Good night, Jupiter
Good night, Jupiter
I can go sleep now with a more colourful photo of M42 obtained tonight π
I'm still in the learning phase, but I feel pretty proud of my first M42 Nebula shot π. Even taking it with a full moon and in the middle of the city, I got a decent photo.
Next time will be much better πͺπΌ
an easy way to remember the difference between ssh -L and ssh -R is to try both until it works
A screenshot of the rule editing dialog with all the options described in the readme.
I updated that Burp Global Match & Replace plugin to use the Montoya API, be able to target specific Burp tools (or apply globally), extend the rule matching syntax, and give you a view per request and response of the changes.
github.com/singe/burp_g...
A close up picture of the sun with a dozen sunspots or so
Today I made my first portrait of the sun π
You can even see the sunspots! The focal length of my telescope makes it impossible to take the picture of the whole sun, but I'll get to it soon.
PoC authentication bypass for telnetd.
Quick lunch time side quest building a simple lab to play with the inetutils-telnetd authentication bypass as disclosed on oss-sec β.
github.com/leonjza/inet...
β seclists.org/oss-sec/2026...
With a bit of zoom and colour correction
Yesterday I was able to catch, with my phone, Jupiter transitioning through the lens. A lot of margin for improvement (e.g. motor for the RA axis), but happy with the progress I'm making π
And a few more of this morning π
A few photos I took this weekend πΆπ¦
The number of times people have tried to kill Net-NTLMv1 eh?
youtu.be/lm7Cuktpnb4?...
A planetary camera
Uh, really excited to give my new toy a try tonight πΉπ
A black box with a single red led similar to the Internet as depicted in IT Crowd
I'm getting more and more disappointed with the Internet nowadays, so I made one for myself yesterday.
A source shares some screenshots of the Lapsus ransomware gang celebrating the government shutdown as a disruption to the FBI investigations tracking them.
They also refer to Trump as "my king."
Eso no se olvida nunca, lo llevo como el tatuaje de la mili de "Amor de GPO"
Gracias! Me va a venir genial esa lista para desconectar un poco del contenido americano.
Joder, no consigo recordar ese diagrama de Venn! Pero tampoco me acuerdo de lo que comΓ ayer, asΓ que...
Yeah, probably it's my fault (my follow list), combined with the insufficient user base of other countries here, and, probably, the algorithm used in the "Discovery" tab.
Maybe it's my fault, but I'm really missing non-US related content in Bluesky. Can we talk about other countries, please?
I don't want to go back to X π’ ππΌ
If you're at RomHack at the end of the month, come tell me your @github.com username and I'll give you early access to the @sensepost.com tool repo for PipeTap at the con! π
Below is a demo of the proxy in action.
www.youtube.com/watch?v=or8Y...
The proxy view for PipeTap, a Windows Named Pipe Analysis Tool
I've been hacking on a new Windows Named Pipe tool called PipeTap which helps analyse named pipe communications. Born out of necessity while doing some vulnerability research on a target, its been super useful in reversing it's fairly complex protocol. :)
Three sides of a sand-coloured building surrounding a rectangular pool. The pool is edged by a low hedge and the water reflects the surrounding buildings and the blue sky above. In the foreground water trickles down into the pool from a smaller circular stone pool. The building at the far end has a carved, arched verandah and sits below a square tower. People stroll along the sides of the building.
One of the pools in the Alhambra Palace complex in Granada.... had to be this one for #PalacesandGardens #Water #photography #dailyphoto #travel #Spain
A screenshot of two windows. The top is a view of the Microsoft SQL management GUI showing that βExtended Protectionβ is enabled for NTLM authentication. The bottom is a terminal showing an invocation of Impacketβs mssqlclient.py successfully connecting using channel binding.
Reverse engineering Microsoftβs SQLCMD.exe to implement Channel Binding support for MSSQL into Impacketβs mssqlclient.py. Storytime from Aurelien (@Defte_ on the bird site), including instructions for reproducing the test environment yourself.
sensepost.com/blog/2025/a-...
From June 2025 through July 2025, the Cloudflare Email Security team has been tracking a cluster of cybercriminal threat activity leveraging Proofpoint and Intermedia link wrapping to mask phishing payloads. Read more: cfl.re/4lUXBEE
There's an ongoing npm supply chain attack taking place:
socket.dev/blog/npm-phi...
x.com/AikidoSecuri...
The bcheck is here, ping me if you have comments or improvement suggestions: github.com/felmoltor/BC...
I've created a pull request to detect CitrixBleed 2 into Burp's Bcheck repository: github.com/PortSwigger/...