James Atack's Avatar

James Atack

@jamesatack.com

Cyber defender with an offensive name. Deputy CTO at @onyphe.io | http://onyphe.io Managing your attack surface... from Europe ๐Ÿ‘€ Opinions : all mine Special skill : machine empathy

257
Followers
535
Following
112
Posts
05.10.2023
Joined
Posts Following

Latest posts by James Atack @jamesatack.com

the world could just move on if there was some magic code machine that would spit out an exact functional clone of Excel

๐Ÿ’ก

04.03.2026 13:39 ๐Ÿ‘ 1 ๐Ÿ” 0 ๐Ÿ’ฌ 0 ๐Ÿ“Œ 0

"Every gun that is made, every warship launched, every rocket fired signifies, in the final sense, a theft from those who hunger and are not fed, those who are cold and are not clothed."

-Dwight D. Eisenhower, 1953

01.03.2026 19:01 ๐Ÿ‘ 21360 ๐Ÿ” 7238 ๐Ÿ’ฌ 427 ๐Ÿ“Œ 270

๐Ÿ‡ช๐Ÿ‡บLAGARDE MAY EXIT ECB EARLY Christine Lagarde is reportedly considering stepping down as president of the European Central Bank before her term ends in October 2027, according to the Financial Times. The report says she may leave before Franceโ€™s presidential election next

18.02.2026 11:57 ๐Ÿ‘ 4 ๐Ÿ” 1 ๐Ÿ’ฌ 0 ๐Ÿ“Œ 0

So many questions

youtu.be/UKQluqz3N3M?...

12.02.2026 11:59 ๐Ÿ‘ 0 ๐Ÿ” 0 ๐Ÿ’ฌ 0 ๐Ÿ“Œ 0
Preview
Cisco is Proud to Champion the UK's Software Security Code of Practice Cisco champions the UKโ€™s Software Security Code of Practice in support of secure software supply chains and strengthening trust in digital services.

Irony

blogs.cisco.com/security/cis...

And let me guess, Fortinet will be sponsoring Cyber Week 2026 for SMBs?

03.02.2026 13:51 ๐Ÿ‘ 0 ๐Ÿ” 0 ๐Ÿ’ฌ 0 ๐Ÿ“Œ 0

Like a hammer determines how hard it should hit the nail?

And why are we handing over our moral and social responsibilities to a hammer anyway?

15.01.2026 06:57 ๐Ÿ‘ 0 ๐Ÿ” 0 ๐Ÿ’ฌ 0 ๐Ÿ“Œ 0

It is amazing, but I donโ€™t see beauty. Built first on slavery, then on oil., all while becoming indebted to our environment.

I wonder whatโ€™s the full price of year-round blueberries

15.01.2026 06:55 ๐Ÿ‘ 2 ๐Ÿ” 0 ๐Ÿ’ฌ 0 ๐Ÿ“Œ 0

<epic movie trailer voice>

First they came for Birmingham City Council.

Now they're back. And they want ... EVERYTHING

09.01.2026 11:39 ๐Ÿ‘ 0 ๐Ÿ” 0 ๐Ÿ’ฌ 0 ๐Ÿ“Œ 0

Tomorrow we are going to have USA and Iran each telling the other to stop shooting citizens who protest.

08.01.2026 20:25 ๐Ÿ‘ 1481 ๐Ÿ” 374 ๐Ÿ’ฌ 24 ๐Ÿ“Œ 14

For those keeping score, Bellingcat, The New York Times Visual Investigation Team, & Washington Post's Visual Forensic team have all published analysis showing the ICE shooter wasn't in the path of Renee Nicole Goodโ€™s vehicle when he shot her, contradicting statements by the President & his cronies

08.01.2026 15:35 ๐Ÿ‘ 24880 ๐Ÿ” 9096 ๐Ÿ’ฌ 456 ๐Ÿ“Œ 358

Hi El Reg, I expect you to bite the hand that prevents sysadmins from reading file systems in the first place.

We shouldnโ€™t accept this crap from โ€œsecurity applianceโ€ vendors

08.01.2026 19:09 ๐Ÿ‘ 1 ๐Ÿ” 0 ๐Ÿ’ฌ 0 ๐Ÿ“Œ 0

Arbitrary file read for administrators

This is only a threat fo Cisco management

08.01.2026 19:06 ๐Ÿ‘ 0 ๐Ÿ” 0 ๐Ÿ’ฌ 0 ๐Ÿ“Œ 0
Preview
Check Steam status IsDown monitors the status of Steam and other 4600+ services. Check the page for updates.

Is Steam down for you? Users are reporting problems with Steam. Repost if you are having issues. #steamdown

24.12.2025 18:33 ๐Ÿ‘ 3 ๐Ÿ” 3 ๐Ÿ’ฌ 0 ๐Ÿ“Œ 0

โ€œReimageโ€ you say?

17.12.2025 18:10 ๐Ÿ‘ 3 ๐Ÿ” 0 ๐Ÿ’ฌ 0 ๐Ÿ“Œ 0
Cisco Security Advisory: Reports About Cyberattacks Against Cisco Secure Email Gateway And Cisco Secure Email and Web Manager On December 10, Cisco became aware of a new cyberattack campaign targeting a limited subset of appliances with certain ports open to the internet that are running Cisco AsyncOS Software for Cisco Secu...

Wowzers, another perfect 10 from Cisco on Secure Email Gateway, Secure Mail, and Web Manager. This one has:

- RCE
- No patch
- No workaround
- No public IoCs

Recommendation is to reimage to a known-good config. Whatever that is, without indicators.

Good luck I guess??

17.12.2025 16:38 ๐Ÿ‘ 17 ๐Ÿ” 10 ๐Ÿ’ฌ 3 ๐Ÿ“Œ 1
Preview
UAT-9686 actively targets Cisco Secure Email Gateway and Secure Email and Web Manager Cisco Talos is tracking the active targeting of Cisco AsyncOS Software for Cisco Secure Email Gateway, formerly known as Cisco Email Security Appliance (ESA), and Cisco Secure Email and Web Manager, f...

Talos has IoCs, which for some reason are not in the advisory itself?? blog.talosintelligence.com/uat-9686/

17.12.2025 18:00 ๐Ÿ‘ 2 ๐Ÿ” 1 ๐Ÿ’ฌ 1 ๐Ÿ“Œ 0

Who needs reality when you can have virtual slop ?

11.12.2025 11:30 ๐Ÿ‘ 2 ๐Ÿ” 0 ๐Ÿ’ฌ 0 ๐Ÿ“Œ 0
Preview
Thousands of Exposed Secrets Found on Docker Hub - Flare In a month, we found Docker Hub images that contained leaked secrets (including live credentials to production systems) from over 100 companies.

Security firm Flare has scanned the Docker Hub portal and found secrets and tokens, including for production systems, in more than 10,000 images

flare.io/learn/resour...

11.12.2025 11:11 ๐Ÿ‘ 19 ๐Ÿ” 8 ๐Ÿ’ฌ 0 ๐Ÿ“Œ 2

RE: https://infosec.exchange/@ossir/115603757755275844

Rappel : la prochaine rรฉunion de l'OSSIR, c'est demain (mardi) ร  14h00 chez TotalEnergies Digital Factory (33 rue des Jeรปneurs, 75002 Paris)

N'oubliez pas de vous inscrire gratuitement sur https://billetweb.fr/reunion-ossir-decembre-2025 [โ€ฆ]

08.12.2025 09:43 ๐Ÿ‘ 3 ๐Ÿ” 4 ๐Ÿ’ฌ 0 ๐Ÿ“Œ 0

I read โ€œCanadianโ€ at first glance.

So soonโ€ฆ I thought

08.12.2025 10:27 ๐Ÿ‘ 1 ๐Ÿ” 0 ๐Ÿ’ฌ 0 ๐Ÿ“Œ 0
Preview
How to explain AI to your family this holiday season | CNN Business Politics, football and movies are among the many topics that tend to come up around Thanksgiving. In 2025, a new question may arise at the table: Why the heck is everyone talking about AI, and what sh...

"Imagine you stole all of the intellectual property in the world. And you're using it to help people write middling emails and make revenge porn about women, and also children. And you're powering this plagiarism and non-consensual porn machine by eating up what's left of humanity's carbon budget."

27.11.2025 04:04 ๐Ÿ‘ 2623 ๐Ÿ” 1077 ๐Ÿ’ฌ 17 ๐Ÿ“Œ 36
Preview
KEEPASSXC version 2.7.9 | ANSSI Acces rapide

Le gestionnaire de mots de passe open-source et multiplateforme KeePassXC (version 2.7.9) vient de recevoir sa certification CSPN (Certification de sรฉcuritรฉ de premier niveau) dรฉlivrรฉe par l'ANSSI #Infosec cyber.gouv.fr/produits-cer...

25.11.2025 12:45 ๐Ÿ‘ 2 ๐Ÿ” 1 ๐Ÿ’ฌ 0 ๐Ÿ“Œ 0
Preview
FortiArtifacts: l'outil DFIR pour extraire les journaux Fortinet lors dโ€™une suspicion de compromission FortiArtifacts, the DFIR tool designed by OWN analysts to help you collect logs from Fortinet devices in case of suspected compromise, using native commands and without the need to perform a dump.

By total coincidence some friends have made this www.own.security/en/ressource...

19.11.2025 08:59 ๐Ÿ‘ 4 ๐Ÿ” 0 ๐Ÿ’ฌ 0 ๐Ÿ“Œ 0

โ€œHaving a Fortinet on your perimeter is the strongest correlation to getting owned that you can haveโ€ @metlstorm.risky.biz

Not hating, just campaigning for the โ€œmore engineering, less marketingโ€ party

19.11.2025 08:35 ๐Ÿ‘ 6 ๐Ÿ” 0 ๐Ÿ’ฌ 1 ๐Ÿ“Œ 0
Preview
FortiArtifacts: l'outil DFIR pour extraire les journaux Fortinet lors dโ€™une suspicion de compromission โ€œFortiArtifactsโ€, l'outil DFIR conรงu par les analystes de OWN pour vous aider ร  collecter les journaux depuis des รฉquipements Fortinet en cas de suspicion de compromission, en utilisant des commandes ...

Just seen this, some friends made. Pure coincidence

www.own.security/ressources/b...

19.11.2025 08:12 ๐Ÿ‘ 1 ๐Ÿ” 0 ๐Ÿ’ฌ 0 ๐Ÿ“Œ 0
Post image

At the EU Summit on Digital Sovereignty, the US internet service Cloudflare is sponsoring today's side event "Digital Resilience: Between Aspiration and Reality." /s

18.11.2025 14:27 ๐Ÿ‘ 4 ๐Ÿ” 3 ๐Ÿ’ฌ 1 ๐Ÿ“Œ 0

Or living in France, for now.

12.11.2025 07:01 ๐Ÿ‘ 2 ๐Ÿ” 0 ๐Ÿ’ฌ 0 ๐Ÿ“Œ 0
Preview
Bank of England says JLR's cyberattack contributed to UK's unexpectedly slower GDP growth This kind of material economic impact from online crooks thought to be a UK-first The Bank of England (BoE) has cited the cyberattack on Jaguar Land Rover (JLR) as one of the reasons for the country's slower-than-expected GDP growth in its latest rates decision.โ€ฆ

Bank of England says JLR's cyberattack contributed to UK's unexpectedly slower GDP growth

07.11.2025 11:47 ๐Ÿ‘ 3 ๐Ÿ” 2 ๐Ÿ’ฌ 1 ๐Ÿ“Œ 0
Qualification PRIS : 
Prestataires de rรฉponse aux incidents de sรฉcuritรฉ

Qualification PRIS : Prestataires de rรฉponse aux incidents de sรฉcuritรฉ

#VisaSรฉcuritรฉ | โœ…La gestion de crise dโ€™origine cyber devient une activitรฉ ร  part entiรจre du rรฉfรฉrentiel PRIS !

๐Ÿ” Avec cette mise ร  jour, le rรฉfรฉrentiel dโ€™exigences applicables aux prestataires de rรฉponse aux incidents de sรฉcuritรฉ comprend ainsi 5 activitรฉs.

๐Ÿ”— cyber.gouv.fr/actualites/p...

28.10.2025 15:31 ๐Ÿ‘ 6 ๐Ÿ” 4 ๐Ÿ’ฌ 0 ๐Ÿ“Œ 0
Post image
20.10.2025 09:25 ๐Ÿ‘ 142 ๐Ÿ” 9 ๐Ÿ’ฌ 2 ๐Ÿ“Œ 1