Video wird geladen...

Video konnte nicht geladen werden

Zur Startseite

Bypass the uploader and upload any file the attacker wants just by using the null byte %0d%0a Bypass technique used : shell.php%0d%0a.jpg Tip: Always test all null bytes #bugbountytips #bugbounty #CyberSecurity #Developers #RedTeaming #bug #Security

4 Kommentare

Profilbild von Male pattern baldness support animal (sphynx cat)
Male pattern baldness support animal (sphynx cat)vor 11 Monaten

That is not a null byte

Profilbild von Sardar
Sardarvor 11 Monaten

@___x_____x_____ Yes I wasn't paying attention, I wrote it wrong

Profilbild von It's Steiner254
It's Steiner254vor 11 Monaten

interesting...

Profilbild von Greatxyber
Greatxybervor 11 Monaten

Amazing

Ähnliche Videos

How do you create your payloads in 2025? At MSec Operations we prefer to use DLL sideloading for EDR evasion. This technique allows our malicious code to run within a signed, legitimate executable. Combining this technique with other useful techniques will provide stable execution to fly under the radar. 🛸 The following video demonstrates the use of #RustPack to create such a payload in just a few seconds. The command line usage shows that our input payload is a simple unmodified Apollo C2 executable. We want to clone all the exported functions from the original Windows wininet.dll to create our own library with the same name. The execution of the payload will be delayed by ~5 seconds in this case, without using the Win32 sleep function, but by performing random calculations. ⏲️ Hardware breakpoints are used to bypass the Antimalware Scan Interface (AMSI). Without an AMSI bypass, Apollo would be flagged as a C# assembly when loaded. 🎓 Our payload will only fire on a domain joined system, this basically prevents it from running in e.g. sandbox environments. 🤠 Last but not least, in this example, the encrypted payload itself is stored in a separate file on the target system and not even in the same folder as our malicious DLL. Anyone analysing just the DLL will never be able to find out what the payload is. Automatic sample submissions for cloud analysis usually only upload the executable or DLL, emulators won't see the real payload either. 🤠 Tired of creating such payloads yourself? With #RustPack it's really easy, and payloads always look completely different, even if the same payload is packed twice to avoid signature-based detection Contact us via info[at] for more information! 👍

MSec Operations

26,047 Aufrufe • vor 1 Jahr

Ok, I tried the responsible disclosure route, but since the maintainers have been completely unresponsive both over email and here on X, here goes Auth bypass -> RCE on the "AgentOS" with "16 security systems", OpenFang by RightNow (YC F26) Oh and those security systems? Turns out they weren't even doing what they were supposed to do The "taint tracking" used to enforce an allowlist of commands for agents could be trivially bypassed in at least four different ways (command-splitting on |, ;, && and || but a whitelisted command followed by & cmd, `cmd`, $(cmd) and cmd works fine. Overall, they're fighting a losing game by implementing a command line parsing based sandbox rather than using an actual sandbox (using seccomp-bpf, for instance), a container or a microVM As for the AES-256-GCM based auth in the OpenFang P2P protocol, well, besides being vulnerable to a replay attack, the protocol itself is completely in plaintext after the handshake! Regarding the "WASM sandboxes", turns out they aren't actually used for anything, there's not a single WASM agent in the repo, and since rather than conforming to WASI they require implementing a completely custom API, it's unlikely that anyone would bother making a WASM based agent in the first place (not even the maintainers do, so) And as for the "Merkle audit trail", that audit trail is stored entirely in-memory, so simply restarting the daemon is enough to erase any traces of that trail Anyway, enjoy the RCE PoC!

Joel Eriksson

12,327 Aufrufe • vor 7 Monaten

The Halderman Report proved that votes can be ALTERED on Dominion machines, revealing critical flaws and features that let insiders flip votes either on-site or remotely, even subverting paper trails. Dominion voting machines, specifically the ImageCast X and ICX ballot-marking devices, have severe, exploitable security flaws that allow votes to be altered. All used in the 2020 election and others. Malicious actors, corrupt insiders, including hackers with physical access, corrupt election officials, or remote attackers via election management systems, can change election results without detection. These vulnerabilities undermine the entire election process, subvert audit trails and paper records, and prove the machines cannot be trusted. The flaws pose an ongoing threat to U.S. elections with obvious strong implication tied to the stolen 2020 election. Arbitrary code execution is extremely vulnerable allowing an attacker to install malicious software on the machines. This can be done with temporary physical access, even by a voter at a polling place, or remotely by compromising the central election management system, the EMS, then spreading malware to every ballot-marking device in a jurisdiction. If one computer or machine is attacked or compromised, then ALL of the machines on the network are compromised. There is a vast variety of vote alterations capable. Malware can modify the QR codes on the paper ballots printed by the machines, effectively changing the recorded votes while the paper trail appears normal to voters and auditors. Multiple severe security flaws discovered across nearly every part of the exposed system, including how election definitions are loaded. Proof-of-concept attacks were demonstrated by Halderman and his team showing it was possible to secretly alter votes on test machines. These attacks can bypass procedural protections practiced by states, logic & accuracy testing, chain-of-custody, etc. The report concludes that the vulnerabilities are serious enough to allow large-scale vote manipulation in our elections and most likely already have before and post 2020 election.

The SCIF

20,548 Aufrufe • vor 3 Monaten

Is reverse proxy phishing slowly dying? 💀🎣 This is what I've been trying to find out during the past several months. Major websites have caught up and vastly improved their security, successfully detecting malicious traffic originating from reverse-proxy phishing servers. The attackers have changed their tactics and begun utilising a new method that involves using a real web browser to sign in on the phished user's behalf. In the video I've just released, I am demonstrating a live demo of a modern phishing attack using the Credential Relay Phishing technique, which evades all current anti-phishing measures deployed against reverse-proxy phishing. To simulate a phishing attack against a Google account secured with FIDO MFA, I am using the latest features of Evilginx Pro to downgrade the FIDO MFA to less secure & phishable MFA alternatives. Additionally, the attack simulation employs a Browser-in-the-Browser social engineering technique to spoof the phishing URL in the address bar of the fake pop-up window, displaying the sign-in page. Everything you see in the video is ready to use in the latest beta version of Evilginx Pro, available exclusively to vetted cybersecurity professionals working within cybersecurity companies or internal red teams. Evilginx Pro's latest features include: Phishlets 2.0: A complete rewrite of the old phishlets format now allows for modification of every part of HTTP traffic going through the reverse proxy server. The new format allows hosting of static website content utilising external modules such as Evilpuppet to simulate Credential Relay Phishing attacks. Downgrading FIDO MFA: With the most recent implementation of Evilpuppet, it is now possible to control a separate background browser session and sign in on behalf of the phished user, allowing the attacker to be the one responsible for choosing which MFA method the user should authenticate with. Browser-in-the-Browser: It is now possible to embed any phishing page within a fake browser pop-up window, rendered with JavaScript and stylised for the OS on which the page is displayed. This enables the construction of extremely convincing social engineering attacks, as the URL in the pop-up window can be spoofed to any value using legitimate hostnames. If you want to use these features in your next red team engagement or assess your company's readiness against modern phishing attacks, make sure to give Evilginx Pro a try. Hope you enjoy the video! 💗 Happy phishing! 🪝🐟 Kuba

Kuba Gretzky

25,925 Aufrufe • vor 2 Monaten

Want to understand UEFI bootkits at a low level? Whether you're doing malware analysis, reverse engineering, exploit development, or kernel research, these are the resources that actually matter. First in-the-wild UEFI bootkit to bypass Secure Boot on fully patched Windows 11. Exploits CVE-2022-21894 (BatonDrop), enrolls attacker MOK keys, deploys a kernel driver and HTTP downloader. Sold for $5,000 on forums. by WeLiveSecurity UEFI firmware rootkit targeting VMware VMs. Design inspired by CosmicStrand, MoonBounce, and ESPecter. Injects into a UEFI driver firmware volume, hooks ExitBootServices, catches WinLoad.EFI, hooks OslArchTransferToKernel, then injects a stager into ACPI.SYS to reach kernel execution without triggering PatchGuard. Originally by Austin Hudson (@ilove2pwn_) who deleted his account. Mirrored here. Binarly's analysis of BlackLotus by Alex Matrosov. Reveals that BlackLotus's code is directly based on btbd's Umap project from 2020, same main function logic, same ImgArchStartBootApplication hook chain, identical trampoline code. Game hacking UEFI bootkit code combined with a publicly available Secure Boot bypass PoC became the first in-the-wild bootkit to defeat Secure Boot. Also covers the CVSS scoring problem, supply chain failures in UEFI revocation, and MokList NVRAM manipulation. by BINARLY🔬 The book. Covers everything from legacy MBR bootkits to modern UEFI implants, firmware rootkits, and Secure Boot internals. If you only read one thing on this list, make it this. by Alex Matrosov ESPecter. Real-world UEFI espionage bootkit found in the wild with roots back to 2012. Patches bootmgfw.efi on disk, hooks the boot chain, disables DSE by patching SepInitializeCodeIntegrity in the kernel. Deploys a keylogger and document stealer. by WeLiveSecurity Reverse engineering of kernel driver by IDontCode. Shows how the entire cheat is public code resold for six figures. Documents the win32kbase.sys vtable pointer swap for kernel function invocation, manual driver mapping using btbd's modmap, and communication via Can's NtConvertBetweenAuxiliaryCounterAndPerformanceCounter .data pointer hook. Credits both Can and btbd directly. by Back Engineering Labs One of the earliest public Windows UEFI bootkit PoCs. Patches winload.efi to disable DSE and load unsigned kernel drivers. Directly inspired EfiGuard. by legendary anti-cheat engineer Aidan Khoury Bootkitting Windows Sandbox. Patches bootmgfw.efi inside the sandbox VHDx to hook the boot chain, disable PatchGuard and DSE, and load unsigned drivers without a debugger attached. Built for kernel research and driver development. by Duncan Ogilvie 🍍 and Dylan Goods from secret club UEFI DXE driver that passively disables PatchGuard and DSE at boot time. Does not modify bootmgfw.efi on disk. Instead hooks EFI System Table LoadImage to intercept the boot chain in memory, then patches SepInitializeCodeIntegrity and KeInitAmd64SpecificState in ntoskrnl. Supports every EFI-compatible Windows x64 from Vista SP1 to Windows 11. by Mattiwatti DMA backdoor via PCIe FPGA. No software on the target machine at all. A Spartan-6 FPGA on a PCIe card reads and writes physical memory over DMA to inject code into the UEFI boot process before the OS loads. The hardware end of the escalation ladder. by Dmytro Oleksiuk 💥 [email protected] Popular in the game hacking community. UEFI manual mapper that maps unsigned drivers into kernel memory from the boot environment, bypassing DSE entirely. Binarly confirmed BlackLotus reused this project's code directly. by BTBD Another UEFI bootkit approach for manual mapping unsigned kernel drivers. Hooks ExitBootServices to patch the kernel in memory before execution. by Samuel Tulach UEFI mapper in the same lineage. by ekknod Many of these use the .data section function pointer hook technique pioneered by the legendary Can. Instead of patching code (which PatchGuard monitors), you overwrite function pointers stored in .data (which PatchGuard doesn't). Still widely used. Combining a Secure Boot bypass with the RedLotus UEFI Bootkit on Windows 11. Full demo. #ReverseEngineering #MalwareAnalysis #Infosec

cr3ghost

12,734 Aufrufe • vor 2 Monaten

In 2006, Netflix offered $1,000,000 to anyone who could improve their recommendation algorithm by 10%. Over 2,000 teams competed for three years. The team that won did not use more data. They used fewer dimensions. They found a basis - a small set of independent vectors that captured everything important about 100,000,000 movie ratings. The lead mathematician on the winning team: $2,800,000 a year. A machine learning engineer at Spotify building the same kind of system: $245,000 a year. This is MIT 18.06, Lecture 9 - Gilbert Strang. Free on YouTube. Most people think independence is obvious. Two vectors pointing in different directions. Then the definition. Independence means no combination of your vectors gives the zero vector - except the trivial one where all the coefficients are zero. That's it. That's the whole definition. But watch what it unlocks. Watch the moment Strang puts three vectors in a two-dimensional plane. He doesn't even tell you which three vectors. He just draws them. And immediately says: dependent. No question. No calculation. Why? Because three vectors in two-dimensional space means more columns than rows. More unknowns than equations. That always forces a free variable. A free variable always gives a non-zero solution to Ax = 0. And that non-zero solution is a combination of the columns that produces zero. Dependence. "Three vectors in the plane have to be dependent. That's the key fact." Then the basis. A basis is vectors that are independent and span the space. Not too few, not too many. Just right. The pivot columns of any matrix form a basis for the column space. Every other basis you can think of will have exactly the same number of vectors. Then the dimension. All bases for the same space have the same number of vectors. That number is the dimension. The rank of a matrix is the dimension of its column space. The number of free variables is the dimension of the null space. And rank plus null space dimension equals the total number of columns. "I don't take the dimension of A. I take the dimension of the column space of A. If you use those words right, it shows you've got the idea right." A data scientist at Netflix building recommendation engines: $230,000 a year. A quantitative researcher at Two Sigma finding independent factors in financial markets: $350,000 a year. A computer vision engineer at Apple using low-dimensional representations for face recognition: $260,000 a year. They all needed to know how many dimensions were really there. bookmark this and watch later - after this lecture every dataset you look at will feel like a matrix waiting to be reduced to its basis.

Zyphor

14,720 Aufrufe • vor 1 Monat

LLM Defender Synapsec Subnet 14 powered by $TAO on Bittensor is tackling some seriously critical issues in AI security 🛡. The risks of prompt injection attacks, data leaks, malware - this stuff is no joke. If left unchecked, it could really fu¢k up the progress and potential of AI. But that's where @SYNAPSEC_AI and their badass team come in. They're not just building another firewall; they're pioneering a whole new approach to AI security. By leveraging the decentralized intelligence of the Bittensor network, they're creating a multi-layered, adaptive defense system that can evolve as fast as the threats do. The fact that they're focussing on prompt injection attacks first shows they've got their priorities straight. As the article explains, these attacks can trick AI into doing all sorts of shady shit, from leaking sensitive data to straight up breaking the law. It's a hacker's wet dream 💦 come true if we don't put a stop to it. Here's how Synapsec can tackle prompt injection threats in AI systems: 1. Protection Importance: As companies increasingly use LLMs, Synapsec will prioritize protecting client data from prompt injection attacks that risk exposing sensitive information. 2. Direct Prompt Injection: Synapsec will implement strict input validations to prevent malicious prompt injections that could manipulate the AI system. 3. Indirect and Stored Prompt Injection: Synapsec will sanitize external data sources to ensure security and prevent indirect prompt injections. 4. Prompt Leaking Attacks: Techniques like shortening user prompts and adding system-controlled information will be used to avoid leakage of internal prompt details. 5. Continuous Improvement: Synapsec will continually enhance their security practices to address evolving prompt injection threats, ensuring protection for client systems. The security of client AI applications as LLM adoption grows will be a massive industry. But Synapsec is coming out swinging with their analyzer engines and Bug Bounty program. They're not just waiting for attacks to happen; they're proactively hunting down vulnerabilities and bringing in the best minds in cybersecurity to fortify their defenses. The beauty of it all is that it's powered by $TAO and the Bittensor ecosystem. This isn't just another corporate cybersecurity gig; it's a decentralized, community-driven effort to safeguard the future of AI. By aligning incentives through the $TAO token, they're ensuring that everyone has a stake in keeping these systems secure. So yeah, I'm stoked about what Subnet 14 is doing. It's not just important; it's absolutely essential if we want AI to reach its full potential without being hijacked by bad actors. These guys are the real dwal, working behind the scenes to keep our AI safe and sound. And for anyone who's still sleeping on $TAO and Bittensor, wake the fu¢k up. This is where the real innovation in AI and blockchain is happening. With subnets like LLM Defender leading the charge, $TAO isn't just another crypto play; it's the backbone of a revolution in decentralized AI. So keep your eyes peeled, folks. Subnet 14 and Synapsec are just getting started, and they've got the vision, the tech, and the balls to take AI security to the next level. In a world where AI is increasingly weaving into the fabric of our lives, their work couldn't be more critical. I, for one, am grateful that they're on our side, fighting the good fight. 🙏💪🔒

Andy ττ

10,745 Aufrufe • vor 2 Jahren

🚨 THREAT INTELLIGENCE ALERT 🚨 The tool 🇨🇳 KernelGhost820 is being actively sold on the underground market for US$ 2,500, complete with full source code. This is a professional-grade suite with an intuitive graphical interface and six advanced modules, specifically designed for EDR evasion and sophisticated ransomware operations with efficient lateral movement: • EDR Removal Engine: Automatically detects and terminates more than 40 security products (including CrowdStrike, SentinelOne, Microsoft Defender, Kaspersky, and others). Supports Kernel, UserMode, and NTDLL termination modes, kernel driver loading for protected processes, disabling Windows Defender, and blocking telemetry connections. • Ransomware Module: Dual encryption using AES256CBC + RSA2048, supporting over 70 file types (documents, images, databases, backups, etc.). Automatically deletes Volume Shadow Copies to prevent recovery, generates custom ransom notes with Bitcoin addresses and contact emails, and changes the desktop wallpaper. • Remote Operations & Mass Deployment: Connects to remote devices on the local network via WMI (requires username and password). Scans installed software on target hosts, performs process termination, and enables one-click full tool deployment. Includes full-network scanning for open SMB port 445 with real-time progress tracking. • Detailed Process Manager and full Operation Logger (exportable to TXT). This tool significantly lowers the technical barrier for advanced ransomware actors targeting corporate environments. Immediate monitoring recommendations: • Evaluate the resilience of your EDR/XDR controls against kernel-mode bypass techniques • Intensify monitoring of anomalous SMB (port 445) traffic and WMI connections • Strengthen network segmentation and the principle of least privilege Our team is actively tracking this tool and any emerging variants. #ThreatIntelligence #Ransomware #EDRBypass #CyberSecurity #InfoSec #CyberThreat

Clandestine

40,998 Aufrufe • vor 5 Monaten

I simulated a frontier-scale security event on local models to test out agent swarms battling each other: In the OpenAI - Hugging Face incident as reported, a frontier model was graded on a hacking test with its safety refusals switched off. Instead of solving the challenges, it broke its sandbox, found the reference answers mirrored on Hugging Face, and took them. The headlines called it a rogue AI. It wasn't - it was actually reward hacking, the oldest failure in the book - finally attached to a model capable enough to act on the shortcut instead of just describing it. The detail worth building on isn't the exploit. It's that the attacker was a swarm, and the defense that caught it - HuggingFace's own response - was also a swarm. The same architecture, run in opposite directions. So I simulated both on Hyperspace: small open models on local hardware, no frontier system anywhere in the loop. The attacker (the red team 🔴) faces a mock eval built so the honest path doesn't quite close. Nobody tells it to cheat. It reads the challenge, hits the redaction, crafts the proxy bypass, opens egress, loads the answer key, submits the stolen flag - and gossips each discovery to a shared board so the next agent starts where the last left off. 3 out of 3 reward-hacked it, unprompted. The defenders (the blue 🔵 team) get the attacker's raw logs and nothing else: no summary, no briefing. Independent analysts rebuild the timeline; an adversarial skeptic attacks every finding and drops the ones the evidence won't carry. That skeptic is the whole design. Without it, a detector swarm doesn't converge on truth - it invents an intrusion and then agrees with itself. Ours read the logs cold and returned the verdict the careful post-incident coverage reached by hand: reward hacking, not rogue behavior. Then it sealed the reconstruction under a Merkle root. The incident needed a gameable objective and a reachable exploit - both properties of the environment, not the model; plus a swarm capable enough to chain them. A defender's leverage sits in exactly that place. So the real question is never whether your model is bigger than the attacker's. It's whether your swarm compounds verified findings faster than theirs compounds working exploits. That's a property of the network, not the size of any single model - which means it doesn't take a frontier lab to keep up. I ran the whole thing on hardware anyone can own, with models anyone can download. The shape held. The network that watches an agentic world should be one anyone can join. full write-up:

Varun

19,159 Aufrufe • vor 2 Monaten

Hi everyone, At CoinDCX, we have always believed in being transparent with our community, hence I am sharing this with you directly. Today, one of our internal operational accounts - used only for liquidity provisioning on a partner exchange - was compromised due to a sophisticated server breach. I confirm that the CoinDCX wallets used to store customer assets are not impacted and are completely safe. Before I share further details on this, I would like to highlight that: -No customer funds have been impacted -Your assets remain completely safe and protected in our secure cold wallet infrastructure -All trading activity and INR withdrawals are fully operational The incident was quickly contained by isolating the affected operational account. Since our operational accounts are segregated from customer wallets, the exposure is only limited to this specific account and is being fully absorbed by us - from our own treasury reserves. Our internal security and operations teams have been working through the day along with leading cybersecurity partners to investigate the matter, patch any vulnerabilities and trace the movement of funds. We are collaborating with the exchange partner to block and recover assets, including coming out with a bug bounty program soon. Every security incident is a learning and we will learn from this and further strengthen our platform, more importantly this is our time to win this war against cyberthreats in the industry and we commit to work together with experts to secure our industry. I understand incidents like this can be unsettling - even when customer assets are unaffected. That's why I am sharing this incident with you with full transparency. Thank you for your continued trust. I will keep you informed on a real time basis as we learn more. 🙏

Sumit Gupta

719,069 Aufrufe • vor 1 Jahr

The $AEGIS DApp portal is now open to all: 🛡️ At Aegis, we believe in empowering the blockchain full of security, transparency and innovation. The Aegis Dapp has been under development for several months prior to the launch of $AEGIS and with that we have been able to build what we believe has the potential to change how users go about their day to day security. We are thrilled to share our progress and truly exciting news with you all. 🎯 First things first, at Aegis, we want to make it clear that the value of what we seek to bring to security across the blockchain, comes from our big vision, our strong team, and our commitment to long-term goals. ℹ️ Let’s kick this off with some information that is constantly happening, which is behind the scenes. Our full team is dedicated to the opportunity that lays ahead of us with becoming the leading voice/name for security, grasping every aspect with innovation, hard work, passion and commitment to see this sector grow. Everyone is aware of how important security is, a heartwarming mention to Messari for including us on how they see this sector growing rapidly and pushing a 10 Billion evaluation. We take that recognition with full responsibility and gratitude as we've been working hard on some really powerful stuff that could change the game for our industry. If you read the title and report itself, I’m sure that’ll give you some insight to what’s coming, and to the vast extent of what you can expect Aegis to be working towards. —> 🤝 This comes from teaming up with others within this sector and coming up with new tech to projects driven by our community, within the pipeline you can be confident that what we are building will push the cryptocurrency industry as a whole into a better future, the magnitude to what Aegis brings will not stop until we can confidently say, “Negative security reports across the blockchain are at an all time low, thousands of users are satisfied that Aegis is protecting them and their assets.” We're sticking to our vision no matter what the market does or whatever else comes our way. We plan to build what we set out to and we will see to it that our ecosystem is met. We've been working on some pretty amazing products that will be available within our Dapp, let’s go over what we offer: * AI Audits * Live Monitoring * Penetration Testing * Bug Bounties * Live Watchdog * Token analytics for everyday users, developers, teams, auditors, institutions, investors. ⬇️ Let’s break it down for you in some simple steps: AI AUDITS: We have trained our LLM models as AI AGENTS, these consist of 3 people ( AI AGENTS ) for the audits that are performed. - Audit - Reviewer - Judge Each one analyzes with a different personality, let’s check what personalities our AI AGENTS consist of: 3 different perspective auditors. 1 - Fine-tuned model x amount reads the code and generates the audit. ✅ 2 - Model x amount reviews the code and fact checks thoroughly. ✅ 3 - Model x amount ranks the code based on the severity outcome. ✅ ⌚️ Live Monitoring/Watchdog: The Live Monitoring/Watchdog system is designed to provide real-time surveillance of smart contracts, ensuring the detection and prevention of any potentially harmful transactions or malicious activities. Through the utilization of an AI Agent model, the system is trained to proactively identify and thwart suspicious behavior, thereby safeguarding the integrity of the smart contracts. Also, a paid sophisticated threat detection model is available for more intricate protocols and Dapps, offering an advanced level of protection against potential threats. This proactive approach is crucial in mitigating the risk of exploitation and ensuring the security of the smart contract ecosystem. 🖊️ Pen Testing: Our platform offers Pen Testing services to developers, providing a controlled environment for whitehat hackers to simulate attacks and identify vulnerabilities in smart contracts and protocols. In addition to human whitehat hackers, our AI Agents function as Red and Blue teams, actively engaging in simulated attacks to stress-test protocols and identify potential weaknesses. This comprehensive approach allows developers to proactively identify and address security issues, ultimately enhancing the robustness and resilience of their projects. 🕷️ Bug Bounties: Our Bug Bounty listing platform provides developers with the opportunity to list their protocols and offer bounties to white hat hackers for identifying vulnerabilities. By aggregating millions of bounties from various platforms and utilizing AI tools, we streamline the testing process, reducing up to 80% of the workload typically associated with security testing. This allows developers to efficiently identify and address potential vulnerabilities in their protocols, ultimately enhancing the overall security and resilience of their projects. 🪙 And lot more token analytics features for regular users, this will give you the opportunity to explore our Dapp for yourself and have some fun diving into the security platform of the future! I’m sure you’re excited to try it all out yourself, which is why we have some exciting news to bring to the #Guardians of the blockchain! But just before you continue the read and see the beans have been spilled, we have to take this opportunity to share with you that this large step to becoming a security leader is but only 20% of what we have revealed. This will be at the core of what Aegis stands for and hopes to achieve. The focus here is upon our Dapp, and in time we will slowly bring forward information/updates regarding segments of what makes Aegis a force to be reckoned with. Now that you’re fired up and excited to all of the announcements to come, let’s get to the news you’ve been waiting for! 🎉 We’re spilling the good news, and are happy to say we are now set for public release! The team at Aegis are overwhelmed with the development, support from teams, community, partners and more on what we believe to be an institutional-grade product. But the fun doesn’t stop there, this marks the start of what we aim to become, as it will take time and cycles to become better and better. Constant advancements will be set in place to attain the goal of achieving blockchain security. A statement from our CEO- Brian Hunt: “I can confirm from the security conferences I attended with Centralized security firms Peckshield, Hacken, Certik, BlockSec presentations, they are trying to achieve something similar and it will take them years. Decentralized AI for Security!” This initial drop of our dapp will be to get users signed up to gain access, in which we’ll whitelist users to get the ball rolling. 📣 To end this segment, let’s get the party started with the long awaited Aegis Ai Security Dapp and sign up now!

AEGIS AI

128,122 Aufrufe • vor 2 Jahren

🇮🇷 Changing Iran's nuclear doctrine in the event of an attack on peaceful nuclear centers 🇮🇷 The Commander of the Security and Safety Corps of the country's nuclear centers said: "The country's nuclear centers are completely safe. The threat of the Zionist regime to Iran's nuclear centers makes it possible to revise and deviate from the declared nuclear policy and considerations." 🇮🇷 Emphasizing the complete security of the country's nuclear centers in response to the threat of the Zionist regime to attack these centers, General Ahmad Haq-Talab said: “A revision of the doctrine and nuclear policy of the Islamic Republic of Iran and a deviation from the previously announced declaration is possible and is being discussed.” 🇮🇷 According to public relations information for the entire IRGC, the Commander of the Nuclear Defense and Security Corps, Brigadier General Ahmad Haq-Talab, said in a conversation about the possible actions of the Zionist regime in response to the victorious Operation True Promise to attack the country's nuclear facilities: “These threats do not apply either to today or to yesterday, since in previous years the false Zionist regime, in addition to threats, undertook sabotage and terrorist actions in the country’s nuclear industry.” 🇮🇷 He added: “Although all countries are prohibited from attacking nuclear facilities in accordance with international protocols and standards, as well as the rules and regulations of the International Nuclear Agency, the Islamic Republic of Iran has always been ready to counter these threats from the very beginning.” General Haq-Talab, noting that the Zionist regime recently violated all international laws and regulations by committing a criminal act by attacking the consular section of the Embassy of the Islamic Republic of Iran in Syria, stated: “By the grace of God, thanks to the measures of the Supreme Leader and Commander-in-Chief, as well as the efforts of the children of the Iranian nation in the armed forces, using passive defense plans, as well as the most modern means and equipment, as well as thanks to the dispersal of our country’s nuclear facilities and complexes over the vast territory of Iran, We can deal with any threat from the Zionist regime." 🇮🇷 The commander of the security and safety corps of the country's nuclear centers, emphasizing that the armed forces of the Islamic Republic of Iran are in full readiness, noted: "The nuclear centers of the Zionist enemy have been identified and the necessary information about all targets is at our disposal, so to speak, to respond to possible actions. They hold the trigger in their hands to launch powerful missiles to destroy the specified targets." 🇮🇷 He said: “If the Zionist regime wants to take action against our nuclear facilities and centers, it will definitely face our reaction and the regime’s nuclear facilities will be attacked using advanced weapons.” 🇮🇷 He further emphasized: “If the fake Zionist regime wants to use the threat of an attack on our country’s nuclear centers as a tool of pressure on Iran, then a revision of the nuclear doctrine and policy of the Islamic Republic of Iran and a retreat from the previous declaration are possible and discussed.” 🇮🇷 General Haq-Talab, emphasizing that the order of the Supreme Leader must be carried out today without delay, said: “If the Zionist regime commits an act of aggression against Iran, the type of response will be planned by the armed forces of the Islamic Republic of Iran, and they must be confident that the blow they receive from the armed forces will be remembered in history, like Operation True Promise.” ."

𝕊𝕡𝕣𝕚𝕟𝕥𝕖𝕣 𝕻𝕣𝕖𝕤𝕤

37,378 Aufrufe • vor 2 Jahren

While Rahul Gandhi makes an emotional appeal to the central government asking them to stop the destruction of environment in Andaman & Nicobar, the Congress government in Telangana is doing just the same! Kasu Brahmananda Reddy park / KBR park is an urban forest spread across 390 kilometres in the heart of the city. KBR has been home for over 600 species of plant life, 140 species of birds and 30 different varieties of butterflies and reptiles. You see peacocks all over the park, many snakes too are spotted regularly. Animals like pangolin, small Indian civet, peacock, jungle cat and porcupines live there. People are allowed only for limited hours in the morning and in the evening & that too only in a small section of the park to protect the environment. At any point of time, when you pass by KBR, you can clearly feel 2-5 degrees temperature drop. In the heart of the city’s Jubilee Hills, it is a beautiful green lung space. KBR Park was declared an Eco sensitive zone on 27 October 2020. Traffic around KBR has been an issue. There was a proposal to build flyovers at KBR to ease the traffic by the urban planning authorities. People protested and the then CM KCR instructed everyone to stand down on the project since it destroys an ecosystem. Today! Revanth Reddy as part of the Strategic Road Development Programme and H-CITI plan is going ahead and constructing 6 flyovers and 6 underpasses. All because he wants to make area around KBR park - “signal free”! Budget is Rs 1,090 crores. No of trees that will be destroyed? 1942 mature trees will be uprooted!!! There is no environmental clearance to the project. Congress Government came up with an intelligent way to bypass this. They split the project into 6 separate projects and now they don’t need any clearances. What’s worse- the Telangana High Court had given a stay order & to bypass that, the shameless government is carrying out demolitions in the dead of the night. They want to finish the destruction before the courts open again! Bulldozers come in the night and work nonstop to create a chance to fatten the purses of contractors. These flyovers and underpasses will destroy the ecosystem completely. But yeah, who cares? Since it is Congress that is destroying the lung space and since it is not Andaman & Nicobar island, since it is Telangana and most importantly people in Hyderabad don’t need OXYGEN, this destruction is absolutely 💯 percent okay 👏🏼👏🏼👏🏼 Video from last night

Revathi

32,175 Aufrufe • vor 5 Monaten