〈seal〉
@sealldev
Followers
547
Following
17K
Media
63
Statuses
682
19 : Cybersecurity Consultant. CTF Player for @EmuExploit, @malta_ctf and @IrisCTF. 🇦🇺 what I say is my opinions blah blah
forens/misc/web
Joined August 2021
🚨BBOT Security Advisory🚨 4 fresh CVEs (2 CRITICAL RCE) can give a clever defender RCE on your attack box if you’re on BBOT <2.7.0. Hat tip to @justinsteven of @TantoSecurity for the catch. 🙌 Details 👉BLS Blog https://t.co/mo9BO00gyB
#infosec #CVE
blog.blacklanternsecurity.com
BBOT Gets Its First CVEs
0
4
7
GG everyone :3
The curse has been broken! 🏆We finally won BSides Canberra CTF 2025!🥇 Congratulations to our close competition @FrenchRoomba and SoberOstrich. Thanks to @BSidesCbr for the outstanding conference, and of course @sk8boardingdog 🛹🐶 for the amazing CTF this year.
0
0
2
We got 8th place in defcon! Working together onsite was great as always, also really enjoyed meeting our friends in the other teams 😁. Thanks @Nautilus_CTF for hosting <3
0
15
97
gg :3
Congrats to our Student team on another victory @DownUnderCTF 🥇 Thanks to the organisers for another amazing event! (+ kudos on the new platform 😎) Congratulations to all that competed! See you next year🎉
1
0
13
We had a great time at @CODEGATE_KR CTF finals this year as 🤬🇫🇷🛹🐻! Thanks to the organisers for the challenges, we had a great time. Hope to see everyone next year 🇰🇷
1
8
60
“What’s the worst that could happen?” In 2020, @justinsteven registered a legacy S3 bucket once owned by the Linux Vendor Firmware Service. He ended up between 100,000 Linux machines and their updates. Catch the full story at BSidesCbr2025
cfp.bsidescbr.com.au
One from the vaults. In 2020, Justin had a serendipitous encounter with a dangling legacy AWS S3 bucket once owned by the Linux Vendor Firmware Service (LVFS). "What if I registered it," he thought....
0
9
14
$argon2id$v=19$m=512,t=256,p=1$wTLM3IsvZ3uupMmKCVYwRg$hAkxQGP0ks+XrmaRdKbD6KdRrcE0uEVJNfPXf5Qb5Ek
1
0
1
We’re now giving our in-repo secure coding challenges away for FREE to: 🛠️ Open source projects 🤝 Community-led meetups We use open source. Time to give back. Hit me up if this could help your crew. RT to spread the word. #DevSecOps #AppSec #OpenSource #SecureCoding
Since day one @SecDim has been about making secure code learning accessible to all devs. Now we go one step further: ⚡ Free access for open source projects & volunteer-run meetups We use OSS. We give back. https://t.co/gUZzInqR9G
#OpenSource #AppSec #SecureCoding
0
1
2
Team Oceania is seeking sponsors for the 2025 International Cybersecurity Challenge! Support top 🇦🇺🇳🇿 cyber talent and showcase your brand on the world stage. Learn more: https://t.co/HLz27o0oKr or send me a message. #cybersecurity #ICSC2025 #infosec
2
14
22
The old boxes were not that difficult but fun. I just pwned Nibbles on Hack The Box! https://t.co/qj7EGuLW0w
#HackTheBox #htb #CyberSecurity #EthicalHacking #InfoSec #PenTesting
1
1
16
How to escalate any self XSS to an ATO with a new technique I call "kinetic coercion" that causes the target user to trigger the XSS
1
10
83
Thank you for having us @CrikeyCon . The team had an awesome time in Brisbane. If you missed Justin's talk it should be up on the CrikeyCon Youtube channel soon!
0
1
6
Had a great time playing KnightCTF with my university team (MQCyberSec), we placed 21st out of ~760 teams! I made a writeup of a majority of the challenges here: https://t.co/GQUzuwEcOp Thanks to @kn16h75qu4d for the CTF!
0
0
12
Work here and get new stuff! Welcome to the team Josh and Noah who both start this week. Excited to have you on board. New year and we are well and truly underway with more exciting announcements coming in the next few weeks. 🥷💾
0
5
19