fail2ban - Remote Code Execution
https://ift.tt/3kYBHnb
Submitted October 21, 2021 at 02:29PM by lowlet3443
via reddit https://ift.tt/30QYIRf
https://ift.tt/3kYBHnb
Submitted October 21, 2021 at 02:29PM by lowlet3443
via reddit https://ift.tt/30QYIRf
research.securitum.com
fail2ban - Remote Code Execution - research.securitum.com
This article is about the recently published security advisory for a pretty popular software, fail2ban (CVE-2021-32749). It is about a bug that may lead to Remote Code Execution.
7 589 347 BGP route leaks and 4 357 906 BGP hijacks in Q3 2021
https://ift.tt/2XwU7SH
Submitted October 21, 2021 at 08:14PM by shapelez
via reddit https://ift.tt/3G50EFT
https://ift.tt/2XwU7SH
Submitted October 21, 2021 at 08:14PM by shapelez
via reddit https://ift.tt/3G50EFT
Habr
Q3 2021 DDoS attacks and BGP incidents
The third quarter of 2021 brought a massive upheaval in the scale and intensity of DDoS attacks worldwide.It all led to September when together with Yandex, we uncovered one of the most devastating...
Semgrep Taint Mode Now in Beta
https://ift.tt/3E4wuRe
Submitted October 22, 2021 at 12:18AM by iterablewords
via reddit https://ift.tt/3m4J9xu
https://ift.tt/3E4wuRe
Submitted October 22, 2021 at 12:18AM by iterablewords
via reddit https://ift.tt/3m4J9xu
r2c.dev
r2c blog — Taint mode is now in beta
Using the flexibility of Semgrep patterns with taint mode to find injection vulnerabilities
SharpCGHunter - A C# tool to receive the status of Windows Defender Credential Guard on network hosts
https://ift.tt/3G90xsN
Submitted October 22, 2021 at 12:01AM by UnwearableCactus
via reddit https://ift.tt/3G9Zwk7
https://ift.tt/3G90xsN
Submitted October 22, 2021 at 12:01AM by UnwearableCactus
via reddit https://ift.tt/3G9Zwk7
GitHub
GitHub - chdav/SharpCGHunter: Receive the status of Windows Defender Credential Guard on network hosts.
Receive the status of Windows Defender Credential Guard on network hosts. - GitHub - chdav/SharpCGHunter: Receive the status of Windows Defender Credential Guard on network hosts.
OffensiveVBA release
https://ift.tt/3nk2dXA
Submitted October 22, 2021 at 02:15AM by S3cur3Th1sSh1t
via reddit https://ift.tt/3m3V4eN
https://ift.tt/3nk2dXA
Submitted October 22, 2021 at 02:15AM by S3cur3Th1sSh1t
via reddit https://ift.tt/3m3V4eN
GitHub
GitHub - S3cur3Th1sSh1t/OffensiveVBA: This repo covers some code execution and AV Evasion methods for Macros in Office documents
This repo covers some code execution and AV Evasion methods for Macros in Office documents - S3cur3Th1sSh1t/OffensiveVBA
How to build a network scanning analysis platform — Part I
https://ift.tt/2XAmdwp
Submitted October 22, 2021 at 09:18AM by ntestoc3
via reddit https://ift.tt/3jqdnsM
https://ift.tt/2XAmdwp
Submitted October 22, 2021 at 09:18AM by ntestoc3
via reddit https://ift.tt/3jqdnsM
Medium
How to build a network scanning analysis platform — Part I
As the network becomes more and more developed, various kinds of traffic in the network are also increasing. Search engines, attack…
Cracking RDP NLA Supplied Credentials for Threat Intelligence
https://ift.tt/3vAEaHR
Submitted October 22, 2021 at 11:42AM by digicat
via reddit https://ift.tt/3jpxhnZ
https://ift.tt/3vAEaHR
Submitted October 22, 2021 at 11:42AM by digicat
via reddit https://ift.tt/3jpxhnZ
Nccgroup
Cyber Security Research
Cutting-edge cyber security research from NCC Group. Find public reports, technical advisories, analyses, & other novel insights from our global experts.
Broken UDP scanning in Nmap v7.91
https://ift.tt/2Z92R1S
Submitted October 22, 2021 at 01:25PM by mzet-
via reddit https://ift.tt/3vCnEa5
https://ift.tt/2Z92R1S
Submitted October 22, 2021 at 01:25PM by mzet-
via reddit https://ift.tt/3vCnEa5
PCI DSS Firewall Requirements
https://ift.tt/2Zc4M5M
Submitted October 22, 2021 at 04:58PM by stephen90147
via reddit https://ift.tt/3E2G8Uo
https://ift.tt/2Zc4M5M
Submitted October 22, 2021 at 04:58PM by stephen90147
via reddit https://ift.tt/3E2G8Uo
VISTA InfoSec
Cyber Security Consulting Company - VISTA InfoSec
Vendor neutral Cyber Security Consulting company based in US,Uk,Singapore and India with services in SOC 2, PCI, GDPR,HIPAA, Cloud Security and Pen Testing.
50 Shades of SolarWinds Orion Deserialization (Part 1: CVE-2021–35215)
https://ift.tt/3jnGMnl
Submitted October 22, 2021 at 06:23PM by scopedsecurity
via reddit https://ift.tt/3Ge7cC7
https://ift.tt/3jnGMnl
Submitted October 22, 2021 at 06:23PM by scopedsecurity
via reddit https://ift.tt/3Ge7cC7
Medium
50 Shades of SolarWinds Orion Deserialization (Part 1: CVE-2021–35215)
Cách đây không lâu, mình bắt tay vào phân tích một vài bug deserialize của SolarWinds và cũng đã note lại tại đây
Binary Analysis Framework B2R2 v0.5.0 released.
https://ift.tt/2ZkwHAX
Submitted October 22, 2021 at 09:31PM by aparata_s4tan
via reddit https://ift.tt/3jumnx0
https://ift.tt/2ZkwHAX
Submitted October 22, 2021 at 09:31PM by aparata_s4tan
via reddit https://ift.tt/3jumnx0
GitHub
Release v0.5.0 · B2R2-org/B2R2
0.5.0 (2021-10-22)
Note
We have made significant changes in our middle-end (CFG recovery, and function
identification, etc.) engines for this version, and we are still improving it.
The current ver...
Note
We have made significant changes in our middle-end (CFG recovery, and function
identification, etc.) engines for this version, and we are still improving it.
The current ver...
Franken-phish: TodayZoo built from other phishing kits - Microsoft Security Blog
https://ift.tt/3E6Qh2v
Submitted October 22, 2021 at 11:20PM by ksr_malware
via reddit https://ift.tt/3jscUXe
https://ift.tt/3E6Qh2v
Submitted October 22, 2021 at 11:20PM by ksr_malware
via reddit https://ift.tt/3jscUXe
reddit
Franken-phish: TodayZoo built from other phishing kits - Microsoft...
Posted in r/netsec by u/ksr_malware • 6 points and 0 comments
Server overload by enforcing DHE key exchange using minimal bandwidth
https://ift.tt/3GbRQho
Submitted October 23, 2021 at 01:15AM by c0r0n3r
via reddit https://ift.tt/2XF3AYk
https://ift.tt/3GbRQho
Submitted October 23, 2021 at 01:15AM by c0r0n3r
via reddit https://ift.tt/2XF3AYk
GitHub
GitHub - c0r0n3r/dheater: D(HE)ater is a proof of concept implementation of the D(HE)at attack (CVE-2002-20001) through which…
D(HE)ater is a proof of concept implementation of the D(HE)at attack (CVE-2002-20001) through which denial-of-service can be performed by enforcing the Diffie-Hellman key exchange. (read-only clon...
Discourse SNS webhook RCE
https://ift.tt/3C7Y2o1
Submitted October 23, 2021 at 04:50PM by 0xdea
via reddit https://ift.tt/3b52vfy
https://ift.tt/3C7Y2o1
Submitted October 23, 2021 at 04:50PM by 0xdea
via reddit https://ift.tt/3b52vfy
Discourse SNS webhook RCE
Discourse SNS webhook RCE :: 0day.click
I was staring at this part of the code for way too long already:
module Jobs class ConfirmSnsSubnoscription < ::Jobs::Base sidekiq_options retry: false def execute(args) return unless raw = args[:raw].presence return unless json = args[:json].presence return…
module Jobs class ConfirmSnsSubnoscription < ::Jobs::Base sidekiq_options retry: false def execute(args) return unless raw = args[:raw].presence return unless json = args[:json].presence return…
A step-by-step analysis of a new version of Darkside Ransomware (Colonial Pipeline attack)
https://ift.tt/3wHQVQC
Submitted October 23, 2021 at 06:36PM by CyberMasterV
via reddit https://ift.tt/3ppGKiS
https://ift.tt/3wHQVQC
Submitted October 23, 2021 at 06:36PM by CyberMasterV
via reddit https://ift.tt/3ppGKiS
reddit
A step-by-step analysis of a new version of Darkside Ransomware...
Posted in r/netsec by u/CyberMasterV • 9 points and 0 comments
Hi guys, we found a critical vulnerability (use after free in GPU) in Google Chrome. Google rewarded us $6K for it. We shared the story on how we found it from the blog post. Also, you can find the github repository if you want to check that out. Let me know your thoughts under here please!
https://ift.tt/3B2clcA
Submitted October 23, 2021 at 06:58PM by bige-b
via reddit https://ift.tt/3BjQjSV
https://ift.tt/3B2clcA
Submitted October 23, 2021 at 06:58PM by bige-b
via reddit https://ift.tt/3BjQjSV
SecurityForEveryone.com
Google Chrome Vulnerability Worth for $6K: Use After Free (CVE-2021-30573)
As the S4E team, we found the use after free vulnerability that we detected in the latest version of Google Chrome. Although we focus on customer feedback on our products in the early stage of our startup, we conduct various vulnerability studies and challenging…
ua-parser-js package compromised in supply chain attack
https://ift.tt/3prpARZ
Submitted October 24, 2021 at 12:00AM by tombob51
via reddit https://ift.tt/3GjuIh8
https://ift.tt/3prpARZ
Submitted October 24, 2021 at 12:00AM by tombob51
via reddit https://ift.tt/3GjuIh8
Hackaday
Supply Chain Attack: NPM Library Used By Facebook And Others Was Compromised
Here at Hackaday we love the good kinds of hacks, but now and then we need to bring up a less good kind. Today it was learned that the NPM package ua-parser-js was compromised, and any software usi…
Microsoft no longer signs Windows drivers for Process Hacker
https://ift.tt/3pu7Yoo
Submitted October 24, 2021 at 02:13PM by Titokhan
via reddit https://ift.tt/2Zm7rdu
https://ift.tt/3pu7Yoo
Submitted October 24, 2021 at 02:13PM by Titokhan
via reddit https://ift.tt/2Zm7rdu
EFF's Short Wordlist #2, but it's reformatted to be easier to print and use!
https://ift.tt/3mkVHhe
Submitted October 25, 2021 at 01:30AM by saeky
via reddit https://ift.tt/2XGdXuZ
https://ift.tt/3mkVHhe
Submitted October 25, 2021 at 01:30AM by saeky
via reddit https://ift.tt/2XGdXuZ
Google Docs
printable EFF's short wordlist #2.pdf
Abusing Public Infrastructure to Build Your Own VirusTotal for Email: An Open-Source Secure Email Gateway Evaluation Toolkit
https://ift.tt/3EgMTCd
Submitted October 25, 2021 at 07:18AM by Jumpy_Resolution3089
via reddit https://ift.tt/3GhPddV
https://ift.tt/3EgMTCd
Submitted October 25, 2021 at 07:18AM by Jumpy_Resolution3089
via reddit https://ift.tt/3GhPddV
GitHub
GitHub - Rices/Phishious: An open-source Secure Email Gateway (SEG) evaluation toolkit designed for red-teamers.
An open-source Secure Email Gateway (SEG) evaluation toolkit designed for red-teamers. - GitHub - Rices/Phishious: An open-source Secure Email Gateway (SEG) evaluation toolkit designed for red-team...
GitLab CE CVE-2021-22205 in the wild
https://ift.tt/3jygrDv
Submitted October 25, 2021 at 12:56PM by 0xdea
via reddit https://ift.tt/3GiCY0J
https://ift.tt/3jygrDv
Submitted October 25, 2021 at 12:56PM by 0xdea
via reddit https://ift.tt/3GiCY0J
HN Security
GitLab CE CVE-2021-22205 in the wild - HN Security
A few months ago one of our customers found two suspicious user accounts with admin rights on its Internet-exposed GitLab […]