Talence Security Profile Banner
Talence Security Profile
Talence Security

@TalenceSecurity

Followers
535
Following
1,073
Media
26
Statuses
543

We specialize in offering training programs that cover both defensive and offensive #cybersecurity

Joined September 2016
Don't wanna be here? Send us removal request.
Explore trending content on Musk Viewer
@TalenceSecurity
Talence Security
18 days
🚨 ALERT: #LinuxKernel backdoor in netfilter! JIAXX user's pull request malicious code 2 wks ago, manipulating 'cntl_msg_accept' in netfilter/nfnetlink_conntrack.h so netfilter may permit incoming TCP connections via a specific magic packet sequence, potentially resulting in RCE!
Tweet media one
56
142
1K
@TalenceSecurity
Talence Security
3 months
@chrissanders88 GPT IR 🤣
Tweet media one
2
0
14
@TalenceSecurity
Talence Security
2 years
@Sudhans42246878 Only if there is an open #bugbounty program... Otherwise it's jail program for you.
1
0
10
@TalenceSecurity
Talence Security
2 years
@woodyatpch @summer__heidi There is an obvious glitch in the Matrix here. The car is from 2019, but the guy came straight from 1992.
0
0
7
@TalenceSecurity
Talence Security
2 years
@NicoleBeckwith Research back on the USB drive once it returns. Probably new sample 😀
0
0
7
@TalenceSecurity
Talence Security
2 years
@Itskaranxa @Bugcrowd @Hacker0x01 @hakluke @codingo_ 1) Set goals for progress 2) Continuously keep learning 3) Understand the tools or even better, do manual actions
0
1
6
@TalenceSecurity
Talence Security
3 months
@HackingLZ Here is my fav
Tweet media one
0
0
4
@TalenceSecurity
Talence Security
2 years
Fight CONTI ransomware: an API block cheat sheet by @Marco_Ramilli #Malware #Ransomware #threatintelligence #blueteam
0
3
5
@TalenceSecurity
Talence Security
2 years
@0gtweet OMG! Did they also remove calc.exe? 😋
1
0
5
@TalenceSecurity
Talence Security
3 months
Tweet media one
2
1
4
@TalenceSecurity
Talence Security
3 years
@x0rz @Facebook The choice is clear now.
Tweet media one
0
1
4
@TalenceSecurity
Talence Security
2 years
@ESETresearch @HexRaysSA @cherepanov74 When it is free you are the product 😌
1
1
4
@TalenceSecurity
Talence Security
8 months
@LinuxSeb Debian, the real thing 😅
0
0
4
@TalenceSecurity
Talence Security
12 days
@ImposeCost "on-premises employees" versus "cloud employees" 🤣 Interesting perspective!
0
0
3
@TalenceSecurity
Talence Security
1 year
Tweet media one
2
0
3
@TalenceSecurity
Talence Security
11 days
Tweet media one
0
1
3
@TalenceSecurity
Talence Security
2 years
Hunting for samAccountName Spoofing (CVE-2021–42278) & Domain Controller Impersonation (CVE-2021–42287) by @mvelazco #cybersecurity #infosec #pentesting #ethicalhacking #redteam
0
3
3
@TalenceSecurity
Talence Security
2 years
2 awesome projects!
@mrd0x
mr.d0x
2 years
Thanks to all those contributing and sorry for the delay. => new extensions added. => new APIs added.
1
15
38
0
1
1
@TalenceSecurity
Talence Security
8 months
@rez0__ Hi Rez0, are those also free to use? (cc0 license)
1
0
2
@TalenceSecurity
Talence Security
3 years
@PocketSIEM_ The most frightened should be those who do not know what a #SIEM is 🤪 🎃
0
0
2
@TalenceSecurity
Talence Security
2 months
@jamieantisocial Sweet Threat Actor, optimizing your system 🫠
1
0
2
@TalenceSecurity
Talence Security
2 years
Cloud Native Fuzzing: Istio - 40 crashes and high-severity CVE by @IstioMesh @AdamKorcz4 #Fuzzing #CyberSecurity
0
0
2
@TalenceSecurity
Talence Security
2 years
@chompie1337 Nice. Which topic? Some firmware or Linux Kernel module?
0
0
1
@TalenceSecurity
Talence Security
8 months
@MO_MANSIYAH @s3c_krd 🤣 However, you don't need this to be happy, anyway.
0
0
2
@TalenceSecurity
Talence Security
2 years
0
0
2
@TalenceSecurity
Talence Security
8 days
@shotgunner101 @UK_Daniel_Card @EricaZelic @tazwake @SOSIntel @HackingLZ @vysecurity @lkarlslund @cybersecstu It's now out of control, I prefer Dragon Ball (Goku kid) and DBZ (especially the Kai version). DB GT was also great before the Dragons chapter. Wdyt?
1
0
2
@TalenceSecurity
Talence Security
2 years
@Essb33 Those there have 1 to 10% of specific knowledge, which can be theirs, they have acquired the remaining 90-99% by people, they should thank them and their approach of sharing, otherwise they would never have acquired this 1-10% themselves. Receive and share.
0
0
2
@TalenceSecurity
Talence Security
2 years
@JacksonHHax Great research mate 😅
0
0
2
@TalenceSecurity
Talence Security
2 years
@mrd0x this one may help to complete 👍
1
0
2
@TalenceSecurity
Talence Security
2 years
@S0ufi4n3 Great project!
0
0
2
@TalenceSecurity
Talence Security
2 years
@nmantani Great script!
0
0
2
@TalenceSecurity
Talence Security
3 years
@_xpn_ Specify which liquid we are talking about.
0
0
2
@TalenceSecurity
Talence Security
2 years
MalApi () by @mrd0x => List Windows APIs used by #Malware => Great project to support! #BlueTeam #ThreatIntel #threatintelligence #forensics
1
2
2
@TalenceSecurity
Talence Security
2 years
@PaulosYibelo it brings back good memories 😉 /etc/passwd%00
1
0
2
@TalenceSecurity
Talence Security
2 years
Some very interesting Splunk Use Cases (+80) by @0xCyberY #BlueTeam #CyberSecurity #SIEM cc: @splunk @meansec
0
1
2
@TalenceSecurity
Talence Security
2 years
@ElsaWainblum Good luck 🙃
1
0
1
@TalenceSecurity
Talence Security
2 months
Tweet media one
0
0
1
@TalenceSecurity
Talence Security
2 years
"ADEXPLORER ON ENGAGEMENTS" Using ADExplorer from an offensive perspective by @Oddvarmoe #PenetrationTesting #PenTest #RedTeam #CyberSecurity
Tweet media one
0
0
1
@TalenceSecurity
Talence Security
4 months
@ImposeCost Nice swag!
1
0
1
@TalenceSecurity
Talence Security
2 years
@0xsha Great work!
0
0
1
@TalenceSecurity
Talence Security
2 years
0
0
1
@TalenceSecurity
Talence Security
2 years
@AliceCliment @Hash_C9C789 @HackingLZ F**k it. I would even download a car if I could.
1
0
1
@TalenceSecurity
Talence Security
9 months
@MiriamXyra Congratz!
0
0
1
@TalenceSecurity
Talence Security
2 years
@mrd0x , the current list is pretty impressive. Well done! Just submitted a few APIs to contribute!
1
0
1
@TalenceSecurity
Talence Security
2 years
@GossiTheDog In fact, they do. Check this:
1
0
1
@TalenceSecurity
Talence Security
2 years
@NavyaKedia Enjoy the ride!
0
0
1
@TalenceSecurity
Talence Security
2 years
Palo Alto Warns of Zero-Day Bug in Firewalls Using GlobalProtect Portal VPN CVE-2021-3064, CVSS score: 9.8, impacts PAN-OS 8.1 versions earlier than PAN-OS 8.1.17 #threatintelligence #BlueTeam #0days #exploit
0
2
1
@TalenceSecurity
Talence Security
1 year
@Hacker0x01 When hackers install Tinder
0
0
1
@TalenceSecurity
Talence Security
2 years
@0xTib3rius @Hackers_Academy Hey Tib3rius, Could you please PM me? Thanks :-)
0
0
1
@TalenceSecurity
Talence Security
2 years
@chompie1337 Looks promising 😋
0
0
1
@TalenceSecurity
Talence Security
2 years
@BrocktonPTS @cybersec_feeds It aims to detect Log4Shell exploitation attempts, no to detect if an environment is vulnerable ;-) cc: @cyb3rops
0
0
1
@TalenceSecurity
Talence Security
2 years
@0sm0s1z Great idea! Following :)
0
0
1
@TalenceSecurity
Talence Security
2 years
@Und3rf10w Great work mate. @cyb3rops yet another C2 😅
0
0
1
@TalenceSecurity
Talence Security
4 months
@Octoberfest73 Interesting idea. Depending on the tools and the possibilities of obtaining them elsewhere, if all are not yours?
0
0
1
@TalenceSecurity
Talence Security
2 years
A great list of popular and trusted domains used to conduct attacks. #ThreatIntel #ThreatIntelligence
@mrd0x
mr.d0x
2 years
Living Off Trusted Sites: Attackers are using popular legitimate domains to conduct attacks (e.g. phishing). I've attempted to compile a list of legitimate domains that can be abused by attackers. As usual, feel free to contribute.
33
352
874
0
1
1
@TalenceSecurity
Talence Security
2 years
@mrd0x Glad to contribute to these 2 awesome projects mate :)
1
0
1
@TalenceSecurity
Talence Security
1 year
@MrTuxracer Ah yes, I understand your point better. Thanks. The question is really very complex and multifaceted, maybe more transparency and/or regulation is needed for this new (amazing) technology.
1
0
1
@TalenceSecurity
Talence Security
1 month
@olivier_boschko Anti-Ransomware Next-Gen protection 🤣
0
0
1
@TalenceSecurity
Talence Security
2 years
@BeersxNem0x0 Congratz!
0
0
1
@TalenceSecurity
Talence Security
2 years
"Introducing Mystikal" for macOS initial access payloads by Leo Pitt @_D00mfist from @SpecterOps #redteam #PenTest #macOS
0
0
1
@TalenceSecurity
Talence Security
12 days
Interesting perspective! "on-premises employees" versus "cloud employees" 🤣
@ImposeCost
Andrew Thompson
12 days
I'm considering calling them "on-prem employees" versus "cloud employees" to see if that helps make things a little bit more clear to people who are struggling to grasp remote work. I want to see people make the argument that on-prem is better.
44
166
1K
0
0
1
@TalenceSecurity
Talence Security
2 years
@Sudhans42246878 I agree with you, but some companies may not like it when you watch something without having a clear mandate. I wouldn't take a chance at this game, seriously...
1
0
1
@TalenceSecurity
Talence Security
3 months
@HackingLZ These are the most detected. What about the most used? 🙂
0
0
0
@TalenceSecurity
Talence Security
19 days
You really need to execute a backdoor to confirm its presence. Live your most exciting life!
@Kostastsale
Kostas
21 days
Regarding the xz backdoored binary, see the one-liner below to check the version you have installed. **I wouldn’t suggest folks running the malicious binary with -v option🫠🫣 for xz_p in $(type -a xz | awk '{print $NF}' | uniq); do strings "$xz_p" | grep "xz (XZ Utils)" ||…
12
199
797
0
0
1
@TalenceSecurity
Talence Security
2 years
@yarden_shafir They don't know yet, but would resign otherwise😂
0
0
1
@TalenceSecurity
Talence Security
2 years
@Yekki_1 Is this too much coffee? No if you take one or two of this a day :-)
0
0
1
@TalenceSecurity
Talence Security
2 years
@JulioUrena Congrats!
1
0
1
@TalenceSecurity
Talence Security
2 years
0
0
1
@TalenceSecurity
Talence Security
2 years
@ImposeCost "What are the prospects for advancement/development with this position?"
0
0
1
@TalenceSecurity
Talence Security
3 months
Oldies but goodies
@nas_bench
Nasreddine Bencherchali
3 months
Scriptomatic V2 from The Scripting Guys, Microsoft. Written in 2004, generates automatic script from WMI classes in VBscript, Perl, Jscript, Python 🔥 Here is the hash in case you wanna take it for a spin. de8e453636393e4611d538e7c6be1b6f9d3eeab5f5ec926cf8070fce0980be94
Tweet media one
1
12
72
0
0
1
@TalenceSecurity
Talence Security
1 year
@vysecurity Sad but this started in 2022 way before Musk's move
0
0
1
@TalenceSecurity
Talence Security
19 days
Regarding the XZ backdoor, Debian 12 stable remains unaffected. Thanks @Kostastsale for the safe one-liner @debian #xzbackdoor #xz #XZUtils
Tweet media one
0
0
1
@TalenceSecurity
Talence Security
2 years
@mrd0x Thanks for adding them :-)
0
0
1
@TalenceSecurity
Talence Security
16 days
2/n: Open-source projects often face challenges due to a lack of human, financial, and material support, as seen with the recent XZ backdoor incident #xzbackdoor #XZUtils
1
0
0
@TalenceSecurity
Talence Security
3 years
@AngelaLamont Nice mugs! Need one :-)
0
0
1
@TalenceSecurity
Talence Security
2 months
1
0
1
@TalenceSecurity
Talence Security
3 years
@fleming_matt Very interesting work, congratulations and well done for making the code open source.
0
0
1
@TalenceSecurity
Talence Security
2 years
WinAPI Search Utility For Win32 Functions & Error Codes #Windows
1
0
1
@TalenceSecurity
Talence Security
1 month
Anti-Ransomware Next-Gen protection 🤣
@olivier_boschko
Boschko 🇨🇦
1 month
Did some consulting a few months back where an IT staff stored credentials on their desktop in a null ASCII folder, making it impossible to access without renaming. Honestly, super weird thing to come across... Would honestly make an interesting challenge out of it.
Tweet media one
6
24
103
0
0
1
@TalenceSecurity
Talence Security
2 years
@SwiftOnSecurity Fine as they will reintroduce WMIC.
0
0
1
@TalenceSecurity
Talence Security
2 years
@mrd0x @Hexacorn Nice one. Thanks for sharing!
0
0
1
@TalenceSecurity
Talence Security
2 years
@C5pider Awesome, would love to see the code.
0
0
1
@TalenceSecurity
Talence Security
2 years
@vysecurity Fake account... (j/k)
0
0
1
@TalenceSecurity
Talence Security
8 months
@LinuxSeb Daily: Debian OffSec engagements: Kali
0
0
0
@TalenceSecurity
Talence Security
2 years
@joehelle Ignoring that email may result in receiving an email with the same information. Ignoring that email may result in receiving another email with the same information. Sorry.
1
0
1
@TalenceSecurity
Talence Security
2 years
1
0
1
@TalenceSecurity
Talence Security
2 years
@_xpn_ Twitter
1
0
1
@TalenceSecurity
Talence Security
3 months
@0xTib3rius I'll throw @TalenceSecurity shamelessly. Feel free to follow; we've got an exciting project lined up for the year as a new company 🙏
0
0
1
@TalenceSecurity
Talence Security
19 days
@Kostastsale You really need to execute a backdoor to confirm its presence. Live your most exciting life!
0
0
1
@TalenceSecurity
Talence Security
2 years
Congratz!
@PizazzJazz
jazzpizazz
2 years
Today I reached #1 on @hackthebox_eu ! It probably won't be for long but it's still a huge achievement for me 😎 Special shoutouts to Tabacci for helping me with crypto, @clubby789 for making a cheesable 9 point challenge and @devx00 for recommending HeapLap :)
Tweet media one
20
15
490
0
0
1
@TalenceSecurity
Talence Security
2 years
Elastic Security uncovers BLISTER malware campaign. Awesome work and analysis by @SBousseaden @dez_ @elastic #ThreatIntelligence #ThreatIntel #BlueTeam #CyberSecurity #YARA
0
2
1
@TalenceSecurity
Talence Security
1 year
0
0
1