#LegacySecurity

Pen Test PartnersPTP@infosec.exchange
2025-05-16

🖥️ VNC might be convenient for legacy systems, but it's just as convenient for attackers...
 
Unencrypted traffic makes it easy to intercept credentials. Some setups don’t require a password at all. And even when passwords are used, they’re often weakly stored and easily cracked.
 
Attackers might not even need to log in, just sniff the traffic and capture screens or keystrokes without being noticed.
 
To prove the point, our Kieran built a Python script (VncCrack.py) that cracks VNC passwords in plaintext using intercepted traffic.
 
📌Check it out in action in our latest blog post: pentestpartners.com/security-b

#CyberSecurity #PenTesting #VNC #LegacySecurity #DFIR #NetworkSecurity #CredentialTheft

2025-05-08

Pearson’s hack wasn’t just a data leak—it exposed how outdated systems can backfire big time. How did old tech and missteps lead to a costly wake-up call in cybersecurity?

thedefendopsdiaries.com/pearso

#pearsoncyberattack
#cybersecurity
#legacysecurity
#databreach
#transparency

Client Info

Server: https://mastodon.social
Version: 2025.04
Repository: https://github.com/cyevgeniy/lmst