A Large-Scale Security-Oriented Static Analysis of Python Packages in PyPI
https://ift.tt/3zKEEfi
Submitted August 02, 2021 at 02:21PM by hermajordoctor
via reddit https://ift.tt/3iguTQ4
https://ift.tt/3zKEEfi
Submitted August 02, 2021 at 02:21PM by hermajordoctor
via reddit https://ift.tt/3iguTQ4
reddit
A Large-Scale Security-Oriented Static Analysis of Python Packages...
Posted in r/netsec by u/hermajordoctor • 1 point and 1 comment
CyberDefenders- HoneyPot : WireShark PCAP Analysis
https://ift.tt/3fionGv
Submitted August 02, 2021 at 03:18PM by thatmemforensicsguy
via reddit https://ift.tt/3fm5xhV
https://ift.tt/3fionGv
Submitted August 02, 2021 at 03:18PM by thatmemforensicsguy
via reddit https://ift.tt/3fm5xhV
reddit
CyberDefenders- HoneyPot : WireShark PCAP Analysis
Posted in r/netsec by u/thatmemforensicsguy • 7 points and 0 comments
Potential remote code execution in PyPI
https://ift.tt/3lffB03
Submitted August 02, 2021 at 04:17PM by _vavkamil_
via reddit https://ift.tt/3A0yPdL
https://ift.tt/3lffB03
Submitted August 02, 2021 at 04:17PM by _vavkamil_
via reddit https://ift.tt/3A0yPdL
blog.ryotak.me
Potential remote code execution in PyPI
Preface (日本語版も公開されています。) While PyPI has a security page, they don’t have a clear policy for vulnerability assessments.1 This article describes the vulnerabilities that were reported as potential vulnerabilities, using publicly available information. This…
Universal Privilege Escalation and Persistence – Print Spooler
https://ift.tt/3BYOagK
Submitted August 02, 2021 at 04:47PM by netbiosX
via reddit https://ift.tt/3foXr86
https://ift.tt/3BYOagK
Submitted August 02, 2021 at 04:47PM by netbiosX
via reddit https://ift.tt/3foXr86
Penetration Testing Lab
Universal Privilege Escalation and Persistence – Printer
The Print Spooler is responsible to manage and process printer jobs. It runs as a service with SYSTEM level privileges on windows environments. Abuse of the Print Spooler service is not new and suc…
Almost 10 million BGP route leaks and more than 7 million BGP hijacks occured in Q2 2021
https://ift.tt/3jcdlnE
Submitted August 02, 2021 at 06:17PM by shapelez
via reddit https://ift.tt/2VbXRYA
https://ift.tt/3jcdlnE
Submitted August 02, 2021 at 06:17PM by shapelez
via reddit https://ift.tt/2VbXRYA
blog.qrator.net
Blog — Q2 2021 DDoS attacks and BGP incidents
The second quarter of 2021 was expected to be much quieter than the Q1 in DDoS attacks; hence we're looking at the late spring and early summer months of April, May and June, with somewhat cooled business buzz globally. Although, some attacking activity was…
ZeroDay in 'Commercial Stalkerware' - The Disclosure Dilemma
https://ift.tt/3C2nJHb
Submitted August 03, 2021 at 12:19AM by kev-thehermit
via reddit https://ift.tt/3rPjcTI
https://ift.tt/3C2nJHb
Submitted August 03, 2021 at 12:19AM by kev-thehermit
via reddit https://ift.tt/3rPjcTI
Immersivelabs
Disclosure Dilemmas: Vulnerable Stalkerware - Immersive Labs
Our Director of Cyber Threat Research, Kev Breen, recently discovered a vulnerability in a piece of stalkerware. What followed was a dilemma that has lasted months. Together, the Immersive Labs team has decided to help educate people on the dangers of stalkerware…
The Ultimate Guide to Phishing: Learn how to Phish without spending a single ₹
https://ift.tt/3C6GWaB
Submitted August 03, 2021 at 08:31AM by alt-glitch
via reddit https://ift.tt/3A2B3td
https://ift.tt/3C6GWaB
Submitted August 03, 2021 at 08:31AM by alt-glitch
via reddit https://ift.tt/3A2B3td
computer insecurities
The Ultimate Guide to Phishing
Learn how to Phish using EvilGinx2 and GoPhish
A bunch of different edge-case recon ideas for uncovering well-hidden hostnames
https://ift.tt/3fa7BcL
Submitted August 03, 2021 at 09:40AM by hakluke
via reddit https://ift.tt/3frt6G5
https://ift.tt/3fa7BcL
Submitted August 03, 2021 at 09:40AM by hakluke
via reddit https://ift.tt/3frt6G5
Securitytrails
SecurityTrails | How I Lost the SecurityTrails #ReconMaster Contest, and How You Can Win: Edge-Case Recon Ideas
A while back, SecurityTrails announced that they would be running a contest dubbed
How to boost your popularity on OkCupid using CSRF and a JSON type confusion
https://ift.tt/37ea6WW
Submitted August 03, 2021 at 03:41PM by pimterry
via reddit https://ift.tt/3CdUMI6
https://ift.tt/37ea6WW
Submitted August 03, 2021 at 03:41PM by pimterry
via reddit https://ift.tt/3CdUMI6
reddit
How to boost your popularity on OkCupid using CSRF and a JSON type...
Posted in r/netsec by u/pimterry • 303 points and 30 comments
Escaping from a truly air gapped network via Apple AWDL
https://ift.tt/3loqI6H
Submitted August 03, 2021 at 06:02PM by oherrala
via reddit https://ift.tt/3xnz294
https://ift.tt/3loqI6H
Submitted August 03, 2021 at 06:02PM by oherrala
via reddit https://ift.tt/3xnz294
Medium
Escaping from a truly air gapped network via Apple AWDL
In the following post I go through how to escape from a truly air gapped network using Apple Wireless Direct Link -network and leveraging…
AppSweep, mobile application scanning for developers!
https://ift.tt/3jmxSpH
Submitted August 03, 2021 at 06:13PM by dznn
via reddit https://ift.tt/3Cb1EWJ
https://ift.tt/3jmxSpH
Submitted August 03, 2021 at 06:13PM by dznn
via reddit https://ift.tt/3Cb1EWJ
Guardsquare
Mobile Application Security Testing | AppSweep
Find and fix security issues in your Android app’s code with AppSweep: a mobile application security testing solution, based on ProGuard technology.
AppSec - Account Takeover (ATO) Checklist
https://ift.tt/2VdXQDu
Submitted August 03, 2021 at 06:48PM by ZealousidealYogurt41
via reddit https://ift.tt/3frcjTB
https://ift.tt/2VdXQDu
Submitted August 03, 2021 at 06:48PM by ZealousidealYogurt41
via reddit https://ift.tt/3frcjTB
GitHub
ato-checklist/README.md at master · magoo/ato-checklist
A checklist of practices for organizations dealing with account takeover (ATO) - ato-checklist/README.md at master · magoo/ato-checklist
How to set up GoPhish to evade security controls.
https://ift.tt/3CcBT8r
Submitted August 03, 2021 at 07:59PM by _meatball_
via reddit https://ift.tt/3lz8LlU
https://ift.tt/3CcBT8r
Submitted August 03, 2021 at 07:59PM by _meatball_
via reddit https://ift.tt/3lz8LlU
Bypassing Authentication on 20+ Arcadyan Routers with CVE-2021–20090 and rooting some Buffalo
https://ift.tt/3ym5QAV
Submitted August 03, 2021 at 07:57PM by stargravy
via reddit https://ift.tt/3rOx0hc
https://ift.tt/3ym5QAV
Submitted August 03, 2021 at 07:57PM by stargravy
via reddit https://ift.tt/3rOx0hc
Medium
Bypassing Authentication on Arcadyan Routers with CVE-2021–20090 and rooting some Buffalo
A walkthrough of my first experience in router hacking
Variant analysis of the ‘Sequoia’ bug
https://ift.tt/3yArXDT
Submitted August 03, 2021 at 10:15PM by JordyZomer
via reddit https://ift.tt/3frdaUu
https://ift.tt/3yArXDT
Submitted August 03, 2021 at 10:15PM by JordyZomer
via reddit https://ift.tt/3frdaUu
pwning.systems
Variant analysis of the 'Sequoia' bug
I imagine we've all heard about the recent 'Sequoia' bug discovered by the Qualys Research team. It's a fascinating bug so I decided to do variant analysis using CodeQL!
Developing an exploit for the Jira Data Center Ehcache RCE (CVE-2020-36239)
https://ift.tt/3jgurkd
Submitted August 03, 2021 at 11:04PM by 0xdea
via reddit https://ift.tt/2Vhobk4
https://ift.tt/3jgurkd
Submitted August 03, 2021 at 11:04PM by 0xdea
via reddit https://ift.tt/2Vhobk4
dozer.nz
Developing an exploit for the Jira Data Center Ehcache RCE (CVE-2020-36239)
Overview
Trash Panda as a Service: Raccoon Stealer steals cookies, cryptocoins, and more
https://ift.tt/2Vw80iw
Submitted August 04, 2021 at 12:58AM by securehoney
via reddit https://ift.tt/3xlRM9g
https://ift.tt/2Vw80iw
Submitted August 04, 2021 at 12:58AM by securehoney
via reddit https://ift.tt/3xlRM9g
Sophos News
Trash Panda as a Service: Raccoon Stealer steals cookies, cryptocoins, and more
Cookie and credential stealing malware-as-a-service delivered by dropper-as-a-service now packs a “clipper” to steal crypto-transactions, and can drop other malware.
AppSweep, a free & developer friendly android app security scanning tool
https://ift.tt/3yqlivE
Submitted August 04, 2021 at 01:49PM by Floni
via reddit https://ift.tt/3jiqefT
https://ift.tt/3yqlivE
Submitted August 04, 2021 at 01:49PM by Floni
via reddit https://ift.tt/3jiqefT
reddit
AppSweep, a free & developer friendly android app security...
Posted in r/netsec by u/Floni • 4 points and 0 comments
SAML is insecure by design
https://ift.tt/2Vvl6wu
Submitted August 04, 2021 at 01:56PM by albinowax
via reddit https://ift.tt/3ChqCnp
https://ift.tt/2Vvl6wu
Submitted August 04, 2021 at 01:56PM by albinowax
via reddit https://ift.tt/3ChqCnp
joonas.fi
SAML is insecure by design
What is SAML? Security Assertion Markup Language (SAML) is an open standard for exchanging authentication and authorization data between parties.
Source: Wikipedia
SAML is often used for single-sign on (“Sign in with Google”, “Sign in with Twitter” etc.).…
Source: Wikipedia
SAML is often used for single-sign on (“Sign in with Google”, “Sign in with Twitter” etc.).…
Surveying China’s Digital Silk Road in the Western Balkans
https://ift.tt/3flopxB
Submitted August 04, 2021 at 05:22PM by Fuji_Dragon
via reddit https://ift.tt/3AdV0gT
https://ift.tt/3flopxB
Submitted August 04, 2021 at 05:22PM by Fuji_Dragon
via reddit https://ift.tt/3AdV0gT
War on the Rocks
Surveying China’s Digital Silk Road in the Western Balkans - War on the Rocks
If you walk down the streets of Serbia's capital, Belgrade, your face will almost certainly be recorded by one of the city's 1,000 Huawei security
BazarCall to Conti Ransomware via Trickbot and Cobalt Strike
https://ift.tt/3fiConC
Submitted August 04, 2021 at 07:11PM by TheDFIRReport
via reddit https://ift.tt/3rSUPnY
https://ift.tt/3fiConC
Submitted August 04, 2021 at 07:11PM by TheDFIRReport
via reddit https://ift.tt/3rSUPnY
The DFIR Report
BazarCall to Conti Ransomware via Trickbot and Cobalt Strike
Intro This report will go through an intrusion that went from an Excel file to domain wide ransomware. The threat actors used BazarCall to install Trickbot in the environment which downloaded and e…