13reak :fedora:

Incident Responder interested in #DFIR #malware #reverseengineering #pentesting and #purpleteam . #fedora and #opensource fan

#GCFA #GCFR #CARTP

Proud of #EU

2025-12-11

If you need Windows 11 (e.g. in a VM/sandbox) but don't want to create a Microsoft account:

  1. Turn off the Internet
  2. Run setup until Win11 tells you, you need Internet.
  3. Ctrl+ F10 and type in oobe\bypassnro
  4. PC reboots
  5. Do setup again and click the "I don't have Internet" button that now magically appears.

You're welcome!

#windows11 #bypass #MicrosoftAccount

2025-12-09

@chrissanders88

I guess evidence of execution first: amcache, prefetch, shimcache, ... Trying to identify time and user. If it's an admin, I'd ask them (but don't trust their answer entirely).

Then Windows event logs, Hayabusa for low hanging fruits.

Interesting thought maybe: since that's the AD management task, can it manage AD sync/ADFS and affect EntraID or Azure?
(I'm not an admin, so I would have to DuckDuckGo that. A quick search didn't answer that question)

Does anyone here know if dsa.msc can access Azure via AD sync, ADFS, or similar?

PS: and for all the insiders: then I'd join that session of DSA as a thief. 🙃

2025-12-08

@lerxst @johntimaeus @0xabad1dea

Oh man, the graphics are worse than games from 20 years ago.

Ready Player One called and wants its idea back.

13reak :fedora: boosted:
Greenpeace Internationalgreenpeace
2025-12-07

Recycling is a toxic lie.

Big brands and petrochemical corporations keep selling the public a convenient and comforting story to hide the hard truth: they simply have to STOP PRODUCING SO MUCH PLASTIC.


Two panel meme comparing two photos of actor Willem Dafoe. Left panel: Willem Dafoe by a harbour in Wes Anderson’s The Life Aquatic with Steve Zissou, smiling, with the caption “me when I thought recycling would save the world.” Right panel: a black and white image of Dafoe in Robert Eggers’  The Lighthouse, dressed as a grizzled lighthouse keeper, looking tired and serious, with the caption “me after I found out that plastic corporations invented plastic recycling to put the responsibility onto the consumer even though they knew plastic recycling was not chemically or financially feasible, and now I have plastic in my brain, lungs and testicles.”
13reak :fedora: boosted:
2025-12-07

Linus Torvalds calls a spade a spade

2025-12-06

Wero is cool. Give it a try if you want to replace your PayPal (and live in the EU).

#wero #paypalalternative #paypal

2025-12-05

@FritzAdalis

2 gunshot wounds, a firewall directory traversal and a heightened magic circle against evil. But I got out.

2025-12-05

@FritzAdalis

Really quit 🙃

2025-12-05

PS: I quit my job

2025-12-05

Three Days Grace - Get Out Alive

#MetalFriday #finallyweekend

2025-12-03

Finally came around to set up an automatic, encrypted backup on my Linux. When searching online you'll often find that the best option is to store your credentials unencrypted in a plaintext file.

Don't listen to these posts, you can store credentials encrypted in systemd:

systemd.io/CREDENTIALS/

#linux #systemd #credentials #encryption

2025-11-30

@malmoeb

I check the opposite: not . Very often the US is showing up, too!

13reak :fedora: boosted:
Laura "Tegan" Gjovaag ⛈ 🐸realtegan@wandering.shop
2025-11-30

I have no idea where this clip originates, but it's made me laugh repeatedly tonight so I'm sharing it with you in the hopes it will give you a little joy as well.

13reak :fedora: boosted:
2025-11-30

RE: infosec.exchange/@JessTheUnsti

There's an excellent Masto tip by @JessTheUnstill quoted below.

To clarify a bit, you *can* mute conversations on other people's posts *if* the posts appear in your notifications. There are two scenarios where this isn't possible and the tip is needed:

- If you follow someone and they reply to a person you also follow, you will see their entire conversation without notifications. This tip lets you hide it.

- If you're seeing the same post boosted many times, you can use this tip to hide it.

2025-11-30

@EinsTux

Noch viel trauriger finde ich, dass sowas in allen Medien landet. Gibt's nichts anderes zu berichten? Vielleicht Mal was aus Asien, Afrika oder Südamerika?

In Afrika ist ne ganze Stadt überflutet worden. Kein Sterbenswort. Dass in Augsburg ein Poller verschoben wird ist wichtiger... 🫤

2025-11-30

@greenpeace

I got rid of Amazon entirely ~1 year ago and never regretted it. The quality degraded massively over the years and now all the political impact...

There are alternatives that work well on certain products and I get higher quality. Only downside is that you need multiple shops (not really an issue) but I can definitely recommend it!

2025-11-23

RE: toot.cat/@freiksenet/115598578

"The net result is that a huge number of our leaders are essentially stealing money, but they can't withdraw the money directly, so they have to spend the organization's capital on expensive nonsense to purchase status then convert that status into a better salary somewhere else at a really, really bad exchange rate."

I realized that in a lot of companies. Management doesn't have technical skill and doesn't understand what they're selling. So it's impossible to create a good (technical) strategy on how to sell their product. Plus, that would be slow (even though it ensures long-term stability).

The result is "networking", self-promotion, and short-term increases of stock price (e.g. by firing people aka decreasing costs), then jumping to the next company.

#enshittification #bigcorp

13reak :fedora: boosted:
Dr. Christopher Kunzchristopherkunz@chaos.social
2025-11-23

BINGO TIME! With CVE-2025-58034, Fortinet secures the crown in my Insecurity Appliance Bingo. This is technically a "high" severity vuln, but since it's being actively exploited and has landed a spot on CISA KEV, I'm admitting it.

cku.gt/appbingo25

Reaching a bingo took longer than expected, with FortiNet and Ivanti sitting at 5/6 vulns since about July. But now, there is a well-deserved winner.

I'm now taking new vuln class and vendor suggestions for next year's edition.

2025-11-23

@christopherkunz

Really, Cisco had no vuln this year? 😯

The amount of incident response cases I had in the beginning of the year with Cisco ASA firewalls tops the Fortigate ones, I expected more vulns...

That probably meant lots of people didn't patch Cisco vulns from 2024 🤔

13reak :fedora: boosted:
Eugene McParland 🇺🇦EugeneMcParland@mastodon.ie
2025-11-23

Meet the 'moral migrants' relocating from the West to russia in search of sanctuary

by Ivor Bennett, moscow correspondent - Sky News

news.sky.com/story/meet-the-mo

Client Info

Server: https://mastodon.social
Version: 2025.07
Repository: https://github.com/cyevgeniy/lmst