ankit_anubhav

@ankit_anubhav@infosec.exchange

Cybersecurity Researcher
https://x.com/ankit_anubhav

This profile is from a federated server and may be incomplete. Browse more on the original instance.

ankit_anubhav, to AppleVision

One step closer for humanity to be plugged into the matrix once in for all.

Brace for a dystopian future ๐Ÿ”†

ankit_anubhav, to opensource

Your contributions might help these small businesses who don't have that much budget as corporate, and the attacks hit them harder personally than big tech.

While life can be hectic, if you have a habit to contribute to open source in threat intelligence , don't give up on it.

ankit_anubhav, to Cybersecurity

CyberSecurity researcher folks. What are you going to when you reach 50?

Retire with investments, corporate leadership or continue to do your research? If you're in your 20s-30s have you started to think about this topic? Any feedback will be welcome โค๏ธ

ankit_anubhav, to Introvert

Small talk should be made illegal or atleast taxable

ankit_anubhav,

@nf3xn I get you, and your pov is the widely acceptable / correct one. Just some people have brain wired in a way that their very definition of success is to be able to have a life which doesn't involve small talk, live in middle of nowhere and so on.. ))

ankit_anubhav, to Cybersecurity
ankit_anubhav,

@nf3xn They tried their best. Apparently the campaign is focused on South East Asia / East Asia so they might not be expecting many English speaking victims.

ankit_anubhav, to ai

By 2050 people who can code in C, C++, Python etc without any "AI assistance" would be rare and much in demand as assembly code writers / reverse engineers in 2023

ankit_anubhav, to infosec

Not naming names but some of the are just increasing attack surface and then providing their own paid solution to protect against their own insecure practices.

ankit_anubhav, to foss

Intrigued today by Chimera Linux - A distribution with Linux kernel and BSD userland (no Gnu)

"A core tenet of Chimera is that being simple is better than being complex, but being complex is better than being complicated."


https://chimera-linux.org/

ankit_anubhav, to foss

The fact that it's literally called "jailbreak" starts with the assumption that they put you in the "jail" of an overpriced closed ecosystem


ankit_anubhav, to foss

There is a solid reason why 84%+ humans prefer a closed overpriced ecosystem like IPhone which has barely innovated in years..

ankit_anubhav, to Cybersecurity

How hard it will be to have a lock in your org, which only opens if 3 out of 5 cyberadmins plug in their physical key to open a paper containing credentials to your air gapped tape backup?

Why we need to be so over dependent on cloud for resilience?

ankit_anubhav,

@meejah hardware security module ( the one which root CA use) might have such options if I can recall. Although it will be expensive, and worth just contacting the local locksmith in the city for creating such. Of course it won't be possible for full remote orgs, but the orgs which have massive physical offices also nowadays rely 100% on non air gapped backup without considering the alternatives.

ankit_anubhav,

@meejah Nice. What's the concept behind split crypto credentials? Does it mean that multiple people need to provide their own credentials to generate some master token? If yes sounds intresting. Online backup is the need of the hour in some cases but it has to have some pessimistic over cautious approach so that it also doesn't get compromised.

ankit_anubhav,

@meejah Nice approach, thanks for explaining!)

ankit_anubhav, to microsoft

As expected, Microsoft has released an advisory on the discovery and tells the impact was just limited to two ex employees.

#microsoft #wiz #breach #cybersecurity #infosec

https://msrc.microsoft.com/blog/2023/09/microsoft-mitigated-exposure-of-internal-information-in-a-storage-account-due-to-overly-permissive-sas-token/

ankit_anubhav,

@simonzerafa this kind of sums it up

"In this case, a researcher at Microsoft inadvertently included this SAS token in a blob store URL while contributing to open-source AI learning models and provided the URL in a public GitHub repository" .

ankit_anubhav, to microsoft
ankit_anubhav,

@wndlb There should be lot of angles on this from privacy aspect. In general, even without this incident I'm personally not sold to give all your data to big tech for the purpose of "AI training".

ankit_anubhav,

@vitriolix

MS says if was just chat and some stuff of 2 ex employees in their advisory.
Given the fact that it was between two big orgs Ms and Wiz and handled swiftly that's all we are going to get to know.

ankit_anubhav, to foss

Question for community.

Do you use an IPhone?
If yes - How do you get accustomed to it being so closed source

If no - Is it because Android is better or you prefer it being more open?

ankit_anubhav, to random

Once in a while I get major vibes that something wiped off the entire planet in 2019, and we are all shifted to an alternate and bizzare reality where things don't make sense.

ankit_anubhav, to Cybersecurity

Box.com hosting a page which goes to Cloudflare protected /

As usual, the whole trust on corporate URLs is going down big time. I have seen abuses on Microsoft,LinkedIn,Notion,Box and Zoho in a matter of couple of days.

hxxps[://]app[.]box[.]com/s/dzgbby3z63ofzqiunq749m9hfiv5qp3g

GossiTheDog, to random
@GossiTheDog@cyberplace.social avatar

Regarding MGM Resorts - while there are reports things are fixed, this very definitely isnโ€™t true.

Iโ€™ve been monitoring their on prem network border - everything is down still. DMZ, WAN etc.

ankit_anubhav,

@GossiTheDog Do you buy the statement from the ransomware operators on the okta and other stuff which they discussed? Or does it sound sketch and exaggeration?

  • All
  • Subscribed
  • Moderated
  • Favorites
  • โ€ข
  • JUstTest
  • kavyap
  • DreamBathrooms
  • thenastyranch
  • magazineikmin
  • tacticalgear
  • khanakhh
  • Youngstown
  • mdbf
  • slotface
  • rosin
  • everett
  • ngwrru68w68
  • Durango
  • megavids
  • InstantRegret
  • cubers
  • GTA5RPClips
  • cisconetworking
  • ethstaker
  • osvaldo12
  • modclub
  • normalnudes
  • provamag3
  • tester
  • anitta
  • Leos
  • lostlight
  • All magazines