Lystena 's Avatar

Lystena

@lystena

team red -> team blue connoisseur of "how hard is it really?" consequences

80
Followers
346
Following
18
Posts
01.07.2023
Joined
Posts Following

Latest posts by Lystena @lystena

Preview
Announcing comprehensive sovereign solutions empowering European organizations - The Official Microsoft Blog Today, we are taking the next step in strengthening our European Digital Commitments to empower our customers with greater choice, more control over their data privacy and the most robust digital resi...

Microsoft is now selling SaaS without the aaS

blogs.microsoft.com/blog/2025/06...

17.06.2025 03:54 πŸ‘ 10 πŸ” 3 πŸ’¬ 4 πŸ“Œ 1
Chris Krebs (CISA) has a posse

Chris Krebs (CISA) has a posse

18.04.2025 04:22 πŸ‘ 1 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0

I mean did it and was it actually thought to/meant to "help"? Because wowee its terrible

14.04.2025 11:29 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
12.04.2025 18:50 πŸ‘ 20 πŸ” 6 πŸ’¬ 0 πŸ“Œ 1

Someone from India has been doing mass downloads from our virus exchange (in the millions)

1. My dude β€” we allow bulk downloads from our main website.
2. Don't make us impose API limitations

09.03.2025 04:31 πŸ‘ 40 πŸ” 3 πŸ’¬ 0 πŸ“Œ 0
Preview
Use one Virtual Machine to own them allβ€Šβ€”β€Šactive exploitation of ESXicape A chain of three zero days allow threat actors to escape a Virtual Machine.

Update your VMware ESX farms ASAP.

There's an in the wild exploit chain being used which does VM -> Hypervisor escape, across all versions of ESXi. Allows full cluster access.

doublepulsar.com/use-one-virt...

05.03.2025 11:59 πŸ‘ 59 πŸ” 29 πŸ’¬ 3 πŸ“Œ 2

I feel like this gives you a mandate to glue a Mercedes badge to your bin.

15.02.2025 04:38 πŸ‘ 1 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0

Man that's terrible news. Dfj was a great person and a great part of the community.

13.02.2025 20:22 πŸ‘ 6 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Kirkjufell, Iceland

Kirkjufell, Iceland

Reminds me of visiting Kirkjufell in Iceland, just on a completely different size scale πŸ˜…

Good luck with the research

22.01.2025 21:43 πŸ‘ 0 πŸ” 0 πŸ’¬ 1 πŸ“Œ 0
Clipping the Canary’s wings: Bypassing AiTM Phishing Detections | Spotit insights

Defenders use cross-origin requests through CSS url() or injected JS to leak your phishing URL in the HTTP Referer header.

Today, I've been reminded about the excellent post by Keanu Nys, which contains a lot of great evasion ideas!

insights.spotit.be/2024/06/03/c...

18.11.2024 11:29 πŸ‘ 13 πŸ” 3 πŸ’¬ 0 πŸ“Œ 0

Oh, I never posted my gotofail story on here.

Early 2014, someone came to me about a catastrophic vulnerability in Apple's TLS implementation.

I shit you not, they'd overheard someone at a bar drunkenly bragging about how they were going to sell it to a FVEY intelligence agency for six figures.

17.11.2024 23:22 πŸ‘ 458 πŸ” 101 πŸ’¬ 7 πŸ“Œ 20

Thanks for putting these together. Always looking for more MDE/MDI and general detection engineering folk to follow.

18.11.2024 10:19 πŸ‘ 1 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0

#DEATHCON24 has been great and what looks to be still a bunch of great content to go through.

Enjoyed the format!

18.11.2024 10:13 πŸ‘ 1 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0

Unlucky that discord is seeming to be having a bit of an outage during #DEATHCON24

17.11.2024 05:32 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Post image Post image Post image
15.11.2024 14:08 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
15.11.2024 14:08 πŸ‘ 1 πŸ” 0 πŸ’¬ 1 πŸ“Œ 0

I used to love "old Twitter" for the somewhat centralised infosec content and the high signal to noise ratio of valuable content I had been able to curate in my follows. It was notoriously good at providing just the right blog article for someone's engagement that week. I hope it returns here

15.11.2024 13:53 πŸ‘ 1 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0

You're damn right it is. What is this thread; where does it lead to; who put it there; why does it work like that; why do they want that...

Often benign outcomes. Until it isn't.

15.11.2024 13:30 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0

Brisbane was 17Β°C overnight last night ..

05.07.2023 13:23 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Post image

After today we were a tad doubtful

02.07.2023 08:02 πŸ‘ 1 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Post image

Definitely big "I just got here, is it me?" vibes

02.07.2023 07:52 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0

My reputation is now fast becoming "oh your the person who just makes the executive sad or uncomfortable about risks introduced by hard problems I'm trying my best to avoid thinking about"

02.07.2023 04:32 πŸ‘ 1 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0

Document names are kind of like job titles. There are internal and external document names. For example, the external document title is β€œRisk Register”, but the internal title is β€œWish List”.

25.05.2023 22:20 πŸ‘ 5 πŸ” 4 πŸ’¬ 1 πŸ“Œ 0

Hi, you can call me lystena. I used to do offensive security, find weird bugs, and annoy blue teamers. Then I joined the blue team, wrote weird alerts and automation to annoy red teamers. Now somehow I'm management, I make PowerPoints and I annoy everyone. πŸ€·β€β™‚οΈ

02.07.2023 04:09 πŸ‘ 4 πŸ” 0 πŸ’¬ 1 πŸ“Œ 0

Sup sup. How's things?

01.07.2023 22:27 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0