NGINX Custom Snippets CVE-2021-25742 Deep Dive
https://ift.tt/3w1nVE0
Submitted October 28, 2021 at 04:30PM by gafnita
via reddit https://ift.tt/3jGwuyY
https://ift.tt/3w1nVE0
Submitted October 28, 2021 at 04:30PM by gafnita
via reddit https://ift.tt/3jGwuyY
blog.lightspin.io
NGINX Custom Snippets CVE-2021-25742
Here's a deep dive into what high severity alert known as CVE-2021-25742 really is and what it means for today’s organizations.
DriverBuddyReloaded - IDA Python noscript to assist with the reverse engineering of Windows kernel drivers
https://ift.tt/3jCZYxN
Submitted October 28, 2021 at 08:56PM by Void_Sec
via reddit https://ift.tt/3jNLX0b
https://ift.tt/3jCZYxN
Submitted October 28, 2021 at 08:56PM by Void_Sec
via reddit https://ift.tt/3jNLX0b
VoidSec
Driver Buddy Reloaded - VoidSec
Driver Buddy Reloaded is an IDA Pro Python plugin that helps automate some tedious Windows Kernel Drivers reverse engineering tasks.
Microsoft finds new macOS vulnerability, Shrootless, that could bypass System Integrity Protection
https://ift.tt/30ZoTVF
Submitted October 28, 2021 at 11:13PM by moviuro
via reddit https://ift.tt/3pJMdRN
https://ift.tt/30ZoTVF
Submitted October 28, 2021 at 11:13PM by moviuro
via reddit https://ift.tt/3pJMdRN
Microsoft Security Blog
Microsoft finds new macOS vulnerability, Shrootless, that could bypass System Integrity Protection | Microsoft Security Blog
Microsoft found a vulnerability (CVE-2021-30892) that could allow an attacker to bypass System Integrity Protection (SIP) in macOS. We shared our findings with Apple via coordinated vulnerability disclosure, and a fix was released October 26.
Technical Advisory – Apple XAR – Arbitrary File Write (CVE-2021-30833)
https://ift.tt/3BiDJ6c
Submitted October 29, 2021 at 01:53AM by digicat
via reddit https://ift.tt/3moYIjz
https://ift.tt/3BiDJ6c
Submitted October 29, 2021 at 01:53AM by digicat
via reddit https://ift.tt/3moYIjz
Nccgroup
Cyber Security Research
Cutting-edge cyber security research from NCC Group. Find public reports, technical advisories, analyses, & other novel insights from our global experts.
Spear phishing with Slackbot
https://ift.tt/3bbG0FP
Submitted October 29, 2021 at 09:01AM by buildingapcin2015
via reddit https://ift.tt/3mldkjY
https://ift.tt/3bbG0FP
Submitted October 29, 2021 at 09:01AM by buildingapcin2015
via reddit https://ift.tt/3mldkjY
Eric Bailey
Spear phishing with Slackbot for fun and profit
You can pretend to be Slackbot, and that’s not great..
Anatomy of a Linux Ransomware Attack | LinuxSecurity.com
https://ift.tt/316pHbj
Submitted October 29, 2021 at 12:48PM by c0r3dump3d
via reddit https://ift.tt/2ZG85mf
https://ift.tt/316pHbj
Submitted October 29, 2021 at 12:48PM by c0r3dump3d
via reddit https://ift.tt/2ZG85mf
Linux Security
Anatomy of a Linux Ransomware Attack | LinuxSecurity.com
Anatomy of a Linux Ransomware Attack - While 85% of ransomware attacks target Windows systems, Linux is becoming an increasingly popular ta
FormatFuzzer: a framework for high-efficiency, high-quality generation and parsing of binary inputs
https://ift.tt/2ZFjzqi
Submitted October 29, 2021 at 01:48PM by 0xdea
via reddit https://ift.tt/3Bsmn6O
https://ift.tt/2ZFjzqi
Submitted October 29, 2021 at 01:48PM by 0xdea
via reddit https://ift.tt/3Bsmn6O
Anatomy of a Linux Ransomware Attack | LinuxSecurity.com
https://ift.tt/316pHbj
Submitted October 29, 2021 at 02:48PM by c0r3dump3d
via reddit https://ift.tt/3pNS48x
https://ift.tt/316pHbj
Submitted October 29, 2021 at 02:48PM by c0r3dump3d
via reddit https://ift.tt/3pNS48x
Linux Security
Anatomy of a Linux Ransomware Attack | LinuxSecurity.com
Anatomy of a Linux Ransomware Attack - While 85% of ransomware attacks target Windows systems, Linux is becoming an increasingly popular ta
Network Capture with Process Name and PID on macOS
https://ift.tt/3GrmX8G
Submitted October 29, 2021 at 07:15PM by c0nsumer
via reddit https://ift.tt/3BlI4FT
https://ift.tt/3GrmX8G
Submitted October 29, 2021 at 07:15PM by c0nsumer
via reddit https://ift.tt/3BlI4FT
reddit
Network Capture with Process Name and PID on macOS
Posted in r/netsec by u/c0nsumer • 2 points and 0 comments
How to takedown a phishing site - this method has worked well for me.
https://ift.tt/3Eu5L0I
Submitted October 29, 2021 at 11:24PM by Seaerkin2
via reddit https://ift.tt/2ZyDAOO
https://ift.tt/3Eu5L0I
Submitted October 29, 2021 at 11:24PM by Seaerkin2
via reddit https://ift.tt/2ZyDAOO
Guardyourdomain
Phishing Site Takedown | DomainGuard | Guard your Domain with Proactive Phishing and Fraud protection.
We guard your domain, so you have pace of mind. Domain Monitoring and Proactive Phishing Protection.
I created a full stack open source web application to create Vulnerability Disclosure Programs. Check it out!
https://ift.tt/2ZAuOjb
Submitted October 29, 2021 at 10:52PM by Green_Same
via reddit https://ift.tt/3nGoD5F
https://ift.tt/2ZAuOjb
Submitted October 29, 2021 at 10:52PM by Green_Same
via reddit https://ift.tt/3nGoD5F
GitHub
GitHub - parikhakshat/openvdp: Open Source Vulnerability Disclosure Program
Open Source Vulnerability Disclosure Program. Contribute to parikhakshat/openvdp development by creating an account on GitHub.
Introducing D-Modem: A software SIP modem
https://ift.tt/2XYdnJ3
Submitted October 30, 2021 at 02:06AM by b1x3r
via reddit https://ift.tt/3Bmg9Wc
https://ift.tt/2XYdnJ3
Submitted October 30, 2021 at 02:06AM by b1x3r
via reddit https://ift.tt/3Bmg9Wc
Aon
Introducing D-Modem: A software SIP modem | Aon
Even in 2021, Aon’s Security Testing practice occasionally receives requests from our clients for penetration testing of systems accessible over dialup modem. These legacy systems have sometimes been running for decades, and often have never undergone any…
Killing bugs ... one vulnerability report at a time - on how vulnerabilities in FreeSWITCH were discovered, reported and fixed
https://ift.tt/3Gyf8y1
Submitted October 30, 2021 at 11:01AM by EnableSecurity
via reddit https://ift.tt/3vZNMfn
https://ift.tt/3Gyf8y1
Submitted October 30, 2021 at 11:01AM by EnableSecurity
via reddit https://ift.tt/3vZNMfn
Rtcsec
Killing bugs ... one vulnerability report at a time
This is the story behind the latest FreeSWITCH advisories and one sleepless night we ended up with 4 vulnerabilities that needed reporting. Then, one more vulnerability found due to a bug in our own software. We tell how these flaws were discovered, reported…
EMBArk: firmware analysis reaches milestone - With the implementation of a new, user-friendly interface, the Firmware Analysis tool – EMBA – has taken the next step in its development.
https://ift.tt/2ZCv8P9
Submitted October 31, 2021 at 01:47AM by _m-1-k-3_
via reddit https://ift.tt/3msUM16
https://ift.tt/2ZCv8P9
Submitted October 31, 2021 at 01:47AM by _m-1-k-3_
via reddit https://ift.tt/3msUM16
GitHub
GitHub - e-m-b-a/embark: EMBArk - The firmware security scanning environment
EMBArk - The firmware security scanning environment - GitHub - e-m-b-a/embark: EMBArk - The firmware security scanning environment
Trojan Source: Invisible Vulnerabilities (pdf)
https://ift.tt/3mv3SdH
Submitted November 01, 2021 at 10:20AM by ScottContini
via reddit https://ift.tt/2ZJYCdC
https://ift.tt/3mv3SdH
Submitted November 01, 2021 at 10:20AM by ScottContini
via reddit https://ift.tt/2ZJYCdC
Detecting MFASweep using Azure Sentinel
https://ift.tt/3nP5M8q
Submitted November 01, 2021 at 01:19PM by wez32
via reddit https://ift.tt/3jTsU4P
https://ift.tt/3nP5M8q
Submitted November 01, 2021 at 01:19PM by wez32
via reddit https://ift.tt/3jTsU4P
Zolder B.V.
Detecting MFASweep using Azure Sentinel
Many companies are using cloud services such as Microsoft 365 for email, file sharing and communicating. If an attacker gains access to valid credentials that allows them to authenticate to the acc…
From Zero to Domain Admin
https://ift.tt/3msNL0q
Submitted November 01, 2021 at 05:13PM by TheDFIRReport
via reddit https://ift.tt/3jSWnvq
https://ift.tt/3msNL0q
Submitted November 01, 2021 at 05:13PM by TheDFIRReport
via reddit https://ift.tt/3jSWnvq
The DFIR Report
From Zero to Domain Admin
Intro This report will go through an intrusion from July that began with an email, which included a link to Google’s Feed Proxy service that was used to download a malicious Word document. Up…
Protecting WordPress with Open Source Web Application (WAF) Firewall ModSecurity + OWASP Core Rule Set (CRS)
https://ift.tt/3Ez8pCm
Submitted November 01, 2021 at 07:01PM by jonas02
via reddit https://ift.tt/3EB38Kk
https://ift.tt/3Ez8pCm
Submitted November 01, 2021 at 07:01PM by jonas02
via reddit https://ift.tt/3EB38Kk
WPSec
Protecting WordPress with Open Source Web Application Firewall ModSecurity - WPSec
In this guide you will learn how to install and protect WordPress with the Open Source Web Application Firewall (WAF) ModSecurity. We will also install the latest protection rules from the OWASP Core Rule Set (CRS). A WAF is a great addition to the Cyber…
Exploiting Grandstream HT801 ATA (CVE-2021-37748, CVE-2021-37915)
https://ift.tt/3CDWz9w
Submitted November 01, 2021 at 08:25PM by 0x4141cafe
via reddit https://ift.tt/2ZOE7fV
https://ift.tt/3CDWz9w
Submitted November 01, 2021 at 08:25PM by 0x4141cafe
via reddit https://ift.tt/2ZOE7fV
Secforce
We are a team of exceptional security consultants, with the knowledge and insight to identify vulnerabilities and help you secure your systems
Ransomware attack hits N.L. health-care systems
https://ift.tt/3jYeuQG
Submitted November 01, 2021 at 10:41PM by LDWoodworth
via reddit https://ift.tt/3Bxb1P3
https://ift.tt/3jYeuQG
Submitted November 01, 2021 at 10:41PM by LDWoodworth
via reddit https://ift.tt/3Bxb1P3
CBC
Possible attack hits N.L. health-care system, causing 3rd day of provincewide disruptions | CBC News
A cyberattack appears to be behind a provincewide disruption of health-care services in Newfoundland and Labrador that has affected thousands of appointments and procedures, including those involving COVID-19 testing.
Trick & Treat! 🎃 Paying Leets and Sweets for Linux Kernel privescs and k8s escapes
https://ift.tt/3GFCIJi
Submitted November 02, 2021 at 01:31AM by sirdarckcat
via reddit https://ift.tt/3btAVZu
https://ift.tt/3GFCIJi
Submitted November 02, 2021 at 01:31AM by sirdarckcat
via reddit https://ift.tt/3btAVZu
Google Online Security Blog
Trick & Treat! 🎃 Paying Leets and Sweets for Linux Kernel privescs and k8s escapes
Posted by Eduardo Vela, Google Bug Hunters Team Starting today and for the next 3 months (until January 31 2022), we will pay 31,337 USD to...