Zerologon: Unauthenticated domain controller compromise by subverting Netlogon cryptography (CVE-2020-1472)
https://www.secura.com/pathtoimg.php?id=2055
https://www.secura.com/pathtoimg.php?id=2055
English
404 Page
Unfortunately, this page cannot be found.
The 101 of ELF files on Linux: Understanding and Analysis
https://linux-audit.com/elf-binaries-on-linux-understanding-and-analysis
https://linux-audit.com/elf-binaries-on-linux-understanding-and-analysis
Linux Audit
The 101 of ELF files on Linux: Understanding and Analysis
An step-by-step introduction into ELF files. Learn the structure and format, to understand how binaries and libraries on Linux systems work.
■■■■■ #Microsoft #Exchange server Remote #CodeExecution [#RCE] reported via anonymous researcher.
https://www.thezdi.com/blog/2020/2/24/cve-2020-0688-remote-code-execution-on-microsoft-exchange-server-through-fixed-cryptographic-keys
https://www.thezdi.com/blog/2020/2/24/cve-2020-0688-remote-code-execution-on-microsoft-exchange-server-through-fixed-cryptographic-keys
Zero Day Initiative
Zero Day Initiative — CVE-2020-0688: Remote Code Execution on Microsoft Exchange Server Through Fixed Cryptographic Keys
This most recent Patch Tuesday, Microsoft released an Important-rated patch to address a remote code execution bug in Microsoft Exchange Server. This vulnerability was reported to us by an anonymous researcher and affects all supported versions of Microsoft…
Microsoft open sources its internal fuzzing utility.
OneFuzz: - A self-hosted Fuzzing-As-A-Service platform
https://github.com/microsoft/onefuzz
Further reading: https://www.theregister.com/2020/09/16/microsoft_open_sources_fuzzing_tool/
OneFuzz: - A self-hosted Fuzzing-As-A-Service platform
https://github.com/microsoft/onefuzz
Further reading: https://www.theregister.com/2020/09/16/microsoft_open_sources_fuzzing_tool/
GitHub
GitHub - microsoft/onefuzz: A self-hosted Fuzzing-As-A-Service platform
A self-hosted Fuzzing-As-A-Service platform. Contribute to microsoft/onefuzz development by creating an account on GitHub.
Microsoft made its Project OneFuzz open to the public. This is an open source fuzzing framework for Azure that the tech giant has been using internally for past years to find and patch bugs.
Take a look:
https://github.com/microsoft/onefuzz
Take a look:
https://github.com/microsoft/onefuzz
GitHub
GitHub - microsoft/onefuzz: A self-hosted Fuzzing-As-A-Service platform
A self-hosted Fuzzing-As-A-Service platform. Contribute to microsoft/onefuzz development by creating an account on GitHub.
SNMP Arbitrary Command Execution
https://medium.com/@ojasookert/snmp-arbitrary-command-execution-19a6088c888e?source=email-578be4a0b4a7-1600482129620-digest.reader------1-71------------------5bf00a92_14c6_4d71_a181_e885cb21d85c-27-d7ede1f7_c6c5_4740_a82b_3777b41fc2c1----
https://medium.com/@ojasookert/snmp-arbitrary-command-execution-19a6088c888e?source=email-578be4a0b4a7-1600482129620-digest.reader------1-71------------------5bf00a92_14c6_4d71_a181_e885cb21d85c-27-d7ede1f7_c6c5_4740_a82b_3777b41fc2c1----
Medium
SNMP Arbitrary Command Execution
SNMP, the Simple Network Management Protocol, which in certain communities is better known as Security Not My Problem, is a protocol to…
CVE-2020-74
FreeBSD Kernel Privilege Escalation (PoC)
https://www.zerodayinitiative.com/blog/2020/9/1/cve-2020-7460-freebsd-kernel-privilege-escalation
PoC code:
https://github.com/thezdi/PoC/tree/master/CVE-2020-7460
FreeBSD Kernel Privilege Escalation (PoC)
https://www.zerodayinitiative.com/blog/2020/9/1/cve-2020-7460-freebsd-kernel-privilege-escalation
PoC code:
https://github.com/thezdi/PoC/tree/master/CVE-2020-7460
Zero Day Initiative
Zero Day Initiative — CVE-2020-7460: FreeBSD Kernel Privilege Escalation
In August, an update to FreeBSD was released to address a time-of-check to time-of-use (TOCTOU) bug that could be exploited by an unprivileged malicious userspace program for privilege escalation. This vulnerability was reported to the ZDI program by a researcher…
Vulnerability in Kaspersky antivirus makes your browsing history public
https://medium.com/@iics/vulnerability-in-kaspersky-antivirus-makes-your-browsing-history-public-68e2861d4951?source=email-578be4a0b4a7-1600568311473-digest.reader------0-72------------------594e28e9_3197_4394_829a_6b715c714874-28-----
https://medium.com/@iics/vulnerability-in-kaspersky-antivirus-makes-your-browsing-history-public-68e2861d4951?source=email-578be4a0b4a7-1600568311473-digest.reader------0-72------------------594e28e9_3197_4394_829a_6b715c714874-28-----
Medium
Vulnerability in Kaspersky antivirus makes your browsing history public
Antivirus solutions are one of the basic protection tools for computer users; however, this software is not safe from flaws that alter the…
How I earned $500 from Google - Flaw in Authentication
https://medium.com/@hemantsolo/how-i-earned-500-from-google-flaw-in-authentication-a40018c05616
https://medium.com/@hemantsolo/how-i-earned-500-from-google-flaw-in-authentication-a40018c05616
Medium
How I earned $500 from Google - Flaw in Authentication
Hello Everyone!