Turning off Wi-Fi & Bluetooth interfaces automatically in iOS
https://ift.tt/3mOMLUh
Submitted January 03, 2022 at 01:20AM by hoytva
via reddit https://ift.tt/3G3D9g1
https://ift.tt/3mOMLUh
Submitted January 03, 2022 at 01:20AM by hoytva
via reddit https://ift.tt/3G3D9g1
Medium
Using iOS Shortcut Automations to Automatically Turn Off Wi-Fi & Bluetooth Interfaces
Automatically disable Wi-Fi & Bluetooth on iOS Based on Triggers
C++ Memory Corruption (std::vector) - part 2
https://ift.tt/3zhCrZX
Submitted January 03, 2022 at 11:08AM by Gallus
via reddit https://ift.tt/3qFwamR
https://ift.tt/3zhCrZX
Submitted January 03, 2022 at 11:08AM by Gallus
via reddit https://ift.tt/3qFwamR
blog.infosectcbr.com.au
C++ Memory Corruption (std::vector) - part 2
Summary This is the 2nd part of the C++ memory corruption series*. In this post, we'll look at corrupting the std::vector class in Linux and...
google/log4jscanner: A log4j vulnerability filesystem scanner and Go package for analyzing JAR files.
https://ift.tt/3JzNwdw
Submitted January 03, 2022 at 01:39PM by maryetan
via reddit https://ift.tt/3HpiyTo
https://ift.tt/3JzNwdw
Submitted January 03, 2022 at 01:39PM by maryetan
via reddit https://ift.tt/3HpiyTo
GitHub
GitHub - google/log4jscanner: A log4j vulnerability filesystem scanner and Go package for analyzing JAR files.
A log4j vulnerability filesystem scanner and Go package for analyzing JAR files. - GitHub - google/log4jscanner: A log4j vulnerability filesystem scanner and Go package for analyzing JAR files.
/r/netsec's Q1 2022 Information Security Hiring Thread
OverviewIf you have open positions at your company for information security professionals and would like to hire from the /r/netsec user base, please leave a comment detailing any open job listings at your company.We would also like to encourage you to post internship positions as well. Many of our readers are currently in school or are just finishing their education.Please reserve top level comments for those posting open positions.Rules & GuidelinesInclude the company name in the post. If you want to be topsykret, go recruit elsewhere. Include the geographic location of the position along with the availability of relocation assistance or remote work.If you are a third party recruiter, you must disclose this in your posting.Please be thorough and upfront with the position details.Use of non-hr'd (realistic) requirements is encouraged.While it's fine to link to the position on your companies website, provide the important details in the comment.Mention if applicants should apply officially through HR, or directly through you.Please clearly list citizenship, visa, and security clearance requirements.You can see an example of acceptable posts by perusing past hiring threads.FeedbackFeedback and suggestions are welcome, but please don't hijack this thread (use moderator mail instead.)
Submitted January 03, 2022 at 08:45PM by ranok
via reddit https://ift.tt/3qCOqgs
OverviewIf you have open positions at your company for information security professionals and would like to hire from the /r/netsec user base, please leave a comment detailing any open job listings at your company.We would also like to encourage you to post internship positions as well. Many of our readers are currently in school or are just finishing their education.Please reserve top level comments for those posting open positions.Rules & GuidelinesInclude the company name in the post. If you want to be topsykret, go recruit elsewhere. Include the geographic location of the position along with the availability of relocation assistance or remote work.If you are a third party recruiter, you must disclose this in your posting.Please be thorough and upfront with the position details.Use of non-hr'd (realistic) requirements is encouraged.While it's fine to link to the position on your companies website, provide the important details in the comment.Mention if applicants should apply officially through HR, or directly through you.Please clearly list citizenship, visa, and security clearance requirements.You can see an example of acceptable posts by perusing past hiring threads.FeedbackFeedback and suggestions are welcome, but please don't hijack this thread (use moderator mail instead.)
Submitted January 03, 2022 at 08:45PM by ranok
via reddit https://ift.tt/3qCOqgs
Malicious Telegram Installer Drops Purple Fox Rootkit
https://ift.tt/3zkRceo
Submitted January 03, 2022 at 08:09PM by woja111
via reddit https://ift.tt/31lR9CD
https://ift.tt/3zkRceo
Submitted January 03, 2022 at 08:09PM by woja111
via reddit https://ift.tt/31lR9CD
Minerva-Labs
Malicious Telegram Installer Drops Purple Fox Rootkit
A new malware which drops a Purple Fox rootkit is spreading through a malicious Telegram installer.
Vulnerability in log4j 2.17.0 more hype than substance | LunaSec
https://ift.tt/3ELXhBF
Submitted January 03, 2022 at 09:58PM by breadchris
via reddit https://ift.tt/3pNy59C
https://ift.tt/3ELXhBF
Submitted January 03, 2022 at 09:58PM by breadchris
via reddit https://ift.tt/3pNy59C
www.lunasec.io
Vulnerability in log4j 2.17.0 more hype than substance | LunaSec
Understanding what is important to focus on when fixing Log4j vulnerabilities at your company.
One of my better-documented exploits, CVE-2017-5816 whitepaper
https://ift.tt/3JDK6X5
Submitted January 03, 2022 at 11:53PM by oxagast
via reddit https://ift.tt/3qOiczf
https://ift.tt/3JDK6X5
Submitted January 03, 2022 at 11:53PM by oxagast
via reddit https://ift.tt/3qOiczf
oxagast.org oxasploits
CVE-2017-5816 Whitepaper
Background
A Beginner's Story on How a Cheapo Standard Issue Router was hacked.
https://ift.tt/3zkg1XG
Submitted January 03, 2022 at 11:58PM by secnigma
via reddit https://ift.tt/3pOa8yZ
https://ift.tt/3zkg1XG
Submitted January 03, 2022 at 11:58PM by secnigma
via reddit https://ift.tt/3pOa8yZ
SecNigma
The Story of How I Hacked my ISP’s Cheapo Standard Issue Router
Prelude OptiLink is a company based on India that specializes in manufacturing Networking Devices. Two of the largest Internet Service Providers in this country have provided / still providing Opti…
Domain Persistence - AdminSDHolder
https://ift.tt/3JDchpd
Submitted January 04, 2022 at 06:37PM by netbiosX
via reddit https://ift.tt/3mV28dw
https://ift.tt/3JDchpd
Submitted January 04, 2022 at 06:37PM by netbiosX
via reddit https://ift.tt/3mV28dw
Penetration Testing Lab
Domain Persistence – AdminSDHolder
Utilizing existing Microsoft features for offensive operations is very common during red team assessments as it provides the opportunity to blend in with the environment and stay undetected. Micros…
Cache Poisoning at Scale
https://ift.tt/3JeJp6e
Submitted January 04, 2022 at 06:33PM by albinowax
via reddit https://ift.tt/3JHQv3o
https://ift.tt/3JeJp6e
Submitted January 04, 2022 at 06:33PM by albinowax
via reddit https://ift.tt/3JHQv3o
Sears Garage Door Signal Reverse Engineering
https://ift.tt/3HBmKzs
Submitted January 04, 2022 at 09:30PM by mdulin2
via reddit https://ift.tt/3eMS3Lq
https://ift.tt/3HBmKzs
Submitted January 04, 2022 at 09:30PM by mdulin2
via reddit https://ift.tt/3eMS3Lq
reddit
Sears Garage Door Signal Reverse Engineering
Posted in r/netsec by u/mdulin2 • 2 points and 0 comments
Inoitsu email breach analysis gives a summary of data found in all breaches for an address. This makes it much easier to tell what info may be at risk. Shows breakdowns of the type of data found and an unique Relative Exposure Rating to help make sense of the overall data risk. Instant results.
https://ift.tt/3HsIm14
Submitted January 05, 2022 at 08:58AM by inoitsu
via reddit https://ift.tt/3JI7RNW
https://ift.tt/3HsIm14
Submitted January 05, 2022 at 08:58AM by inoitsu
via reddit https://ift.tt/3JI7RNW
Hotsheet
Email address breach detection and hacked data summary.
Rank your email address's breach exposure level from 1 - 10. Shows correlated personal info from all data breaches and hack events.
Microsoft releases Windows Server Update to fix Remote Desktop Issues
https://ift.tt/3EZE7Iy
Submitted January 05, 2022 at 12:19PM by 97-007
via reddit https://ift.tt/3mZxcZL
https://ift.tt/3EZE7Iy
Submitted January 05, 2022 at 12:19PM by 97-007
via reddit https://ift.tt/3mZxcZL
The Cybersecurity Times
Microsoft releases Windows Server Update to fix Remote Desktop Issues - The Cybersecurity Times
Microsoft released a crucial emergency out-of-band update for Windows Server addressing the Remote Desktop Issue.
The Kubernetes (K8s) Network Security Effect
https://ift.tt/3HArZPT
Submitted January 05, 2022 at 02:16PM by catgoddim
via reddit https://ift.tt/3sW9zFd
https://ift.tt/3HArZPT
Submitted January 05, 2022 at 02:16PM by catgoddim
via reddit https://ift.tt/3sW9zFd
ARMO
The Kubernetes (K8s) Network Security Effect | ARMO
Learn everything about the Kubernetes (K8s) network security effect from Amir Kaushansky, ARMO's VP Product. Read this insightful blog post here!
We desperately need a way to rapidly notify people of high-impact vulnerabilities, so I built one
https://ift.tt/3EVLlNT
Submitted January 05, 2022 at 08:09PM by sullivanmatt
via reddit https://ift.tt/3mTEgqX
https://ift.tt/3EVLlNT
Submitted January 05, 2022 at 08:09PM by sullivanmatt
via reddit https://ift.tt/3mTEgqX
Matt's Life Bytes
We desperately need a way to rapidly notify people of high-impact vulnerabilities, so I built one: BugAlert.org
Introducing bugalert.org, a free and open-source service for alerting security and IT professionals of high-impact and 0day vulnerabilities by email, SMS, and phone calls (and via Twitter).
Best Practices for Securing SSH in 2022
https://ift.tt/3G0Q3Lt
Submitted January 06, 2022 at 12:04AM by old-gregg
via reddit https://ift.tt/331SnTV
https://ift.tt/3G0Q3Lt
Submitted January 06, 2022 at 12:04AM by old-gregg
via reddit https://ift.tt/331SnTV
Goteleport
5 Best Practices for Securing SSH | Teleport
This article explores 5 SSH best practices you should observe to boost the security of your infrastructure.
PPTShots - Unintentionally shared data in PowerPoint presentations
https://ift.tt/3eWcTId
Submitted January 06, 2022 at 02:13AM by df_works
via reddit https://ift.tt/3JVqLB0
https://ift.tt/3eWcTId
Submitted January 06, 2022 at 02:13AM by df_works
via reddit https://ift.tt/3JVqLB0
GitHub
GitHub - dfaram7/pptshots: Finding sensitive information in the trimmed parts of cropped images
Finding sensitive information in the trimmed parts of cropped images - GitHub - dfaram7/pptshots: Finding sensitive information in the trimmed parts of cropped images
SANS Christmas Challenge 2021 - Write-up
https://ift.tt/337rEoS
Submitted January 06, 2022 at 04:39PM by the-useless-one
via reddit https://ift.tt/3JHT9qd
https://ift.tt/337rEoS
Submitted January 06, 2022 at 04:39PM by the-useless-one
via reddit https://ift.tt/3JHT9qd
Tek Fog: An App for Online Troops to Automate Hate, Manipulate Trends
https://ift.tt/3zw0Evp
Submitted January 06, 2022 at 04:10PM by goodwallboy
via reddit https://ift.tt/3qNlPoW
https://ift.tt/3zw0Evp
Submitted January 06, 2022 at 04:10PM by goodwallboy
via reddit https://ift.tt/3qNlPoW
The Wire
Tek Fog: An App With BJP Footprints for Cyber Troops to Automate Hate, Manipulate Trends
The Wire investigates claims behind the use of ‘Tek Fog’, a highly sophisticated app used by online operatives to hijack major social media and encrypted messaging platforms and amplify right-wing propaganda to a domestic audience.
Asimov Security | Enterprise Ready Security Solutions For Robotics
https://ift.tt/3zuZj8n
Submitted January 06, 2022 at 07:44PM by Da5h_Solo
via reddit https://ift.tt/3eZrgM5
https://ift.tt/3zuZj8n
Submitted January 06, 2022 at 07:44PM by Da5h_Solo
via reddit https://ift.tt/3eZrgM5
Asimovsec
Asimov Security | Enterprise Ready Cyber Security For Robotics
Enterprise Ready Cyber Security For Robotics & Robotic Components
Announcing the first open source security tool for Heroku!
https://ift.tt/32SvUc8
Submitted January 06, 2022 at 11:48PM by cloud-defender
via reddit https://ift.tt/3q0SIPH
https://ift.tt/32SvUc8
Submitted January 06, 2022 at 11:48PM by cloud-defender
via reddit https://ift.tt/3q0SIPH
GitHub
GitHub - heroku/heroku-guardian: Easy to use CLI security checks for the Heroku platform. Validate baseline security configurations…
Easy to use CLI security checks for the Heroku platform. Validate baseline security configurations for your own Heroku deployments. - GitHub - heroku/heroku-guardian: Easy to use CLI security check...