Sign in

WarthogTK

@warthogtk.bsky.social
521 followers 1.7K following 1K posts

Pentester | MD (Intensivist & Healthcare Simulation in another life) Infosec, Geopolitics, Defense, Disinformation, Hybrid warfare | DCS, Gaming, Metal (OU=FR,DC=WORLD,DC=UNIVERSE)

PostsRepliesMedia
WarthogTK @warthogtk.bsky.social · 15/09/2026
Malicious browser extension: inside KREMLIN banking malware www.elastic.co/security-lab...
elastic.co
Malicious browser extension: inside KREMLIN banking malware
Elastic Security Labs analyzes a malicious browser extension that forges Chromium's integrity checks and pulls its C2 from Ethereum smart contracts.
011
WarthogTK @warthogtk.bsky.social · 08/09/2026
Sovereign Shield, Alliance Sword: Evolving NATO's Strategic Communications Doctrine for Cognitive Warfare smallwarsjournal.com/2026/09/07/s...
smallwarsjournal.com
Sovereign Shield, Alliance Sword: Evolving NATO's Strategic Communications Doctrine for Cognitive Warfare
NATO must evolve its strategic communications in cognitive warfare through persistent offense, a Sovereign Shield, and the Alliance Sword.
000
WarthogTK @warthogtk.bsky.social · 08/09/2026
UAC Bypass - CMSTPLUA COM Exploitation 0xsec.gitbook.io/0xsec/window...
0xsec.gitbook.io
UAC Bypass - CMSTPLUA COM Exploitation | 0xSec
I'm here to help you with the docs.
000
WarthogTK @warthogtk.bsky.social · 08/09/2026
Bring Your Own Trusted Caller (BYOTC): A New Way to Exploit Vulnerable Windows Drivers (Part 1) xusheng.dev/posts/byotc/...
xusheng.dev
Bring Your Own Trusted Caller (BYOTC): A New Way to Exploit Vulnerable Windows Drivers (Part 1)
A trusted user-mode client can become the path through which an attacker reaches a privileged Windows driver.
000
WarthogTK @warthogtk.bsky.social · 08/09/2026
Malware on the Blockchain: An Ongoing Campaign's New WebRTC Twist www.netskope.com/blog/malware...
netskope.com
Malware on the Blockchain: An Ongoing Campaign's New WebRTC Twist
EtherHiding, a technique that uses blockchain smart contracts as takedown-resistant payload storage, has been seen across more than 5,400 compromised
010
WarthogTK @warthogtk.bsky.social · 08/09/2026
WeWorm The first zero-click worm to spread through WeChat calls across iOS and Android. calif.io/research/wew...
calif.io
WeWorm
The first zero-click worm to spread through WeChat calls across iOS and Android.
142
WarthogTK @warthogtk.bsky.social · 08/09/2026
NetNTLMv1 Is Dead. Long Live NetNTLMv1. www.outflank.nl/blog/2026/09...
outflank.nl
NetNTLMv1 Is Dead. Long Live NetNTLMv1. | Outflank
Outflank's NTLMRain shrinks NetNTLMv1 rainbow tables to fit on a 4 TB disk and accelerates NT hash recovery with WebGPU and CLI tools.
001
WarthogTK @warthogtk.bsky.social · 03/09/2026
How to use Codex for Bug Bounty: research, test and validate www.yeswehack.com/fr/learn-bug...
yeswehack.com
How to use Codex for Bug Bounty: research, test and validate
See how Codex supports Bug Bounty research with reconnaissance, black-box testing, parallel agents, custom skills and rigorous validation.
011
Reposted by WarthogTK
The Citizen Lab @citizenlab.ca · 02/09/2026
1/ NEW: an investigation by our collaborator SHARE Foundation reveals widespread spyware targeting Serbia's pro-democracy student movement. The Citizen Lab confirms that an iPhone belonging to a student was infected with Pegasus spyware. Read more: sharefoundation.info/en/share-fou...
sharefoundation.info
SHARE Foundation: Students and Opposition Politicians Targeted by Spyware - SHARE Fondacija
The SHARE Foundation has confirmed that at least 14 people in Serbia were targeted with advanced spyware since at the beginning of 2026 – the largest documented wave of such surveillance in the countr...
12324
WarthogTK @warthogtk.bsky.social · 02/09/2026
German government blames Russia for Leipzig airport drone attack with explosives www.defensenews.com/global/europ...
defensenews.com
German government blames Russia for Leipzig airport drone attack with explosives
Russia was behind the failed explosive drone attack on Germany’s key Leipzig/Halle Airport last month, the authorities in Berlin have concluded.
000
Reposted by WarthogTK
The Citizen Lab @citizenlab.ca · 20/08/2026
Senior researcher @jsrailton.bsky.social spoke to @techcrunch.com about the “unprecedented” number of Apple users who recently received notifications alerting them to suspected spyware attacks against their devices. Read: techcrunch.com/2026/08/17/u...
techcrunch.com
‘Unprecedented’ number of Apple users received recent spyware alert, say investigators | TechCrunch
Cybersecurity experts who investigate spyware attacks say the number of people who received a recent threat notification from Apple is unusually high.
185
WarthogTK @warthogtk.bsky.social · 01/09/2026
Dan Driscoll, le secrétaire à l’armée de terre américain, démissionne après plusieurs mois de tension avec Pete Hegseth www.lemonde.fr/internationa...
lemonde.fr
Dan Driscoll, le secrétaire à l’armée de terre américain, démissionne après plusieurs mois de tension avec Pete Hegseth
Ce proche du vice-président, J. D. Vance, a notamment été impliqué dans les négociations concernant la guerre en Ukraine. Aucune raison n’a été donnée pour expliquer son départ, mais ses rapports…
000
WarthogTK @warthogtk.bsky.social · 26/08/2026
French intelligence chief warns of more ‘violent, hostile action’ after Leipzig drone attack www.politico.eu/article/expe...
politico.eu
French intelligence chief warns of more ‘violent, hostile action’ after Leipzig drone attack
The head of the DGSI says Russia is intensifying its hybrid war on the continent.
000
WarthogTK @warthogtk.bsky.social · 25/08/2026
What's in a tag name? JavaScript, apparently portswigger.net/research/wha...
portswigger.net
What's in a tag name? JavaScript, apparently
I was on my laptop, as I often am when there's rubbish on telly, and found myself wondering what characters are allowed in a tag. I knew they had to begin with "a-zA-Z", but what about after that? I t
000
WarthogTK @warthogtk.bsky.social · 25/08/2026
SLEEPWALKER: A Passive Backdoor With Its Own Command Language r136a1.dev/2026/08/24/s...
r136a1.dev
SLEEPWALKER: A Passive Backdoor With Its Own Command Language
Losing access to VirusTotal Intelligence at the start of the year was surprisingly productive. Unable to hunt for interesting new malware, I stopped adding to my “TODO” pile and finally worked…
000
WarthogTK @warthogtk.bsky.social · 20/08/2026
AWSHound: An Open-Source AWS OpenGraph Collector blog.n0pe-sled.com/2026/08/10/a...
blog.n0pe-sled.com
AWSHound: An Open-Source AWS OpenGraph Collector
A free, read-only collector that turns an AWS account or Organization into a BloodHound OpenGraph dataset, drawing edges only where an offline IAM evaluation resolves to Allow.
010
WarthogTK @warthogtk.bsky.social · 16/08/2026
Grand Remplacement De la prose de Renaud Camus aux organigrammes de l’État trumpiste, une fantasmagorie démographique est devenue en quinze ans une politique publique 😪 legrandcontinent.eu/fr/2026/08/1...
legrandcontinent.eu
Grand Remplacement
De la prose de Renaud Camus aux organigrammes de l’État trumpiste, une fantasmagorie démographique est devenue en quinze ans une politique publique.
010
WarthogTK @warthogtk.bsky.social · 16/08/2026
Poutine ouvre-t-il un front dans le Pacifique ? legrandcontinent.eu/fr/2026/08/1...
legrandcontinent.eu
Poutine ouvre-t-il un front dans le Pacifique ?
La nouvelle agressivité du Kremlin contre le Japon ressemble moins à un pivot asiatique qu’à une diversion russe.
000
WarthogTK @warthogtk.bsky.social · 14/08/2026
SAML Vulnerabilities and Attacks: A Practical Guide pentesterlab.com/blog/saml-vu...
pentesterlab.com
SAML Vulnerabilities and Attacks: A Practical Guide
Master SAML and SSO security with this in-depth guide to web hacking and AppSec. Learn how to exploit and defend against real-world SAML vulnerabilities — signature stripping, XML signature wrapping,…
000
WarthogTK @warthogtk.bsky.social · 13/08/2026
Attack of The Extensions Browser extensions can turn Chromium into a persistent foothold. This post introduces a way to silently install extensions turning Chromium browsers into a command and control (C2) platform for persistent cookie theft specterops.io/blog/2026/08...
specterops.io
Attack of The Extensions
Learn how Chromium browser extensions can be silently sideloaded to establish persistent C2 access and how to detect it with Sysmon.
000
WarthogTK @warthogtk.bsky.social · 13/08/2026
Return of the Cookie Monster specterops.io/blog/2026/08...
specterops.io
Return of the Cookie Monster
Chrome DevTools Protocol cookie theft: how CDP can be enabled inside a live browser to steal cookies, passwords, and sessions.
010
WarthogTK @warthogtk.bsky.social · 11/08/2026
Shattering the Dream - When a Job Offer Becomes a Zero-Day Attack - Check Point Research research.checkpoint.com/2026/shatter...
research.checkpoint.com
Shattering the Dream - When a Job Offer Becomes a Zero-Day Attack - Check Point Research
Key Points Introduction Since early 2026, Check Point Research has tracked a wave of the Operation Dream Job campaign. This wave primarily targeted the defense sector worldwide, with a particular…
021
WarthogTK @warthogtk.bsky.social · 10/08/2026
Authenticode signature manipulation toolkit for Red Team operations and security research. github.com/KriyosArcane...
github.com
GitHub - KriyosArcane/TrustMeBro: Authenticode signature manipulation toolkit for Red Team operations and security research. Covers signature stealing, metadata cloning, SIP hijacking across 19 file types, WinVerifyTrust FinalPolicy bypass, PKCS#7 payload embedding, SIP execution surface implants, Smart App Control Bypass, and analyst-triggered persistence via OID handlers.
Authenticode signature manipulation toolkit for Red Team operations and security research. Covers signature stealing, metadata cloning, SIP hijacking across 19 file types, WinVerifyTrust FinalPolic...
011
WarthogTK @warthogtk.bsky.social · 10/08/2026
Remote Kerberos TGT extraction via MSSQL ivancabrera02/pyTGTdeleg github.com/ivancabrera0...
github.com
GitHub - ivancabrera02/pyTGTdeleg
Contribute to ivancabrera02/pyTGTdeleg development by creating an account on GitHub.
010
WarthogTK @warthogtk.bsky.social · 06/08/2026
Can AI do novel security research? Meet the HTTP Terminator portswigger.net/research/htt...
portswigger.net
Can AI do novel security research? Meet the HTTP Terminator
Abstract We all know AI can find bugs. After a decade of research, I asked a harder question: can an autonomous system invent new attack techniques, and use them to hack live websites at scale? Buildi
000
WarthogTK @warthogtk.bsky.social · 06/08/2026
CRLF-Powered Desync Attacks: Beheading HTTP Streams portswigger.net/research/crl...
portswigger.net
CRLF-Powered Desync Attacks: Beheading HTTP Streams
Abstract In this paper we’ll show that HTTP Header Injection is severely underestimated. Forget open redirects or Cross-Site Scripting and instead, embrace the catastrophic potential of the CRLF-Power
000
WarthogTK @warthogtk.bsky.social · 02/08/2026
Inside the Falcon How CrowdStrike Catches You 0xdbgman.github.io/posts/inside...
0xdbgman.github.io
Inside the Falcon How CrowdStrike Catches You
A full reverse-engineering teardown of the CrowdStrike Falcon sensor: the six kernel callback sources, the WFP network engine, the file-system minifilter, the cspcm4 broker, the user-mode service…
021
WarthogTK @warthogtk.bsky.social · 30/07/2026
Clustered Points of Failure specterops.io/blog/2026/07...
specterops.io
Clustered Points of Failure
Windows Server Failover Clusters share credentials across every node: compromise one, and you compromise the entire cluster
000
WarthogTK @warthogtk.bsky.social · 30/07/2026
KindaRails2Shell - Critical RCE in Rails via Active Storage (CVE-2026-66066) | Ethiack ethiack.com/info-hub/res...
ethiack.com
KindaRails2Shell - Critical RCE in Rails via Active Storage (CVE-2026-66066) | Ethiack — Autonomous Ethical Hacking for continuous security
Ethiack research team discovered KindaRails2Shell (CVE-2026-66066): a critical RCE in Ruby on Rails via Active Storage. 500,000+ sites affected. Find out if you are and how to mitigate.
011
WarthogTK @warthogtk.bsky.social · 27/07/2026
RefluXFS: A Linux Kernel Local Privilege Escalation to Root in XFS (CVE-2026-64600) | Qualys blog.qualys.com/vulnerabilit...
blog.qualys.com
RefluXFS: A Linux Kernel Local Privilege Escalation to Root in XFS (CVE-2026-64600) | Qualys
Qualys Threat Research Unit (TRU) identified CVE-2026-64600, a race condition in the Linux kernel’s XFS filesystem copy-on-write path. An attacker with an ordinary local account can exploit this race…
000
WarthogTK @warthogtk.bsky.social · 26/07/2026
Special Token Injection (STI) Attack Guide blog.sentry.security/special-toke...
blog.sentry.security
Special Token Injection (STI) Attack Guide
Large Language Models introduce security issues reminiscent of early-2000s software bugs. Special Token Injection (STI) exploits how LLMs parse structured prompts. This post breaks down what STI is,…
000
WarthogTK @warthogtk.bsky.social · 24/07/2026
projectdiscovery/depx: Malicious package & supply-chain intelligence github.com/projectdisco...
github.com
GitHub - projectdiscovery/depx: Malicious package & supply-chain intelligence
Malicious package & supply-chain intelligence. Contribute to projectdiscovery/depx development by creating an account on GitHub.
011
WarthogTK @warthogtk.bsky.social · 24/07/2026
Certighost (CVE-2026-54121) CVE-2026-54121.md PoC github.com/aniqfakhrul/...
gist.github.com
CVE-2026-54121.md
GitHub Gist: instantly share code, notes, and snippets.
010
WarthogTK @warthogtk.bsky.social · 14/07/2026
Statement of attribution to Russia of malicious cyber activities targeting France for espionage purposes | France Diplomatie www.diplomatie.gouv.fr/en/presse-et...
diplomatie.gouv.fr
Statement of attribution to Russia of malicious cyber activities targeting France for espionage purposes | France Diplomatie
Follow us
011
WarthogTK @warthogtk.bsky.social · 14/07/2026
EU and UK officially blame Russian spies for cyberattack on Poland's power grid www.theregister.com/security/202...
theregister.com
EU and UK officially blame Russian spies for cyberattack on Poland's power grid
Sweeping sanctions and condemnation follow op that could have left half a million without power in the depths of winter
000
WarthogTK @warthogtk.bsky.social · 07/07/2026
Windows Privilege Abuse: Attackers' Path to Active Directory Compromise www.semperis.com/blog/windows...
semperis.com
Windows Privilege Abuse: Attackers' Path to Active Directory Compromise
Learn how attackers exploit Windows privileges to escalate and extend their foothold in Active Directory ... even in well-patched environments.
000
WarthogTK @warthogtk.bsky.social · 03/07/2026
Authentication Bypass in the default configuration phpBB www.aikido.dev/blog/authent...
aikido.dev
Authentication Bypass in the default configuration phpBB
Our AI pentest agents found a critical phpBB auth bypass (CVE-2026-48611): one unauthenticated request logs you into any account. See the exploit and the fix.
000
WarthogTK @warthogtk.bsky.social · 03/07/2026
Qemouflage: Beyond the EDR’s Reach 0xc9h.github.io/posts/qemouf...
0xc9h.github.io
Qemouflage: Beyond the EDR’s Reach
A Linux VM inside QEMU on Windows, no admin rights, no EDR visibility. Pure TCG emulation.
000
WarthogTK @warthogtk.bsky.social · 02/07/2026
klist.exe Revisited: Internals and Further Use Cases – Jake Otte jakeotte.com/posts/klist-...
jakeotte.com
klist.exe Revisited: Internals and Further Use Cases – Jake Otte
A follow-up on klist.exe: extracting non-zeroed TGT session keys without SeTcbPrivilege, abusing WinRM for in-memory remote dumping, and examining behavior under Credential Guard.
000
WarthogTK @warthogtk.bsky.social · 02/07/2026
It’s 37oC, And All We Can Think About Is ColdFusion (Adobe ColdFusion Security Bulletin APSB26-68 CVE Bonanza) labs.watchtowr.com/its-37oc-and...
labs.watchtowr.com
It’s 37oC, And All We Can Think About Is ColdFusion (Adobe ColdFusion Security Bulletin APSB26-68 CVE Bonanza)
We’re back, melting - we’ve tried shouting, screaming, and throwing things at the Sun, and it is just not working. Before we begin our analysis, we want to be clear - given the number of…
010
WarthogTK @warthogtk.bsky.social · 01/07/2026
We have Mythos at Home: GLM 5.2 beats Claude in our Cyber Benchmarks semgrep.dev/blog/2026/we...
semgrep.dev
We have Mythos at Home: GLM 5.2 beats Claude in our Cyber Benchmarks
Among models given nothing but a prompt, the best open-weight option beat Claude Opus 4.8.
010
WarthogTK @warthogtk.bsky.social · 30/06/2026
Enterprise Tech In, Shell Out (Progress Kemp LoadMaster Uninitialized Heap to Pre-Auth RCE CVE-2026-8037) labs.watchtowr.com/enterprise-t...
labs.watchtowr.com
Enterprise Tech In, Shell Out (Progress Kemp LoadMaster Uninitialized Heap to Pre-Auth RCE CVE-2026-8037)
Welcome back to another watchTowr Labs blog post. This time, we're looking at Progress Kemp LoadMaster, a load balancer that sits at the edge of a lot of enterprise networks. Edge appliances have a…
000
WarthogTK @warthogtk.bsky.social · 30/06/2026
Claude Code Is Steganographically Marking Requests thereallo.dev/blog/claude-...
thereallo.dev
Claude Code Is Steganographically Marking Requests
I inspected Claude Code for privacy reasons and found hidden system prompt markers based on API base URL and timezone.
000
WarthogTK @warthogtk.bsky.social · 30/06/2026
Sleeper Squats: How a Hyphen (Almost) Unraveled GitHub's Immutable OIDC Subject Claim labs.boostsecurity.io/articles/sle...
labs.boostsecurity.io
Sleeper Squats: How a Hyphen (Almost) Unraveled GitHub's Immutable OIDC Subject Claim | Boost Security Labs
In late April 2026, GitHub shipped a changelog post introducing immutable subject claims for GitHub Actions OIDC tokens, then pulled the post six hours later. The feature stayed live in production…
000
WarthogTK @warthogtk.bsky.social · 30/06/2026
Le contrat qui prouve qu’Erik Tegnér agissait comme un agent d'influence du pouvoir hongrois www.streetpress.com/1782749946-c...
streetpress.com
Le contrat qui prouve qu’Erik Tegnér agissait comme un agent d'influence du pouvoir hongrois
StreetPress a obtenu le contrat d’Erik Tegnér, directeur du média d’extrême droite Frontières, avec le Danube Institute. Pour 4.200 euros par mois, il devait aider à promouvoir les discours d’Orbán…
000
WarthogTK @warthogtk.bsky.social · 29/06/2026
Public PoC Released for Critical libssh2 CVE-2026-55200 Client-Side SSH Flaw thehackernews.com/2026/06/publ...
thehackernews.com
Public PoC Released for Critical libssh2 CVE-2026-55200 Client-Side SSH Flaw
A public PoC for CVE-2026-55200 exposes a critical libssh2 flaw that can let a malicious SSH server corrupt client memory.
000
WarthogTK @warthogtk.bsky.social · 24/06/2026
When EPA isn't EPA'ing: What Tools Like Certify, Certipy and checkMSSQLStatus.py miss www.abdulmhsblog.com/posts/pitfal...
abdulmhsblog.com
When EPA isn't EPA'ing: What Tools Like Certify, Certipy and checkMSSQLStatus.py miss
Recently on engagements I started experiencing two reoccurring patterns, the first being that certipy and certify would both show me that a endpoint is not vulnerable to the ESC8 attack even though…
000
WarthogTK @warthogtk.bsky.social · 24/06/2026
PoC Released for Microsoft Exchange Server EWS InstallApp SSRF Vulnerability gbhackers.com/poc-released...
gbhackers.com
PoC Released for Microsoft Exchange Server EWS InstallApp SSRF Vulnerability
A proof-of-concept exploit has been released for CVE-2026-45502, a server-side request forgery (SSRF) vulnerability in the Microsoft Exchange Server's Exchange Web Services (EWS) InstallApp operation.
000
Reposted by WarthogTK
Nicolas Hervieu @nicolas.eurosky.social · 09/06/2026
Injure : La Cour de cassation confirme la condamnation pénale d'un élu du RN. Pour avoir qualifié (sur X & Facebook) des associations et syndicats d'« idiots collabos des terroristes du Hamas ». Uniquement car ils organisaient un rassemblement pour… la paix en Palestine. => bit.ly/4vFoBMU
13. En statuant ainsi, la cour d'appel a fait l'exacte application des textes visés au moyen.

14. En effet, d'une part, les propos poursuivis, même rapportés à l'ensemble des propos mis en ligne, relèvent de l'expression d'une opinion et d'un jugement de valeur sur l'action du syndicat plaignant et non de l'imputation d'un fait précis de nature à être, sans difficulté, l'objet d'une preuve ou d'un débat contradictoire, de sorte que le délit d'injure poursuivi, par ailleurs caractérisé, ne saurait être absorbé par le délit de diffamation allégué.

15. D'autre part, ainsi que l'ont exactement retenu les juges, les propos litigieux, dénués d'analyse sur le conflit israélo-palestinien et gratuitement outrageants envers les syndicats ayant pris l'initiative d'appeler à la paix, ont dépassé les limites admissibles de la liberté d'expression.

16. Le moyen doit, dès lors, être écarté.
17542
WarthogTK @warthogtk.bsky.social · 09/06/2026
Quand Annie Genevard, ministre de l’agriculture, invite BASF à faire blanchir l’un de ses herbicides www.lemonde.fr/politique/ar...
lemonde.fr
Quand Annie Genevard, ministre de l’agriculture, invite BASF à faire blanchir l’un de ses herbicides
S’adressant à une assemblée de producteurs de blé, la ministre a encouragé le producteur d’un herbicide, classé perturbateur endocrinien, à présenter des «  méthodes d’évaluation alternatives » pour o...
000