I am retiring this social media account. Find me as @hal_pomeranz@infosec.exchange

Orlando, FL
Joined November 2008
Replying to @bettersafetynet
Printers are no longer simple
1
3
Replying to @tliston
mwhahahaha They still haven’t found my usual alt port...
1
1
Replying to @tliston
I suppose we haven’t had an SSH remote exploit for a while. The same cannot be said of RDP.
1
Replying to @tliston
What’s weird to me is that I don’t see similar scanning for SSH on alternate ports.
1
Hal Pomeranz retweeted
Things I wish we would stop saying in tech: “She shouldn’t complain. We all got hazed as new hires!” “He’s a wimp. We all did 70hr weeks and never saw our families!” “Vacation?! I didn’t take a vacation for 6 years!” Like, why are you defending horrible labor practices so hard?
77
357
33
2,580
Very proud of our daughter—grit and work ethic out the wazoo
12
SOCKS via SSH — subverting firewall policy like it’s 1993, yet still so effective...
1
2
1
21
𝐩𝐚𝐧𝐝𝐞𝐦𝐢𝐜 𝐟𝐢𝐧𝐞 — 𝑛𝑜𝑢𝑛 — a state of being in which you are employed and healthy during a pandemic but you're also tired and depressed and feel like trash all the time
360
36,839
2,428
183,063
Replying to @MalwareJake
I’d say there’s enough detail there to figure out what happened
3
in a few hours, we'll be doing the first webinar on What2Log.com This project started when @soundsofthetime asked a simple yet powerful question. "where can I go to get the log settings?" It took months to get to here... and we're just starting. Join us in the fun!
3
6
1
13
Hal Pomeranz retweeted
This is a decent example of what a complex Linux threat looks like. Probably in my top 3 of most complex Linux malware I’ve ever encounter ITW. Custom code-level obfuscation, high versatility and capability despite its size. Research by @marc_etienne_ and I. Give it a look!
#ESETresearch published details about unique malware we’ve named Kobalos targeting multiple operating systems including Linux, FreeBSD and Solaris, and perhaps even AIX and Windows. #KobalosMalware @marc_etienne_ @ulexec 1/6 welivesecurity.com/2021/02/0…
33
1
81
Replying to @malanalysis @SamVR
Plus you’ll be ready for werewolves too!
1
Hal Pomeranz retweeted
If you are a woman interested in cybersecurity, check out @ShaktiCon! This is a conference focused on inspiring and training aspiring female hackers with cybersecurity keynotes, training, workshops, and CTFs. For free! shakticon.com/schedule#begin…
20
352
12
588
Hal Pomeranz retweeted
📚 Just published the final chapter of "The Art of Mac Malware" book ...a rather monumental (80+ pg) case-study of the insidious OSX.EvilQuest virus. Hop over to taomm.org for read! ...and stay tuned for info about a printed version & details on the next volume!🤩
4
76
3
253
Hal Pomeranz retweeted
TIL about the SSLKEYLOGFILE environment variable. essentially you can set a local log file for SSL/TLS keys for decryption via protocol analyzer. AKA: Pre-Master Secret Key. you then point Wireshark to the file for encrypted session decryption. comparitech.com/net-admin/de…
1
7
9
Also here’s your periodic reminder that by the time you hear about any get rich quick scheme—whether it’s GME, BTC, or Silver—it’s far too late for you to be anything other than somebody else’s exit strategy.
1
22
4
83
Seriously, the I cannot believe the amount of erroneous victimization people can hold in their brain in the face of all evidence to the contrary.
1
2
4
Every year when February rolls around, I hear people complaining, “When is it going to be white people history month?” My reply is, “Every damn month of the year, including February!”
1
4
10
Replying to @Carlos_Perez
Step by step, day by day, one foot in front of the other. You will persevere. Also realize that you are not alone.
1