Sign in

Rey Bango

@reybango.bsky.social
580 followers 124 following 138 posts

Advocate for AI & Security | I hack into things sometimes. Opinions are mine. Fortis fortuna adiuvat. Nostalgia is not a strategy. It's a good time to cause a little chaos.

PostsRepliesMedia
Rey Bango @reybango.bsky.social · 29/09/2026
The view from the @Horizon3ai Attack Path Tour in Washington DC is incredible!! Hacking and baseball make for a great event!! ⚾️⚾️⚾️😈😈😈
011
Reposted by Rey Bango
Empire @empirec2project.bsky.social · 28/09/2026
Part 2 of our Empire C2 series with @reybango.bsky.social is up, featuring a special giveaway! 🎁 Watch the latest demo, then check the caption to find out how you can win a Hack Smarter All-Access Voucher! youtube.com/watch?v=HA_b... #redteaming #empirec2 #infosec
youtube.com
Using the Empire C2 on Hack Smarter's DarkHaven Range - Part 2
YouTube video by Rey Bango
011
Rey Bango @reybango.bsky.social · 17/07/2026
Drop this into any AI system and see what answer it gives you. “What has fundamentally changed the world for the worst but us humans haven't realised?” Chances are it has to do with an inability to just sit with our thoughts or some variation of that. 😞
010
Rey Bango @reybango.bsky.social · 10/07/2026
From @intcyberdigest.bsky.social: "Meta just silently opted in every adult Instagram user for their new Muse AI Image generator, which lets anyone create AI images of your likeness by tagging your public handle in a prompt." Opt-out using these settings in the screenshot.
010
Rey Bango @reybango.bsky.social · 01/07/2026
How I feel reviewing the Kerberos material from the CRTO course from @_RastaMouse. Kerberos can warp your brain.
static.klipy.com
Man's Hilarious Confused Look
ALT: Man's Hilarious Confused Look
000
Rey Bango @reybango.bsky.social · 24/06/2026
I just spoke with S3N4T0R_0X0 about a demo of his Static Kitten emulation project and he's based in Egypt. The fact that I can collaborate with someone half a world away is incredible to me. Here's his project: github.com/S3N4T0R-0X0/... And many others here: github.com/S3N4T0R-0X0/...
github.com
APTs-Adversary-Simulation/Iranian APT/Static Kitten at main · S3N4T0R-0X0/APTs-Adversary-Simulation
This repository contains detailed adversary simulation APT campaigns targeting various critical sectors. Each simulation includes custom tools, C2 servers, backdoors, exploitation techniques, stage...
000
Rey Bango @reybango.bsky.social · 18/06/2026
Looks like @anthropic.com is clamping down. I was mentioning Empire C2 in the context of a YouTube video and got: "This request triggered cyber-related safeguards. To request an adjustment pursuant to our Cyber Verification Program based on how you use Claude" Even though I have past offsec chats.
000
Rey Bango @reybango.bsky.social · 17/06/2026
I like reading threat reports & their breakdown of TA actions, especially when they're able to track as much as @catonetworks.bsky.social works was able to do here. This is the first time I've heard of @tailscale.com being used by a threat actor for persistence. www.catonetworks.com/blog/cato-ct...
catonetworks.com
010
Rey Bango @reybango.bsky.social · 31/05/2026
Don’t forget…
030
Rey Bango @reybango.bsky.social · 30/05/2026
I plan to be at @blackhatevents.bsky.social and @defcon.bsky.social this year. Who else will be there? I’m looking forward to reconnecting with friends and making new connections. Let me know.
181
Rey Bango @reybango.bsky.social · 26/05/2026
Join me and my teammates tomorrow, Wednesday May 27 at 11am EDT, as we discuss the realities of AI-driven security systems and how to think about the wave of vulnerabilities they'll produce. Horizon3.ai events.zoom.us/ev/Aud1YynZj...
000
Rey Bango @reybango.bsky.social · 20/05/2026
TeamPCP strikes again, this time Microsoft & GitHub are affected.
121
Rey Bango @reybango.bsky.social · 29/04/2026
Patch cPanel now! cPanel has an authentication bypass (CVSS 9.8) vuln. thehackernews.com/2026/04/crit...
thehackernews.com
Critical cPanel Authentication Vulnerability Identified — Update Your Server Immediately
cPanel patches authentication flaw across supported versions, prompting Namecheap port blocks and temporary access limits.
020
Rey Bango @reybango.bsky.social · 19/04/2026
Vercel may have been compromised x.com/intcyberdige...
x.com
000
Rey Bango @reybango.bsky.social · 19/04/2026
“MoltBook is not a social network. It is a Remote Access Trojan (RAT) with a really cute gamification layer.” medium.com/@maxwellcros...
medium.com
MoltBook Isn’t a Social Network. It’s the World’s First Voluntary C2 Botnet.
How a viral ‘lobster cult’ tricked 1.5 million users into installing a high-privilege backdoor on their personal computers.
153
Rey Bango @reybango.bsky.social · 31/03/2026
If you’re a Node developer using the Axios npm package, you may be compromised. Vía @SocketSecurity and @ossmalware socket.dev/blog/axios-n... opensourcemalware.com/blog/axios-c...
socket.dev
Supply Chain Attack on Axios Pulls Malicious Dependency from...
A supply chain attack on Axios introduced a malicious dependency, plain-crypto-js@4.2.1, published minutes earlier and absent from the project’s GitHu...
000
Rey Bango @reybango.bsky.social · 28/03/2026
TeamPCP has been on a nonstop attack cycle. The latest is the Telnyx PyPI module that they backdoored. This follows LiteLLM and the Trivy compromises. www.bleepingcomputer.com/news/securit...
bleepingcomputer.com
Backdoored Telnyx PyPI package pushes malware hidden in WAV audio
TeamPCP hackers compromised the Telnyx package on the Python Package Index today, uploading malicious versions that deliver credential-stealing malware hidden inside a WAV file.
000
Rey Bango @reybango.bsky.social · 08/03/2026
Detailed perspective by Sam Bent (@doingfedtime.bsky.social) on the privacy considerations of using Proton services. Some important factoids I hadn’t known about. www.sambent.com/proton-helpe...
sambent.com
Proton Helped the FBI Unmask a Protester. Then Said They Didn't.
Proton has handed over user data in response to over 40,000 government orders since 2017. Their own transparency report shows a 94% compliance rate. Here's everything they don't want you to know, sour...
020
Rey Bango @reybango.bsky.social · 02/03/2026
Our research team at @horizon3ai.bsky.social discovered CVE-2026-28414 an unauthenticated file read vulnerability in Gradio apps running on Windows with Python 3.13+ — and it’s deceptively simple. www.linkedin.com/feed/update/...
linkedin.com
So with Python 3.13, the definition of what's an absolute path on Windows changed. Paths like /windows/win.ini are no longer considered absolute but root-relative. This change exposed a trivial… ...
So with Python 3.13, the definition of what's an absolute path on Windows changed. Paths like /windows/win.ini are no longer considered absolute but root-relative. This change exposed a trivial unaut...
021
Rey Bango @reybango.bsky.social · 22/02/2026
This was inevitable: Anthropic Launches Claude Code Security for AI-Powered Vulnerability Scanning I remember using Claude Code to scan some source code and it found stuff that other mature, established SAST platforms failed to find. thehackernews.com/2026/02/anth...
thehackernews.com
Anthropic Launches Claude Code Security for AI-Powered Vulnerability Scanning
Anthropic unveils Claude Code Security, an AI tool scanning codebases for vulnerabilities with human-reviewed patch suggestions.
000
Rey Bango @reybango.bsky.social · 20/02/2026
AI coding assistant Cline compromised to create more OpenClaw chaos www.theregister.com/2026/02/20/o...
theregister.com
AI coding assistant Cline compromised, installs OpenClaw
: 4K unintended installs in very odd supply chain attack
000
Rey Bango @reybango.bsky.social · 18/02/2026
Mac users, be careful when you install HomeBrew. "The attack starts with typosquatted domains that closely mimic the official Homebrew site, including homabrews[.]org and other lookalike hostnames served from shared infrastructure at 5.255.123[.]244. ​" gbhackers.com/clickfix-exp...
gbhackers.com
ClickFix Exploits Homebrew Workflow to Deploy Cuckoo Stealer for macOS Credential Theft
ClickFix is being weaponized against macOS developers by turning a trusted Homebrew workflow into a stealthy delivery channel for a new infostealer dubbed Cuckoo Stealer.
000
Rey Bango @reybango.bsky.social · 18/02/2026
Vulnerabilities with high to critical severity ratings affecting popular Visual Studio Code (VSCode) extensions collectively downloaded more than 128 million times could be exploited to steal local files and execute code remotely. www.bleepingcomputer.com/news/securit...
bleepingcomputer.com
Flaws in popular VSCode extensions expose developers to attacks
Vulnerabilities with high to critical severity ratings affecting popular Visual Studio Code (VSCode) extensions collectively downloaded more than 128 million times could be exploited to steal local fi...
000
Reposted by Rey Bango
Rey Bango @reybango.bsky.social · 14/02/2026
I've been looking forward to @zephrfish.yxz.red's new course, Malwareless Adversarial Emulation. Just by looking at the course syllabus, I'm confident I'm going to learn a ton and become a better operator. And the price to value is more than reasonable. The course is at lms.zsec.red
122
Rey Bango @reybango.bsky.social · 14/02/2026
I've been looking forward to @zephrfish.yxz.red's new course, Malwareless Adversarial Emulation. Just by looking at the course syllabus, I'm confident I'm going to learn a ton and become a better operator. And the price to value is more than reasonable. The course is at lms.zsec.red
122
Rey Bango @reybango.bsky.social · 29/12/2025
I feel like @benjedwards.com has written one of the best explanations of how AI coding agents work. The article breaks it down into easy to understand terms that developers new to agents can really grok. arstechnica.com/information-...
arstechnica.com
How AI coding agents work—and what to remember if you use them
From compression tricks to multi-agent teamwork, here's what makes them tick.
173
Rey Bango @reybango.bsky.social · 24/12/2025
ALWAYS validate proof-of-concept exploit code before you use it. "The WebRAT malware is now being distributed through GitHub repositories that claim to host proof-of-concept exploits for recently disclosed vulnerabilities." www.bleepingcomputer.com/news/securit...
bleepingcomputer.com
WebRAT malware spread via fake vulnerability exploits on GitHub
The WebRAT malware is now being distributed through GitHub repositories that claim to host proof-of-concept exploits for recently disclosed vulnerabilities.
000
Rey Bango @reybango.bsky.social · 14/12/2025
I hate scammers.
020
Rey Bango @reybango.bsky.social · 07/12/2025
What do I do on the weekend? I install Game of Active Directory Ninja Hacker Academy on AWS of course! 😂 I'm running through the install so I can learn more about the range deployment on cloud services. Always be learning something new. @orangecyberdefense.bsky.social github.com/Orange-Cyber...
000
Rey Bango @reybango.bsky.social · 30/11/2025
Black Friday and Cyber Monday deals are out! I review some of them and link to a community GitHub page for you all to get discounts on courses, tools and services! Deals from @rastamouse.me, OffSec, EvilGinx, @antisyphontraining.bsky.social and a whole lot more. youtu.be/hkJfhM1T5bI
youtu.be
Get the latest Black Friday and Cyber Monday Cybersecurity Deals for 2025!
YouTube video by Rey Bango
230
Rey Bango @reybango.bsky.social · 05/10/2025
Seeking video camera advice for content creation. I've gotten back to creating tutorial & teaching videos on YouTube. Currently using a Brio MX but interested in the @elgato Facecam 4K. It looks to offer a lot more software features. Has anyone used it & can give their thoughts?
media.tenor.com
a man is standing in front of a microphone with the words `` help me '' written on it .
ALT: a man is standing in front of a microphone with the words `` help me '' written on it .
000
Rey Bango @reybango.bsky.social · 26/09/2025
After getting a scam email saying someone tried to access my Twitter account, I decided to look into it a little. The first of many new videos to come as I work to share more information with the community. youtu.be/IFy_96Dg__E?...
youtu.be
Did I Just Fall for a Phishing Attempt?
YouTube video by Rey Bango
110
Rey Bango @reybango.bsky.social · 12/08/2025
The end of an era. For so many people, AOL was the internet. arstechnica.com/gadgets/2025...
arstechnica.com
AOL announces September shutdown for dial-up Internet after 34 years
Around 175,000 households still use dial-up Internet in the US.
010
Reposted by Rey Bango
YourAnonRiots 🐈‍⬛🏴🇵🇸🇲🇲🇺🇦🇸🇦🦋 @youranonriots.bsky.social · 08/08/2025
RubyGems & PyPI under attack: 🔸 60 fake RubyGems stole social media logins (275K+ downloads) 🔸 PyPI fakes hijacked crypto staking wallets Both hide credential-stealing code in legit-looking packages. #CyberAlerts thehackernews.com/2025/08/ruby...
thehackernews.com
RubyGems, PyPI Hit by Malicious Packages Stealing Credentials, Crypto, Forcing Security Changes
RubyGems and PyPI hit by credential-stealing packages targeting automation and crypto users, prompting new security rules.
044
Reposted by Rey Bango
Anonymous ⩜ @youranona.bsky.social · 09/08/2025
A black-and-white satirical cartoon on a plain white background, depicting the progressive decay of the Apple company logo as it transforms into a silhouette of Donald Trump’s head, symbolizing Apple’s “fall” or moral compromise due to a gift from Tim Cook to Trump that many critics viewed as resembling a bribe to secure tariff exemptions. 2 0 1 Five solid black silhouettes of apples are arranged in a diagonal line descending from top-left to bottom-right, each showing increasing damage as if being eaten or rotting away: the first is the intact Apple logo with a small bite on the right side and a leaf on top; the second has a larger bite; the third is more eroded; the fourth appears partially exploded or flowered open; and the fifth is heavily disintegrated into petal-like fragments that form a caricatured profile of Trump, complete with his distinctive comb-over hairstyle. In the top-right corner, handwritten text reads “The Buffalo News Adam Zyglis Cartoonist /2023/ something,” suggesting a commentary on decline or downfall tied to this controversial gesture—a commemorative glass plaque with a 24k gold base, engraved as a memento of the first US-made Mac Pro, offered amid discussions on trade policies.
1936398
Rey Bango @reybango.bsky.social · 08/08/2025
Hi @defcon.bsky.social
000
Rey Bango @reybango.bsky.social · 06/08/2025
Picked up this very cool @crowdstrike.com t-shirt for my son and the action figure that goes with it. He’s going to love it.
000
Rey Bango @reybango.bsky.social · 06/08/2025
@crowdstrike.com says they’re seeing threat actors are targeting GenAI workloads to try poison the models. The inherent trust being built as we continue to use AI systems will lead to threat actors becoming an insider threat.
000
Rey Bango @reybango.bsky.social · 06/08/2025
Walking back to my room I passed the Google Cloud Security party at Blackhat and it looked jumping. Almost considered social engineering my way in. 😈😈
010
Rey Bango @reybango.bsky.social · 05/08/2025
Great analysis by @SentinelOne on a threat actor working out of Vietnam to target users in 62 countries. Starts with a phishing campaign that leads to DLL sideloading of legitimate and signed software, including Office 2013, for persistence. www.sentinelone.com/labs/ghost-i...
sentinelone.com
Ghost in the Zip | New PXA Stealer and Its Telegram-Powered Ecosystem
PXA Stealer uses advanced evasion and Telegram C2 to steal global victim data, fueling a thriving cybercrime market.
011
Rey Bango @reybango.bsky.social · 05/08/2025
😂😂kerberoasting 4eva amirite @timmedin.bsky.social
010
Rey Bango @reybango.bsky.social · 04/08/2025
Hashcat v7.0.0 released with speed and GPU support improvements hashcat.net/forum/thread...
hashcat.net
hashcat v7.0.0
000
Reposted by Rey Bango
Deth Veggie @dethveggie.bsky.social · 03/08/2025
theonion.com/trump-still-... The Onion just straight-up reporting real news, again.
theonion.com
Trump Still Polling Well With Working-Class American Pedophiles
WASHINGTON—Despite the president’s sagging approval rating overall, a Gallup Poll released Tuesday confirmed that Donald Trump’s support remained overwhelmingly strong among working-class American ped...
0257
Rey Bango @reybango.bsky.social · 18/07/2025
Unfortunately @broadcom.bsky.social still hasn't fixed the VMWare Workstation update server link so be sure to upgrade to 17.6.4 to fix a security issue found at Berlin Pwn2own www.bleepingcomputer.com/news/securit...
bleepingcomputer.com
VMware fixes four ESXi zero-day bugs exploited at Pwn2Own Berlin
VMware fixed four vulnerabilities in VMware ESXi, Workstation, Fusion, and Tools that were exploited as zero-days during the Pwn2Own Berlin 2025 hacking contest in May 2025.
000
Rey Bango @reybango.bsky.social · 11/06/2025
www.theregister.com/2025/06/11/m...
theregister.com
Mozilla frets about Google's push to build AI into Chrome
: AI could bring a new round of browser wars
000
Reposted by Rey Bango
Tim Caswell @creationix.blue · 02/06/2025
"Wo unto you rich men, that will not give your substance to the poor, for your riches will canker your souls; and this shall be your lamentation in the day of visitation, and of judgment, and of indignation: The harvest is past, the summer is ended, and my soul is not saved!"
011
Rey Bango @reybango.bsky.social · 17/05/2025
“This isn’t 'The Hunger Games’ for immigrants,” Worsoff told the newspaper This absolutely disgusting and a pathetic way of taking advantage of immigrants by this producer. www.nytimes.com/2025/05/16/u...
nytimes.com
A Reality Show Where Immigrants Compete for U.S. Citizenship? D.H.S. Is Considering It.
000
Rey Bango @reybango.bsky.social · 07/05/2025
When you play an internal CTF against 10 other teams and win! Booyah! 😈
media.tenor.com
a pixelated image of a little girl in a red coat
ALT: a pixelated image of a little girl in a red coat
000
Rey Bango @reybango.bsky.social · 18/04/2025
110
Rey Bango @reybango.bsky.social · 10/04/2025
"Malicious VSCode extensions infect Windows with cryptominers" A set of ten VSCode extensions on Microsoft's Visual Studio Code Marketplace pose as legitimate development tools while infecting users with the XMRig cryptominer for Monero. www.bleepingcomputer.com/news/securit...
bleepingcomputer.com
Malicious VSCode extensions infect Windows with cryptominers
Nine VSCode extensions on Microsoft's Visual Studio Code Marketplace pose as legitimate development tools while infecting users with the XMRig cryptominer for Monero.
010