koen, to zip
@koen@procolix.social avatar

Armijn Hemel heeft fun met op de @nluug

Belganon, to zip French
@Belganon@mastodon.social avatar

Compression au format

kubikpixel, (edited ) to Signal German
@kubikpixel@chaos.social avatar

» @signalapp Chefin kritisiert Karners Entwurf zu Messenger-Überwachung:
Die Regierung will Messenger-Dienste stärker überwachen. Wenn man im Datenschutz eine Tür öffnet, öffne man sie für alle, warnt @Mer__edith «

…und doch wollen mir Menschen immer wieder beibringen, dass die nichts zu verbergen haben. Eine Auswirkung von der Übernahme von deren mentalen Wahrnehmung und Privatsphäre, was ich als sehr übel empfinde.

👉 https://www.derstandard.at/story/3000000219755/signal-chefin-kritsiert-karners-entwurf-zu-messenger-ueberwachung

kubikpixel, (edited )
@kubikpixel@chaos.social avatar

🧵 …ich habe es erst jetzt online mir angesehen. Ein spannendes, so wie für die Allgemeinheit, ein sehr informelles Interview:

» @ORF_News Langfassung – @signalapp Chefin zu Messenger-Überwachung:
@Mer__edith die Präsidentin der Signal-Foundation, spricht über die Pläne des Innenministeriums zur Messengerüberwachung und äußert Kritik am KI-Hype.«

📺 https://tvthek.orf.at/profile/Langfassung/13893271/ZIB-2-Langfassung-Signal-Chefin-zu-Messenger-Ueberwachung/14226258


inlovewithpda, to zip
@inlovewithpda@chaos.social avatar

I love Linux, because I can still use my drive

cryptax, to android
@cryptax@mastodon.social avatar

Just analyzed a spyware sample that bypasses Android 13 Restricted Settings so as to drop another malware with full access to Accessibility API.

  • use of malformed ZIP to break apktool and other tools.

https://cryptax.medium.com/android-spynote-bypasses-restricted-settings-breaks-many-re-tools-8791b3e6bf38

governa, to zip
@governa@fosstodon.org avatar
cryptax, to android
@cryptax@mastodon.social avatar

I've just published a blog post on a new sample of Android/BianLian botnet which uses (1) an intentionally bad formed ZIP, and (2) uses a new packer.

https://cryptax.medium.com/bad-zip-and-new-packer-for-android-bianlian-5bdad4b90aeb

By the way, this will be covered in my @ringzer0 training.

#android #malware #zip #packer #kavanoz #medusa #JEB

yuliyan, to macos
@yuliyan@nahe.social avatar

DaVinci Resolve on macOS comes as a .zip that contains a .dmg that contains a .pkg that installs an .app

A head is splitting apart to reveal another version of itself again and again.

AyPapi, to alice

@aypapi

It's a beautiful day, the sun is shining, the birds are singing and Alice May is naked and having fun! The raunchy redhead is out and about, frolicking through the garden, her pale body as naturally gorgeous as any flower, with long, slim legs and a slender waist, curvy hips and the cutest boobies, nipples stiff with pleasure. She loves her body, loves to play, and today she loves to stretch out on the flagstones and spread her legs open, showing off her hot pussy, pink and luscious beneath a light dusting of pubic hair. Sexy, smiling, sweet sugarplum!

Original Gallery: https://www.metart.com/model/alice-may/gallery/20180216/AVEJA?PA=1813773

Download zips: https://bitbucket.org/whitegirls18/2018.02.16-metart-alice-may-in-aveja/get/master.zip

YesIKnowIT, to zip
@YesIKnowIT@mastodon.social avatar

.tar, .zip, .gz--you already have seen those extensions at the end of archive files, don't you?

But what do they mean? What is the difference between those formats?

https://itsfoss.com/tar-vs-zip-vs-gz/

happysinger, to zip

Remember to check in on your local pumper.

image/png
image/png

governa, to zip
@governa@fosstodon.org avatar
AyPapi, to Ukraine
AyPapi, to languagelearning

https://bitbucket.org/whitegirls18/metart-23.06.12-vitalievna-sweet-desire/get/master.zip

MetArt 23.06.12 Vitalievna in Sweet Desire Gorgeous blonde Vitalievna is sweetly sexy in her pretty summer outfit, her tousled curls framing her big blue eyes and sultry pout. Lounging on her bed in the soft afternoon light, she watches herself in the mirrored wall as she tosses her clothes aside, then takes her time peeling off her white lace lingerie. Her pierced nipples are alluringly stiff as she goes face down to flaunt her shaved pussy and perfect ass.
MetArt 23.06.12 Vitalievna in Sweet Desire Gorgeous blonde Vitalievna is sweetly sexy in her pretty summer outfit, her tousled curls framing her big blue eyes and sultry pout. Lounging on her bed in the soft afternoon light, she watches herself in the mirrored wall as she tosses her clothes aside, then takes her time peeling off her white lace lingerie. Her pierced nipples are alluringly stiff as she goes face down to flaunt her shaved pussy and perfect ass.
MetArt 23.06.12 Vitalievna in Sweet Desire Gorgeous blonde Vitalievna is sweetly sexy in her pretty summer outfit, her tousled curls framing her big blue eyes and sultry pout. Lounging on her bed in the soft afternoon light, she watches herself in the mirrored wall as she tosses her clothes aside, then takes her time peeling off her white lace lingerie. Her pierced nipples are alluringly stiff as she goes face down to flaunt her shaved pussy and perfect ass.

jtk, (edited ) to random

TLD fun facts.

There are about 14,000 names in the .zip zone.

un.zip is not in the zone, but it is reserved and you can't register it.

bidenleak.zip and trumpleak.zip were both registered on May 13 seemingly at the same time by the same registrant, and are currently parked.

There are dozens of names that have "install" in the first label, those might be good ones for a rainy day analysis.

dataplane.zip has a secret message if you can find it (some did at ).

Some .zip names aren't cheap. For example, boston.zip is currently available, but it'll cost ya.

jgoerzen, to random
@jgoerzen@floss.social avatar

It's time for me to talk about , so here you go: , a thread. 1/

You probably know . A nice feature of is that it can be streamed; you can pipe it to ssh to create or extract an archive, pipe it through compressors and encryptors and so forth.

This is also its weakness. If you want just one file or directory from a tar file, you have to decompress/decrypt and read the whole thing. Even if you just want a LIST of it, you have to read the whole thing. Very inefficient.

jgoerzen,
@jgoerzen@floss.social avatar

2/ So opposite tar, there is . Generally speaking, zip isn't streamed, but it does support random access. It also is tightly coupled with certain compression algorithms.

So what we need is something that can do both: random-access and streaming. And while we're at it, it should slice and dice files like Perl does strings. It should be able to combine, separate, stripe over multiple media, compress and encrypt (preserving random access), and work with cloud. does all this.

nfd, to infosec
YesIKnowIT, to random
@YesIKnowIT@mastodon.social avatar

.tar, .zip, .gz--you already have seen those extensions at the end of archive files, don't you?

But what do they mean? What is the difference between those formats?

https://itsfoss.com/tar-vs-zip-vs-gz/

michael, to random
@michael@thms.uk avatar

Windows 11 calls .ZIP files Postcode files in UK English

This is fantastic. They should keep it 😁

https://www.neowin.net/news/accept-essential-biscuits-windows-11-calls-zip-files-postcode-files-in-uk-english/

0x58, to infosec

📨 Latest issue of my curated and list of resources for week /2023 is out! It includes, but not only:

➝ 🇺🇸 🪖 Air Force denies running simulation where AI drone “killed” its operator
➝ 🇺🇸 🏂 Snowboards discloses after February attack
➝ 🇺🇸 🧪 Enzo Biochem Attack Exposes Information of 2.5M Individuals
➝ 🧠 🤖 Introducing Charlotte AI, ’s Generative AI Security Analyst
➝ 🐍 🦠 Malicious Packages Using Compiled Code to Bypass Detection
➝ 🇰🇵 🎠 N. Korean ScarCruft Hackers Exploit LNK Files to Spread
➝ 🦠 📱 New Zero-Click Hack Targets Users with Stealthy Root-Privilege
➝ 🇷🇺 🇺🇸 says U.S. accessed thousands of phones in spy plot
➝ 🇯🇵 🚗 Discloses New Data Breach Involving Vehicle, Customer Information
➝ ☁️ 👻 Organizations Warned of ‘Ghost Sites’ Exposing Sensitive Information
➝ 🔐 👀 faces $30 million fine over Ring, Alexa violations
➝ 🔐 🧱 Active Mirai Botnet Variant Exploiting Devices for Attacks
➝ 🇷🇺 🇺🇦 Russia’s ‘Silicon Valley’ hit by cyberattack; Ukrainian group claims deep access
➝ 🦠 🤖 Found in Apps With Over 420 Million Downloads
➝ 🦠 🚪 malware spread via Google Ads for , GIMP, more
➝ 👛 Southeast Asian hacking crew racks up victims, rapidly expands criminal campaign
➝ 🍏 finds bug that lets hackers bypass SIP root restrictions
➝ 🦠 🚪 zero-day abused since 2022 to drop new malware, steal data
➝ 🇬🇷 Worst cyberattack in disrupts high school exams, causes political spat
➝ 🇮🇳 🎠 Sneaky DogeRAT Trojan Poses as Popular Apps, Targets Indian Users
➝ 🇺🇸 U.S. Department of Defense releases 2023 Cyber Strategy
➝ 📱☝🏻 New BrutePrint Attack Lets Attackers Unlock Smartphones with Fingerprint Brute-Force
➝ 🇯🇵 🎠 New GobRAT Remote Access Targeting Routers in
➝ 🦠 📂 Clever ‘File Archiver In The Browser’ phishing trick uses domains

📚 This week's recommended reading is: "Fancy Bear Goes Phishing: The Dark History of the Information Age, in Five Extraordinary Hacks" by Scott J. Shapiro

Subscribe to the to have it piping hot in your inbox every Sunday ⬇️

https://0x58.substack.com/p/infosec-mashup-week-222023

r1cksec, to infosec

New cheatsheets pushed🕵️‍♂️​

https://github.com/r1cksec/cheatsheets

A new technique that can lead to code execution on a client. You search for a archive in Explorer, land on a server and unsuspectingly click on a .jar file. No warning, no , no execution blocker :blobcat0_0:​
https://badoption.eu/blog/2023/06/01/zipjar.html

An interesting article that shows an example of how to proceed when analyzing a 🤖​
https://www.akamai.com/blog/security-research/dark-frost-botnet-unexpected-author-profile

Two handy tools to quickly analyze emails :mail_smirk:​
https://github.com/deFr0ggy/NightOwl
https://github.com/z0m31en7/WhatMail

Go source code that creates an exe file that can delete itself ❌​
https://github.com/secur30nly/go-self-delete

A tool to disable & while remaining as undetected as possible 🥋​
https://github.com/icyguider/LightsOut

3kh0, to random
0x58, to infosec
itnewsbot, to tech
@itnewsbot@schleuss.online avatar

Cancel your WinRAR trial: Windows will soon support RAR, gz, 7z, and other archives - Enlarge (credit: Andrew Cunningham)

Buried among the AI announ... - https://arstechnica.com/?p=1941640

  • All
  • Subscribed
  • Moderated
  • Favorites
  • megavids
  • tester
  • DreamBathrooms
  • thenastyranch
  • magazineikmin
  • osvaldo12
  • ethstaker
  • Youngstown
  • mdbf
  • slotface
  • rosin
  • ngwrru68w68
  • kavyap
  • GTA5RPClips
  • JUstTest
  • cisconetworking
  • InstantRegret
  • khanakhh
  • cubers
  • everett
  • Durango
  • tacticalgear
  • Leos
  • modclub
  • normalnudes
  • provamag3
  • anitta
  • lostlight
  • All magazines