BlackBox (Security) Archiv
Open in Telegram
ππΌ Latest viruses and malware threats ππΌ Latest patches, tips and tricks ππΌ Threats to security/privacy/democracy on the Internet ππΌ Find us on Matrix: https://matrix.to/#/!wNywwUkYshTVAFCAzw:matrix.org
Show more4 567
Subscribers
No data24 hours
-67 days
-5530 days
Data loading in progress...
Similar Channels
Tags Cloud
No data
Any problems? Please refresh the page or contact our support manager.
Incoming and Outgoing Mentions
---
---
---
---
---
---
Attracting Subscribers
February '25
February '25
+3
in 7 channels
January '25
+25
in 6 channels
Get PRO
December '24
+22
in 7 channels
Get PRO
November '24
+37
in 6 channels
Get PRO
October '24
+36
in 7 channels
Get PRO
September '24
+126
in 7 channels
Get PRO
August '24
+166
in 6 channels
Get PRO
July '24
+145
in 24 channels
Get PRO
June '24
+42
in 8 channels
Get PRO
May '24
+69
in 13 channels
Get PRO
April '24
+54
in 7 channels
Get PRO
March '24
+57
in 7 channels
Get PRO
February '24
+57
in 7 channels
Get PRO
January '24
+67
in 4 channels
Get PRO
December '23
+70
in 13 channels
Get PRO
November '23
+75
in 8 channels
Get PRO
October '23
+58
in 11 channels
Get PRO
September '23
+63
in 0 channels
Get PRO
August '23
+50
in 0 channels
Get PRO
July '23
+53
in 0 channels
Get PRO
June '23
+59
in 0 channels
Get PRO
May '23
+82
in 0 channels
Get PRO
April '23
+47
in 0 channels
Get PRO
March '23
+45
in 0 channels
Get PRO
February '23
+49
in 0 channels
Get PRO
January '23
+60
in 0 channels
Get PRO
December '22
+55
in 0 channels
Get PRO
November '22
+55
in 0 channels
Get PRO
October '22
+51
in 0 channels
Get PRO
September '22
+154
in 0 channels
Get PRO
August '22
+62
in 0 channels
Get PRO
July '22
+102
in 0 channels
Get PRO
June '22
+61
in 0 channels
Get PRO
May '22
+99
in 0 channels
Get PRO
April '22
+108
in 0 channels
Get PRO
March '22
+186
in 0 channels
Get PRO
February '22
+77
in 0 channels
Get PRO
January '22
+121
in 0 channels
Get PRO
December '21
+258
in 0 channels
Get PRO
November '21
+188
in 0 channels
Get PRO
October '21
+196
in 0 channels
Get PRO
September '21
+115
in 0 channels
Get PRO
August '21
+207
in 0 channels
Get PRO
July '21
+171
in 0 channels
Get PRO
June '21
+256
in 0 channels
Get PRO
May '21
+177
in 0 channels
Get PRO
April '21
+261
in 0 channels
Get PRO
March '21
+197
in 0 channels
Get PRO
February '21
+278
in 0 channels
Get PRO
January '21
+580
in 0 channels
Get PRO
December '20
+2 281
in 0 channels
| Date | Subscriber Growth | Mentions | Channels | |
| 05 February | 0 | |||
| 04 February | +1 | |||
| 03 February | 0 | |||
| 02 February | +1 | |||
| 01 February | +1 |
Channel Posts
β οΈ The time has come, we need to destroy TΓΈr, join our forces! β οΈ
Law Enforcement Undermines Tor
https://r00t.monster/
#tor #undermining #lawenforcement
π‘@cRyPtHoN_INFOSEC_IT
π‘@cRyPtHoN_INFOSEC_FR
π‘@cRyPtHoN_INFOSEC_EN
π‘@cRyPtHoN_INFOSEC_DE
π‘@BlackBox_Archiv
| 2 | Security research on Private Cloud Compute
Private Cloud Compute (PCC) fulfills computationally intensive requests for Apple Intelligence while providing groundbreaking privacy and security protections β by bringing our industry-leading device security model into the cloud. In our previous post introducing Private Cloud Compute, we explained that to build public trust in the system, we would take the extraordinary step of allowing security and privacy researchers to inspect and verify the end-to-end security and privacy promises of PCC. In the weeks after we announced Apple Intelligence and PCC, we provided third-party auditors and select security researchers early access to the resources we created to enable this inspection, including the PCC Virtual Research Environment (VRE).
Today weβre making these resources publicly available to invite all security and privacy researchers β or anyone with interest and a technical curiosity β to learn more about PCC and perform their own independent verification of our claims. And weβre excited to announce that weβre expanding Apple Security Bounty to include PCC, with significant rewards for reports of issues with our security or privacy claims.
https://security.apple.com/blog/pcc-security-research
#security #research #pcc #vre #apple
π‘@cRyPtHoN_INFOSEC_IT
π‘@cRyPtHoN_INFOSEC_FR
π‘@cRyPtHoN_INFOSEC_EN
π‘@cRyPtHoN_INFOSEC_DE
π‘@BlackBox_Archiv | 1 429 |
| 3 | Ransomware Tool Matrix
This repository contains a list of the tools used by each ransomware or extortion gang.
As defenders, we should take advantage of the fact that many of the tools used by these cybercriminals are often reused.
We can threat hunt, deploy detections and block these tools to deny adversaries the ability to launch intrusions.
https://github.com/BushidoUK/Ransomware-Tool-Matrix/
#ransomware #tools #matrix
π‘@cRyPtHoN_INFOSEC_IT
π‘@cRyPtHoN_INFOSEC_FR
π‘@cRyPtHoN_INFOSEC_EN
π‘@cRyPtHoN_INFOSEC_DE
π‘@BlackBox_Archiv | 1 658 |
| 4 | Harden Windows Security | A New Threat to Malware
Harden Windows Safely, Securely, Only With Official Microsoft Methods.
https://github.com/HotCakeX/Harden-Windows-Security
#windows #security #hardening
π‘@cRyPtHoN_INFOSEC_IT
π‘@cRyPtHoN_INFOSEC_FR
π‘@cRyPtHoN_INFOSEC_EN
π‘@cRyPtHoN_INFOSEC_DE
π‘@BlackBox_Archiv | 1 554 |
| 5 | Is using Signal Desktop considered secure?
https://x.com/i/grok/share/fXnEHsFFRAgEAxfHapnm3KViD
https://x.com/mysk_co/status/1811364535573360787
https://x.com/mysk_co/status/1811163783613862039
https://x.com/mysk_co/status/1811383323677057100
#signal #secure #thinkabout
π‘@cRyPtHoN_INFOSEC_IT
π‘@cRyPtHoN_INFOSEC_FR
π‘@cRyPtHoN_INFOSEC_EN
π‘@cRyPtHoN_INFOSEC_DE
π‘@BlackBox_Archiv | 1 476 |
| 6 | Google Chrome gives all *.google.com sites full access to system / tab CPU usage, GPU usage, and memory usage. It also gives access to detailed processor information, and provides a logging backchannel.
This API is not exposed to other sites - only to *.google.com.
https://x.com/lcasdev/status/1810696257137959018
#google #chrome #extension #privacy
π‘@cRyPtHoN_INFOSEC_IT
π‘@cRyPtHoN_INFOSEC_FR
π‘@cRyPtHoN_INFOSEC_EN
π‘@cRyPtHoN_INFOSEC_DE
π‘@BlackBox_Archiv | 13 751 |
| 7 | Mozilla is an advertising company now
Mozilla has acquired Anonym, a [blah blah blah] raise the bar for the advertising industry [blah blah blah] while delivering effective advertising solutions.
Anonym was founded with two core beliefs: [blah blah blah] and second, that digital advertising is critical for the sustainability of free content, services and experiences.
As we integrate Anonym into the Mozilla family, we are excited about the possibilities this partnership brings. While Anonym will continue to serve its customer base, together, we are poised to lead the industry toward a future where privacy and effective advertising go hand in hand, supporting a free and open internet.
Anonym was founded in 2022 by former Facebook executives Brad Smallwood and Graham Mudd. The company was backed by Griffin Gaming Partners, Norwest Venture Partners, Heracles Capital as well as a number of strategic individual investors.
https://www.jwz.org/blog/2024/06/mozilla-is-an-advertising-company-now/
#ff #firefox #mozilla #browser #anonym #advertising
π‘@cRyPtHoN_INFOSEC_IT
π‘@cRyPtHoN_INFOSEC_FR
π‘@cRyPtHoN_INFOSEC_EN
π‘@cRyPtHoN_INFOSEC_DE
π‘@BlackBox_Archiv | 2 285 |
| 8 | Stealing everything youβve ever typed or viewed on your own Windows PC is now possible with two lines of code β inside the Copilot+ Recall disaster
https://doublepulsar.com/recall-stealing-everything-youve-ever-typed-or-viewed-on-your-own-windows-pc-is-now-possible-da3e12e9465e
#windows #copilot #recall
π‘@cRyPtHoN_INFOSEC_IT
π‘@cRyPtHoN_INFOSEC_FR
π‘@cRyPtHoN_INFOSEC_EN
π‘@cRyPtHoN_INFOSEC_DE
π‘@BlackBox_Archiv | 1 760 |
| 9 | Very big cyber incident playing out at Snowflake, who describe themselves as βAI Data Cloudβ. They have a free trial where anybody can sign up and upload dataβ¦ and they have.
Threat actors have been scraping customer data using a tool called rapeflake, for about a month.
https://cyberplace.social/@GossiTheDog/112536407633131499
#snowflake #cybersecurity #rapeflake #hacked
π‘@cRyPtHoN_INFOSEC_IT
π‘@cRyPtHoN_INFOSEC_FR
π‘@cRyPtHoN_INFOSEC_EN
π‘@cRyPtHoN_INFOSEC_DE
π‘@BlackBox_Archiv | 1 448 |
| 10 | no-defender
A slightly more fun way to disable windows defender.
There's a WSC (Windows Security Center) service in Windows which is used by antiviruses to let Windows know that there's some other antivirus in the hood and it should disable Windows Defender.
This WSC API is undocumented and furthermore requires people to sign an NDA with Microsoft to get its documentation, so I decided to take an interesting approach for such a thing and used an already existing antivirus called Avast. This AV engine includes a so-called wsc_proxy.exe service, which essentially sets up the WSC API for Avast.
With a little bit of reverse engineering, I turned this service into a service that could add my own stuff there.
https://github.com/es3n1n/no-defender
#reverseengineering #windows #defender #microsoft
π‘@cRyPtHoN_INFOSEC_IT
π‘@cRyPtHoN_INFOSEC_FR
π‘@cRyPtHoN_INFOSEC_EN
π‘@cRyPtHoN_INFOSEC_DE
π‘@BlackBox_Archiv | 1 666 |
| 11 | CensysGPT Beta
CensysGPT beta simplifies building queries and empowers users to conduct efficient and effective reconnaissance operations. The tool enables users to quickly and easily gain insights into hosts on the internet, streamlining the process and allowing for more proactive threat hunting and exposure management.
https://gpt.censys.io/
#cybersecurity #infosec #AI #censys #gpt
π‘@cRyPtHoN_INFOSEC_IT
π‘@cRyPtHoN_INFOSEC_FR
π‘@cRyPtHoN_INFOSEC_EN
π‘@cRyPtHoN_INFOSEC_DE
π‘@BlackBox_Archiv | 1 571 |
| 12 | Foxit PDF βFlawed Designβ Exploitation
Check Point Research has identified an unusual pattern of behavior involving PDF exploitation, mainly targeting users of Foxit Reader. This exploit triggers security warnings that could deceive unsuspecting users into executing harmful commands. Check Point Research has observed variants of this exploit being actively utilized in the wild. Its low detection rate is attributed to the prevalent use of Adobe Reader in most sandboxes or antivirus solutions, as Adobe Reader is not susceptible to this specific exploit. Additionally, Check Point Research has observed various exploit builders, ranging from those coded in .NET to those written in Python, being used to deploy this exploit.
https://research.checkpoint.com/2024/foxit-pdf-flawed-design-exploitation/
#exploit #foxit #pdf
π‘@cRyPtHoN_INFOSEC_IT
π‘@cRyPtHoN_INFOSEC_FR
π‘@cRyPtHoN_INFOSEC_EN
π‘@cRyPtHoN_INFOSEC_DE
π‘@BlackBox_Archiv | 1 330 |
| 13 | Tornado Cash Developer Found Guilty of Laundering $1.2 Billion of Crypto
Alexey Pertsev, cofounder of the crypto-anonymizing tool, has been sentenced to more than five years behind bars.
https://www.wired.com/story/tornado-cash-developer-found-guilty-of-laundering-crypto/
#crypto #tornadocash #pertsev
π‘@cRyPtHoN_INFOSEC_IT
π‘@cRyPtHoN_INFOSEC_FR
π‘@cRyPtHoN_INFOSEC_EN
π‘@cRyPtHoN_INFOSEC_DE
π‘@BlackBox_Archiv | 1 096 |
| 14 | Firefox now collects data about search queries
https://blog.mozilla.org/en/products/firefox/firefox-search-update/
#firefox #privacy
π‘@cRyPtHoN_INFOSEC_IT
π‘@cRyPtHoN_INFOSEC_FR
π‘@cRyPtHoN_INFOSEC_EN
π‘@cRyPtHoN_INFOSEC_DE
π‘@BlackBox_Archiv | 1 185 |
| 15 | A Threat Actor Claims Sale of Outlook RCE Exploit 0-Day for $1,700,000
In a concerning development, a threat actor known as βCvspβ has announced the sale of an alleged Outlook Remote Code Execution (RCE) exploit 0-day. This alleged exploit, designed to target various versions of Microsoft Office across both x86 and x64 architectures, poses a significant security threat to users worldwide.
https://dailydarkweb.net/a-threat-actor-claims-sale-of-outlook-rce-exploit-0-day-for-1700000/
#outlook #zeroday #exploit
π‘@cRyPtHoN_INFOSEC_IT
π‘@cRyPtHoN_INFOSEC_FR
π‘@cRyPtHoN_INFOSEC_EN
π‘@cRyPtHoN_INFOSEC_DE
π‘@BlackBox_Archiv | 972 |
| 16 | ShodanX
ShodanX is a versatile information gathering tool that harnesses the power of Shodan's extensive database. it offers multiple modes and flexible queries to extract valuable insights for security assessments, reconnaissance, and threat intelligence. With colorful output and intuitive commands, ShodanX empowers users to efficiently gather and analyze data from Shodan's facets, enhancing their cybersecurity efforts.
https://github.com/RevoltSecurities/ShodanX/tree/main
#shodan #shodanx #pentesting #cybersecurity #infosec
π‘@cRyPtHoN_INFOSEC_IT
π‘@cRyPtHoN_INFOSEC_FR
π‘@cRyPtHoN_INFOSEC_EN
π‘@cRyPtHoN_INFOSEC_DE
π‘@BlackBox_Archiv | 988 |
| 17 | Telegram has launched a pretty intense campaign to malign Signal as insecure, with assistance from Elon Musk. The goal seems to be to get activists to switch away from encrypted Signal to mostly-unencrypted Telegram. I want to talk about this a bit....
https://twitter.com/matthew_d_green/status/1789687898863792453
#signal #telegram #durov #elonmusk
π‘@cRyPtHoN_INFOSEC_IT
π‘@cRyPtHoN_INFOSEC_FR
π‘@cRyPtHoN_INFOSEC_EN
π‘@cRyPtHoN_INFOSEC_DE
π‘@BlackBox_Archiv | 992 |
| 18 | Lethal Injection: How We Hacked Microsoft's Healthcare Chat Bot
We have discovered multiple security vulnerabilities in the Azure Health Bot service, a patient-facing chatbot that handles medical information. The vulnerabilities, if exploited, could allow access to sensitive infrastructure and confidential medical data.
All vulnerabilities have been fixed quickly following our report to Microsoft. Microsoft has not detected any sign of abuse of these vulnerabilities. We want to thank the people from Microsoft for their cooperation in remediating these issues: Dhawal, Kirupa, Gaurav, Madeline, and the engineering team behind the service.
The first vulnerability allowed access to authentication credentials belonging to the customers. With continued research, weβve found vulnerabilities allowing us to take control of a backend server of the service. That server is shared across multiple customers and has access to several databases that contain information belonging to multiple tenants.
https://www.breachproof.net/blog/lethal-injection-how-we-hacked-microsoft-ai-chat-bot
#microsoft #healthcare #ai #chatbot #hacked
π‘@cRyPtHoN_INFOSEC_IT
π‘@cRyPtHoN_INFOSEC_FR
π‘@cRyPtHoN_INFOSEC_EN
π‘@cRyPtHoN_INFOSEC_DE
π‘@BlackBox_Archiv | 823 |
| 19 | Dell admits to data breach: sensitive user data in peril
The American technology giant has notified some of its customers about a data breach that involved sensitive data, including usersβ physical addresses.
Dell Technologies says that itβs currently investigating an incident βinvolving a Dell portal,β which contains a database with customer information related to purchases.
https://cybernews.com/news/dell-data-breach/
#dell #breach
π‘@cRyPtHoN_INFOSEC_IT
π‘@cRyPtHoN_INFOSEC_FR
π‘@cRyPtHoN_INFOSEC_EN
π‘@cRyPtHoN_INFOSEC_DE
π‘@BlackBox_Archiv | 1 030 |
| 20 | 7 Deadly Sins of Distrohopping
What are you doing wrong with distro-hopping? Can you do it better? Yes, you can. Here, we tell you how.
https://itsfoss.com/distrohopping-issues/
#linux #foss #distrohopping
π‘@cRyPtHoN_INFOSEC_IT
π‘@cRyPtHoN_INFOSEC_FR
π‘@cRyPtHoN_INFOSEC_EN
π‘@cRyPtHoN_INFOSEC_DE
π‘@BlackBox_Archiv | 1 161 |
