da_667

Senior Security Researcher, Proofpoint Emerging Threats.

I've been doing this cybersecurity thing for the better part of a decade now. Probably longer than that. I'm starting to forget. Time is relative, but it surely isn't kind to my memory.

I'd like to think I do cybersecurity well, but blue teamers collectively get told they're doing it wrong constantly. So maybe I just failed forward throughout my career.

Oh, I wrote a book. Its a good framework for setting up a virtual machine lab. See my bookmarked toots if you're curious.

Work-Related hashtags:
#Iocs #ThreatIntel #DFIR #Malware #NSM #suricata #snort #BEC #phishing #APT #ThreatDetection

Hobbies:
#VideoGames #XCOM2 #Minecraft #Synthetik #Fallout #Skyrim #Anime #Manga #Adventure #Fantasy #Isekai #HomeImprovement #WoodWorking #MetalWorking #HomeLab

da_667 boosted:
VissViss
2025-05-04
2025-05-04

@FritzAdalis @Viss

Jen drops the mic
Chris pics it back up
Gives concentration camp enjoyer the middle finger
Says "sucks to suck" and mic drops.

2025-05-04

@Viss Literally could have had Jen Easterly come up on stage say "I don't have a job now, good luck" and mic drop.

2025-05-04

@Viss see also: anyone associated with organizing RSAC. I just don't fucking understand how or why you would want the concentration camp enjoyer to keynote your event, when literally anyone in charge of the CVE program, or from CISA themselves would've been an absolute fucking banger instead.

da_667 boosted:
VissViss
2025-05-04

ᴶᵁˢᵀ ᴵᴺ ᶜᴬˢᴱ

2025-05-04

This did numbers while I was out today. Thank you for reading. I... didn't originally have a goal when I set out to write this.

But then the more I thought about it, the more I'm realizing there's no cavalry coming. All we have is each other, and that even the tiniest positive actions towards one another and our community as a whole accumulates.

But even if you don't have spoons, energy, attention span, or money to do anything, that's fine. those positive actions apply to you as well. Self-care is important. You are your own biggest advocate in that regard.

I also just wanted to remind everyone, these people in charge unapologizingly, remorselessly fucking awful skinwalkers, and that you have no obligation to make nice with supporters of this administration in any way. If they want a sympathetic ear, tell them to fuck off to any one of the multitudes of conservative hugboxes out there.

2025-05-03

@Viss yeah, its unbelieveable, the suspension of disbelief over how much of objectively awful person trump is, because he promised a stronger economy.

The only advice I can really offer is to just not be like them. We can differ ourselves by caring for one another. To quote a famous rapper, in that single aspect "They not like us"

2025-05-03

I wrote a thing. Its political. This is your only warning.

"Be the heretic that orange nazi gasbag believes you can be"

totes-legit-notmalware.site/ho

da_667 boosted:
2025-05-03

Want to see something cursed?

It's the Linux kernel 4.19 building *natively* under Windows XP under Services for UNIX. The amount of effort to get this far was immense ...

EDIT: Follow the adventure at YouTube.com/c/NCommander

2025-05-02

doing something I should've done a while ago. Organizing my connection profiles for all my lab hosts in mremoteng. I guess you can call this asset management right now.

da_667 boosted:
2025-05-02

I saw a dude driving a van with a hawk tuah sticker on it and wondered if he was dumb enough to buy the shitcoin. As we passed him I saw a bored ape sticker on his windscreen, so I guess that's a yes.

2025-05-02

@reverseics nowadays? Quad9, and internal DNS server with pfblockerng.

2025-05-02

@reverseics 8.8.8.8 and 4.2.2.2, soon as I learned how to change away from comcast's DNS because it was both, unreliable, and configured to inject ads on NXDOMAINS.

da_667 boosted:
2025-05-02
2025-05-02

@reverseics aye, it has. When it rains it fuckin' pours. Hope our weekends are nicer.

2025-05-02

@reverseics took a moment, but I gotchu.

da_667 boosted:
Human GhostwriterHG@beige.party
2025-05-02

A server at a restaurant just called me "kind sir." Bitch, please.

2025-05-02

@cR0w :ablobcatblink:

2025-05-02

I'm going to make python rule template tool to generate suricata rules from .*?(?:tenda|link) soho devices.

give me one or more URI paths or endpoints or http client body parameters. tell me which one is vulnerable, and whether its BOF, dir traversal or command injection.

and - oh fuck I'm going to have to write this now.

da_667 boosted:
Zack Whittakerzackwhittaker
2025-05-02

After hearing about Raw's planned wearable (which sounds rife for abuse), I tested the Raw dating app using dummy data and a network traffic analysis tool (Burp Suite, ftw). Within a few minutes, I found Raw's servers were publicly exposing users' profile data — and granular location — to the web.

After contacting the Raw's co-founder, the bug was fixed. When I asked, the company confirmed it hadn't asked for a third-party security audit of its app.

techcrunch.com/2025/05/02/dati

Client Info

Server: https://mastodon.social
Version: 2025.04
Repository: https://github.com/cyevgeniy/lmst