Lasq
@lasq.pl
140 followers 110 following 33 posts
Advanced Practices 🦅 @Google Threat Intelligence Group Threat Attribution, Frontline Intelligence, Malware Analysis, Threat Hunting, Incident Response #attributionmatters
Posts Media Videos Starter Packs
lasq.pl
Lasq @lasq.pl · 4d
🚨 NEW VIDEO! I tested the AI-powered #PromptLock ransomware, and it failed spectacularly! 🤯

Impact: 0/10. Fun: 11/10.

Watch it here: www.youtube.com/watch?v=-qex...

#Ransomware #AI #Cybersecurity
I Tested The World's First "AI Ransomware"... And It Was A Disaster
YouTube video by Malfind Labs
www.youtube.com
Reposted by Lasq
lasq.pl
Lasq @lasq.pl · Jul 23
Microsoft, what in seven hells is that? This just randomly popped up on my screen, and yes it's animated.

Also how cool is the fact that according to Microsoft I need to throw away my $5k PC just because I don't have TPM module (yes I know there are workarounds)
lasq.pl
Lasq @lasq.pl · Jun 23
That's the unfortunate truth of it.
Reposted by Lasq
snmrrw.bsky.social
Wow: after 15 years, YouTube has taken down the original 'Rick Roll' video due to a "licensing issue," likely due to the acquisition of Astley's record lable.

The metadata remains, but if you click through it goes to 'video not found':

www.youtube.com/watch?v=dQw4...
Rick Astley - Never Gonna Give You Up (Official Music Video)
YouTube video by Rick Astley
www.youtube.com
lasq.pl
Lasq @lasq.pl · May 5
Current vibes... 😅
lasq.pl
Lasq @lasq.pl · Apr 25
I was skeptical about all this "AI will replace programmers hype" but now I don't know what to think. It is already a way better (and 100x faster) programmer than I am. This is admittedly not that big of an accomplishment, but who knows in a year or two it might be better than actual programmers 3/3
lasq.pl
Lasq @lasq.pl · Apr 25
It only made one very simple mistake, that took me 20 minutes to fix manually, and after that I had a perfectly runnable code to use, with performance improved 300%.

2/3
lasq.pl
Lasq @lasq.pl · Apr 25
I was just blown away by Gemini 2.5 Pro capabilities to write python code. It took ~5 minutes to refactor 1500 LOC python script the way I wanted. What's even better is that it also fixed a few other minor bugs, added comments, debug messages, and improved the overall readability of the code.

1/3
lasq.pl
Lasq @lasq.pl · Apr 7
I ditched twitter but don't use Blue Sky too much either, does it count? I find social media detox a pretty cleansing experience
Reposted by Lasq
esetresearch.bsky.social
In July 2024, #ESETresearch discovered that the China-aligned #FamousSparrow APT group, thought at the time to have been inactive since 2022, compromised the network of a US trade group and a Mexican research institute. www.welivesecurity.com/en/eset-rese... 1/5
You will always remember this as the day you finally caught FamousSparrow
ESET researchers uncover the toolset used by the FamousSparrow APT group, including two undocumented versions of the group’s signature backdoor, SparrowDoor.
www.welivesecurity.com
Reposted by Lasq
oalexanderdk.bsky.social
Confirmation that Michael Waltz was the one who added Jeffrey Goldberg to the chat
Reposted by Lasq
oalexanderdk.bsky.social
They were in fact not "currently clean on OPSEC"
Reposted by Lasq
eliothiggins.bsky.social
Following multiple denials from Trump and participants in the "Houthi PC small group" Signal group that information shared was classified, The Atlantic is now sharing information posted in the group. It's fair to say it has a big "Classified" energy around it. www.theatlantic.com/politics/arc...
Here Are the Attack Plans That Trump’s Advisers Shared on Signal
The administration has downplayed the importance of the text messages inadvertently sent to The Atlantic’s editor in chief.
www.theatlantic.com
Reposted by Lasq
danwblack.bsky.social
Developing low visibility, low signature forms of compromise for signal accounts is a clear area of investment for Russia's services as well.

Generally speaking if you use the app for sensitive comms: audit your linked devices. Do it now.

cloud.google.com/blog/topics/...
Reposted by Lasq
znanyproblem.bsky.social
I to tyle z teorii, że Hermes to drugi Pegasus czy północnokoreański ransomware 🤡

Anna Dworak: Dzien Dobry. Anna Dworak, TVP Info. Ja mam pytanie do któregoś z panów. Jakby panowie mogli wyjaśnić proszę jaka jest różnica między oprogramowaniem Pegasus a Hermesem

#Hermes
lasq.pl
Lasq @lasq.pl · Mar 19
Love this commentary on our recent blog, pineapples vs ananas 😂 If you don't yet listen to "Three Buddy Problem" podcast you are missing out!

www.youtube.com/watch?v=KHhr...
Chinese backdoors on Juniper routers
YouTube video by Three Buddy Problem
www.youtube.com
lasq.pl
Lasq @lasq.pl · Mar 15
Great to see our UNC3886 Juniper malware blog mentioned in my favorite podcast 🥰
ryanaraine.bsky.social
NEW POD ALERT: A half-dozen Microsoft 0days exploited in the wild, a mysterious AI credited with Microsoft Access RCE flaws, a Binarly technical paper on finding UEFI bootkits, Mandiant flagging custom backdoors on Juniper routers

Live on all platforms!
securityconversations.com/episode/a-ha...
A half-dozen Microsoft zero-days, Juniper router backdoors, advanced bootkit hunting - Security Conversations
Three Buddy Problem – Episode 38: On the show this week, we look at a hefty batch of Microsoft zero-days exploited in the wild, iOS […]
securityconversations.com
Reposted by Lasq
abrignoni.com
And old, powerful, and mysterious language...

#regex #DigitalForensics