HiveNightmare - Practical Use Cases
https://ift.tt/3k0oY15
Submitted August 16, 2021 at 01:02PM by netbiosX
via reddit https://ift.tt/3AMFuZq
https://ift.tt/3k0oY15
Submitted August 16, 2021 at 01:02PM by netbiosX
via reddit https://ift.tt/3AMFuZq
Penetration Testing Lab
HiveNightmare
The security account manager (SAM) file contains the password hashes of the users on a Windows system. Since it is considered a sensitive file SYSTEM level privileges are required to view its conte…
Guide to Prototype Pollution Vulnerabilities
https://ift.tt/2VVXJgc
Submitted August 16, 2021 at 01:45PM by atgemsip
via reddit https://ift.tt/2Ujc5GI
https://ift.tt/2VVXJgc
Submitted August 16, 2021 at 01:45PM by atgemsip
via reddit https://ift.tt/2Ujc5GI
WhiteSource
The Complete Guide to Prototype Pollution Vulnerabilities
An in-depth look at Prototype Pollution vulnerabilities and how to mitigate them.
Dan Kaminsky (discoverer of DNS cache poisining) fellowship is now accepting applications
https://ift.tt/2TRyzOR
Submitted August 16, 2021 at 07:28PM by wtbengdeg
via reddit https://ift.tt/3sywqEV
https://ift.tt/2TRyzOR
Submitted August 16, 2021 at 07:28PM by wtbengdeg
via reddit https://ift.tt/3sywqEV
Wodify - 3 Vulnerabilities Found in Popular Gym Management App
https://ift.tt/3yRdK5m
Submitted August 16, 2021 at 10:16PM by breach_house
via reddit https://ift.tt/3xMGUkJ
https://ift.tt/3yRdK5m
Submitted August 16, 2021 at 10:16PM by breach_house
via reddit https://ift.tt/3xMGUkJ
Bishopfox
Wodify
The Bishop Fox team discovered three vulnerabilities that could have a severe business and reputational risk for Wodify.
How to Hack Apple ID
https://ift.tt/3g6dJmE
Submitted August 17, 2021 at 02:17AM by Zemnmez
via reddit https://ift.tt/3xNpWmh
https://ift.tt/3g6dJmE
Submitted August 17, 2021 at 02:17AM by Zemnmez
via reddit https://ift.tt/3xNpWmh
Medium
How to Hack Apple ID
Everyone knows what’s inside a computer isn’t really real. It pretends to be, sure, hiding just under the pixels — but I promise you it…
CVE-2021-22929 – Brave Browser 1.27 and below permanently logs the server connection time for all v2 tor domains to ~/.config/BraveSoftware/Brave-Browser/tor/data/tor.log (fixed in 1.28.x)
https://ift.tt/3sv7yhe
Submitted August 17, 2021 at 02:30AM by docker-osx
via reddit https://ift.tt/3iOYgta
https://ift.tt/3sv7yhe
Submitted August 17, 2021 at 02:30AM by docker-osx
via reddit https://ift.tt/3iOYgta
Sick Codes - Security Research, Hardware & Software Hacking, Consulting, Linux, IoT, Cloud, Embedded, Arch, Tweaks & Tips!
CVE-2021-22929 – Brave Browser 1.27 and below permanently logs the server connection time for all v2 tor domains to ~/.config/BraveSoftware…
Title CVE-2021-22929 Brave Browser 1.27 and below permanently logs the server connection time for all v2 tor domains to ~/.config/BraveSoftware/Brave-Browser/tor/data/tor.log
Accellion Kiteworks - Remote lowpriv web user to system root bugchain
https://ift.tt/3ANXd2J
Submitted August 17, 2021 at 04:29AM by feabell
via reddit https://ift.tt/2VT7hbz
https://ift.tt/3ANXd2J
Submitted August 17, 2021 at 04:29AM by feabell
via reddit https://ift.tt/2VT7hbz
reddit
Accellion Kiteworks - Remote lowpriv web user to system root bugchain
Posted in r/netsec by u/feabell • 19 points and 0 comments
CVE-2021-31956 Exploiting the Windows Kernel (NTFS with WNF) - Part 2 - We look at exploitation without the CVE-2021-31955 information disclosure, enabling better exploit primitives through PreviousMode, reliability, stability and exploit clean-up and well as thoughts on detection
https://ift.tt/2VSIfK9
Submitted August 17, 2021 at 01:58PM by digicat
via reddit https://ift.tt/3spR3Tx
https://ift.tt/2VSIfK9
Submitted August 17, 2021 at 01:58PM by digicat
via reddit https://ift.tt/3spR3Tx
NCC Group Research Blog
CVE-2021-31956 Exploiting the Windows Kernel (NTFS with WNF) – Part 2
We look at exploitation without the CVE-2021-31955 information disclosure, enabling better exploit primitives through PreviousMode, reliability, stability and exploit clean-up and well as thoughts …
CompTIA Certification Training Bundle
https://ift.tt/3iT90H2
Submitted August 17, 2021 at 02:25PM by Education_growth_123
via reddit https://ift.tt/3jVAuei
https://ift.tt/3iT90H2
Submitted August 17, 2021 at 02:25PM by Education_growth_123
via reddit https://ift.tt/3jVAuei
CompTIA Practice Exam Tests
CompTIA Certification Training Bundle - Practice Exam Tests
CompTIA Training Free and Paid Practice Exam Tests and Performance-based Questions for CompTIA A+ Network+ Security+ and more. Become a CompTIA Certified.
Enumerating .gov.af
https://ift.tt/3xVIhh0
Submitted August 17, 2021 at 05:04PM by kpcyrd
via reddit https://ift.tt/3swaERZ
https://ift.tt/3xVIhh0
Submitted August 17, 2021 at 05:04PM by kpcyrd
via reddit https://ift.tt/3swaERZ
vulns.xyz
Enumerating .gov.af - vulns.xyz
Due to recent political events there’s an increased interest in Afghanistan’s websites. This is a tutorial on how to run sn0int on .gov.af to enumerate as many sites as possible for archival purpose.
Secure Coding Gitbook Notes
https://ift.tt/37OD4wS
Submitted August 17, 2021 at 06:20PM by Joswha
via reddit https://ift.tt/2W5TTBf
https://ift.tt/37OD4wS
Submitted August 17, 2021 at 06:20PM by Joswha
via reddit https://ift.tt/2W5TTBf
GitHub
GitHub - joswha/Secure-Coding-Handbook: Web Application Secure Coding Handbook resource.
Web Application Secure Coding Handbook resource. Contribute to joswha/Secure-Coding-Handbook development by creating an account on GitHub.
What it Takes for TLS Clients to Establish Trust with a Server
https://ift.tt/3ssVNHV
Submitted August 17, 2021 at 06:08PM by ssh-bi
via reddit https://ift.tt/3sploBt
https://ift.tt/3ssVNHV
Submitted August 17, 2021 at 06:08PM by ssh-bi
via reddit https://ift.tt/3sploBt
Medium
What it Takes for TLS Clients to Establish Trust with a Server
Authenticity of TLS certificate issued by a Public CA is no longer sufficient
Domain Escalation – PrintNightmare
https://ift.tt/2XCWEL3
Submitted August 17, 2021 at 09:52PM by netbiosX
via reddit https://ift.tt/37TZtsV
https://ift.tt/2XCWEL3
Submitted August 17, 2021 at 09:52PM by netbiosX
via reddit https://ift.tt/37TZtsV
Penetration Testing Lab
Domain Escalation – PrintNightmare
Printers are part of every corporate infrastructure therefore Windows environments they have a number of embedded drivers installed. The Print Spooler (spoolsv.exe) service is responsible for print…
Malicious PDF Generator
https://ift.tt/37Sjss0
Submitted August 18, 2021 at 12:05AM by jonas02
via reddit https://ift.tt/2UurS5M
https://ift.tt/37Sjss0
Submitted August 18, 2021 at 12:05AM by jonas02
via reddit https://ift.tt/2UurS5M
GitHub
GitHub - jonaslejon/malicious-pdf: Generate a bunch of malicious pdf files with phone-home functionality. Can be used with Burp…
Generate a bunch of malicious pdf files with phone-home functionality. Can be used with Burp Collaborator - GitHub - jonaslejon/malicious-pdf: Generate a bunch of malicious pdf files with phone-hom...
Blog on Breaking into a Pen Testing Career
https://ift.tt/3AUvq0L
Submitted August 18, 2021 at 03:05AM by the_cyber_union
via reddit https://ift.tt/3iWQEVi
https://ift.tt/3AUvq0L
Submitted August 18, 2021 at 03:05AM by the_cyber_union
via reddit https://ift.tt/3iWQEVi
THE CU
Career Advice: Top 5 Tips on How to Become a Pen Tester after College
Penetration Testing is one of the most sought-after careers for new cyber security college graduates. I don’t know how many times I have had an intern or mentee who has said that their goal was to...
IoT/Connected device discovery and vulnerability assessment API (IoTVAS) released with nmap integration example
https://ift.tt/3yFrC2y
Submitted August 16, 2021 at 05:47PM by ucbrl
via reddit https://ift.tt/2UoXp92
https://ift.tt/3yFrC2y
Submitted August 16, 2021 at 05:47PM by ucbrl
via reddit https://ift.tt/2UoXp92
GitHub
GitHub - firmalyzer/iotvas-nmap: This is a NSE noscript that uses IoTVAS API and enables NMAP port scanner to perform connected device…
This is a NSE noscript that uses IoTVAS API and enables NMAP port scanner to perform connected device discovery and security risk assessment - GitHub - firmalyzer/iotvas-nmap: This is a NSE noscript th...
Integer Overflow to RCE — ManageEngine Asset Explorer Agent (CVE-2021–20082)
https://ift.tt/3yWe9mZ
Submitted August 18, 2021 at 05:42AM by MalwareSeattle
via reddit https://ift.tt/3zatjFH
https://ift.tt/3yWe9mZ
Submitted August 18, 2021 at 05:42AM by MalwareSeattle
via reddit https://ift.tt/3zatjFH
Medium
Integer Overflow to RCE — ManageEngine Asset Explorer Agent (CVE-2021–20082)
A couple months back, Chris Lyne and I had a look at ManageEngine ServiceDesk Plus. This product consists of a server / agent model in…
New osint podcast with the harvester
https://ift.tt/2XCREGa
Submitted August 18, 2021 at 11:40PM by bsdinvoid
via reddit https://ift.tt/3sr5LJU
https://ift.tt/2XCREGa
Submitted August 18, 2021 at 11:40PM by bsdinvoid
via reddit https://ift.tt/3sr5LJU
Anchor
Osint Special with Jay Townsend by Security Headlines
In this episode of Security Headlines, we are joined by Jay Townsend who is
maintaining several infosec tools such as the harvester and discover.
The harvester is a very popular tool for doing Osint analysis. Tune into this episode
as we deep dive into…
maintaining several infosec tools such as the harvester and discover.
The harvester is a very popular tool for doing Osint analysis. Tune into this episode
as we deep dive into…
Sophos UTM Preauth RCE: A Deep Dive into CVE-2020-25223
https://ift.tt/3iY08zZ
Submitted August 19, 2021 at 01:37AM by juken
via reddit https://ift.tt/3iYp6yV
https://ift.tt/3iY08zZ
Submitted August 19, 2021 at 01:37AM by juken
via reddit https://ift.tt/3iYp6yV
Atredis Partners
Sophos UTM Preauth RCE: A Deep Dive into CVE-2020-25223 — Atredis Partners
Note: Sophos fixed this issue in September 2020. Information about patch availability is in their security advisory .
Stored XSS to RCE Chain as SYSTEM in ManageEngine ServiceDesk Plus
https://ift.tt/3k32zjX
Submitted August 19, 2021 at 12:07AM by lynerc
via reddit https://ift.tt/2W3stvx
https://ift.tt/3k32zjX
Submitted August 19, 2021 at 12:07AM by lynerc
via reddit https://ift.tt/2W3stvx
Medium
Stored XSS to RCE Chain as SYSTEM in ManageEngine ServiceDesk Plus
Gaining SYSTEM access via the help desk software
Introducing GoKart, a Smarter Go Security Scanner
https://ift.tt/3iWmT7i
Submitted August 19, 2021 at 03:46PM by 0xdea
via reddit https://ift.tt/3iVLuJo
https://ift.tt/3iWmT7i
Submitted August 19, 2021 at 03:46PM by 0xdea
via reddit https://ift.tt/3iVLuJo
Praetorian
Introducing GoKart, a Smarter Go Security Scanner - Praetorian
Introducing GoKart, a next-generation open source Golang static analysis security tool (SAST) with taint tracking.