How the Kaseya VSA Zero Day Exploit Worked
https://ift.tt/3kenHFy
Submitted July 14, 2021 at 03:09AM by usuhids
via reddit https://ift.tt/3yZW73b
https://ift.tt/3kenHFy
Submitted July 14, 2021 at 03:09AM by usuhids
via reddit https://ift.tt/3yZW73b
TRUESEC Blog
How the Kaseya VSA Zero Day Exploit Worked - TRUESEC Blog
This article explains the pre-auth remote code execution exploit against Kaseya VSA that was used in the recent REvil ransomware attack.
Released the code for Sloth 🦥, a coverage guided fuzzing framework for fuzzing Android Native libraries that makes use of libFuzzer and QEMU user-mode emulation. @ant4g0nist
https://ift.tt/3kks2XN
Submitted July 14, 2021 at 08:57AM by ant4g0nist
via reddit https://ift.tt/3B0CWbi
https://ift.tt/3kks2XN
Submitted July 14, 2021 at 08:57AM by ant4g0nist
via reddit https://ift.tt/3B0CWbi
GitHub
GitHub - ant4g0nist/Sloth: Sloth 🦥 is a coverage guided fuzzing framework for fuzzing Android Native libraries that makes use of…
Sloth 🦥 is a coverage guided fuzzing framework for fuzzing Android Native libraries that makes use of libFuzzer and QEMU user-mode emulation - GitHub - ant4g0nist/Sloth: Sloth 🦥 is a coverage guide...
THM offers prizes and coupons until July 15th. Use the referral link if you haven’t signed up in TryHackMe or visit tryhackme
https://ift.tt/3AXA4vE
Submitted July 14, 2021 at 11:30AM by nischalstha07
via reddit https://ift.tt/3kgVyh2
https://ift.tt/3AXA4vE
Submitted July 14, 2021 at 11:30AM by nischalstha07
via reddit https://ift.tt/3kgVyh2
TryHackMe
TryHackMe | Cyber Security Training
An online platform for learning and teaching cyber security, all through your browser.
Analysis of Satisfyer Sex Toys: Discovering an Authentication Bypass with r2 and Frida
https://ift.tt/3wyrosc
Submitted July 14, 2021 at 11:38AM by _CaptainBanana_
via reddit https://ift.tt/3eetQxE
https://ift.tt/3wyrosc
Submitted July 14, 2021 at 11:38AM by _CaptainBanana_
via reddit https://ift.tt/3eetQxE
Email Security (SPF, DKIM, and DMARC)
https://ift.tt/3B2Cn0r
Submitted July 14, 2021 at 05:04PM by 0xdea
via reddit https://ift.tt/2VFZ4HI
https://ift.tt/3B2Cn0r
Submitted July 14, 2021 at 05:04PM by 0xdea
via reddit https://ift.tt/2VFZ4HI
Praetorian
Email Security (SPF, DKIM, and DMARC) - Praetorian
This article on email security demonstrates how administrators can protect email from attackers impersonating its domain
XLS Entanglement. A new offensive VBA that links Office 365 products to create a viable C2 framework
https://ift.tt/3B5Smeq
Submitted July 14, 2021 at 05:39PM by Hubble_BC_Security
via reddit https://ift.tt/3ecYk3d
https://ift.tt/3B5Smeq
Submitted July 14, 2021 at 05:39PM by Hubble_BC_Security
via reddit https://ift.tt/3ecYk3d
A simple security scanner for vulnerabilities and configuration issues in IaC such as Kubernetes, Dockerfile and Terraform
https://ift.tt/2KXkRBL
Submitted July 14, 2021 at 07:14PM by knqyf263
via reddit https://ift.tt/3AWpFAt
https://ift.tt/2KXkRBL
Submitted July 14, 2021 at 07:14PM by knqyf263
via reddit https://ift.tt/3AWpFAt
GitHub
GitHub - aquasecurity/trivy: Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories…
Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more - GitHub - aquasecurity/trivy: Find vulnerabilities, misconfigurations, secrets,...
Free Charging + RCE: Authentication bypass & Remote code execution in Schneider Electric EVlink Charging Stations
https://ift.tt/3kjyG0j
Submitted July 14, 2021 at 08:48PM by dionas
via reddit https://ift.tt/3idhl6E
https://ift.tt/3kjyG0j
Submitted July 14, 2021 at 08:48PM by dionas
via reddit https://ift.tt/3idhl6E
SEC Consult
Authentication bypass & Remote code execution in Schneider Electric EVlink Charging Stations
The Schneider Electric electric car charging stations product line "EVlink" is affected by two vulnerabilities that allow a remote attacker to execute arbitrary commands on the system. Attackers can change the charging station configuration arbitrarily, charge…
Release AIL Framework version 3.6 released with new features (such as YARA retrohunt) and many bugs fixed · ail-project/ail-framework
https://ift.tt/2Ub67Yj
Submitted July 14, 2021 at 08:43PM by adulau
via reddit https://ift.tt/3kmAR3l
https://ift.tt/2Ub67Yj
Submitted July 14, 2021 at 08:43PM by adulau
via reddit https://ift.tt/3kmAR3l
GitHub
Release AIL Framework version 3.6 released with new features (such as YARA retrohunt) and many bugs fixed · ail-project/ail-framework
AIL Framework released version 3.6
AIL Framework version 3.6 released with new features (such as YARA retrohunt), significant performance improvements, refactoring of the modules and many bugs wer...
AIL Framework version 3.6 released with new features (such as YARA retrohunt), significant performance improvements, refactoring of the modules and many bugs wer...
uBlock Origin (and uMatrix) DoS with strict-blocking filter and crafted URL
https://ift.tt/3wEXq5V
Submitted July 14, 2021 at 09:20PM by vtriolet
via reddit https://ift.tt/3ibJGKM
https://ift.tt/3wEXq5V
Submitted July 14, 2021 at 09:20PM by vtriolet
via reddit https://ift.tt/3ibJGKM
GitHub
writings/ublock_origin_and_umatrix_denial_of_service.adoc at main · vtriolet/writings
Assorted writings. Contribute to vtriolet/writings development by creating an account on GitHub.
15 years old heap out-of-bounds write vulnerability in Linux Netfilter powerful enough to bypass all modern security mitigations and achieve kernel code execution
https://ift.tt/3B6SkTe
Submitted July 15, 2021 at 07:43AM by trenno
via reddit https://ift.tt/3zd5c8X
https://ift.tt/3B6SkTe
Submitted July 15, 2021 at 07:43AM by trenno
via reddit https://ift.tt/3zd5c8X
security-research
CVE-2021-22555: Turning \x00\x00 into 10000$
This project hosts security advisories and their accompanying proof-of-concepts related to research conducted at Google which impact non-Google owned code.
Hashing Phone Numbers For 2-Factor Authentication
https://ift.tt/3B4zj3Q
Submitted July 15, 2021 at 11:57AM by theabbiee
via reddit https://ift.tt/3ekBLtq
https://ift.tt/3B4zj3Q
Submitted July 15, 2021 at 11:57AM by theabbiee
via reddit https://ift.tt/3ekBLtq
TheAbbie
Hashing Phone Numbers For 2-Factor Authentication
With the rise of internet and increasing risks of getting hacked, it's more than necessary nowadays that we have an extra layer of security on our accounts, since password alone is not enough. Thus, using Phone numbers for 2FA sounds much more secure, but…
CVE-2021-31956 Exploiting the Windows Kernel via NTFS with WNF – Part 1
https://ift.tt/3wGVBFA
Submitted July 15, 2021 at 05:46PM by digicat
via reddit https://ift.tt/3z3WBF9
https://ift.tt/3wGVBFA
Submitted July 15, 2021 at 05:46PM by digicat
via reddit https://ift.tt/3z3WBF9
NCC Group Research
CVE-2021-31956 Exploiting the Windows Kernel (NTFS with WNF) – Part 1
NCC Group’s Exploit Development Group look at exploiting CVE-2021-31956 – the Windows Kernel (NTFS with WNF)
Aruba in Chains: Chaining Vulnerabilities for Fun and Profit
https://ift.tt/3elSRqC
Submitted July 15, 2021 at 06:49PM by Gr33nh4tt
via reddit https://ift.tt/3xHgi5H
https://ift.tt/3elSRqC
Submitted July 15, 2021 at 06:49PM by Gr33nh4tt
via reddit https://ift.tt/3xHgi5H
Alephsecurity
Aruba in Chains: Chaining Vulnerabilities for Fun and Profit
Hidden Bugs in The Mines: Examining Vulnerabilities within Cryptocurrency Miners
https://ift.tt/3hFhyAp
Submitted July 15, 2021 at 09:16PM by DLLCoolJ
via reddit https://ift.tt/36H9toN
https://ift.tt/3hFhyAp
Submitted July 15, 2021 at 09:16PM by DLLCoolJ
via reddit https://ift.tt/36H9toN
Lacework
Hidden Bugs in The Mines: Examining Vulnerabilities within Cryptocurrency Miners - Lacework -Lacework
Lacework Labs identified an XMRigCC binary being used in conjunction with an opportunistic Cryptojacking (T1496) campaign. We examine for vulnerabilities to identify additional risks to victims.
We’re gonna need a bigger boat: An analysis of recently caught phishing kits
https://ift.tt/3wB7Bsg
Submitted July 15, 2021 at 09:49PM by securehoney
via reddit https://ift.tt/3emWFIx
https://ift.tt/3wB7Bsg
Submitted July 15, 2021 at 09:49PM by securehoney
via reddit https://ift.tt/3emWFIx
Nortonlifelock
We’re gonna need a bigger boat: An analysis of recently caught phishing kits
Anatomy of a phishing attack
Integrate VirusTotal with your threat data warehouse using SQL
https://ift.tt/36FZJuM
Submitted July 16, 2021 at 12:31AM by CloudSpout
via reddit https://ift.tt/3raYrSd
https://ift.tt/36FZJuM
Submitted July 16, 2021 at 12:31AM by CloudSpout
via reddit https://ift.tt/3raYrSd
GitHub
GitHub - turbot/steampipe-plugin-virustotal: Use SQL to instantly query file, domain, URL and IP scanning results from VirusTotal.
Use SQL to instantly query file, domain, URL and IP scanning results from VirusTotal. - GitHub - turbot/steampipe-plugin-virustotal: Use SQL to instantly query file, domain, URL and IP scanning res...
Threat Hunting Dune themed scenario I made in my home lab that’s beginner friendly.
https://ift.tt/3yXuWWo
Submitted July 16, 2021 at 02:21AM by m_edmondson
via reddit https://ift.tt/3wFQ6H7
https://ift.tt/3yXuWWo
Submitted July 16, 2021 at 02:21AM by m_edmondson
via reddit https://ift.tt/3wFQ6H7
Marcus Edmondson | Threat Hunting | Information Security
To Catch a Hacker in My Home Lab – Noabar
Today I wanted to write a blog post to answer the questions to the Noabar scenario located here: A little background on what Noabar is, this is a Windows machine in my home lab that I attacked to c…
What every CISO and security engineer should know about Intel CSME
https://ift.tt/2UktCOJ
Submitted July 16, 2021 at 09:41AM by hardenedvault
via reddit https://ift.tt/3B9ddNO
https://ift.tt/2UktCOJ
Submitted July 16, 2021 at 09:41AM by hardenedvault
via reddit https://ift.tt/3B9ddNO
Remote code execution in cdnjs of Cloudflare
https://ift.tt/2UfFxxn
Submitted July 16, 2021 at 12:03PM by _vavkamil_
via reddit https://ift.tt/3kn4i5t
https://ift.tt/2UfFxxn
Submitted July 16, 2021 at 12:03PM by _vavkamil_
via reddit https://ift.tt/3kn4i5t
blog.ryotak.me
Remote code execution in cdnjs of Cloudflare
Preface (日本語版も公開されています。) Cloudflare, which runs cdnjs, is running a “Vulnerability Disclosure Program” on HackerOne, which allows hackers to perform vulnerability assessments. This article describes vulnerabilities reported through this program and published…
Shakti - small bash noscript to fix long repetitive tasks/commads
https://ift.tt/3ko5lSA
Submitted July 16, 2021 at 11:52AM by spajky_yt
via reddit https://ift.tt/3wNVfgd
https://ift.tt/3ko5lSA
Submitted July 16, 2021 at 11:52AM by spajky_yt
via reddit https://ift.tt/3wNVfgd
Amit Merchant - Software Engineer
Shakti - More than alias
Introduction