Ax_Sharma Profile Banner
Ax Sharma Profile
Ax Sharma

@Ax_Sharma

Followers
5K
Following
25K
Media
593
Statuses
4K

Infosec Researcher, Journalist | 📰 Bylines + seen on 📸 BBC, BleepingComputer, Channel 5, TechCrunch, WIRED | 🦋 Bluesky: https://t.co/7LQOdDSG1o | ✉️ [email protected]

🇨🇦🇬🇧
Joined April 2016
Don't wanna be here? Send us removal request.
@Ax_Sharma
Ax Sharma
9 months
Am also on 🦋BlueSky ⏬.
0
0
2
@Ax_Sharma
Ax Sharma
11 days
@Mend_io @abai_tom GitHub is working on restoring access to Stylus. As suspected, it was indeed removed due to a maintainer mix-up. Someone at npm pressed the kill switch way too fast 😬
Tweet media one
0
0
3
@Ax_Sharma
Ax Sharma
11 days
npm has "accidentally" taken down all versions of the legitimate Stylus library and replaced them with a "security holding" page, breaking pipelines and builds worldwide. @Mend_io's @abai_tom has cracked the puzzle:. #opensource #supplychain #javascript.
Tweet card summary image
bleepingcomputer.com
npm has taken down all versions of the Stylus library and replaced them with a "security holding" page, breaking pipelines and builds worldwide that rely on the package.
1
1
4
@Ax_Sharma
Ax Sharma
13 days
RT @MalwareUtkonos: @Ax_Sharma got-fetch also contains a malicious DLL of the same malware family called "crashreporter.dll".30295311d62893….
0
4
0
@Ax_Sharma
Ax Sharma
14 days
Gathering threat intel, unmasking perps behind cyber attacks and bringing down entire ransomware gangs are just some of the ways the dark web is used by defenders.
Tweet card summary image
csoonline.com
Gathering threat intelligence, finding the perpetrators of cyber attacks and bringing down whole ransomware gangs are some of the ways the dark web is used by defenders.
0
0
2
@Ax_Sharma
Ax Sharma
15 days
One wrong click, on the maintainer's part, could put millions at risk. Hijacking legitimate libraries has become a recurring attack vector in recent times, given both the fragility of and the trust that the open-source ecosystem operates on.
Tweet card summary image
bleepingcomputer.com
Popular JavaScript libraries eslint-config-prettier and eslint-plugin-prettier were hijacked this week and turned into malware droppers, in a supply chain attack achieved via targeted phishing and...
1
1
9
@Ax_Sharma
Ax Sharma
23 days
RT @MikaelThalen: EXCLUSIVE: I discovered evidence that an IMSI-catcher, commonly called a Stingray, was used during a July 4 protest at an….
Tweet card summary image
san.com
Mobile network anomalies consistent with cell phone surveillance were detected at a July 4 protest at an ICE field office in Washington state.
0
98
0
@Ax_Sharma
Ax Sharma
1 month
🎞️ Filming all day for Rip-Off Britain at BBC Studios, MediaCityUK, to expose cybercrime and the latest hacks targeting real people.
Tweet media one
Tweet media two
Tweet media three
Tweet media four
0
0
5
@Ax_Sharma
Ax Sharma
2 months
Exclusive: Instagram ads appearing to be from Bank of Montreal (BMO) are using AI deepfake videos to scam consumers into investment fraud. Ads for 'EQ Bank' take users to phishing domains to collect their banking information.
Tweet card summary image
bleepingcomputer.com
Instagram ads impersonating financial institutions like Bank of Montreal (BMO) and EQ Bank (Equitable Bank) are being used to target Canadian consumers with phishing scams and investment fraud. Some...
0
0
3
@Ax_Sharma
Ax Sharma
2 months
RT @mayank_jee: Google AI Overviews is terrible, and you should be careful when believing what it says. It’s better to use Bing, which give….
0
4
0
@Ax_Sharma
Ax Sharma
4 months
🎬 Another season out: Watch on-demand or online on Channel 5 UK. 📺 Scams: Don't Get Caught Out - Season 3
1
0
0
@Ax_Sharma
Ax Sharma
5 months
RT @hackerfantastic: North Korea stole $1.4billion by injecting JavaScript through an AWS S3 bucket to spoof the UI interface during a tran….
0
950
0