DevTestSecOps
144 subscribers
500 photos
32 videos
37 files
717 links
Forwards and notes on development, testing, security, and operations from @q587p.

About me: studied as System Architect, worked as a SysAdmin, working now as an Test Automation Engineer. Also, I'm interested in hacking (and everything related to it).

జ్
Download Telegram
22👏2
Forwarded from Мам, я DPO
Oopsie 🤷🏼‍♀️💫
🔥2😁2🤯2
Forwarded from Мам, я DPO
👏2👌21
👏4🤣2🥰1
😁6👌2🤝1
😈3🤯2👻21
#Windows #BitLocker #security

The process is dead simple: grab any USB stick, get write access to the "System Volume Information," and copy into it the "FsTx" folder and its contents. Shift+click Restart to get Windows to the recovery environment, but then switch to holding down the Control key and don't let go. The machine will reboot, and without asking any questions or showing any menus, will drop you in an elevated command line with full access to the formerly Bitlocked drive, without asking for any keys.


https://www.tomshardware.com/tech-industry/cyber-security/microsoft-bitlocker-protected-drives-can-now-be-opened-with-just-some-files-on-a-usb-stick-yellowkey-zero-day-exploit-demonstrates-an-apparent-backdoor
👏2👨‍💻2🔥1
😁2💯1💔1
Forwarded from Мам, я DPO
In a post on X, Jeff Cross, co-founder of Narwhal Technologies, the company behind nx.dev, said, "this incident highlights that there need to be deeper, more fundamental changes to how we and other maintainers need to think about securing developer tooling and open source distribution."

"We're also beginning conversations with other high-profile open source maintainers about how we can work together on some of the deeper structural problems around software supply chain security. A lot of the assumptions the ecosystem has operated under for years no longer hold."

In recent months, TeamPCP has rapidly gained notoriety for large-scale software supply chain attacks, specifically going after widely-used open-source projects and security-adjacent tools that developers rely on.


Якби ж тільки була якась спеціальна професія, яка там щороку каже, що не можна ставити шо попало на робочу техніку

https://thehackernews.com/2026/05/github-internal-repositories-breached.html?m=1
🔥2😁2👌2
#Windows #Nvidia #AI #way

AI integrated at the OS hardware level (you can't turn it off) also it mines 10% of your CPU at all times to run an 'AI data center' botnet, in return copilot spies on you and reports you to authorities for wrongthink.

AKA Windows 12.


(q)
🤯4🤬2🫡2
😁4👨‍💻3👌2