Profile avatar
syndrowm.com
Hacker, CTF, CCDC, BJJ Brown Belt, python, rust, malware https://www.offensivecontext.com https://www.malicious.fit
377 posts 1,152 followers 240 following
Prolific Poster
Conversation Starter

Want to see how hackers abuse DNS to get data in and out of networks? Follow along as I build a DNS based key/value store with rust. Part 1 is live, covering the basics and important concepts. The code for part 2 (a custom DNS server) is up, the blog will drop next week. github.com/syndrowm/dns...

The placebro effect: When something you learned about on a podcast slowly kills you.

It feels good to see more and more people joing Bluesky 📈 Here's a few accounts who recently started to post here - @zachxbt01.bsky.social - @mrtuxracer.bsky.social - @blackhoodie.bsky.social - @workchronicles.bsky.social

this is the way www.washingtonpost.com/technology/2...

Want to see how hackers abuse DNS to get data in and out of networks? Follow along as I build a DNS based key/value store with rust. Part 1 is live, covering the basics and important concepts. The code for part 2 (a custom DNS server) is up, the blog will drop next week. github.com/syndrowm/dns...

Putting this out here in anticipation of digitizing I hope to do soon. I have boxes of 1/4" tape and if someone's sitting on a nice player of them, I'd love to long-term borrow or take as a contribution so I can start digitizing these tapes. No rush. DM away. Here's what I mean by a 1/4" player:

Kicking off a new blog series. We will be exploring and abusing DNS by building a key/value store. www.offensivecontext.com/abusing-dns-...

Congratulations to Charles Blas for winning the runZero hacktop raffle at CruiseCon 2025! This is a GPD Pocket 3 running Ubuntu Mate, preloaded with a fully licensed, offline version of the runZero Platform. You can find pictures and Charle's take at: https://buff.ly/4b6w0vz

// FML, there goes my afternoon let buf = [u8, 16];

I'm not sure what this is, but I like it. www.youtube.com/watch?v=p-9Z...

I'm not sure what this is, but I like it. www.youtube.com/watch?v=p-9Z...

remember the Rule of Law? Wish that was still a thiing

You probably shouldn't connect your PAN-OS Firewall directly to the internet.

A cool new #threatdetection blog by @philhagen.com and @forensicitguy.bsky.social which uses #synapse to analyze network tunneling behavior of a few malware families! 🎉 redcanary.com/blog/threat-...

👀

Donate!

After identifying a significant overlap between IPs exploiting CVE-2024-40891 and those classified as Mirai, the team investigated a recent variant of Mirai and confirmed that the ability to exploit CVE-2024-40891 has been incorporated into some Mirai strains.

Freedom of expressions should probably be included in the standard AI benchmarks.

How I arrived on bluesky:

How I arrived on Bluesky.

“Do not commit the sin of empathy!”

And the only reason that happens is because we have a distant ancestor in common with those plants.

Whoa it's Friday, what are you hacking on? I'm building a thing... I can't talk about yet. It's at that point where I *really* want to talk about it.

In full on event planning mode getting ready to host the Atomic Red Team open house @wildwesthackinfest.bsky.social @Mile High. Would love to see you all there! #atomicredteam #cybersecurity #WWHF #MileHigh2025 Sign up for this free event here: redcanary.com/resources/ev...

The Grifted Age

Can you slap around CloudFormation? Do you long to implement AWS optimizations at scale? (seek therapy) Do you want to work fully remote? Consider The Duckbill Group! $175K a year. Details here. (I’m hiring for multiple roles under this description) careers.duckbillgroup.com/apply/CcljKG...

When in doubt... WAF

Without downloading new pics post where you are mentally

Literally, fuck everything about this. Keep building, ATProtoists. 💪

weaponizing exploits in the lab