惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

酷 壳 – CoolShell
酷 壳 – CoolShell
G
Google Developers Blog
V
V2EX
美团技术团队
H
Help Net Security
月光博客
月光博客
爱范儿
爱范儿
Engineering at Meta
Engineering at Meta
The Cloudflare Blog
U
Unit 42
大猫的无限游戏
大猫的无限游戏
Recent Announcements
Recent Announcements
A
About on SuperTechFans
博客园 - Franky
The GitHub Blog
The GitHub Blog
N
Netflix TechBlog - Medium
人人都是产品经理
人人都是产品经理
博客园 - 司徒正美
MyScale Blog
MyScale Blog
B
Blog
雷峰网
雷峰网
Y
Y Combinator Blog
云风的 BLOG
云风的 BLOG
T
The Blog of Author Tim Ferriss

Black Hills Information Security, Inc.

Bad Habits: An ANTISOC Operation Same Problem, Different Angles: When Red Team and Blue Team Actually Talk to Each Other How to Identify and Exploit New Vulnerabilities Swapper – A Pure Regex Match/Replace Burp Extension A Practical Guide to BloodHound Data Collection Network Engineering Basics Signed, Trusted, and Abused: Proxy Execution via WebView2 Getting Started In Pentesting – Advice From The BHIS Pentest Lead Cloud Security: Tips and Resources for Securing the Cloud Lessons From A Chatbot Incident How to Lead Effective Tabletops Understanding GRC: How to Navigate Risks and Compliance Standards The “P” in PAM is for Persistence: Linux Persistence Technique Malware Analysis: How to Analyze and Understand Malware OSINT: How to Find, Use, and Control Open-Source Intelligence What to Do with Your First Home Lab When the SOC Goes to Deadwood: A Night to Remember Social Engineering and Microsoft SSPR: The Road to Pwnage is Paved with Good Intentions Common Cyber Threats Finding the Right Penetration Testing Company Deceptive-Auditing: An Active Directory Honeypots Tool The Curious Case of the Comburglar How to Set Smart Goals (That Actually Work For You) Inside the BHIS SOC: A Conversation with Hayden Covington Abusing Delegation with Impacket (Part 3): Resource-Based Constrained Delegation Why You Got Hacked – 2025 Super Edition Abusing Delegation with Impacket (Part 2): Constrained Delegation Abusing Delegation with Impacket (Part 1): Unconstrained Delegation GoSpoof – Turning Attacks into Intel Model Context Protocol (MCP)
Talkin’ About Infosec News – 2/22/2023
BHIS · 2023-02-23 · via Black Hills Information Security, Inc.

, , ,

00:00 – PreShow Banter™ — Pop Tart Pizza
04:15 – BHIS – Talkin’ Bout [infosec] News 2023-02-20
05:39 – Story # 1: Employee data from a major cybersecurity firm posted for sale on a hacker forum
https://twitter.com/FalconFeedsio/status/1626861442786893824
13:43 – Story # 2: FBI is investigating a cybersecurity incident on its network
https://www.bleepingcomputer.com/news/security/godaddy-hackers-stole-source-code-installed-malware-in-multi-year-breach/
16:44 – Story # 3: GoDaddy: Hackers stole source code, installed malware in multi-year breach
https://www.bleepingcomputer.com/news/security/godaddy-hackers-stole-source-code-installed-malware-in-multi-year-breach/
21:44 – Story # 4: Hyundai, Kia pushing updates so you can’t just steal their cars with USB cables
https://arstechnica.com/cars/2023/02/hyundai-kia-pushing-updates-so-you-cant-just-steal-their-cars-with-usb-cables/
30:21 – Story # 5: Eurostar forces ‘password resets’ — then fails and locks users out
https://www.bleepingcomputer.com/news/security/eurostar-forces-password-resets-then-fails-and-locks-users-out/
33:37 – Story # 6: Hacker Uncovers How to Turn Traffic Lights Green With Flipper Zero
https://www.thedrive.com/news/hacker-uncovers-how-to-turn-traffic-lights-green-with-flipper-zero
39:30 – Story # 7: Namecheap denies system breach after email service used to spread phishing scams
https://therecord.media/namecheap-denies-system-breach-after-email-service-used-to-spread-phishing-scams/
43:11 – Story # 8: Official: Twitter will now charge for SMS two-factor authentication
https://www.theverge.com/2023/2/17/23605073/twitter-blue-charge-sms-2fa
48:24 – Story # 9: Software suite of Israeli security firm Cellebrite leaks online
https://www.cybersecurityconnect.com.au/commercial/8607-entire-software-suite-of-israeli-security-firm-cellebrite-leaks-online
51:22 – Story # 10: The US Air Force may have shot down an Amateur Radio Pico Balloon over Canada
https://www.rtl-sdr.com/the-us-airforce-may-have-shot-down-an-amateur-radio-pico-balloon-over-canada/
55:48 – Story # 11: ChatGPT Is Ingesting Corporate Secrets
https://www.schneier.com/blog/archives/2023/02/chatgpt-is-ingesting-corporate-secrets.html



We are self-publishing free Infosec Zines called PROMPT#.

PROMPT# will contain: 

  • Infosec articles 
  • Challenging puzzles 
  • Comic book based on real-life hacking adventures 
  • Coloring contests 
  • Bonus Backdoors & Breaches Consultant Cards (print version only) 
  • Other stuffs 

You can check out current and upcoming issues here: https://www.blackhillsinfosec.com/prompt-zine/