Profile avatar
mubix.com
(he/him) Dad / Husband / Marine / Student / Teacher / @Hak5 / @NoVAHackers / @SiliconHBO / @NationalCCDC / @MARFORCYBER Auxiliary
78 posts 3,797 followers 473 following
Prolific Poster
Conversation Starter

Rob Fuller (aka Mubix): From Hacking Games to Professional Hacker podcasters.spotify.c...

Red Team collaboration has evolved over time. I remember using SILC for encrypted chats and TRAC wiki and source code tracking. Here are the more modern services I think Red Teams can benefit from and a super easy way to stand them up: github.com/mubix/redtea... What do you use?

Congratulations to all who competed in the 2025 Southwest Regional Collegiate Cyber Defense Competition this past weekend: Baylor, Louisiana Tech, Sam Houston State, Texas A&M, UT-Austin, UT-Dallas, UT-San Antonio, and Tulsa.

Go home @steampowered.com ... you're drunk...

Pretty sure that door was put in to troll a very specific audience. #zeroday #netflix

I need someone who is more well versed in kernels than I am. Does this email make sense? I recently purchased a brand new Raritan DLX2 KVM. First photo is their reason for not supporting SMBv2 or SMBv3 and the other photo my device supporting "newer" TLS, @nedpyle.com ?

What is another character from fiction that could have taken on the Balrog better than Gandalf? My vote is Tyler Perry’s Madea. I think she would have it apologizing for scaring the hobbits in 2 minutes flat…

Here we have it, part 2 of my NUC stack series, with input from @therealchrisp.com on some of his recent builds. I opted to use ludus for deployment and easy lab stand-up, but there are a million and one guides on building labs. blog.zsec.uk/homelab-clus...

The Eleventh Hour was one of my favorite books as a kid. Anyone know any books like it? If @nostarch.bsky.social made one I'd own like 50 copies. www.amazon.com/Eleventh-Hou...

If you have met me in any medium and I have seemed ambiguous on any of these subjects please let me set the record straight. Love is love, #LGBTQ+/Black/Women rights are human rights, Black Lives Matter #BLM. Nazi were/are criminals. Vaccines save lives. #veteran #ally4life

I think I figured out my new favorite interview question: "How many dozens of inches are in a mile?" And then watch where people's thought process goes. :P

Job opening on my team for a Lead Red Team role: www.linkedin.com/posts/mubix_...

The amount of software that deploys a random binary to %APPDATA% which then downloads the software update and runs it, is crazy. It makes blocking $randombinary very hard to do without breaking normal/wanted update processes.

Just updated the hiring list with 7 new companies hiring that are here @shmoocon - Check out the lists and get connected before they head home tomorrow - lobbycon.org

For those heading to #ShmooCon or #ShmooLobbyCon You can find a much more filled out Hiring list here: lobbycon.org and if you wanna connect, a Shmoo slack is here: join.slack.com/t/shmoocon/s...

…. Next on bleeping computer, grass is green, vulnerable to being stepped on… www.bleepingcomputer.com/news/securit...

As someone who has lot my fare share of loved ones, might I recommend asking everyone in your life to leave you a voicemail that you never delete. Hearing people’s voice in those down moments helps. Even if it’s not some heartfelt message.

Taking a little time to count little blessings this morning 🫶

Rapid7 analysis of Apache #Struts 2 CVE-2024-53677 here via research lead Ryan Emmons — highlights: * No, this isn't really being successfully exploited in the wild * Payloads need to be customized to the target * The 'fixed' version *does not* remediate the vuln attackerkb.com/assessments/...

Chance to win @shmoocon.bsky.social tickets via 1-day CTF, they have 3 available : mctf.io/dec2024

The unofficial 2025 @shmoocon.bsky.social Hiring List has been posted: lobbycon.org #Hiring? submit via the form: forms.gle/bkrBX7aWGPND... #OpenToWork? Check the doc out before and during the conference: docs.google.com/spreadsheets...

You should do something that challenges or scares you every day. {It's ok to have cheat days, just like for the gym, but consistency is key}. Here is a great video that might just do that for you between Simon Sinek and Trevor Noah: www.youtube.com/watch?v=f-7W...

….

Working in it .... 😇 www.youtube.com/watch?v=fUqC...

I got bored last night and was curious how much of the McCallister take home was the groceries Kevin purchased vs what it would be today. ~190% increase in grocery cost, and ~120% increase in income from 1990 to 2024.

Want to run roadrecon, but a device compliance policy is getting in your way? You can use the Intune Company Portal client ID, which is a hardcoded and undocumented exclusion in CA for device compliance. It has user_impersonation rights on the AAD Graph 😃

I will gift the 18 book bundle to the first 10 new cyber/information security professionals or students who DM me. www.humblebundle.com/books/hackin...

Anyone else seeing ChatGPT as down?

Happy Anniversary, Log4J! I'll never forget you!

@patrick.risky.biz @metlstorm.risky.biz in #773 y’all mentioned your views on Internet scorecards. I find them a pretty good measure of the security program at the company, if you read between the lines. Not saying that they can’t get hacked just a decent external way to know [healthy | not]. .

So I like that BlueSky lets you use your domain for usernames because it's a much simpler way of having "verified" accounts.

Have a friend looking for a hacking / infosec group in the Phoenix area. Anyone know of some? Also, do they still meet up? Virtual?

Round Two of ticket sales is happening in just a bit... Read up if you're new to the process: www.shmoocon.org/general-info...

Whatever happened to the guy that invented a way to 100x speed upgrade cable internet and make it duplex? Wasn’t it “basically a firmware update” away?

Unexpressed expectations are just premeditated disappointments

Saw a video of a SO that replaced their spouse’s $3,000 grill with a “nicer” $500 one as a Christmas present. They flipped out on the video. What is one thing that if your SO replaced as a gift / surprise that would throw you over the edge?