Dan's Avatar

Dan

@basic-123

413
Followers
101
Following
11
Posts
15.11.2024
Joined
Posts Following

Latest posts by Dan @basic-123

Preview
Kubernetes Remote Code Execution Vulnerability via Nodes/Proxy GET Permissions This Reddit post shares a link to a blog article hosted on grahamhelton.com discussing a remote code execution (RCE) vulnerability in Kubernetes. The vulnerability is related to GET permissions on nodes/proxy.

📌 Kubernetes Remote Code Execution Vulnerability via Nodes/Proxy GET Permissions https://www.cyberhub.blog/article/18609-kubernetes-remote-code-execution-vulnerability-via-nodesproxy-get-permissions

27.01.2026 18:20 👍 0 🔁 1 💬 0 📌 0
Preview
LearnKube — the Kubernetes training company LearnKube helps you get started on your Kubernetes journey through comprehensive in person or remote instructor-led training.

Check learnkube.com lots of resource and info. Classes have a good hands-on mix to them.

15.01.2026 09:36 👍 2 🔁 0 💬 0 📌 0

Would not surprise me, if i did that, but no its the right one

15.11.2025 19:48 👍 1 🔁 0 💬 0 📌 0

Thanks @ycabreraoc.bsky.social I love this series and youre such a fantastic speaker. Its like a fountain of knowledge.

15.11.2025 04:54 👍 1 🔁 0 💬 1 📌 0
Post image

Turns out you can communicate across containers via 63-bits of available space in a shared lock you acquire on /proc/self/ns/time that all processes have access to.

No networking required. The post has a demo of a chat app communicating across unprivileged containers.

h4x0r.org/funreliable/

12.11.2025 14:35 👍 218 🔁 54 💬 2 📌 10

Wow, so happy didn't know theres another season, hopefully lands in auz soon. Loved Peaky Blinders too, soundtrack so good

31.10.2025 08:23 👍 1 🔁 0 💬 0 📌 0
Solar System Lecture- Tracking Motion in the Sky
Solar System Lecture- Tracking Motion in the Sky YouTube video by Astronomer here!

Astronomer here! Due to popular demand (and a kind volunteer editor), my solar system class lectures this fall are available on YouTube for FREE! Check it out, no prior knowledge of astronomy required! 🤩🪐

🔭🧪🎢

youtu.be/2KpyL8yX044

25.10.2025 00:14 👍 162 🔁 57 💬 4 📌 2
Post image

Under the mountain 1981

16.10.2025 10:18 👍 1 🔁 0 💬 0 📌 0
Donald J. Trump
@realDonald Trump
+
I can't believe ABC Fake News gave Jimmy Kimmel his job back. The White House was told by ABC that his Show was cancelled!
Something happened between then and now because his audience is GONE, and his
"talent" was never there. Why would they want someone back who does so poorly, who's not funny, and who puts the Network in jeopardy by playing 99% positive Democrat GARBAGE. He is yet another arm of the DNC and, to the best of my knowledge, that would be a major Illegal Campaign Contribution. I think we're going to test ABC out on this. Let's see how we do.
Last time I went after them, they gave me $16 Million Dollars. This one sounds even more lucrative. A true bunch of losers! Let Jimmy Kimmel rot in his bad Ratings.
859 ReTruths 3.27k Likes
9/23/25, 9:35 PM

Donald J. Trump @realDonald Trump + I can't believe ABC Fake News gave Jimmy Kimmel his job back. The White House was told by ABC that his Show was cancelled! Something happened between then and now because his audience is GONE, and his "talent" was never there. Why would they want someone back who does so poorly, who's not funny, and who puts the Network in jeopardy by playing 99% positive Democrat GARBAGE. He is yet another arm of the DNC and, to the best of my knowledge, that would be a major Illegal Campaign Contribution. I think we're going to test ABC out on this. Let's see how we do. Last time I went after them, they gave me $16 Million Dollars. This one sounds even more lucrative. A true bunch of losers! Let Jimmy Kimmel rot in his bad Ratings. 859 ReTruths 3.27k Likes 9/23/25, 9:35 PM

I don't care if you like Jimmy Kimmel or not. I don't care if you haven't forgiven him for the Man Show. I don't care if you think he's not funny or that he's crass or whatever.

I care about the United States—and if you do, too, please watch tonight, and help make record-breaking ratings. 🙏🏻📺

24.09.2025 03:23 👍 50 🔁 11 💬 2 📌 1

So interesting, the start of how we change the way we allow ourselves to be governed? Listen to us or youre out.

23.09.2025 07:54 👍 1 🔁 0 💬 0 📌 0
Australian Cicada Names – Cicada Mania

They are amazing, with what looks like limitless variety. Each year we wonder which ones are coming. We have experienced a variety measures in decibels as high as a chainsaw. australian.museum/learn/specie...

28.08.2025 22:52 👍 1 🔁 0 💬 0 📌 0
Preview
Pritzker tells Trump to stay out of Chicago: ‘You are neither wanted here nor needed here’ | CNN Politics Illinois Gov. JB. Pritzker on Monday railed against President Donald Trump for suggesting he would deploy federal forces to Chicago, accusing the administration of “searching for ways to lay the groun...

Illinois Gov. JB Pritzker railed against President Donald Trump for suggesting he would deploy federal forces to Chicago, accusing the administration of “searching for ways to lay the groundwork to circumvent our democracy, militarize our cities and end elections.”

26.08.2025 01:31 👍 393 🔁 92 💬 25 📌 3
Video thumbnail

Illinois is launching a first-of-its-kind legal hotline for LGBTQ+ individuals — Illinois Pride Connect.

As the only state in the nation that will provide free legal advice to protect the LGBTQ+ community, we'll help fight ignorance with information and cruelty with compassion.

22.08.2025 02:00 👍 39578 🔁 10224 💬 800 📌 1324
Preview
Buttercup is now open-source! Now that DARPA’s AI Cyber Challenge (AIxCC) has officially ended, we can finally make Buttercup, our CRS (Cyber Reasoning System), open source!

Security firm Trail of Bits has open-sourced Buttercup, a Cyber Reasoning System (CRS) developed for the AIxCC (AI Cyber Challenge).

It is designed to find and patch software vulnerabilities in open-source code repositories.

blog.trailofbits.com/2025/08/08/b...

github.com/trailofbits/...

09.08.2025 22:14 👍 20 🔁 10 💬 0 📌 0
Preview
ASVS/5.0/en at master · OWASP/ASVS Application Security Verification Standard. Contribute to OWASP/ASVS development by creating an account on GitHub.

There's so many changes, so if you are keen, have a look at the repo github.com/OWASP/ASVS/t...

30.05.2025 09:38 👍 3 🔁 2 💬 1 📌 0
Video thumbnail

How academics imagine their lives would look like if they decide to work in tech

11.04.2025 19:15 👍 8925 🔁 1062 💬 309 📌 287

Yes, what a deranged band wagon. Just going to get worse with the Wiz news. Have you checked James Berthoty's blogs, etc.

03.04.2025 07:26 👍 0 🔁 0 💬 0 📌 0

New episode! 🚨
Ep 156: Kill List

Take my hand. We're going into the darknet.

Special extra episode this month because I❤️u.

18.03.2025 07:13 👍 106 🔁 19 💬 2 📌 1
Murphy: Six Weeks In, This White House Is On Its Way To Being The Most Corrupt In U.S. History
Murphy: Six Weeks In, This White House Is On Its Way To Being The Most Corrupt In U.S. History YouTube video by Senator Chris Murphy

Senator Chris Murphy took to the Senate floor on Friday to break down the corruption flowing from the WH. He connects the dots, and makes a clear argument regarding who what where and why Shitler and Muskrat are destroying our govt!! This needs to be shared far and wide!!

youtu.be/hycoCYenXls

08.03.2025 05:21 👍 24322 🔁 11754 💬 832 📌 996
NFTables mode for kube-proxy A new nftables mode for kube-proxy was introduced as an alpha feature in Kubernetes 1.29. Currently in beta, it is expected to be GA as of 1.33. The new mode fixes long-standing performance problems w...

kubernetes.io/blog/2025/02...

03.03.2025 08:54 👍 11 🔁 3 💬 1 📌 0
Yoke is really cool Infrastructure as code, but actually

Yoke: Infrastructure as code, but actually Discussion

03.03.2025 06:20 👍 0 🔁 1 💬 0 📌 0

You can't trust molecules. They MAKE UP EVERYTHING.

18.02.2025 19:06 👍 40 🔁 6 💬 1 📌 0
QR code for Signal, username: mattburgess.20

QR code for Signal, username: mattburgess.20

Hello, many new Bluesky followers!

I’m a WIRED reporter looking to talk to people about the repercussions of Trump/Musk’s cuts. (In and outside of US)

In particular on issues such as child protection, cybercrime, national security, intel sharing

I can be reached on Signal: mattburgess.20

05.02.2025 19:44 👍 178 🔁 95 💬 9 📌 3
Post image
29.01.2025 08:32 👍 5 🔁 1 💬 0 📌 0
1. Three new bad practices on use of known insecure or outdated cryptographic functions, hardcoded credentials, and product support periods.
2. Additional context added to the memory safety section.
3. Added additional examples of recommended actions to prevent SQL injection vulnerabilities.
4. Added additional examples of recommended actions to prevent command injection vulnerabilities.
5. Clarified timelines for patching Known Exploited Vulnerabilities (KEVs).
6. Added language for multi-factor authentication (MFA) specific to operational technology products.
7. Added that software manufacturers should support phishing-resistant MFA.
8. Other updates to phrasing throughout.

1. Three new bad practices on use of known insecure or outdated cryptographic functions, hardcoded credentials, and product support periods. 2. Additional context added to the memory safety section. 3. Added additional examples of recommended actions to prevent SQL injection vulnerabilities. 4. Added additional examples of recommended actions to prevent command injection vulnerabilities. 5. Clarified timelines for patching Known Exploited Vulnerabilities (KEVs). 6. Added language for multi-factor authentication (MFA) specific to operational technology products. 7. Added that software manufacturers should support phishing-resistant MFA. 8. Other updates to phrasing throughout.

The FBI has released version 2.0 of its Product Security Bad Practices

PDF: www.ic3.gov/CSA/2025/250...

The changes are detailed in the image below

19.01.2025 18:39 👍 14 🔁 6 💬 0 📌 0

CISA has published a playbook on how organizations can fully employ the newly introduced logging capabilities in Microsoft Purview Audit (Standard) to better detect threats

www.cisa.gov/resources-to...

19.01.2025 19:11 👍 21 🔁 7 💬 0 📌 0

Look forward to it. Big shout out to the k8ssgpt community, thanks

15.01.2025 09:45 👍 1 🔁 0 💬 0 📌 0
Preview
GitHub - notjuliet/awesome-bluesky: A list of tools and clients available for the Bluesky platform A list of tools and clients available for the Bluesky platform - notjuliet/awesome-bluesky

Great directory of Bluesky apps, tools, and resources github.com/notjuliet/aw...

16.11.2024 23:40 👍 934 🔁 298 💬 173 📌 18

Hi Rory, please add me to the Web App Sec list. Thanks

15.11.2024 19:23 👍 1 🔁 0 💬 0 📌 0