Fran Donoso
I'm an infosec person who currently works as the CTO of a security services firm. Have done DevSecOps, Red Teaming, and reverse engineering. I reversed some of the tooling leaked by the Shadow Brokers and spoke about it publicly
- Reposted by Fran Donoso[Not loaded yet]
- Reposted by Fran Donoso[Not loaded yet]
- I may have gone overboard on the Halloween goodies this year #halloween
- This report from @interseclab.bsky.social on how a Chinese company is exporting some of the capabilities of "The Great Wall of China" to other autocratic countries is INSANELY INTERESTING: interseclab.org/wp-content/u... *EVERY Page is worth reading* Some interesting tidbits in the thread
- Reposted by Fran Donoso[Not loaded yet]
- Plex was hacked. It included usernames, emails, and hashed passwords. Change your passwords when you can,
- Reposted by Fran Donoso[Not loaded yet]
- Reposted by Fran Donoso[Not loaded yet]
- I mean I’ve been urging people to toss their sonicwall devices into a shredder for years now 🤷🏻♂️
- Our team collaborated with our friends at @sentinellabs.bsky.social to identify and disrupt a PXA infostealer campaign that has an intricate and complex delivery chain: labs.beazley.security/articles/gho... Thanks for the fantastic collab SentinelLabs team!
- Reposted by Fran Donoso[Not loaded yet]
- Reposted by Fran Donoso[Not loaded yet]
- We’re actively seeing this exploitation as well. Here is my team’s advisory on this vulnerability: labs.beazley.security/advisories/B... Is your have a publicly exposed SharePoint server, its probably already compromised so get ready to do some IR.
- Reposted by Fran Donoso[Not loaded yet]
- Reposted by Fran Donoso[Not loaded yet]
- Reposted by Fran Donoso[Not loaded yet]
- Worth turning on if you have AT&T. Other carriers (like T-mobile) have similar programs.
- Reposted by Fran Donoso[Not loaded yet]
- This is related to ROP code exec on switch 2
- Reposted by Fran Donoso[Not loaded yet]
- Reposted by Fran Donoso[Not loaded yet]
- Reposted by Fran Donoso[Not loaded yet]
- Reposted by Fran Donoso[Not loaded yet]
- Reposted by Fran Donoso[Not loaded yet]
- Reposted by Fran Donoso[Not loaded yet]
- Reposted by Fran Donoso[Not loaded yet]
- This is interesting. Good write up here: www.stepsecurity.io/blog/harden-... The commit that backdoors this is bash that executes something that is base64 encoded which is something that attempts to run a python script to scrape memory on the runner for secrets (see attached image) 🧵 1/2
- Reposted by Fran DonosoWrote up something about Techdirt's recent coverage, and why (whether we like it or not) we need to be a "democracy blog" now, rather than just a "tech" blog (not that we've ever been just a tech blog). This story is *the* story and it impacts everything else. www.techdirt.com/2025/03/04/w...
- Reposted by Fran Donoso[Not loaded yet]
- Reposted by Fran Donoso[Not loaded yet]
- Reposted by Fran Donoso[Not loaded yet]
- Reposted by Fran Donoso[Not loaded yet]
- The last few weeks have made me proud to be a subscribed of @wired.com and have solidified by desire to remain subscribed for the foreseeable future. Great work keeping us informed about the craziness that is happening.
- I’ve updated the cybersec feed to temporarily remove “social engineering” due to that language showing up in a recent Executive Order and causing the feed to fill up with non infosec stuff.
- This was a great talk! Worth a watch for sure
- Reposted by Fran Donoso[Not loaded yet]
- Reposted by Fran Donoso[Not loaded yet]
- Reposted by Fran Donoso[Not loaded yet]
- Reposted by Fran Donoso[Not loaded yet]
- Reposted by Fran Donoso[Not loaded yet]
- Interesting discussion in this thread.
- Reposted by Fran Donoso[Not loaded yet]
- Reposted by Fran Donoso[Not loaded yet]
- Great research from the Volexity team into how a Russian APT weaponized some WIFI access points close to their target to ultimately pivot into target networks. www.volexity.com/blog/2024/11...
- Reposted by Fran Donoso[Not loaded yet]
- Reposted by Fran Donoso🚨 New Research Drop: 🇰🇵 DPRK IT Workers | A Network of Active Front Companies and Their Links to China Summary: ⚪ Newly Disrupted Front Companies by USG ⚪ Impersonating US based software and tech orgs ⚪ Links to still-active front orgs, CN association Report: www.sentinelone.com/labs/dprk-it...
- Reposted by Fran Donoso[Not loaded yet]
- Anyone else on #Mac experiencing notification delays with Apple “Intelligence”? Even with “Notification Summaries” OFF, enabling Apple Intelligence causes a noticeable multi-second delay for notifications (e.g., Slack messages) to show up after they’re sent. WTF?