PrintNightmare (CVE-2021-1675): Remote code execution in Windows Spooler Service
https://ift.tt/3jqM42g
Submitted June 29, 2021 at 11:13PM by 0xdea
via reddit https://ift.tt/2UaosVl
https://ift.tt/3jqM42g
Submitted June 29, 2021 at 11:13PM by 0xdea
via reddit https://ift.tt/2UaosVl
Binary code-coverage Fuzzer for macOS (supports Intel & M1) by @ant4g0nist
https://ift.tt/2UaowEz
Submitted June 29, 2021 at 11:09PM by ant4g0nist
via reddit https://ift.tt/3w6W8jE
https://ift.tt/2UaowEz
Submitted June 29, 2021 at 11:09PM by ant4g0nist
via reddit https://ift.tt/3w6W8jE
GitHub
GitHub - ant4g0nist/ManuFuzzer: Binary code-coverage fuzzer for macOS, based on libFuzzer and LLVM
Binary code-coverage fuzzer for macOS, based on libFuzzer and LLVM - GitHub - ant4g0nist/ManuFuzzer: Binary code-coverage fuzzer for macOS, based on libFuzzer and LLVM
Detecting SSH Honeypots with non-persistent filesystems.
https://ift.tt/3hjQ95R
Submitted June 30, 2021 at 04:06AM by katyushas_lab
via reddit https://ift.tt/3AbFrXJ
https://ift.tt/3hjQ95R
Submitted June 30, 2021 at 04:06AM by katyushas_lab
via reddit https://ift.tt/3AbFrXJ
Darren Martyn
Detecting SSH Honeypots with non-persistent filesystems.
A lot has been written on the topic of detecting SSH honeypots in the past, usually using their canned responses against them, SSH protocol quirks, them accepting every password, etc. While experim…
Oramfs: Resizable ORAM, Remote Storage Agnostic, Written in Rust
https://ift.tt/2Tp7KkK
Submitted June 30, 2021 at 05:26PM by tmlxs
via reddit https://ift.tt/3h3fimi
https://ift.tt/2Tp7KkK
Submitted June 30, 2021 at 05:26PM by tmlxs
via reddit https://ift.tt/3h3fimi
Kudelski Security Research
Oramfs: Resizable ORAM, Remote Storage Agnostic, Written in Rust
Today we are excited to release oramfs, a simple, flexible, Free Software ORAM implementation for Linux written in Rust. It is designed to support different ORAM schemes and encryption ciphers. It …
Detecting the new crypto mining attack targeting Kubeflow and TensorFlow - How the attack works + Steps to mitigate + Detect using Falco rules or Prometheus metrics
https://ift.tt/3x6Uznr
Submitted June 30, 2021 at 05:58PM by capitangolo
via reddit https://ift.tt/3hre7fI
https://ift.tt/3x6Uznr
Submitted June 30, 2021 at 05:58PM by capitangolo
via reddit https://ift.tt/3hre7fI
Sysdig
Detecting New Crypto-Mining Attack targeting Kubeflow and TensorFlow
A new large-scale attack targets Kubeflow and TensorFlow to mine Monero cryptocurrency in Kubernetes cluster environments.
Pwning Cisco ISE: from XSS to a root shell (w/ exploit video)
https://ift.tt/2UU1jH1
Submitted June 30, 2021 at 02:00PM by ChoiceGrapefruit0
via reddit https://ift.tt/3dpUuDm
https://ift.tt/2UU1jH1
Submitted June 30, 2021 at 02:00PM by ChoiceGrapefruit0
via reddit https://ift.tt/3dpUuDm
GitHub
PoC/cisco_ise_rce.md at master · pedrib/PoC
Advisories, proof of concept files and exploits that have been made public by @pedrib. - PoC/cisco_ise_rce.md at master · pedrib/PoC
PrintNightmare (CVE-2021-1675) PoC Exploit Code Released
https://ift.tt/3AeseNS
Submitted June 30, 2021 at 07:39PM by ericaedits
via reddit https://ift.tt/3xdM8Xy
https://ift.tt/3AeseNS
Submitted June 30, 2021 at 07:39PM by ericaedits
via reddit https://ift.tt/3xdM8Xy
Blumira
PrintNightmare (CVE-2021-1675 and CVE 2021-34527) Explained
Proof-of-concept exploit code was published on Github on June 29, 2021 for a vulnerability (CVE-2021-1675) in Print Spooler.
Operation Eagle Eye - RCE to Enterprise Man-In-The-Middle
https://ift.tt/3dxuJRM
Submitted June 30, 2021 at 11:03PM by barbarisch
via reddit https://ift.tt/3hpJDua
https://ift.tt/3dxuJRM
Submitted June 30, 2021 at 11:03PM by barbarisch
via reddit https://ift.tt/3hpJDua
Securifera
Operation Eagle Eye
This article is in no way affiliated, sponsored, or endorsed with/by Fidelis Cybersecurity. All graphics are being displayed under fair use for the purposes of this article.
Operation Eagle Eye
Who remembers that movie about 15 years ago called Eagle…
Operation Eagle Eye
Who remembers that movie about 15 years ago called Eagle…
New NETGEAR firmware vulnerabilities that could lead to identity theft and full system compromise
https://ift.tt/3AcsnkN
Submitted July 01, 2021 at 10:43AM by 0xdea
via reddit https://ift.tt/3qH1nps
https://ift.tt/3AcsnkN
Submitted July 01, 2021 at 10:43AM by 0xdea
via reddit https://ift.tt/3qH1nps
reddit
New NETGEAR firmware vulnerabilities that could lead to identity...
Posted in r/netsec by u/0xdea • 332 points and 49 comments
Hacking the dlink DIR-615 for fun and no profit
https://ift.tt/3x8X7S0
Submitted July 01, 2021 at 02:27PM by Noobexploiter
via reddit https://ift.tt/2UXhTFZ
https://ift.tt/3x8X7S0
Submitted July 01, 2021 at 02:27PM by Noobexploiter
via reddit https://ift.tt/2UXhTFZ
Medium
Hacking the dlink DIR-615 for fun and no profit
Hello . In this writeup, i will show you how i found a potential remote code execution (CVE-2019–13561) in the dlink dir-615 firmware.
Building trust without trust.
https://ift.tt/3AfPCul
Submitted July 01, 2021 at 06:12PM by MSP-Kontinuum
via reddit https://ift.tt/3dy8KKa
https://ift.tt/3AfPCul
Submitted July 01, 2021 at 06:12PM by MSP-Kontinuum
via reddit https://ift.tt/3dy8KKa
Buzzsprout
Episode 18 - Building trust without trust. - Cybersecurity: Amplified And Intensified
On this episode we begin to talk about the difference between zero trust and zero knowledge, ransomware groups going dark for the moment and recent tactics and techniques.Eric Taylor | LinkedInTwitter: barricadecyberwww.barricadecyber.comShiva Maharaj | …
Parameter discovery tools comparison
https://ift.tt/3Ai3XGx
Submitted July 01, 2021 at 08:34PM by sh1yo_
via reddit https://ift.tt/3xcurYi
https://ift.tt/3Ai3XGx
Submitted July 01, 2021 at 08:34PM by sh1yo_
via reddit https://ift.tt/3xcurYi
sh1yo.art
Parameter discovery tools comparison
Some people asked me about publishing a comparison between x8 and other major tools for parameter discovery: Arjun and Param Miner, so here it is!
DOM Polyglot XSS & CSP-bypass in PayPal
https://ift.tt/3AdmrIk
Submitted July 01, 2021 at 08:21PM by albinowax
via reddit https://ift.tt/3dxOxoa
https://ift.tt/3AdmrIk
Submitted July 01, 2021 at 08:21PM by albinowax
via reddit https://ift.tt/3dxOxoa
PortSwigger Research
Finding DOM Polyglot XSS in PayPal the Easy Way
Introduction Finding DOM XSS can be tricky when it's buried in thousands of lines of code. We recently developed DOM Invader to help tackle this using a combined dynamic+manual approach to vulnerabili
SpoolSystem is a CNA noscript for Cobalt Strike which uses the Print Spooler named pipe impersonation trick to gain SYSTEM privileges.
https://ift.tt/2AmTkZ7
Submitted July 02, 2021 at 10:22AM by FilthyPlay
via reddit https://ift.tt/364SfBv
https://ift.tt/2AmTkZ7
Submitted July 02, 2021 at 10:22AM by FilthyPlay
via reddit https://ift.tt/364SfBv
GitHub
nccfsas/Tools/spoolsystem at main · nccgroup/nccfsas
Information released publicly by NCC Group's Full Spectrum Attack Simulation (FSAS) team. - nccfsas/Tools/spoolsystem at main · nccgroup/nccfsas
New LinkedIn Data Leak Leaves 700 Million Users Exposed
https://ift.tt/3jl11D9
Submitted July 02, 2021 at 01:47PM by 7rillionaire
via reddit https://ift.tt/36mimnH
https://ift.tt/3jl11D9
Submitted July 02, 2021 at 01:47PM by 7rillionaire
via reddit https://ift.tt/36mimnH
RestorePrivacy
New LinkedIn Data Leak Leaves 700 Million Users Exposed | RestorePrivacy
Data from 700 million LinkedIn users has been put up for sale online, making this one of the largest LinkedIn data leaks to date. After analyzing the data and making contact with the seller, we have updated this article with more information, including how…
Measuring Traffic Rate by Means of U-models
https://ift.tt/3dzGmYe
Submitted July 02, 2021 at 05:15PM by shapelez
via reddit https://ift.tt/3Aortle
https://ift.tt/3dzGmYe
Submitted July 02, 2021 at 05:15PM by shapelez
via reddit https://ift.tt/3Aortle
blog.qrator.net
Blog — Measuring Traffic Rate by Means of U-models
First, let us look at and analyze a few examples of how events are counted and the rate of the stream is estimated in general. The next step is to see a generalization, namely some class of counters, which we call the u-model. Next, we explore what useful…
Client Puzzle Protocols as Countermeasure Against Automated Threats to Web Applications
https://ift.tt/3hv1aBu
Submitted July 02, 2021 at 06:33PM by 0xfffffg
via reddit https://ift.tt/3660FbR
https://ift.tt/3hv1aBu
Submitted July 02, 2021 at 06:33PM by 0xfffffg
via reddit https://ift.tt/3660FbR
Free Micropatches for PrintNightmare Vulnerability (CVE-2021-34527)
https://ift.tt/2Tsrmoh
Submitted July 02, 2021 at 07:38PM by jonasLyk
via reddit https://ift.tt/3jz3UAf
https://ift.tt/2Tsrmoh
Submitted July 02, 2021 at 07:38PM by jonasLyk
via reddit https://ift.tt/3jz3UAf
0Patch
Free Micropatches for PrintNightmare Vulnerability (CVE-2021-34527)
by Mitja Kolsek, the 0patch Team Update 8/11/2021: August 2021 Windows Updates brought a fix for PrintNightmare that has the same default ef...
Windows 11: TPMs and Digital Sovereignty
https://ift.tt/3w3pxeD
Submitted July 03, 2021 at 02:44PM by _klg
via reddit https://ift.tt/3xfVJNr
https://ift.tt/3w3pxeD
Submitted July 03, 2021 at 02:44PM by _klg
via reddit https://ift.tt/3xfVJNr
secret club
Windows 11: TPMs and Digital Sovereignty
The problem with enforcing TPMs on consumers
Resources for Digital Forensics and Incident Response Professionals Responding to the REvil Ransomware Kaseya Supply Chain Attack - Forensic Disk Images etc.
https://ift.tt/2SLtsiN
Submitted July 03, 2021 at 11:23PM by chris_dd
via reddit https://ift.tt/368IXED
https://ift.tt/2SLtsiN
Submitted July 03, 2021 at 11:23PM by chris_dd
via reddit https://ift.tt/368IXED
GitHub
GitHub - cado-security/DFIR_Resources_REvil_Kaseya: Resources for DFIR Professionals Responding to the REvil Ransomware Kaseya…
Resources for DFIR Professionals Responding to the REvil Ransomware Kaseya Supply Chain Attack - GitHub - cado-security/DFIR_Resources_REvil_Kaseya: Resources for DFIR Professionals Responding to t...
Taking over Uber accounts through voicemail
https://ift.tt/3AjBBvE
Submitted July 04, 2021 at 07:37AM by Mempodipper
via reddit https://ift.tt/2UWDcHy
https://ift.tt/3AjBBvE
Submitted July 04, 2021 at 07:37AM by Mempodipper
via reddit https://ift.tt/2UWDcHy