gothburz Profile Banner
Peter Girnus Profile
Peter Girnus

@gothburz

Followers
2K
Following
3K
Statuses
5K

Sr. Threat Researcher @theZDI πŸ₯·πŸ»πŸ›‘οΈπŸ‘¨πŸΌβ€πŸ’»Hunts for 0-days & security threats in the wild 🎯 creator & maintainer of @cybercronai πŸ€–πŸ“Š opinions my own πŸ’­

Austin, Texas
Joined December 2017
Don't wanna be here? Send us removal request.
@gothburz
Peter Girnus
9 days
We identified a new #ZeroDay vulnerability exploiting 7-Zip (CVE-2025-0411) being actively exploited in-the-wild on September 25th, 2024. Russian groups utilized this vulnerability, deploying SmokeLoader for espionage operations targeting #Ukraine during the ongoing Russo-Ukrainian War. #infosec #cybersecurity
Tweet media one
Tweet media two
6
143
587
@gothburz
Peter Girnus
3 hours
@PicturesFoIder Is this from the nest Saw movie?
0
0
1
@gothburz
Peter Girnus
3 hours
CVE-2025-0108 - Wow just beautiful from @assetnote
Tweet media one
@assetnote
Assetnote
8 hours
Our security research team discovered an authentication bypass in Palo Alto's PAN-OS management interface. Our discoveries come shortly after exploit chains were released at the end of 2024 after a deeper investigation. You can read our research here:
Tweet media one
1
0
9
@gothburz
Peter Girnus
3 hours
RT @0xBoku: Loki C2 is coming.. Cross-platform Stage 1 C2, battle-tested in ops for 8 months against the world’s leading EDRs and MSSPs, un…
0
45
0
@gothburz
Peter Girnus
8 hours
The WP Foodbakery plugin for WordPress is vulnerable to arbitrary file uploads due to insufficient file type validation in the 'upload_publisher_profile_image' function in versions up to, and including, 4.7.
@cybercronai
cybercron.ai
8 hours
🚨 CVE-2024-13011 βš οΈπŸ”΄ CRITICAL (9.8) 🏒 Chimpstudio - WP Foodbakery πŸ—οΈ * πŸ”— πŸ”— #CyberCron #VulnAlert
Tweet media one
0
0
0
@gothburz
Peter Girnus
8 hours
@artem_i_baranov Most definitely, we will find em 🎯
0
0
1
@gothburz
Peter Girnus
9 hours
@United24media @SecDef Sovereignty should be guaranteed to countries without nuclear arsenals. Otherwise you send the message that only Nuclear weapons are a reliable deterrent. Russia has been bullying its neighbors for years and no one should enable this behaviour.
0
1
14
@gothburz
Peter Girnus
9 hours
Deep Dive into Tenda W18E Firmware Vulnerabilities: CVEs, Exploits, and Security Gaps Uncovered by Independent Researcher Matthew Evans in Collaboration with Reddas Solutions.
0
0
0
@gothburz
Peter Girnus
9 hours
A host header injection vulnerability exists in the NPM package of perfood/couch-auth <= 0.21.2. By sending a specially crafted host header in the email change confirmation request, it is possible to trigger a SSTI which can be leveraged to run limited commands or leak server-side information.
@cybercronai
cybercron.ai
12 hours
🚨 CVE-2024-57177 πŸ”΄ HIGH (7.3) 🏒 Unknown Vendor - Unknown Product πŸ—οΈ Unknown Version πŸ”— πŸ”— #CyberCron #VulnAlert
Tweet media one
0
0
0
@gothburz
Peter Girnus
9 hours
RT @cybercronai: 🚨 CVE-2024-57177 πŸ”΄ HIGH (7.3) 🏒 Unknown Vendor - Unknown Product πŸ—οΈ Unknown Version πŸ”— πŸ”— https://t.…
0
1
0
@gothburz
Peter Girnus
9 hours
Impact: A physical attack may disable USB Restricted Mode on a locked device. Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals.
@cybercronai
cybercron.ai
10 hours
🚨 CVE-2025-24200 πŸ”΄ HIGH (7.5) 🏒 Apple - iPadOS πŸ—οΈ unspecified πŸ”— πŸ”— #CyberCron #VulnAlert
Tweet media one
0
0
0
@gothburz
Peter Girnus
9 hours
Nice write up on these Tenda W18E Firmware Vulnerabilities
@cybercronai
cybercron.ai
10 hours
🚨 CVE-2024-46431 πŸ”΄ HIGH (8) 🏒 Unknown Vendor - Unknown Product πŸ—οΈ Unknown Version πŸ”— #CyberCron #VulnAlert
Tweet media one
0
1
1
@gothburz
Peter Girnus
9 hours
Tweet media one
@780thC
780th Military Intelligence Brigade (Cyber)
18 hours
CYFIRMA: APT43, a North Korean state-sponsored cyber operator linked to the Reconnaissance General Bureau (RGB), is known for its strategic intelligence gathering and financially motivated activities. @cyfirma
0
0
1
@gothburz
Peter Girnus
9 hours
CVE-2025-22467, CVE-2024-38657, and CVE-2024-10644
@BleepinComputer
BleepingComputer
13 hours
Ivanti fixes three critical flaws in Connect Secure & Policy Secure - @billtoulas
0
0
0
@gothburz
Peter Girnus
9 hours
Copy and pasting commands from threat actors …
@BleepinComputer
BleepingComputer
12 hours
DPRK hackers dupe targets into typing PowerShell commands as admin - @billtoulas
0
0
0
@gothburz
Peter Girnus
9 hours
Unauthenticated File Upload in AWS S3 bucket Leading to Information leak,Stored XSS and Denial Of Service. in wandb/openui
@cybercronai
cybercron.ai
9 hours
🚨 CVE-2024-10649 🟠 MEDIUM (6.1) 🏒 wandb - wandb/openui πŸ—οΈ unspecified πŸ”— #CyberCron #VulnAlert
Tweet media one
0
0
0
@gothburz
Peter Girnus
9 hours
Arizona laptop farmer pleads guilty for funneling $17M to Kim Jong Un ... It ain't much, and it's dishonest work. #infosec via @theregister
Tweet media one
0
0
1
@gothburz
Peter Girnus
10 hours
RT @thezdi: The ZDI researcher who found this (@gothburz) discovered this vulnerability was used to target both the Ukrainian government an…
0
10
0
@gothburz
Peter Girnus
15 hours
In September of last year, Wiz Research uncovered a critical security vulnerability, tracked as CVE-2024-0132, in the widely used NVIDIA Container Toolkit, which provides containerized AI applications with access to GPU resources. The vulnerability enables attackers who control a container image executed by the vulnerable toolkit to escape from the container’s isolation and gain full access to the underlying host, posing a serious risk to sensitive data and infrastructure.Β 
0
0
1