US Cyber Command exposes new Russian malware.
https://www.zdnet.com/article/us-cyber-command-exposes-new-russian-malware | #politics #Russia #UnitedStates
https://www.zdnet.com/article/us-cyber-command-exposes-new-russian-malware | #politics #Russia #UnitedStates
ZDNet
US Cyber Command exposes new Russian malware
Together with CISA and the FBI, US Cyber Command wish Russian state hackers a "Happy Halloween!"
How I found a Tor vulnerability in Brave Browser, reported it, watched it get patched, got a CVE (CVE-2020-8276) and a small bounty, all in one working day https://community.disclose.io/t/how-i-found-a-tor-vulnerability-in-brave-browser-reported-it-watched-it-get-patched-got-a-cve-cve-2020-8276-and-a-small-bounty-all-in-one-working-day/65
@disclose_io Community Forum
How I found a TOR vulnerability in Brave Browser, reported it, watched it get patched, got a CVE (CVE-2020-8276), and a small bounty…
Recently, I discovered a small but potentially devastating vulnerability in the new Tor feature of the Brave browser. As of November 2nd 2020, Brave monthly users have massively increased their browser market share to 20 Million Monthly Active Users + 7…
Critical Git git-lfs vuln RCE exploit CVE-2020-27955 many git clients affected
https://ift.tt/2JDNt5V
https://ift.tt/2JDNt5V
"The enemy does not care what systems were in scope for testing. Protect your weak points." - The Art of Cyber War
Sleep Attack:
Intel Bootguard vulnerability waking from S3 (CVE-2020-8705 PoC)
https://trmm.net/Sleep_attack/
Intel Bootguard vulnerability waking from S3 (CVE-2020-8705 PoC)
https://trmm.net/Sleep_attack/
Trammell Hudson's Projects
Sleep Attack: Intel Bootguard vulnerability waking from S3
Details on CVE-2020-8705, a TOCTOU attack against the Bootguard hardware root of trust in Intel x86 systems when they resume from S3 sleep.
Popular software products from Adobe, Apple, Google, Microsoft, Mozilla, and Samsung successfully PWNED at Tianfu Cup 2020 cybersecurity contest—with previously unseen exploits.
Read details: https://thehackernews.com/2020/11/windows-10-ios-chrome-firefox-and.html
Read details: https://thehackernews.com/2020/11/windows-10-ios-chrome-firefox-and.html
⚡ SAD DNS Attack !!!
A series of new vulnerabilities (CVE-2020-25705) in Linux, Windows, macOS, and FreeBSD systems re-enable classic DNS cache poisoning attack, leaving millions of users vulnerable.
Details: https://thehackernews.com/2020/11/sad-dns-new-flaws-re-enable-dns-cache.html
A series of new vulnerabilities (CVE-2020-25705) in Linux, Windows, macOS, and FreeBSD systems re-enable classic DNS cache poisoning attack, leaving millions of users vulnerable.
Details: https://thehackernews.com/2020/11/sad-dns-new-flaws-re-enable-dns-cache.html