ID:1510058435282444289

calendar_today02-04-2022 00:56:18

14 Tweets

130 Followers

183 Following

CISA Cyber(@CISACyber) 's Twitter Profile Photo

🛡️ , & ASA & FTD users: We added -2024-4040, CVE-2024-20353 & CVE-2024-20359 to our Known Exploited Vulnerabilities Catalog. Visit go.dhs.gov/Z3Q & apply mitigations to protect your org from cyberattacks.

🛡️ #CrushFTP, & #Cisco ASA & FTD users: We added #CVE-2024-4040, CVE-2024-20353 & CVE-2024-20359 to our Known Exploited Vulnerabilities Catalog. Visit go.dhs.gov/Z3Q & apply mitigations to protect your org from cyberattacks. #Cybersecurity #InfoSec
account_circle
Sam Curry(@samwcyo) 's Twitter Profile Photo

“Every time a block is broken in Minecraft versions Beta 1.8 through 1.12.2, the precise coordinates of the dropped item can reveal another player's location.” github.com/spawnmason/ran…

account_circle
Caitlin Condon(@catc0n) 's Twitter Profile Photo

Full Rapid7 analysis of PAN-OS CVE-2024-3400 now available from Stephen Fewer and our stellar new research teammate Ryan Emmons! Spoiler: It's a two-vuln exploit chain. attackerkb.com/topics/SSTk336…

account_circle
John Hammond(@_JohnHammond) 's Twitter Profile Photo

It's a little too early to tell, but a handful of instances that we saw previously responsive & functioning with normal interactivity, now seem to exhibit some different behavior....

I can't say anything for certain, but it makes me a little nervous there might be…

It's a little too early to tell, but a handful of #ScreenConnect instances that we saw previously responsive & functioning with normal interactivity, now seem to exhibit some different behavior.... I can't say anything for certain, but it makes me a little nervous there might be…
account_circle
Ryan Emmons(@ChairNectar) 's Twitter Profile Photo

The recent vulnerability really looks like it's setup to be a bad one. Fingers crossed those behind the scenes keep zipping along to get it patched.

account_circle
Bill Demirkapi(@BillDemirkapi) 's Twitter Profile Photo

Cloudflare's bot detection is cool. Some notes:
1. Using HTTP/2 can increase your 'score' by ~20.
2. 'Anomalies' like lowercase headers are punished.
3. Your client 'JA3' fingerprint can lead to penalties (Python SSL socket == bot).
4. JA3 is also compared against your UA.

Cloudflare's bot detection is cool. Some notes: 1. Using HTTP/2 can increase your 'score' by ~20. 2. 'Anomalies' like lowercase headers are punished. 3. Your client 'JA3' fingerprint can lead to penalties (Python SSL socket == bot). 4. JA3 is also compared against your UA.
account_circle
Alisa Esage Шевченко(@alisaesage) 's Twitter Profile Photo

Low-level JavaScript internals tip: v8 —trace-ignition and —trace-bytecode are awesome flags for debug engine memory corruption issues (both disabled in debug build config by default), to see what JS code is doing when event happens + basically all —trace* flags. Barely needs gdb

account_circle
Ali Alwashali-ng 🚦(@ali_alwashali) 's Twitter Profile Photo

Windows hardening script
gist.github.com/mackwage/08604…

Leverages windows firewall to block certain binaries from making connections
Sets lsass in protected mode
Implementation of ASR rules
Harden office
Disables DNS multicast, smbv1, netbios, powershellv2
Change file associations

account_circle
vx-underground(@vxunderground) 's Twitter Profile Photo

From our headquarters underneath the Vatican, happy Halloween!

Today we release the first edition of our new publication Black Mass.

Special thanks to our Editor in Chief Helen (of Tor) for all of her hard work.

papers.vx-underground.org/papers/Other/V…

From our headquarters underneath the Vatican, happy Halloween! Today we release the first edition of our new publication Black Mass. Special thanks to our Editor in Chief @h313n_0f_t0r for all of her hard work. papers.vx-underground.org/papers/Other/V…
account_circle
Bryce(@bbryce995) 's Twitter Profile Photo

Had a fantastic time in ϻг_ϻε’s Source Incite FSWA class. If anyone is looking for the next step in advanced web app and source code review classes, I highly recommend taking this class!

account_circle