Microsoft Remote Desktop Client for Mac Remote Code Execution
Video Demo: https://www.youtube.com/watch?v=6HeSiXYRpNY
Advisory: https://goo.gl/wmk9Dy
From RDP to RCE :)
Video Demo: https://www.youtube.com/watch?v=6HeSiXYRpNY
Advisory: https://goo.gl/wmk9Dy
From RDP to RCE :)
YouTube
Microsoft Remote Desktop Client for Mac Remote Code Execution
A vulnerability exists in Microsoft Remote Desktop for Mac that allows a remote attacker to execute arbitrary code on the target machine. User interaction is...
Forwarded from مسعود استاد/Masoud Ostad
Media is too big
VIEW IN TELEGRAM
از سری ویدئوهای هنر اختفاء!
این قسمت: نحوه ایجاد یک شل Meterpreter غیر قابل شناسایی توسط آنتی ویروس های مطرح دنیا نظیر Kaspersky, Avast, ESET.
@MasoudOstadChannel
این قسمت: نحوه ایجاد یک شل Meterpreter غیر قابل شناسایی توسط آنتی ویروس های مطرح دنیا نظیر Kaspersky, Avast, ESET.
@MasoudOstadChannel
Dridex Banking Trojan Returns, Leverages New UAC Bypass Method
https://www.flashpoint-intel.com/blog-dridex-banking-trojan-returns/
https://www.flashpoint-intel.com/blog-dridex-banking-trojan-returns/
Flashpoint
Dridex Banking Trojan Returns, Leverages New UAC Bypass Method
Key Takeaways • First observed in July 2014, "Dridex," a financial banking Trojan, is considered to be one of the successors to the "GameOver ZeuS" (GoZ)
Forwarded from Amir Kiani
| Hunt For Malware Critical Process Impersonation | https://github.com/ner0x652/bonomen
GitHub
0xcpu/bonomen
BONOMEN - Hunt for Malware Critical Process Impersonation - 0xcpu/bonomen
CVE-2017-3730: OpenSSL 1.1.0 remote client denial-of-service, affects servers as well (+PoC)
https://guidovranken.wordpress.com/2017/01/26/cve-2017-3730-openssl-1-1-0-remote-client-denial-of-service-affects-servers-as-well-poc/
https://guidovranken.wordpress.com/2017/01/26/cve-2017-3730-openssl-1-1-0-remote-client-denial-of-service-affects-servers-as-well-poc/
Guido Vranken
CVE-2017-3730: OpenSSL 1.1.0 remote client denial-of-service, affects servers as well (+ PoC)
I found this one completely by chance; I was messing around with the server’s Diffie-Hellman parameters (typical Saturday evening) and to my surprise it crashed the OpenSSL 1.1.0 client. Even…