Dominic White
@singe.bsky.social
📤 1170
📥 738
📝 563
Hacker at Orange Cyberdefense's SensePost Team
https://hello.singe.za.net/
reposted by
Dominic White
💥 leonjza
1 day ago
It's... been a while since the last objection release got tagged. We finally landed a 1.12 release today which also means pypi is up to date again, and for the foreseeable future! Work never really stopped, and plenty of bug fixes are included. More in 🧵
github.com/sensepost/ob...
1
2
1
I'm kind of proud of the syntax I invented for defining key spaces to expand when looking for phishing kits
github.com/singe/domain...
loading . . .
GitHub - singe/domain-probe: A utility to find identically configured domains and web-servers based on a pattern. Used to find phishing kits.
A utility to find identically configured domains and web-servers based on a pattern. Used to find phishing kits. - singe/domain-probe
https://github.com/singe/domain-probe?tab=readme-ov-file#wildcards-keyspace
1 day ago
0
0
0
reposted by
Dominic White
Orange Cyberdefense CERT
3 days ago
Our analysis covers updated
#BURNBOOK
and
#MISTPEN
variants, that feature slight changes in their main routines and C2 loop. UNC2970 relied on compromised infrastructure on SharePoint and WordPress, aligning with previous findings.
0
2
1
reposted by
Dominic White
Orange Cyberdefense CERT
3 days ago
🔎Our CERT is releasing a new technical report on 🇰🇵Operation
#DreamJob
, focusing on recent evolution in its tooling. Following an IR engagement at a large manufacturing client based in 🇪🇺, we investigated artefacts we attribute to
#UNC2970
. ➡️Full blog:
ow.ly/V4mr50Xug1l
1
1
1
Made this last night, it’s useful for finding a large number of domains hosting phishing kits or malware based on a consistent pattern
github.com/singe/domain-p…
Might be useful for some of you.
loading . . .
GitHub - singe/domain-probe: A utility to find identically configured domains and web-servers based on a pattern. Used to find phishing kits.
A utility to find identically configured domains and web-servers based on a pattern. Used to find phishing kits. - singe/domain-probe
https://github.com/singe/domain-probe
3 days ago
0
5
4
reposted by
Dominic White
Phil Eaton
11 days ago
Turns out you can communicate across containers via 63-bits of available space in a shared lock you acquire on /proc/self/ns/time that all processes have access to. No networking required. The post has a demo of a chat app communicating across unprivileged containers.
h4x0r.org/funreliable/
3
220
66
reposted by
Dominic White
4 days ago
I chatted with
@hex-rays.bsky.social
about how I found my place in the security industry, how
@blackhoodie.bsky.social
came to be, what our goals are and why community matters so much.
hex-rays.com/blog/blackho...
loading . . .
BlackHoodie Interview: Building Community, Opportunity, & Confidence
BlackHoodie founder Marion Marschalek shares her journey from early challenges to creating a global, inclusive reverse-engineering network.
https://hex-rays.com/blog/blackhoodie-interview-2025
0
7
6
reposted by
Dominic White
2600 - The Hacker Quarterly
4 days ago
HOPE has been banned from St. John's University.
www.2600.com/content/hope...
loading . . .
HOPE CONFERENCE BANNED BY ST. JOHN'S UNIVERSITY | 2600
https://www.2600.com/content/hope-conference-banned-st-johns-university
11
95
87
reposted by
Dominic White
💥 leonjza
5 days ago
The new kids use uv, so: uv run
raw.githubusercontent.com/sensepost/CV...
!
0
2
1
Here’s a free scanner for that FortiWeb CVE-2025-64446 I made for you.
loading . . .
GitHub - sensepost/CVE-2025-64446: A scanner for the FortiNet vulnerability CVE-2025-64446
A scanner for the FortiNet vulnerability CVE-2025-64446 - sensepost/CVE-2025-64446
https://github.com/sensepost/CVE-2025-64446
5 days ago
1
1
1
reposted by
Dominic White
HD Moore
8 days ago
The clever folks at Grumpy Goose Labs have published even more ways to identify unauthorized IP KVMs across your environment, with some great memes to boot! Be KVM, Do Fraud -
blog.grumpygoose.io/be-kvm-do-fr...
loading . . .
Be KVM, Do Fraud
Hi Everyone! It’s me, your friendly Wav3.
https://blog.grumpygoose.io/be-kvm-do-fraud-8ab523d26c9d
0
8
5
reposted by
Dominic White
waneella
4 months ago
No Sleep Again Full version:
youtu.be/zK9HSXrvUMg
#ドット絵
#pixelart
11
617
164
reposted by
Dominic White
Jubilee ❣️
12 days ago
ocean tides 🌊✨
#pixelart
15
1788
550
reposted by
Dominic White
"Alex"
13 days ago
1
26
11
reposted by
Dominic White
Orthanc
16 days ago
@ellearmageddon.bsky.social
wirh some words of inspiration at
#kawaiicon
We can change the world, we do it in small steps, making each thing just a little better
2
15
6
reposted by
Dominic White
John Scott-Railton
16 days ago
NEW: Paragon spyware hit a key Italian campaign manager / political strategist. Super concerning case & a reminder that Italy has a growing pile of unexplained infections with Paragon's Graphite spyware.
add a skeleton here at some point
1
30
23
reposted by
Dominic White
16 days ago
D3 viz of Symbiote malware call graph created with
@binaryninja.bsky.social
. Interactive, and makes pewpew sounds. The pewpew sounds are naturally the most important analysis feature, duh. Code going public soon.
3
13
3
reposted by
Dominic White
Gynvael Coldwind
22 days ago
Heeey, ncurses/terminfo has a small virtual machine! And if there's a VM, there are CTF challenges :)
hackarcana.com/public-exerc...
hackarcana.com/public-exerc...
(third one coming next week, will be a bit harder)
0
17
7
T’was 0xC0N Jozi today. That makes number 9, finally beating ZaC0N’s run of 8 years. It’s such a special con because it’s small and full of passionate attendees - no corporate wage slaves there for a day off work, just a bunch of hackers new and old.
22 days ago
0
4
0
Just added SOCKS support to this reverse tunnelling tool
github.com/singe/contun...
26 days ago
0
1
1
github.com/singe/contun.p…
this was a fun nerd snipe - how do you build a listed:listen connect:connect reverse tunnel that can handle concurrent connections when you only have Perl.
loading . . .
GitHub - singe/contun.pl: A concurrent listen:listen connect:connect tunnelling solution written in Perl
A concurrent listen:listen connect:connect tunnelling solution written in Perl - singe/contun.pl
https://github.com/singe/contun.pl
26 days ago
0
1
1
reposted by
Dominic White
yomna
29 days ago
I just can't get over how this track is literally about when your phone's 2G GSM signals would interfere with speakers, and they even sample the interference sound repeatedly:
www.youtube.com/watch?v=gpQS...
(1/2)
4
9
2
Back in days of IRC my friend vhata maintained an ibid* bot called Spinach. Spinach had a ton of lore saved in its factoid database and was an essential part of our daily lives. From helping us with cricket scores to making major life choices with the choose plugin. *
loading . . .
GitHub - ibid/ibid: Ibid is a multi-protocol general purpose chat bot written in Python. Bugs tracked on launchpad.
Ibid is a multi-protocol general purpose chat bot written in Python. Bugs tracked on launchpad. - ibid/ibid
https://github.com/ibid/ibid
about 1 month ago
1
3
0
reposted by
Dominic White
cje
about 1 month ago
Seriously, I love this post so much - Good weekend timeline cleanser: "Root for Your Friends · Joseph Thacker"
m.cje.io/3KYvnLt
loading . . .
Root for Your Friends
Discover the power of rooting for your friends and how it can amplify success for everyone involved.
https://m.cje.io/3KYvnLt
0
6
3
reposted by
Dominic White
Raphael Mudge
about 1 month ago
Why plant a Tradecraft Garden? April 2025, I talked to my camera about how tradecraft may go the route we saw vuln research go years ago, red teaming's retreat to self-protective secrecy, and the opportunity I see for a public tradecraft ecosystem. This starts @ 1:16:00
vimeo.com/1074106659#t...
loading . . .
Post-ex Weaponization: An Oral History
This is "Post-ex Weaponization: An Oral History" by AFF-WG on Vimeo, the home for high quality videos and the people who love them.
https://vimeo.com/1074106659#t=4556
0
10
5
www.amsterdamreview.org/considering-...
via
@tashjoeza.bsky.social
loading . . .
Considering the Bathroom Scale (Which Might be Fucked) by Genna Gardini | Amsterdam Review
Read "Considering the Bathroom Scale (Which Might be Fucked)" by Genna Gardini
https://www.amsterdamreview.org/considering-the-bathroom-scale-which-might-be-fucked.html
about 1 month ago
0
2
1
Unsolicited tick pic
add a skeleton here at some point
about 1 month ago
2
2
1
Rewatching this banger of a talk, that we’re now spoiled with two versions of; the original DEFCON 33 main stage talk, and the follow up RomHack 2025 talk with the PipeTap additions. DEFCON
https://youtube.com/watch?v=zSBf2CMKlBk
RomHack
https://youtube.com/watch?v=_39UbCePFfw
about 1 month ago
0
1
0
reposted by
Dominic White
noopkat
about 1 month ago
Tomorrow morning I am cycling 100km from Brisbane to the Gold Coast for cancer research 🚴♀️❤️ If you’d like to sponsor me (even small donations are super appreciated):
fundraise.mater.org.au/s/120023/179...
loading . . .
Please support my ride
I’m taking on the Brisbane to Gold Coast Cycle for Cancer to raise money for cancer research at Mater. Please support my ride by making a donation today. Thank you.
https://fundraise.mater.org.au/s/120023/179753
7
50
14
reposted by
Dominic White
Tim Medin
about 2 months ago
I think about this often. What is a real world bad guy's level of effort for cracking? How long do they spend? How big is their cracker? Do they have multiple crackers? How do they distribute the load?
add a skeleton here at some point
1
6
1
https://www.reuters.com/world/europe/south-africas-ambassador-france-found-dead-paris-le-parisien-2025-09-30/
👀
about 2 months ago
0
1
0
reposted by
Dominic White
alkali
about 2 months ago
the grapheneOS hardened allocator is pretty scary
www.synacktiv.com/en/publicati...
has there ever been a recorded ITW 0c exploit on a grapheneOS device?
loading . . .
Exploring GrapheneOS secure allocator: Hardened Malloc
Exploring GrapheneOS secure allocator: Hardened Malloc
https://www.synacktiv.com/en/publications/exploring-grapheneos-secure-allocator-hardened-malloc
1
1
2
Looking forward to the
#romhack
live stream on Saturday to see three of my favs - @titon, @leonjza & @albinowax
about 2 months ago
2
3
0
reposted by
Dominic White
bubbe yaga
2 months ago
i don’t think i’m autistic because my mom took tylenol while she was pregnant with me, i’m pretty sure it’s because she decided to reproduce with a guy who had an engineering degree, a ham radio hobby, and an inability to wear clothing not made from natural fibers
2
892
89
reposted by
Dominic White
Dirk-jan
2 months ago
I've been researching the Microsoft cloud for almost 7 years now. A few months ago that research resulted in the most impactful vulnerability I will probably ever find: a token validation flaw allowing me to get Global Admin in any Entra ID tenant. Blog:
dirkjanm.io/obtaining-gl...
loading . . .
One Token to rule them all - obtaining Global Admin in every Entra ID tenant via Actor tokens
While preparing for my Black Hat and DEF CON talks in July of this year, I found the most impactful Entra ID vulnerability that I will probably ever find. One that could have allowed me to compromise ...
https://dirkjanm.io/obtaining-global-admin-in-every-entra-id-tenant-with-actor-tokens/
9
87
42
I had occasion to hack on some Wordpress’es and realised there’s a ton of surface area exposed over the "new" REST interfaces. Here's a small utility to convert it into a OpenAPI/Swagger file so you can explore it in your pentests/bug bounty work.
github.com/sensepost/wp...
2 months ago
0
13
2
reposted by
Dominic White
Nosferatu Joseph 🧛🏻♀️
2 months ago
When FW De Klerk died someone on Twitter scolded me for sharing an old Private Eye cover about Verwoed's assassination (it was celebratory). "What if that was your grandpa?" Neither of my grandpas were war criminals and, if they were, I hope people would chat huge shit when they died.
add a skeleton here at some point
1
21
5
It used to be that “not supporting the murder of people I don’t like” wasn’t a controversial stance. Yes, even if they called for my murder.
2 months ago
0
3
0
I’ve been watching the inside track on this one, it’s super cool.
add a skeleton here at some point
2 months ago
0
4
1
reposted by
Dominic White
💥 leonjza
2 months ago
I've been hacking on a new Windows Named Pipe tool called PipeTap which helps analyse named pipe communications. Born out of necessity while doing some vulnerability research on a target, its been super useful in reversing it's fairly complex protocol. :)
2
7
9
reposted by
Dominic White
Josh
2 months ago
Good stuff. Proud to have been involved in an aspect of this.
loading . . .
Blog - Memory Integrity Enforcement: A complete vision for memory safety in Apple devices - Apple Security Research
Memory Integrity Enforcement (MIE) is the culmination of an unprecedented design and engineering effort spanning half a decade that combines the unique strengths of Apple silicon hardware with our adv...
https://security.apple.com/blog/memory-integrity-enforcement/
0
0
2
Cyble wanted this blog post taken down … Barbra Streisand (woo ooh ooh woo woo)
add a skeleton here at some point
3 months ago
0
5
0
reposted by
Dominic White
Catalin Cimpanu
3 months ago
There are many reasons why you never see Cyble in my newsletter... and this is one of them Now taking down security research on behalf of big corps
4
24
10
Total eclipse blood moon our side of the planet right now.
3 months ago
0
11
1
reposted by
Dominic White
sam henri gold
3 months ago
Source code and a downloadable app to try it yourself:
github.com/samhenrigold...
I have so much free time it’s unbelievable. I’m open to full-time work in NYC or remote. Senior product designer/design engineer.
samhenri.gold
loading . . .
GitHub - samhenrigold/LidAngleSensor: tfw when you when your lid when uhh angle your lid sensor
tfw when you when your lid when uhh angle your lid sensor - samhenrigold/LidAngleSensor
https://github.com/samhenrigold/LidAngleSensor
13
385
47
reposted by
Dominic White
sam henri gold
3 months ago
Did you know your MacBook has a sensor that knows the exact angle of the screen hinge? It’s not exposed as a public API, but I figured out a way to read it and make it sound like an old wooden door.
loading . . .
114
7649
2133
Moving to a new laptop brings with it the joy of a fresh install. It’s where I agonise over my set up. Last night I spent several hours redoing my zsh prompt I’ve been rolling for 30 years with some new features. It’s so crispy now, but I still can’t figure a way to drop the perl regexp!
3 months ago
1
3
0
Upgraded from an M1 Pro to M4 Max. Preliminary hashcat and LLM testing show it about 3.5x faster, which is more than I thought it would be!
3 months ago
0
0
0
Interested in the release of hashcat 7 I retested my (now three year old) ntcrack against it. It made me smile to see it's still faster.
https://github.com/sensepost/ntcrack
3 months ago
0
2
0
I used to kvetch about how weirdly aggressive DEFCON goons were, so it’s worth noting that rot seems to have finally been routed. The goons have only been kind, earnest and helpful this year. It’s been changing for a few years, nice to see it accomplished.
3 months ago
0
10
0
Load more
feeds!
log in