DEF CON 32 - Abusing Windows Hello Without a Severed Hand - Ceri Coburn, Dirk jan Mollema2.8M subscribers in the hacking community. A subreddit dedicated to hacking and hackers. Constructive collaboration and learning about exploits…·reddit.com·Nov 2, 2024DEF CON 32 - Abusing Windows Hello Without a Severed Hand - Ceri Coburn, Dirk jan Mollema
Vatican and Israel implicated in Italian hacking scandal, leaked files reveal2.8M subscribers in the hacking community. A subreddit dedicated to hacking and hackers. Constructive collaboration and learning about exploits…·reddit.com·Nov 1, 2024Vatican and Israel implicated in Italian hacking scandal, leaked files reveal
Change Healthcare Breach Hits 100M Americans – A Reminder of Healthcare’s Cybersecurity Gap?It’s alarming that the recent breach at Change Healthcare has exposed the data of 100 million Americans. With hospitals and healthcare organizations…·reddit.com·Nov 1, 2024Change Healthcare Breach Hits 100M Americans – A Reminder of Healthcare’s Cybersecurity Gap?
DDoS site Dstat.cc seized and two suspects arrested in Germany994K subscribers in the cybersecurity community. This subreddit is for technical professionals to discuss cybersecurity news, research, threats, etc.·reddit.com·Nov 1, 2024DDoS site Dstat.cc seized and two suspects arrested in Germany
Microsoft: Chinese hackers use Quad7 botnet to steal credentials993K subscribers in the cybersecurity community. This subreddit is for technical professionals to discuss cybersecurity news, research, threats, etc.·reddit.com·Oct 31, 2024Microsoft: Chinese hackers use Quad7 botnet to steal credentials
Why is it a thankless job to report valid bugs in Fortune 500 Company?Recently I found subdomain takeover in OTIS (Otis is the world's leading elevator and escalator manufacturing, installation and service company.)…·reddit.com·Oct 31, 2024Why is it a thankless job to report valid bugs in Fortune 500 Company?
USB security for air gapped networksHi https://www.wired.com/story/goldenjackal-hacking-group-new-tools-air-gapped-machines/ We support an air gapped network. Using the mighty…·reddit.com·Oct 25, 2024USB security for air gapped networks
China's Quantum Tunneling Breakthrough: The Future of Encryption is at Risk983K subscribers in the cybersecurity community. This subreddit is for technical professionals to discuss cybersecurity news, research, threats, etc.·reddit.com·Oct 24, 2024China's Quantum Tunneling Breakthrough: The Future of Encryption is at Risk
Vulnhuntr: Autonomous AI discovers dozen+ 0-day vulnerabilities983K subscribers in the cybersecurity community. This subreddit is for technical professionals to discuss cybersecurity news, research, threats, etc.·reddit.com·Oct 23, 2024Vulnhuntr: Autonomous AI discovers dozen+ 0-day vulnerabilities
Is it possible to have secure authentication without emails, text messages, or other identifying external services?Web dev here, but curious about security practices. I feel like it's fairly common to feel annoyed about giving your email to yet another random…·reddit.com·Oct 22, 2024Is it possible to have secure authentication without emails, text messages, or other identifying external services?
Windows question -- automated tool to determine if non-MS issued certs are installed?Hi. I'm a non-Windows person so forgive me if this is a stupid question. I know how to look at the certs but there are lots installed. I wouldn't…·reddit.com·Oct 22, 2024Windows question -- automated tool to determine if non-MS issued certs are installed?
CISA confirms Veeam vulnerability is being used in ransomware attacks980K subscribers in the cybersecurity community. This subreddit is for technical professionals to discuss cybersecurity news, research, threats, etc.·reddit.com·Oct 21, 2024CISA confirms Veeam vulnerability is being used in ransomware attacks
Malicious ads exploited Internet Explorer zero day to drop malware976K subscribers in the cybersecurity community. This subreddit is for technical professionals to discuss cybersecurity news, research, threats, etc.·reddit.com·Oct 17, 2024Malicious ads exploited Internet Explorer zero day to drop malware
Websites for students to test OWASP ZAP?Hi everyone! For a school project, I have to do a passive scan (to analyze HTTP requests and responses for known vulnerabilities) and spidering…·reddit.com·Oct 17, 2024Websites for students to test OWASP ZAP?
Administrator Protection feature - what it is about ?In a blog post on Dark Reading titled “New Windows Feature Limits Admin Privileges,” it is mentioned: “Once the elevated admin token is activated…·reddit.com·Oct 15, 2024Administrator Protection feature - what it is about ?
European cyber insurance startup Stoïk secures $27M972K subscribers in the cybersecurity community. This subreddit is for technical professionals to discuss cybersecurity news, research, threats, etc.·reddit.com·Oct 15, 2024European cyber insurance startup Stoïk secures $27M
How can I make sure a job offer is legit?I've been talking with an HR rep from a (legitimate) company for a couple of weeks, I've had several online interviews with other staff members too…·reddit.com·Oct 15, 2024How can I make sure a job offer is legit?
Blue team, IR folks: If you knew an adversary was in your system, what steps would you take?Ive been invited to participate in a full-day security training exercise involving a situation where my entire network is compromised by a simulated…·reddit.com·Oct 15, 2024Blue team, IR folks: If you knew an adversary was in your system, what steps would you take?
SIEM Hunt - Deal killers and reasons to avoidWe're evaluating SIEM technologies, and would love any feedback on major differentiators between the top tools, like "Stay away from X if you care…·reddit.com·Oct 15, 2024SIEM Hunt - Deal killers and reasons to avoid
Best Hands On Training For Experienced IT ProfessionalHowdy, I’m looking to make a career switch to Cyber and was hoping to get some advice on best website/platform for hands on Cyber training. I’m…·reddit.com·Oct 13, 2024Best Hands On Training For Experienced IT Professional
TOTP in your Password Manager; should you?I have a Bitwarden pro subscription and moved a few of my accounts TOTP 2FA credentials into Bitwarden. While very convenient, is it really a good…·reddit.com·Oct 10, 2024TOTP in your Password Manager; should you?
I am building an XSS attacks defender => Please roast my solution (feedback request)Cross-site scripting is the most prevalent security vulnerability online. Please roast my proposed solution mitigating this risk…·reddit.com·Oct 10, 2024I am building an XSS attacks defender => Please roast my solution (feedback request)
Has Archive.org been hacked?965K subscribers in the cybersecurity community. This subreddit is for technical professionals to discuss cybersecurity news, research, threats, etc.·reddit.com·Oct 9, 2024Has Archive.org been hacked?
ADT says hacker stole encrypted internal employee data after compromising business partner964K subscribers in the cybersecurity community. This subreddit is for technical professionals to discuss cybersecurity news, research, threats, etc.·reddit.com·Oct 8, 2024ADT says hacker stole encrypted internal employee data after compromising business partner
Is Daniel Miessler a Messiah or a crank with AI?I saw his projects with AI seems to assume he cracked the human problemswith AI. Anyone tried his tool?·reddit.com·Oct 8, 2024Is Daniel Miessler a Messiah or a crank with AI?
firmware analysis / verificationRolling out some IoT devices and am looking for suggestions for BIOS / firmware analysis. Would like to make sure there was no obvious tampering by…·reddit.com·Oct 6, 2024firmware analysis / verification
ISO 27001 Lead Implementer certification - UKHave any of you pursued ISO 27001 Lead Implementer? If so, do you have any recommendations if I'm self-funding? I've seen that some of these cost a…·reddit.com·Oct 5, 2024ISO 27001 Lead Implementer certification - UK
Crowd-Strike Evaluation - Internship AssessmentHey everyone, I'm super excited about the chance to intern at Crowd-Strike, especially given my passion for cybersecurity. I've been following their…·reddit.com·Oct 5, 2024Crowd-Strike Evaluation - Internship Assessment
Python for SIEM Engineer Interview Questions?Hi all! I have an interview for a SIEM and Detection Engineer position which is what I do now. One of the sections will be testing my in Python. I…·reddit.com·Oct 5, 2024Python for SIEM Engineer Interview Questions?
Are there any recommended coding practice problems to prepare for a security engineer interview?I’m a Security Engineer but I’ve lost touch with DS/algorithms since transitioning to security from data science and dev role. I’m preparing for…·reddit.com·Oct 5, 2024Are there any recommended coding practice problems to prepare for a security engineer interview?