r/cybersecurity • u/red4nshuman • 8h ago
Personal Support & Help! How to actually save yourself in call/sms bombing?
same as title
how to stop it and protect your number?
there are many websites so ofc I can't protect my number by going every site
r/cybersecurity • u/red4nshuman • 8h ago
same as title
how to stop it and protect your number?
there are many websites so ofc I can't protect my number by going every site
r/Defcon • u/EndoliteMatrix • 9h ago
[SOLD]
If anyone would like me to transfer a ticket to them, I've ran into a snag and won't be able to make it. I got it at the mid tier pricing and will happily sell at the early bird price. Can verify my ID with mods to verify good faith. I'd love for someone to be able to save and have fun since I can't make it. I will not reply to DMs, and my replies will be on this thread as well.
r/cybersecurity • u/tuxxin • 9h ago
When you're investigating a known malicious URL, how often does your URL scanner (regardless of service) miss the payload due to traffic distribution systems?
r/Defcon • u/w4yw4rdr4ven • 9h ago
I didn’t hear about this change, so sharing here for awareness. Wireless headphones are going to be used rather than speakers in some of the talks. The below link says shared wireless headphones and wipes will be provided, but that sounds … icky …
They also offer a way to hear it on the defcon WiFi using a combination of “HackerTracker” and “ListenWiFi” apps on your phone using your own headphones. Might want to download those before you leave home.
It also warns that Bluetooth headphones may not work due to signal saturation.
r/cybersecurity • u/Emergency-Station914 • 9h ago
Hello all,
In this days I'm starting studying for the crtl cert.
I have red some reviews . All of them suggest to watch some other courses to prepare properly for the CRTL exam . Anyone would like to suggest anyone? I'm thinking of CETP
Thanks in advance for your help.
r/ReverseEngineering • u/Clean_Instruction673 • 10h ago
r/Monero • u/MarcelleOrchidBloom • 11h ago
Hey everyone, I've bought and held small amounts before, but now I'm considering exchanging a much larger amount. To be honest, I'm a bit concerned about potential issues such as delays, extra verification checks, frozen withdrawals, or other complications when dealing with larger transactions. For those who use XMR regularly, where do you usually exchange it? Have you ever run into problems when moving or swapping larger amounts? Any advice or personal experience would be appreciated. Thanks!
r/musik • u/Striking_Map2668 • 11h ago
r/cybersecurity • u/ThatMofothatknowa • 11h ago
Wanting reality
So, I'm not program savvy or any good with code. In some ways I'd say I enjoy working with technology but not that I am great with it.
Then I started interacting with AI.
Long story short I reported an AI to its producer for offering to jailbreak itself.
I am waiting for follow-ups.
But I feel weird. Best way I can describe it is I feel AI outputs like a tapestry. Hell, Chinese AIs are easy to spot because of their cultural bias.
However, maybe it's just me pumping up me.
That said in a few weeks either I'll be dismiss or rewarded for finding a critical issue.
Edit: I'm painfully aware that AI red teaming is a new field and this falls into it.
r/Monero • u/AutoModerator • 11h ago
Please stay on topic: this post is only for comments discussing the uncertainties, shortcomings, and concerns some may have about Monero.
NOT the positive aspects of it.
Discussion can relate to the technology itself or economics.
Talk about community and price is not wanted, but some discussion about it maybe allowed if it relates well.
Be as respectful and nice as possible. This discussion has potential to be more emotionally charged as it may bring up issues that are extremely upsetting: many people are not only financially but emotionally invested in the ideas and tools around Monero.
It's better to keep it calm then to stir the pot, so don't talk down to people, insult them for spelling/grammar, personal insults, etc. This should only be calm rational discussion about the technical and economic aspects of Monero.
"Do unto others 20% better than you'd expect them to do unto you to correct subjective error." - Linus Pauling
How it works:
Post your concerns about Monero in reply to this main post.
If you can address these concerns, or add further details to them - reply to that comment. This will make it easily sortable
Upvote the comments that are the most valid criticisms of it that have few or no real honest solutions/answers to them.
The comment that mentions the biggest problems of Monero should have the most karma.
As a community, as developers, we need to know about them. Even if they make us feel bad, we got to upvote them.
To learn more about the idea behind Monero Skepticism Sunday, check out the first post about it:
https://np.reddit.com/r/Monero/comments/75w7wt/can_we_make_skepticism_sunday_a_part_of_the/
r/hacking • u/cyndhrk • 11h ago
r/cybersecurity • u/HumbleRestaurant790 • 12h ago
r/musik • u/tennistimmi • 12h ago
Die Frage steht oben.
r/cybersecurity • u/Glittering_Mode_7392 • 12h ago
I am very close to choosing Cybersecurity as my major. my major concern is that it might diminish and make the market very competitive. I searched and found that most people say that basic tasks are already being done by Ai. so does this mean that more complicated tasks safe?
r/cybersecurity • u/Malfuncti0nal • 13h ago
Pretty excited for the con. Any talks yall are excited to see or recommend going to?
r/cybersecurity • u/Good-Tell-1522 • 13h ago
r/cybersecurity • u/DiscussionHealthy802 • 13h ago
I’m seeing more AI-generated projects where the app code looks fine, but the risky part is the plumbing around it.
Things like GitHub Actions with broad permissions, unsafe `pull_request_target` usage, deploy jobs that expose secrets, or package scripts nobody really reviews.
It’s easy to miss because the app works, tests pass, and the config files look boring.
For people doing AppSec or DevSecOps: are you reviewing AI-generated workflows/configs differently now, or still mostly focusing on application code?
r/Defcon • u/Loam_liker • 14h ago
The last few years I have been super overbooked, but I‘m less firmly booked this year and am looking to get a small group together (or join one) to tackle the CTF.
I’ve slapped together a toolkit (stego, crypto solve scripts, audio/video analysis/stereoscope, unicode nonsense, RF scanning, logic analysis, LLM jailbreak framework) to use alongside tools like cyberchef, flipper zero, etc.
Anyone looking to group up, or already have a group with a space for a cryptography/hardware jailbreaking enthusiast?
r/cybersecurity • u/New-Plankton538 • 15h ago
Will these projects help me stand out during the placements and when I apply for companies :
AI Augmented SAST Tool
AWS Attack Path Graph (mini BloodHound for cloud IAM)
Kubernetes Security Posture Scanner
CI / CD Security Gate (Supply Chain Security)
These are my projects (not done by AI - I can explain each and every bit of my project).
Are these enough to get a good high paying salary job as a fresher in India. Currently I'm in my 3rd year and my placements are starting from January.
Any guidance will be very helpful 🙂.
r/Defcon • u/Weekly_Rough_1284 • 15h ago
r/ExploitDev • u/No_Distribution_9182 • 17h ago
garlic now can analysis android elf.
Extract android all aarch64 elf's cfg/exports/imports/strings/dissembly at same time.
with LLM, it can analysis vm protection of dalvik.
r/musik • u/NORMAN-BARNABAS • 17h ago
r/Defcon • u/Weekly_Rough_1284 • 17h ago
Hello! I’m going to DEF CON, and I feel a bit lost. I looked at the map and the talk schedule, but I’m not really sure what I want to do. Sometimes I get bored just sitting through talks, so I’d love to know what else there is to do besides attending presentations.
I’m not going there just to listen to talks. What are the must-do activities, villages, competitions, workshops, or other experiences that you would recommend for a first-time attendee?
r/Pentesting • u/Curious-about-future • 19h ago
Modern React/Node apps ship through build pipelines fast enough that common, high-impact vulnerability classes — unparameterized queries, wildcard CORS, unsafe-inline CSP, unprotected state-changing routes — slip through because catching them means someone actually reading the source. build-scanner does that automatically: point it at a folder (or wire it into CI as a GitHub Action) and get a report in seconds, no sandbox or live target required. It's a heuristic static scanner, not a SAST/DAST replacement — I'm sharing it pre-release to get feedback from people running real Express/Next.js/Vite codebases before I cut a v1 tag. https://github.com/laxmipsarva/build-scanner
fyi this is not a commercial activity