CVE-2021-31956 Exploiting the Windows Kernel (NTFS with WNF) - Part 2 - We look at exploitation without the CVE-2021-31955 information disclosure, enabling better exploit primitives through PreviousMode, reliability, stability and exploit clean-up and well as thoughts on detection
https://ift.tt/2VSIfK9
Submitted August 17, 2021 at 01:58PM by digicat
via reddit https://ift.tt/3spR3Tx
https://ift.tt/2VSIfK9
Submitted August 17, 2021 at 01:58PM by digicat
via reddit https://ift.tt/3spR3Tx
NCC Group Research Blog
CVE-2021-31956 Exploiting the Windows Kernel (NTFS with WNF) – Part 2
We look at exploitation without the CVE-2021-31955 information disclosure, enabling better exploit primitives through PreviousMode, reliability, stability and exploit clean-up and well as thoughts …
CompTIA Certification Training Bundle
https://ift.tt/3iT90H2
Submitted August 17, 2021 at 02:25PM by Education_growth_123
via reddit https://ift.tt/3jVAuei
https://ift.tt/3iT90H2
Submitted August 17, 2021 at 02:25PM by Education_growth_123
via reddit https://ift.tt/3jVAuei
CompTIA Practice Exam Tests
CompTIA Certification Training Bundle - Practice Exam Tests
CompTIA Training Free and Paid Practice Exam Tests and Performance-based Questions for CompTIA A+ Network+ Security+ and more. Become a CompTIA Certified.
Enumerating .gov.af
https://ift.tt/3xVIhh0
Submitted August 17, 2021 at 05:04PM by kpcyrd
via reddit https://ift.tt/3swaERZ
https://ift.tt/3xVIhh0
Submitted August 17, 2021 at 05:04PM by kpcyrd
via reddit https://ift.tt/3swaERZ
vulns.xyz
Enumerating .gov.af - vulns.xyz
Due to recent political events there’s an increased interest in Afghanistan’s websites. This is a tutorial on how to run sn0int on .gov.af to enumerate as many sites as possible for archival purpose.
Secure Coding Gitbook Notes
https://ift.tt/37OD4wS
Submitted August 17, 2021 at 06:20PM by Joswha
via reddit https://ift.tt/2W5TTBf
https://ift.tt/37OD4wS
Submitted August 17, 2021 at 06:20PM by Joswha
via reddit https://ift.tt/2W5TTBf
GitHub
GitHub - joswha/Secure-Coding-Handbook: Web Application Secure Coding Handbook resource.
Web Application Secure Coding Handbook resource. Contribute to joswha/Secure-Coding-Handbook development by creating an account on GitHub.
What it Takes for TLS Clients to Establish Trust with a Server
https://ift.tt/3ssVNHV
Submitted August 17, 2021 at 06:08PM by ssh-bi
via reddit https://ift.tt/3sploBt
https://ift.tt/3ssVNHV
Submitted August 17, 2021 at 06:08PM by ssh-bi
via reddit https://ift.tt/3sploBt
Medium
What it Takes for TLS Clients to Establish Trust with a Server
Authenticity of TLS certificate issued by a Public CA is no longer sufficient
Domain Escalation – PrintNightmare
https://ift.tt/2XCWEL3
Submitted August 17, 2021 at 09:52PM by netbiosX
via reddit https://ift.tt/37TZtsV
https://ift.tt/2XCWEL3
Submitted August 17, 2021 at 09:52PM by netbiosX
via reddit https://ift.tt/37TZtsV
Penetration Testing Lab
Domain Escalation – PrintNightmare
Printers are part of every corporate infrastructure therefore Windows environments they have a number of embedded drivers installed. The Print Spooler (spoolsv.exe) service is responsible for print…
Malicious PDF Generator
https://ift.tt/37Sjss0
Submitted August 18, 2021 at 12:05AM by jonas02
via reddit https://ift.tt/2UurS5M
https://ift.tt/37Sjss0
Submitted August 18, 2021 at 12:05AM by jonas02
via reddit https://ift.tt/2UurS5M
GitHub
GitHub - jonaslejon/malicious-pdf: Generate a bunch of malicious pdf files with phone-home functionality. Can be used with Burp…
Generate a bunch of malicious pdf files with phone-home functionality. Can be used with Burp Collaborator - GitHub - jonaslejon/malicious-pdf: Generate a bunch of malicious pdf files with phone-hom...
Blog on Breaking into a Pen Testing Career
https://ift.tt/3AUvq0L
Submitted August 18, 2021 at 03:05AM by the_cyber_union
via reddit https://ift.tt/3iWQEVi
https://ift.tt/3AUvq0L
Submitted August 18, 2021 at 03:05AM by the_cyber_union
via reddit https://ift.tt/3iWQEVi
THE CU
Career Advice: Top 5 Tips on How to Become a Pen Tester after College
Penetration Testing is one of the most sought-after careers for new cyber security college graduates. I don’t know how many times I have had an intern or mentee who has said that their goal was to...
IoT/Connected device discovery and vulnerability assessment API (IoTVAS) released with nmap integration example
https://ift.tt/3yFrC2y
Submitted August 16, 2021 at 05:47PM by ucbrl
via reddit https://ift.tt/2UoXp92
https://ift.tt/3yFrC2y
Submitted August 16, 2021 at 05:47PM by ucbrl
via reddit https://ift.tt/2UoXp92
GitHub
GitHub - firmalyzer/iotvas-nmap: This is a NSE noscript that uses IoTVAS API and enables NMAP port scanner to perform connected device…
This is a NSE noscript that uses IoTVAS API and enables NMAP port scanner to perform connected device discovery and security risk assessment - GitHub - firmalyzer/iotvas-nmap: This is a NSE noscript th...
Integer Overflow to RCE — ManageEngine Asset Explorer Agent (CVE-2021–20082)
https://ift.tt/3yWe9mZ
Submitted August 18, 2021 at 05:42AM by MalwareSeattle
via reddit https://ift.tt/3zatjFH
https://ift.tt/3yWe9mZ
Submitted August 18, 2021 at 05:42AM by MalwareSeattle
via reddit https://ift.tt/3zatjFH
Medium
Integer Overflow to RCE — ManageEngine Asset Explorer Agent (CVE-2021–20082)
A couple months back, Chris Lyne and I had a look at ManageEngine ServiceDesk Plus. This product consists of a server / agent model in…
New osint podcast with the harvester
https://ift.tt/2XCREGa
Submitted August 18, 2021 at 11:40PM by bsdinvoid
via reddit https://ift.tt/3sr5LJU
https://ift.tt/2XCREGa
Submitted August 18, 2021 at 11:40PM by bsdinvoid
via reddit https://ift.tt/3sr5LJU
Anchor
Osint Special with Jay Townsend by Security Headlines
In this episode of Security Headlines, we are joined by Jay Townsend who is
maintaining several infosec tools such as the harvester and discover.
The harvester is a very popular tool for doing Osint analysis. Tune into this episode
as we deep dive into…
maintaining several infosec tools such as the harvester and discover.
The harvester is a very popular tool for doing Osint analysis. Tune into this episode
as we deep dive into…
Sophos UTM Preauth RCE: A Deep Dive into CVE-2020-25223
https://ift.tt/3iY08zZ
Submitted August 19, 2021 at 01:37AM by juken
via reddit https://ift.tt/3iYp6yV
https://ift.tt/3iY08zZ
Submitted August 19, 2021 at 01:37AM by juken
via reddit https://ift.tt/3iYp6yV
Atredis Partners
Sophos UTM Preauth RCE: A Deep Dive into CVE-2020-25223 — Atredis Partners
Note: Sophos fixed this issue in September 2020. Information about patch availability is in their security advisory .
Stored XSS to RCE Chain as SYSTEM in ManageEngine ServiceDesk Plus
https://ift.tt/3k32zjX
Submitted August 19, 2021 at 12:07AM by lynerc
via reddit https://ift.tt/2W3stvx
https://ift.tt/3k32zjX
Submitted August 19, 2021 at 12:07AM by lynerc
via reddit https://ift.tt/2W3stvx
Medium
Stored XSS to RCE Chain as SYSTEM in ManageEngine ServiceDesk Plus
Gaining SYSTEM access via the help desk software
Introducing GoKart, a Smarter Go Security Scanner
https://ift.tt/3iWmT7i
Submitted August 19, 2021 at 03:46PM by 0xdea
via reddit https://ift.tt/3iVLuJo
https://ift.tt/3iWmT7i
Submitted August 19, 2021 at 03:46PM by 0xdea
via reddit https://ift.tt/3iVLuJo
Praetorian
Introducing GoKart, a Smarter Go Security Scanner - Praetorian
Introducing GoKart, a next-generation open source Golang static analysis security tool (SAST) with taint tracking.
My FirsReportt Instagram Bug Bounty
https://ift.tt/3lgDBzX
Submitted August 19, 2021 at 04:06PM by banginpadr
via reddit https://ift.tt/3AUgbER
https://ift.tt/3lgDBzX
Submitted August 19, 2021 at 04:06PM by banginpadr
via reddit https://ift.tt/3AUgbER
Medium
My First Instagram Bug Bounty Report
Something is better than nothing, even if it is less than one wanted.
AnchorWatch: A Rogue Device Detection Script with Email Alerts Functionality [Windows Subsystem/PowerShell]
https://ift.tt/2SV9vA8
Submitted August 19, 2021 at 06:47PM by rootsh3ll
via reddit https://ift.tt/3y0FJhQ
https://ift.tt/2SV9vA8
Submitted August 19, 2021 at 06:47PM by rootsh3ll
via reddit https://ift.tt/3y0FJhQ
GitHub
GitHub - iamrootsh3ll/AnchorWatch: A Rogue Device Detection Script with Email Alerts Functionality for Windows Subsystem
A Rogue Device Detection Script with Email Alerts Functionality for Windows Subsystem - GitHub - iamrootsh3ll/AnchorWatch: A Rogue Device Detection Script with Email Alerts Functionality for Window...
Figuring out user behavior on Windows
https://ift.tt/3ATp0i9
Submitted August 19, 2021 at 07:19PM by oddvarmoe
via reddit https://ift.tt/3CYHWOp
https://ift.tt/3ATp0i9
Submitted August 19, 2021 at 07:19PM by oddvarmoe
via reddit https://ift.tt/3CYHWOp
TrustedSec
Oh, Behave! Figuring Out User Behavior
I decided to embark on a journey to understand user behavior without knowing exactly how I would gather details about user activity as a research topic. A…
ShadowPad | A Masterpiece of Privately Sold Malware in Chinese Espionage
https://ift.tt/3y5Emym
Submitted August 19, 2021 at 08:18PM by Cyberthere
via reddit https://ift.tt/3mhWYco
https://ift.tt/3y5Emym
Submitted August 19, 2021 at 08:18PM by Cyberthere
via reddit https://ift.tt/3mhWYco
SentinelOne
ShadowPad | A Masterpiece of Privately Sold Malware in Chinese Espionage - SentinelLabs
Supplying a custom backdoor to a cluster of APT groups, the personas behind ShadowPad have maintained a cloak of secrecy, until now.
T-Mobile allegedly hacked, claims no sensitive data stolen
https://ift.tt/3iYT4CU
Submitted August 19, 2021 at 11:51PM by Pm_dat_bootyhole
via reddit https://ift.tt/2XKLOmh
https://ift.tt/3iYT4CU
Submitted August 19, 2021 at 11:51PM by Pm_dat_bootyhole
via reddit https://ift.tt/2XKLOmh
T-Mobile
Our Response to the Data Breach (Aug 2021) | T-Mobile
Learn more about our response to the recent cybersecurity incident and the steps we're taking to ensure our customers' data is safe.
Independent Peer Review (from Cititzen Lab) of Amnesty International’s Forensic Methods for Identifying Pegasus Spyware
https://ift.tt/3eylaCB
Submitted August 20, 2021 at 02:40AM by Turbulent_Froyo9385
via reddit https://ift.tt/3swUJTn
https://ift.tt/3eylaCB
Submitted August 20, 2021 at 02:40AM by Turbulent_Froyo9385
via reddit https://ift.tt/3swUJTn
The Citizen Lab
Independent Peer Review of Amnesty International's Forensic Methods for Identifying Pegasus Spyware - The Citizen Lab
Citizen Lab's peer review of Amnesty International's forensic techniques to identify Pegasus spyware concludes they are sound.
CIA: Confidentiality, Integrity and Availability
https://ift.tt/3xWH0GN
Submitted August 20, 2021 at 03:29AM by WeHackPurpleAcademy
via reddit https://ift.tt/3sz1ww8
https://ift.tt/3xWH0GN
Submitted August 20, 2021 at 03:29AM by WeHackPurpleAcademy
via reddit https://ift.tt/3sz1ww8
reddit
CIA: Confidentiality, Integrity and Availability
Posted in r/netsec by u/WeHackPurpleAcademy • 0 points and 1 comment