Author: Hak5 - Bewertung: 55x - Views:478
⬇️ OPEN FOR LINKS TO ARTICLES TO LEARN MORE ⬇️
Support ThreatWire → patreon.com/threatwire
@endingwithali →
Twitch: twitch.tv/endingwithali
Twitter: twitter.com/endingwithali
Everywhere else: links.ali.dev
If you want to help Ali with her research project email her at [email protected] → Please include (1️⃣) the size of your company (2️⃣) what your role title and (3️⃣) a little summary of what your job entails.
[❗] ThreatWire Patreon has moved to → patreon.com/threatwire
0:00 - Intro
0:15 - Twitter Bug Bounty Program Flop
2:11 - 16 Year Reverse Engineers the iMessage Protocol
3:46 - Still Developing: MongoDB Breach
4:59 - Ledger Supply Chain Attack and A Research Project
6:00 - Outro
LINKS
🔗Story 1 - Twitter Bug Bounty Program Flop
https://twitter.com/shoucccc/status/1734802168723734764
https://twitter.com/shoucccc/status/1734802177263313091
https://twitter.com/shoucccc/status/1734684850173739412
https://twitter.com/rabbit_2333/status/1734712416074879162
https://twitter.com/rabbit_2333/status/1734881873099379189
https://twitter.com/rabbit_2333/status/1735886436195529048
🔗Story 2 - 16 Year Reverse Engineers the iMessage Protocol
https://www.beeper.com/
https://blog.beeper.com/p/introducing-beeper-mini-get-blue
https://jjtech.dev/reverse-engineering/imessage-explained/
https://github.com/JJTech0130/pypush
https://www.theverge.com/2023/12/18/24006037/apple-beeper-doj-investigation-imessage-letter-android
https://www.techradar.com/phones/it-took-a-genius-teenager-to-break-imessage-code-but-itll-take-apple-to-wake-up-and-realize-its-time-for-an-android-version-of-imessage
🔗Story 3 - Breaking: MongoDB Data Breach
https://www.hackread.com/mongodb-data-breach-hackers-access-customer-info/
https://twitter.com/vxunderground/status/1736134217321370109/photo/1
https://www.mongodb.com/alerts
🔗Story 4 - Ledger Supply Chain Attack
https://securityaffairs.com/156029/hacking/ledger-supply-chain-attack.html
https://www.ledger.com/blog/a-letter-from-ledger-chairman-ceo-pascal-gauthier-regarding-ledger-connect-kit-exploit
https://securityboulevard.com/2023/12/three-lessons-from-the-ledger-connect-kit-supply-chain-attack/
https://techcrunch.com/2023/12/14/supply-chain-attack-targeting-ledger-crypto-wallet-leaves-users-hacked/
____________________________________________
Founded in 2005, Hak5's mission is to advance the InfoSec industry. We do this through our award winning educational podcasts, leading pentest gear, and inclusive community – where all hackers belong.
SOCIAL SHARE CARD GENERATOR