Taking the pain out of C2 infrastructure (Part 2)
https://ift.tt/3DnqN0A
Submitted November 16, 2021 at 12:15AM by scopedsecurity
via reddit https://ift.tt/3ngNyO7
https://ift.tt/3DnqN0A
Submitted November 16, 2021 at 12:15AM by scopedsecurity
via reddit https://ift.tt/3ngNyO7
Substack
Taking the pain out of C2 infrastructure (Part 2)
Modernizing the CIA's operational infrastructure. Multi/Hybrid Cloud Docker Swarm clusters and mesh VPN networks 🐿
AFL++ on Android with QEMU support
https://ift.tt/3nj6Oul
Submitted November 16, 2021 at 06:46PM by Gr33nh4tt
via reddit https://ift.tt/3HnGE1T
https://ift.tt/3nj6Oul
Submitted November 16, 2021 at 06:46PM by Gr33nh4tt
via reddit https://ift.tt/3HnGE1T
Alephsecurity
AFL++ on Android with QEMU support
Seamlessly Discovering Netgear Universal Plug-and-Pwn (UPnP) 0-days (Even More Netgear Pwnage)
https://ift.tt/3Fr97C9
Submitted November 16, 2021 at 06:34PM by pocorgtfoftw
via reddit https://ift.tt/3Dm04kZ
https://ift.tt/3Fr97C9
Submitted November 16, 2021 at 06:34PM by pocorgtfoftw
via reddit https://ift.tt/3Dm04kZ
Grimm-Co
Seamlessly Discovering Netgear Universal Plug-and-Pwn (UPnP) 0-days
Introduction A Vulnerability Researcher’s Favorite Stress Relief Continuing in our series of research findings involving Netgear 1 produc...
INTENT 2021: Security Research Summit is LIVE!
https://ift.tt/3CmP2ej
Submitted November 16, 2021 at 06:56PM by IdoHoo
via reddit https://ift.tt/3cedeF3
https://ift.tt/3CmP2ej
Submitted November 16, 2021 at 06:56PM by IdoHoo
via reddit https://ift.tt/3cedeF3
On24
INTENT 2021: Security Research Summit
CVE-2021-41228: TensorFlow Python Code Injection - More eval() Woes
https://ift.tt/3HlO8SZ
Submitted November 16, 2021 at 08:13PM by SRMish3
via reddit https://ift.tt/3ow9JiV
https://ift.tt/3HlO8SZ
Submitted November 16, 2021 at 08:13PM by SRMish3
via reddit https://ift.tt/3ow9JiV
JFrog
New code injection vulnerability discovered in TensorFlow
JFrog Security research team identifies vulnerability in TensorFlow allowing an attacker to insert a malicious input that runs arbitrary Python code. Learn more >
BazarLoader ‘call me back’ attack abuses Windows 10 Apps mechanism
https://ift.tt/30kWc5I
Submitted November 16, 2021 at 09:29PM by ksr_malware
via reddit https://ift.tt/3kJLgFH
https://ift.tt/30kWc5I
Submitted November 16, 2021 at 09:29PM by ksr_malware
via reddit https://ift.tt/3kJLgFH
Sophos News
BazarLoader ‘call me back’ attack abuses Windows 10 Apps mechanism
The unusual technique invokes the Windows App Installer to deliver malware
Cryptominer attacks are on the rise. Muhstik Botnet attacking a Kubernetes Pod
https://ift.tt/31WLv9M
Submitted November 16, 2021 at 09:54PM by MiguelHzBz
via reddit https://ift.tt/3DyMris
https://ift.tt/31WLv9M
Submitted November 16, 2021 at 09:54PM by MiguelHzBz
via reddit https://ift.tt/3DyMris
Sysdig
Hands-On Muhstik Botnet: crypto-mining attacks targeting Kubernetes – Sysdig
How to detect the Muhstik Botnet attacking a Kubernetes Pod to control the Pod and mine cryptocurrency and DDoS.
Windows Security Updates for Hackers
https://ift.tt/30cT77a
Submitted November 17, 2021 at 12:32PM by 0xdea
via reddit https://ift.tt/30sRoec
https://ift.tt/30cT77a
Submitted November 17, 2021 at 12:32PM by 0xdea
via reddit https://ift.tt/30sRoec
bitsadm.in
Windows Security Updates for Hackers « Bitsadmin's blog - Mystery guest in your IT infrastructure
Frequently colleagues and clients get to my (virtual) desk and pose the following question to me: “I know which patches (KBs) are installed on a Windows syst...
Easily Identify Malicious Servers on the Internet with JARM.
https://ift.tt/38RZwXG
Submitted November 17, 2021 at 09:47PM by j_b_11
via reddit https://ift.tt/3FjPoUG
https://ift.tt/38RZwXG
Submitted November 17, 2021 at 09:47PM by j_b_11
via reddit https://ift.tt/3FjPoUG
Salesforce Engineering Blog
Easily Identify Malicious Servers on the Internet with JARM - Salesforce Engineering Blog
JARM is an active Transport Layer Security server fingerprinting tool that provides the ability to identify and group malicious servers.
CVE-2021-41349 Exchange XSS PoC
https://ift.tt/3wTB4PG
Submitted November 16, 2021 at 07:52PM by 0x0021h
via reddit https://ift.tt/3CCLZPj
https://ift.tt/3wTB4PG
Submitted November 16, 2021 at 07:52PM by 0x0021h
via reddit https://ift.tt/3CCLZPj
Cobalt Strike: Decrypting Obfuscated Traffic – Part 4
https://ift.tt/3HxJyRt
Submitted November 18, 2021 at 02:35AM by ksr_malware
via reddit https://ift.tt/3nshPde
https://ift.tt/3HxJyRt
Submitted November 18, 2021 at 02:35AM by ksr_malware
via reddit https://ift.tt/3nshPde
TPM sniffing
https://ift.tt/3oDfyep
Submitted November 18, 2021 at 08:49AM by Gallus
via reddit https://ift.tt/3ntcFNK
https://ift.tt/3oDfyep
Submitted November 18, 2021 at 08:49AM by Gallus
via reddit https://ift.tt/3ntcFNK
reddit
TPM sniffing
Posted in r/netsec by u/Gallus • 220 points and 32 comments
How to build a network scanning analysis platform — Part II
https://ift.tt/3DtuhP7
Submitted November 18, 2021 at 05:08PM by ntestoc3
via reddit https://ift.tt/3qOUSmr
https://ift.tt/3DtuhP7
Submitted November 18, 2021 at 05:08PM by ntestoc3
via reddit https://ift.tt/3qOUSmr
When You sysWhisper Loud Enough for AV to Hear You
https://ift.tt/3coR8zD
Submitted November 18, 2021 at 05:06PM by CaptMeelo
via reddit https://ift.tt/30vVVfY
https://ift.tt/3coR8zD
Submitted November 18, 2021 at 05:06PM by CaptMeelo
via reddit https://ift.tt/30vVVfY
Hack.Learn.Share
When You sysWhisper Loud Enough for AV to Hear You
Evading Windows Defender when SysWhisper got caught!
[Conti] Ransomware Group In-Depth Analysis
https://ift.tt/3cFHU2h
Submitted November 18, 2021 at 07:47PM by Egesploit
via reddit https://ift.tt/3wXBsg6
https://ift.tt/3cFHU2h
Submitted November 18, 2021 at 07:47PM by Egesploit
via reddit https://ift.tt/3wXBsg6
PRODAFT
PRODAFT – Cyber Threat Intelligence and Risk Intelligence
Explore advanced cybersecurity solutions, providing proactive defense against emerging threats. Learn more about our tailored intelligence, and cybercrime investigation solutions.
The Art of PerSwaysion: Investigation of a Long-Lived Phishing Kit
https://ift.tt/3238vnA
Submitted November 18, 2021 at 07:40PM by 0xDAV1D
via reddit https://ift.tt/32dFpCe
https://ift.tt/3238vnA
Submitted November 18, 2021 at 07:40PM by 0xDAV1D
via reddit https://ift.tt/32dFpCe
www.seclarity.io
Blog - The Art of PerSwaysion: Investigation of a Long-Lived Phishing Kit
Instant. Actionable. Insights.
Backdooring Rust crates for fun and profit
https://ift.tt/3DrHE2n
Submitted November 18, 2021 at 10:16PM by Gallus
via reddit https://ift.tt/328fXOl
https://ift.tt/3DrHE2n
Submitted November 18, 2021 at 10:16PM by Gallus
via reddit https://ift.tt/328fXOl
Sylvain Kerkour
Backdooring Rust crates for fun and profit
Supply chains attacks are all the rage these days, whether to deliver RATs, cryptocurrencies miners, or credential stealers. In Rust, packages are called crates and are (most of the time) hosted on a central repository: https://crates.io for better discoverability.…
Python Malware Imitates Signed PyPI Traffic in Novel Exfiltration Technique
https://ift.tt/3oFlkMK
Submitted November 18, 2021 at 11:43PM by SRMish3
via reddit https://ift.tt/3cmYYdb
https://ift.tt/3oFlkMK
Submitted November 18, 2021 at 11:43PM by SRMish3
via reddit https://ift.tt/3cmYYdb
JFrog
Python Malware Imitates Signed PyPI Traffic in Novel Exfiltration Technique
Software supply chain security threat: automated scanning of Python packages in the PyPI repository uncovered stealthy malware and more. Find out about our latest findings.
How we protect our most sensitive secrets from the most determined attackers
https://ift.tt/3qNqGYK
Submitted November 19, 2021 at 12:14AM by BasedSweet
via reddit https://ift.tt/3csOr06
https://ift.tt/3qNqGYK
Submitted November 19, 2021 at 12:14AM by BasedSweet
via reddit https://ift.tt/3csOr06
CVE-2021-37580 Apache ShenYu 2.3.0/2.4.0 authentication bypass
https://ift.tt/3kN1a1V
Submitted November 19, 2021 at 10:59AM by 0x0021h
via reddit https://ift.tt/3nxUzKw
https://ift.tt/3kN1a1V
Submitted November 19, 2021 at 10:59AM by 0x0021h
via reddit https://ift.tt/3nxUzKw
Prevent Secrets Leaks at Scale in Repositories
https://ift.tt/3kS54qi
Submitted November 19, 2021 at 07:43PM by epiblas279
via reddit https://ift.tt/3nvN6f1
https://ift.tt/3kS54qi
Submitted November 19, 2021 at 07:43PM by epiblas279
via reddit https://ift.tt/3nvN6f1