🚀 Security - Active Exploitation of Papercut
Active exploitation of Papercut has been observed at Huntress Labs. Details can be found in their blog.
Key Points:
• Active exploitation of Papercut has been detected.
• Huntress Labs has documented the issue in their blog.
• The blog provides further information on the exploitation.
🔗 Resources:
• https://x.com/gleeda/status/2093364911363535029 ↗ - Original post URL
• https://x.com/ryanaraine ↗ - Ryan Araine's Twitter profile
• https://x.com/gleeda ↗ - Gleeda's Twitter profile
• https://x.com/HuntressLabs ↗ - Huntress Labs' Twitter profile
• https://t.co/U7QNMP2SUK ↗ - Huntress Labs' blog
🤖 AI - Claude Code and GitHub Copilot Plugins
A set of Claude Code and GitHub Copilot plugins has been developed to provide the AI Literacy framework's complete development workflow.
Key Points:
• The AI Literacy framework's complete development workflow is now available.
• The workflow includes harness engineering, agent orchestration, literate programming, CUPID code review, and the three enforcement loops.
• The plugins are available on GitHub.
🔗 Resources:
• https://x.com/blackorbird/status/2092994738114953235 ↗ - Original post URL
• https://github.com/Habitat-Thinki ↗ - GitHub repository
•
Image
🚀 Infosec - Join the Discord Community
A Discord community has been created for infosec professionals to stay current with the latest developments.
Key Points:
• A Discord community has been created for infosec professionals.
• The community provides a space for infosec professionals to discuss the latest developments.
• The community is free from noise and marketing.
🔗 Resources:
• https://x.com/ipurple/status/2092620244950851836 ↗ - Original post URL
• discord.gg/rR6FJBH - Discord community link
• https://x.com/ipurple ↗ - ipurple's Twitter profile
•
Image
🚀 Security - Foreign Intelligence Services
Foreign intelligence services, particularly those from China and Russia, are increasingly behind cyberattacks on German companies.
Key Points:
• Foreign intelligence services are increasingly behind cyberattacks on German companies.
• The cyberattacks are particularly prevalent in China and Russia.
• The attacks are a concern for German companies.
🔗 Resources:
• https://x.com/TheRecord_Media/status/2092991068060959084 ↗ - Original post URL
• https://x.com/ryanaraine ↗ - Ryan Araine's Twitter profile
• https://x.com/TheRecord_Media ↗ - The Record Media's Twitter profile
• https://t.co/WhmDt2y2vS ↗ - The Record Media's article
🚀 Security - Global Secure Access Setup
The Global Secure Access setup has been criticized for its flaws.
Key Points:
• The Global Secure Access setup has been criticized for its flaws.
• The setup has the same class of issue as Remote Help.
• The setup leaves users to package the installer themselves.
🔗 Resources:
• https://x.com/NathanMcNulty/status/2092843629765407090 ↗ - Original post URL
•
Image
•
Image
🚀 Security - Firefox Remediations
Firefox remediations have been discussed in the context of the Global Secure Access setup.
Key Points:
• Firefox remediations have been discussed in the context of the Global Secure Access setup.
• The remediations involve expanding arrows and setting up MOAR remediations.
• The remediations are necessary to prevent security issues.
🔗 Resources:
• https://x.com/NathanMcNulty/status/2092848993189654731 ↗ - Original post URL
•
Image
🚀 Infosec - Join the Discord Community
A Discord community has been created for infosec professionals to stay current with the latest developments.
Key Points:
• A Discord community has been created for infosec professionals.
• The community provides a space for infosec professionals to discuss the latest developments.
• The community is free from noise and marketing.
🔗 Resources:
• https://x.com/ipurple/status/2092620244950851836 ↗ - Original post URL
• discord.gg/rR6FJBH - Discord community link
• https://x.com/ipurple ↗ - ipurple's Twitter profile
•
Image
🚀 Security - Papercut Issue
A Papercut issue has been discussed in the context of the Global Secure Access setup.
Key Points:
• A Papercut issue has been discussed in the context of the Global Secure Access setup.
• The issue was caused by greed and a lack of delivery.
• The issue affected thousands of schools.
🔗 Resources:
• https://x.com/NathanMcNulty/status/2092331552927862994 ↗ - Original post URL
•
Image
🚀 Security - ConfigMgr RC
ConfigMgr RC has been discussed in the context of the Global Secure Access setup.
Key Points:
• ConfigMgr RC has been discussed in the context of the Global Secure Access setup.
• The RC through CMG worked flawlessly in the TP.
• The RC should have shipped.
🔗 Resources:
• https://x.com/NathanMcNulty/status/2092333160050864224 ↗ - Original post URL
• https://x.com/NathanMcNulty ↗ - NathanMcNulty's Twitter profile
• https://x.com/jcoehoorn ↗ - jcoehoorn's Twitter profile
🚀 Security - e2e Shellcode Unit Tests
e2e shellcode unit tests have been implemented in Sliver.
Key Points:
• e2e shellcode unit tests have been implemented in Sliver.
• Sliver has the broadest shellcode/encoder/compression compatibility of any framework.
• The framework includes Linux shellcode + shikata_ga_nai and MacOS/arm64 + XOR encoders.
🔗 Resources:
• https://x.com/LittleJoeTables/status/2092041869928878260 ↗ - Original post URL
• https://x.com/HackingLZ ↗ - HackingLZ's Twitter profile
• https://x.com/LittleJoeTables ↗ - LittleJoeTables' Twitter profile
• https://t.co/dcBpu49C5q ↗ - Sliver's GitHub repository
⭐️ Support
If you liked reading this report, please star ⭐️ this repository and follow me on Github ↗, 𝕏 (previously known as Twitter) ↗ to help others discover these resources and regular updates.