News
- AWSHound: An OpenSource AWS OpenGraph Collector - Cool new tool! SpecterOps
- AI Is Learning to Write Genetic Code - This sort of research is both exciting and terrifying: The two models in question were told to generate complete genomes for a viable bacteriophage—a type of virus able to infect and replicate itself inside bacteria, destroying them from the inside. Using an … Schneier on Security
- ICE Collecting DNA Samples - Do not know what to say here Schneier on Security
- Thousands of Hacked WordPress Sites, One Operation: Unmasking StopAndProtect - Interesting insights 0day Fans
- The Agentic AI threat cluster: Seven incidents, three actors, and what they mean for your exposure - Interesting view on AI hacking Tenable Blog
Techniques and Write-ups
- Tag, You're Managed - Executing Code via Google's Own Signed Installer - Code execution via a Google-signed Chrome MSI. AmberWolf Research
- Death By 20,000 PoCs - VulnCheck’s research team shares GitHub exploit trends and other lessons learned from reviewing thousands of exploit PoCs. VulnCheck Blog
- Defeating AI-Assisted Reverse Engineering (or at Least Trying To) - Is LLM-assisted reverse engineering making obfuscation pointless? We spent a couple of weeks trying to find out, by handing sandboxed agents a series of progressively hardened AArch64 binaries and one prompt: recover the hidden strings inside. This post walks … Quarkslab
New to Me and Miscellaneous
- Connecting the Dots: Securing the Overlooked Corners of the Software Development Lifecycle (SDLC) Supply Chain - Attackers are targeting CI/CD pipelines and developer tools instead of application code, requiring total SDLC visibility and strict security controls The post Connecting the Dots: Securing the Overlooked Corners of the Software Development Lifecycle (SDLC) … Unit 42
- Borrowing Windows Hello keys for authentication and persistence - Most research into Windows Hello focuses on the mechanics in use when authenticating to the local device. As an Entra ID researcher, I’ve always been more interested in how these keys are used to authenticate to the cloud. I’ve given several talks on Windows … dirkjanm.io
Techniques, tools, and exploits linked in this post are not reviewed for quality or safety. Do your own research and testing.