Security: Bitwarden Desktop app grants RCE
https://ift.tt/35WfApZ
Submitted September 20, 2021 at 02:44PM by HiImAlexXD
via reddit https://ift.tt/2XtUSvt
https://ift.tt/35WfApZ
Submitted September 20, 2021 at 02:44PM by HiImAlexXD
via reddit https://ift.tt/2XtUSvt
GitHub
Security: Bitwarden Desktop app grants RCE to Bitwarden developers. · Issue #552 · bitwarden/desktop
Describe the Bug The Bitwarden Desktop app automatically downloads updates and replaces its own code with those updates, without user intervention, which is then executed on the next launch of the ...
Telegram is increasingly used for buying and selling data leaks because it’s user-friendly and not thoroughly moderated. - by Cyberint
https://ift.tt/3kp6ZmH
Submitted September 20, 2021 at 05:07PM by Affectionate-Fall520
via reddit https://ift.tt/3zplsmR
https://ift.tt/3kp6ZmH
Submitted September 20, 2021 at 05:07PM by Affectionate-Fall520
via reddit https://ift.tt/3zplsmR
List of Ransomware Vulnerabilities being actively targeted
https://ift.tt/3nOwkZe
Submitted September 20, 2021 at 06:44PM by SpawnDnD
via reddit https://ift.tt/3EzvS7i
https://ift.tt/3nOwkZe
Submitted September 20, 2021 at 06:44PM by SpawnDnD
via reddit https://ift.tt/3EzvS7i
TruffleHog The Chrome Extension
https://ift.tt/3hOwfkG
Submitted September 20, 2021 at 06:58PM by wifihack
via reddit https://ift.tt/3CtnVyn
https://ift.tt/3hOwfkG
Submitted September 20, 2021 at 06:58PM by wifihack
via reddit https://ift.tt/3CtnVyn
Tutorial: Return-to-libc
https://ift.tt/3nTdL68
Submitted September 21, 2021 at 01:33PM by Kondencuotaspienas
via reddit https://ift.tt/3EzxSfD
https://ift.tt/3nTdL68
Submitted September 21, 2021 at 01:33PM by Kondencuotaspienas
via reddit https://ift.tt/3EzxSfD
SSD Advisory – macOS Finder RCE: A vulnerability in macOS Finder system allows remote attackers to trick users into running arbitrary commands.
https://ift.tt/2VW9q6E
Submitted September 21, 2021 at 03:40PM by SSDisclosure
via reddit https://ift.tt/3tW0Wcr
https://ift.tt/2VW9q6E
Submitted September 21, 2021 at 03:40PM by SSDisclosure
via reddit https://ift.tt/3tW0Wcr
SSD Secure Disclosure
SSD Advisory – macOS Finder RCE - SSD Secure Disclosure
Find out how a vulnerability in macOS Finder system allows remote attackers to trick users into running arbitrary commands.
The First and Last Time AIM Was Hacked
https://ift.tt/3AwHq8J
Submitted September 21, 2021 at 06:40PM by endless
via reddit https://ift.tt/3CudGde
https://ift.tt/3AwHq8J
Submitted September 21, 2021 at 06:40PM by endless
via reddit https://ift.tt/3CudGde
Livejournal
the first and last time AIM was hacked
im an AOL hacker historian. no doubt about it. i remember intimate details about most of the major breaches that occurred between the mid 90s and 2000s. i was there and actively participating in most of it. america onlines security was being compromised nonstop.…
Google to Auto-Reset Inactive Android App Permissions for Billions of Devices
https://ift.tt/2XK5fvG
Submitted September 21, 2021 at 06:33PM by Affectionate-Fall520
via reddit https://ift.tt/2XPn9Ns
https://ift.tt/2XK5fvG
Submitted September 21, 2021 at 06:33PM by Affectionate-Fall520
via reddit https://ift.tt/2XPn9Ns
The 2021 National Internet Segment Reliability Research
https://ift.tt/3nUnlpy
Submitted September 21, 2021 at 09:06PM by shapelez
via reddit https://ift.tt/2XCsRlC
https://ift.tt/3nUnlpy
Submitted September 21, 2021 at 09:06PM by shapelez
via reddit https://ift.tt/2XCsRlC
blog.qrator.net
Blog — The 2021 National Internet Segment Reliability Research
Examining a case when an AS experiences network degradation, we want to answer the following question: “How many AS’s in the same region would lose connectivity with Tier-1 operators and their global availability along with it?”
OM I GOOD? We developed a flexible scanner you can use to inspect your Azure infrastructure and understand if you are exposed to OMIGOD, the OMI security vulnerabilities. Feedback and suggestions are welcome. Enjoy!
https://ift.tt/3Cxos2j
Submitted September 21, 2021 at 02:12PM by _marcosim_
via reddit https://ift.tt/3CzqaQM
https://ift.tt/3Cxos2j
Submitted September 21, 2021 at 02:12PM by _marcosim_
via reddit https://ift.tt/3CzqaQM
CVE-2021-38112: AWS WorkSpaces Remote Code Execution
https://ift.tt/3u2enaS
Submitted September 21, 2021 at 09:28PM by hackers_and_builders
via reddit https://ift.tt/3CDsczD
https://ift.tt/3u2enaS
Submitted September 21, 2021 at 09:28PM by hackers_and_builders
via reddit https://ift.tt/3CDsczD
Mama Always Told Me Not to Trust Strangers without Certificates (Moar Netgear Pwnage)
https://ift.tt/3ECG3rE
Submitted September 21, 2021 at 09:21PM by pocorgtfoftw
via reddit https://ift.tt/3hTAr2r
https://ift.tt/3ECG3rE
Submitted September 21, 2021 at 09:21PM by pocorgtfoftw
via reddit https://ift.tt/3hTAr2r
CVSS 9.8 vulnerabilities in vmware vCenter Server
https://ift.tt/2Z9j86U
Submitted September 22, 2021 at 01:49AM by Brumhartt
via reddit https://ift.tt/3nRtHpC
https://ift.tt/2Z9j86U
Submitted September 22, 2021 at 01:49AM by Brumhartt
via reddit https://ift.tt/3nRtHpC
VMware
VMSA-2021-0020.1
VMware vCenter Server updates address multiple security vulnerabilities
Beginners Guide to 0day/CVE AppSec Research
https://ift.tt/3hAHrBd
Submitted September 22, 2021 at 02:59AM by 0xdea
via reddit https://ift.tt/2VXZSrM
https://ift.tt/3hAHrBd
Submitted September 22, 2021 at 02:59AM by 0xdea
via reddit https://ift.tt/2VXZSrM
Boku
Beginners Guide to 0day/CVE AppSec Research
Apache Dubbo: All roads lead to RCE
https://ift.tt/2XyQv2r
Submitted September 22, 2021 at 02:41AM by 0xdea
via reddit https://ift.tt/3nRFCDS
https://ift.tt/2XyQv2r
Submitted September 22, 2021 at 02:41AM by 0xdea
via reddit https://ift.tt/3nRFCDS
Software Supply Chain Security - Implementing Google's SLSA Framework and CNCF's Best Practices
https://ift.tt/3nWbJlW
Submitted September 22, 2021 at 08:14AM by garantir
via reddit https://ift.tt/2XH3E9K
https://ift.tt/3nWbJlW
Submitted September 22, 2021 at 08:14AM by garantir
via reddit https://ift.tt/2XH3E9K
When GoDaddy Fell to Social Engineering
https://ift.tt/2ZnonA7
Submitted September 22, 2021 at 05:44PM by endless
via reddit https://ift.tt/3lQK42T
https://ift.tt/2ZnonA7
Submitted September 22, 2021 at 05:44PM by endless
via reddit https://ift.tt/3lQK42T
Livejournal
When GoDaddy fell to Social Engineering
Back in 2007 my buddy [redacted] wanted to buy the domain name fucktube.com as we were adult webmasters at the time. He was out of luck. A quick WHOIS search revealed that "fucktube.com" had already been registered on GoDaddy. This was at a time when *tube…
High-Severity RCE Vulnerability Found in Several Netgear Routers
https://ift.tt/3CAzF27
Submitted September 22, 2021 at 06:29PM by george-alexander2k
via reddit https://ift.tt/3AwOtOB
https://ift.tt/3CAzF27
Submitted September 22, 2021 at 06:29PM by george-alexander2k
via reddit https://ift.tt/3AwOtOB
I’m not putting a WiFi router into a phone charger (Part 3)
https://ift.tt/2XGEJml
Submitted September 23, 2021 at 12:54AM by Machinehum
via reddit https://ift.tt/2XGEAiN
https://ift.tt/2XGEJml
Submitted September 23, 2021 at 12:54AM by Machinehum
via reddit https://ift.tt/2XGEAiN
Medium
I’m not putting a WiFi router into a phone charger (Part 3)
This is the fourth installment about designing a WiFi router into a phone charger for security, pentesting and red teaming; (part zero…
Catching the big fish: Analyzing a large-scale phishing-as-a-service operation
https://ift.tt/3lNpiRP
Submitted September 23, 2021 at 04:31AM by SCI_Rusher
via reddit https://ift.tt/3ub0siD
https://ift.tt/3lNpiRP
Submitted September 23, 2021 at 04:31AM by SCI_Rusher
via reddit https://ift.tt/3ub0siD
Search - Microsoft Bing
Where cultures converge
The Mosque-Cathedral of Córdoba is a chronicle of
Resetting Expired Passwords Remotely
https://ift.tt/2ZhSJ6V
Submitted September 23, 2021 at 04:28AM by scopedsecurity
via reddit https://ift.tt/3kxPYXB
https://ift.tt/2ZhSJ6V
Submitted September 23, 2021 at 04:28AM by scopedsecurity
via reddit https://ift.tt/3kxPYXB
www.n00py.io
Resetting an Expired Password Remotely
I've often found that while performing password guessing on a network, I'll find valid credentials, but the password will be expired. This presents a challenge, because the credentials are of limited use until they are reset. [crayon-62ffff147e8c4710256389/]…