Do WAFs dream of static analyzers?
http://ift.tt/2iyItCd
Submitted October 24, 2017 at 06:28PM by imr2017
via reddit http://ift.tt/2y16s3Q
http://ift.tt/2iyItCd
Submitted October 24, 2017 at 06:28PM by imr2017
via reddit http://ift.tt/2y16s3Q
Ptsecurity
Do WAFs dream of static analyzers?
Virtual patching (VP) has been one of the most popular trends in application protection in recent years. Implemented at the level of a w...
A short story about CCTV cameras in hotels and how to hack them.
http://ift.tt/2gyrM5k
Submitted October 24, 2017 at 09:17PM by MD3XTER
via reddit http://ift.tt/2yLt9aL
http://ift.tt/2gyrM5k
Submitted October 24, 2017 at 09:17PM by MD3XTER
via reddit http://ift.tt/2yLt9aL
AZ - Blog
Such CCTV Cameras - Much Security
A short story about CCTV cameras in hotels and how to hack them.
7 Strategies to Secure Enterprise IoT
http://ift.tt/2gygFcF
Submitted October 24, 2017 at 08:23PM by CrankyBear
via reddit http://ift.tt/2i1oGay
http://ift.tt/2gygFcF
Submitted October 24, 2017 at 08:23PM by CrankyBear
via reddit http://ift.tt/2i1oGay
Security Boulevard
7 Strategies to Secure Enterprise IoT - Security Boulevard
The internet of things (IoT) is opening a whole new world of possibilities. Unfortunately, it also is creating a whole new world of threats too, such as ransomware of things (RoT). Here are seven things enterprises can do to better secure their IoT. Know…
New Tool Debuts for Hacking Back at Hackers in Your Network
http://ift.tt/2x1K3hX
Submitted October 24, 2017 at 09:56PM by cymmetria
via reddit http://ift.tt/2yIjTT7
http://ift.tt/2x1K3hX
Submitted October 24, 2017 at 09:56PM by cymmetria
via reddit http://ift.tt/2yIjTT7
Dark Reading
New Tool Debuts for Hacking Back at Hackers in Your Network
Deception technology firm Cymmetria offers a new offense option for defenders.
Solution for Exploit Exercises Fusion 4. Buffer Overflow, Canary, Timing side channel and other good stuff :)
http://ift.tt/2gAHe0T
Submitted October 24, 2017 at 11:28PM by NadavClaudeCohen
via reddit http://ift.tt/2yJI9o3
http://ift.tt/2gAHe0T
Submitted October 24, 2017 at 11:28PM by NadavClaudeCohen
via reddit http://ift.tt/2yJI9o3
Nadav Claude Cohen
Fusion 4
Today we will try to solve Fusion 4. This level is a lot more complicated than the previous ones, so I might split it into 2 articles. What we will do: Read and understand the program well. Find th…
Note to the CISO: Part 2 - Contextually Aware Security Analysis is Here
http://ift.tt/2i24GEO
Submitted October 25, 2017 at 12:26AM by Mi3Security
via reddit http://ift.tt/2gAim9r
http://ift.tt/2i24GEO
Submitted October 25, 2017 at 12:26AM by Mi3Security
via reddit http://ift.tt/2gAim9r
Mi3 Security
Note to the CISO: Part 2 - Contextually Aware Security Analysis is Here
Contextually Aware Security testing is MI3 Security’s answer to the
limitations of one time application specific scans.
limitations of one time application specific scans.
3.54 Terabyte Rainbow Table
https://infocon.org/
Submitted October 25, 2017 at 12:59AM by stbernardy
via reddit http://ift.tt/2xl0Ixk
https://infocon.org/
Submitted October 25, 2017 at 12:59AM by stbernardy
via reddit http://ift.tt/2xl0Ixk
infocon.org
InfoCon.org is an archive of hacking and security conference videos, documentaries, rainbow tables, word lists and podcasts.
DUHK Attack Lets Hackers Recover Encryption Key Used in VPNs & Web Sessions
http://ift.tt/2yHyVLf
Submitted October 25, 2017 at 12:43AM by jinxrr
via reddit http://ift.tt/2gG8dvP
http://ift.tt/2yHyVLf
Submitted October 25, 2017 at 12:43AM by jinxrr
via reddit http://ift.tt/2gG8dvP
SemFuzz: Semantics-based Automatic Generation of Proof-of-Concept Exploits
http://ift.tt/2zNBvgr
Submitted October 25, 2017 at 02:15AM by paFarb
via reddit http://ift.tt/2gGqmcW
http://ift.tt/2zNBvgr
Submitted October 25, 2017 at 02:15AM by paFarb
via reddit http://ift.tt/2gGqmcW
Google Docs
SemFuzz.pdf
DUHK: Vulnerability in ANSI X9.31 RNG allows a MITM to recover secret keys used for VPN connections.
https://duhkattack.com
Submitted October 25, 2017 at 02:15AM by SeventeenOhSeven
via reddit http://ift.tt/2yJfZvE
https://duhkattack.com
Submitted October 25, 2017 at 02:15AM by SeventeenOhSeven
via reddit http://ift.tt/2yJfZvE
reddit
DUHK: Vulnerability in ANSI X9.31 RNG allows a MITM to... • r/netsec
1 points and 0 comments so far on reddit
Multiple Vulnerabilities on CUF - Largest Portuguese Private Health Unit Web Services
http://ift.tt/2xm3hiC
Submitted October 25, 2017 at 01:52AM by salgfrancisco
via reddit http://ift.tt/2gFWNrR
http://ift.tt/2xm3hiC
Submitted October 25, 2017 at 01:52AM by salgfrancisco
via reddit http://ift.tt/2gFWNrR
Miguel de Moura
CUF - Largest Portuguese Private Health Unit Web Services - Multiple Vulnerabilities
Application DOS, Authenticated, Stored XSS and Email HTML Injection
Bad Rabbit ransomware technical dive
http://ift.tt/2zzScLB
Submitted October 25, 2017 at 12:49AM by exaltedgod
via reddit http://ift.tt/2gysbF4
http://ift.tt/2zzScLB
Submitted October 25, 2017 at 12:49AM by exaltedgod
via reddit http://ift.tt/2gysbF4
Securelist - Information about Viruses, Hackers and Spam
Bad Rabbit ransomware
On October 24th we observed notifications of mass attacks with ransomware called Bad Rabbit. It has been targeting organizations and consumers, mostly in Russia but there have also been reports of victims in Ukraine.
Important crypto papers for non-cryptographers
http://ift.tt/2yX97r7
Submitted October 25, 2017 at 02:13AM by paFarb
via reddit http://ift.tt/2xmvBBz
http://ift.tt/2yX97r7
Submitted October 25, 2017 at 02:13AM by paFarb
via reddit http://ift.tt/2xmvBBz
GitHub
pFarb/awesome-crypto-papers
awesome-crypto-papers - A curated list of cryptography papers, articles, tutorials and howtos.
How to Handle Your Business from All the Odds?
http://ift.tt/2zApo5M
Submitted October 25, 2017 at 03:12AM by LauraCunhaGomes
via reddit http://ift.tt/2ldvkiL
http://ift.tt/2zApo5M
Submitted October 25, 2017 at 03:12AM by LauraCunhaGomes
via reddit http://ift.tt/2ldvkiL
AtulHost
How to Handle Your Business from All the Odds?
Ideal Security Measures to Handle Cybercrime, and Dealing with Fallout if an Attack Occurs… Cybercrimes are on the rise, and cybersecurity solutions are growing alongside in order to combat new threats almost daily. In fact, securing your company from online…
NotPetya Returns as Bad Rabbit
http://ift.tt/2lcBYFP
Submitted October 25, 2017 at 03:59AM by 0xbaadf00dsec
via reddit http://ift.tt/2xm3qCV
http://ift.tt/2lcBYFP
Submitted October 25, 2017 at 03:59AM by 0xbaadf00dsec
via reddit http://ift.tt/2xm3qCV
Intezer
NotPetya Returns as Bad Rabbit - Intezer
Large scale cyber attacks seem to be happening once a month these days. Originally discovered by ESET (https://www.welivesecurity.com/2017/10/24/kiev-metro-hit-new-variant-infamous-diskcoder-ransomware/), Ukrainian and Russian organizations have been hit…
DHS issues public warning amidst growing concern over hackers targeting public infrastructure, such as major energy and industrial firms
http://ift.tt/2y0JpG6
Submitted October 25, 2017 at 07:08AM by nlongfors
via reddit http://ift.tt/2y38Y9L
http://ift.tt/2y0JpG6
Submitted October 25, 2017 at 07:08AM by nlongfors
via reddit http://ift.tt/2y38Y9L
The Merkle
DHS Issues Public Warning on Hackers Targeting US Public Infrastructure
Whenever a US agency launches a public warning regarding an imminent threat, people need to heed the government's words. Most recently, there has been growing concern over hackers targeting local e
FBI says its inability to hack into mobile devices is a ‘huge, huge problem’
http://ift.tt/2zzfelI
Submitted October 25, 2017 at 06:07AM by chull2058
via reddit http://ift.tt/2y2edX5
http://ift.tt/2zzfelI
Submitted October 25, 2017 at 06:07AM by chull2058
via reddit http://ift.tt/2y2edX5
BGR
FBI says its inability to hack into mobile devices is a ‘huge, huge problem’
The FBI’s surprising inability to bypass basic security measures on mobile devices was thrust into the spotlight nearly two years ago following the San Bernardino terrorist attack of December…
The world's wealthiest people are braced for details to be leaked
http://ift.tt/2gBuHdC
Submitted October 25, 2017 at 10:59AM by Bastet1
via reddit http://ift.tt/2i2seZU
http://ift.tt/2gBuHdC
Submitted October 25, 2017 at 10:59AM by Bastet1
via reddit http://ift.tt/2i2seZU
Mail Online
The world's wealthiest people are braced for details to be leaked
Law firm Appleby, which is based on the island of Bermuda (pictured), has now warned its wealthy clients that they may have their details exposed after the massive hack of its database.
Tool to check if your TPM is affected by the Infineon disaster
http://ift.tt/2y4V4yS
Submitted October 25, 2017 at 01:42PM by tomtennn
via reddit http://ift.tt/2i3z6X0
http://ift.tt/2y4V4yS
Submitted October 25, 2017 at 01:42PM by tomtennn
via reddit http://ift.tt/2i3z6X0
blog.habets.se
Is my TPM affected by the Infineon disaster?
I made a tool to check if your TPM chip is bad. Well, it extracts the SRK public key and checks if it’s good or bad. If the SRK is bad then you can bet all o...
Password Algorithms
http://ift.tt/2yPVNIs
Submitted October 25, 2017 at 01:29PM by djsumdog
via reddit http://ift.tt/2yKrr7P
http://ift.tt/2yPVNIs
Submitted October 25, 2017 at 01:29PM by djsumdog
via reddit http://ift.tt/2yKrr7P
reddit
Password Algorithms • r/security
1 points and 0 comments so far on reddit
'Bad Rabbit' Ransomware Attacks Rock Russia, ...
http://ift.tt/2yKebAc
Submitted October 25, 2017 at 02:41PM by MicheeLengronne
via reddit http://ift.tt/2h5ZAaD
http://ift.tt/2yKebAc
Submitted October 25, 2017 at 02:41PM by MicheeLengronne
via reddit http://ift.tt/2h5ZAaD
Dark Reading
'Bad Rabbit' Ransomware Attacks Rock Russia, Ukraine - and Beyond
Attack employs new version of infamous NotPetya ransomware used in June attacks on Ukraine targets.