skip to content
veryserious.research

veryserious.systems

research

security, software, systems related rambling

all posts

Now Boarding: Clickfix

Now Boarding: Clickfix

ibiza-airport.org is hosting clickfix. As it turns out the EtherHiding C2 reveals are campaign affecting over 2100 sites globally.

8 min
There's a fish in my git

There's a fish in my git

Sometimes, when I've had enough of package manager supply-chain attacks, I like to browse twitter.com. And sometimes, I see something

11 min
Could security scanners have caught the Trivy hack any faster?

Could security scanners have caught the Trivy hack any faster?

Trivy supply chain attack, GitHub Actions, CI/CD security, software supply chain, teamPCP, CanisterWorm, npm worm, security scanners. What was detectable, what wasn't, and why the first stage defeated every automated tool in the game.

7 min
Threat hunting the NPM package manager

Threat hunting the NPM package manager

This is part 1 of a multi part series, where we will be gathering, enriching, processing and analysing hopefully millions of open source packages

16 min