The Bvp47 - a Top-tier Backdoor of US NSA Equation Group
https://ift.tt/Cnih1MY
Submitted February 24, 2022 at 03:10PM by eberkut
via reddit https://ift.tt/56ycbYN
https://ift.tt/Cnih1MY
Submitted February 24, 2022 at 03:10PM by eberkut
via reddit https://ift.tt/56ycbYN
www.pangulab.cn
The Bvp47 - a Top-tier Backdoor of US NSA Equation Group
Understanding Threat Actor’s by @berkdusunur
https://ift.tt/Pi4SoTR
Submitted February 25, 2022 at 12:15AM by EyeAccomplished5529
via reddit https://ift.tt/LBHgWnp
https://ift.tt/Pi4SoTR
Submitted February 25, 2022 at 12:15AM by EyeAccomplished5529
via reddit https://ift.tt/LBHgWnp
Medium
Understanding Threat Actors
Hello everyone. I am so excited to publish my second article in 2022 which is ‘Understanding Threat Actors’.
A Detailed Analysis of the LockBit Ransomware
https://ift.tt/0ci5NLs
Submitted February 25, 2022 at 01:19AM by CyberMasterV
via reddit https://ift.tt/nfIUe4o
https://ift.tt/0ci5NLs
Submitted February 25, 2022 at 01:19AM by CyberMasterV
via reddit https://ift.tt/nfIUe4o
HermeticWiper: What We Know About New Malware Targeting Ukrainian Infrastructure (Thus Far)
https://ift.tt/N1u7MQS
Submitted February 25, 2022 at 05:05AM by jat0369
via reddit https://ift.tt/WVb0qc8
https://ift.tt/N1u7MQS
Submitted February 25, 2022 at 05:05AM by jat0369
via reddit https://ift.tt/WVb0qc8
Cyberark
HermeticWiper: What We Know About New Malware Targeting Ukrainian Infrastructure (Thus Far)
As geopolitical tensions continue to mount, reports are emerging of a new wiper malware targeting Ukrainian infrastructure, such as government departments. Symantec and ESET research first tweeted...
BGP Security in 2021
https://ift.tt/DYm3JiX
Submitted February 25, 2022 at 08:23PM by danyork
via reddit https://ift.tt/yx4EnQi
https://ift.tt/DYm3JiX
Submitted February 25, 2022 at 08:23PM by danyork
via reddit https://ift.tt/yx4EnQi
reddit
BGP Security in 2021
Posted in r/netsec by u/danyork • 10 points and 0 comments
Catching bugs in VMware: Carbon Black Cloud Workload Appliance and vRealize Operations Manager
https://ift.tt/tnkd5G3
Submitted February 25, 2022 at 07:15PM by scopedsecurity
via reddit https://ift.tt/EMpYqoN
https://ift.tt/tnkd5G3
Submitted February 25, 2022 at 07:15PM by scopedsecurity
via reddit https://ift.tt/EMpYqoN
PT SWARM
Catching bugs in VMware: Carbon Black Cloud Workload Appliance and vRealize Operations Manager
Last year we found a lot of exciting vulnerabilities in VMware products. The vendor was notified and they have since been patched. This is the second part of our research. This article covers an Authentication Bypass in VMware Carbon Black Cloud Workload…
Pentest-tool: Simple and secure web deployment for pentest and redteam with simwigo
https://ift.tt/Vvxc2j9
Submitted February 26, 2022 at 12:10AM by B1che
via reddit https://ift.tt/zPl1JU2
https://ift.tt/Vvxc2j9
Submitted February 26, 2022 at 12:10AM by B1che
via reddit https://ift.tt/zPl1JU2
GitHub
GitHub - 8iche/simwigo: Simwigo is a cross-platform tool, written in Go, to simplify the deployment of a web service.
Simwigo is a cross-platform tool, written in Go, to simplify the deployment of a web service. - GitHub - 8iche/simwigo: Simwigo is a cross-platform tool, written in Go, to simplify the deployment o...
How to Decrypt the Files Encrypted by the Hive Ransomware
https://ift.tt/wAu2F8b
Submitted February 26, 2022 at 02:44AM by CyberMasterV
via reddit https://ift.tt/gexVkt8
https://ift.tt/wAu2F8b
Submitted February 26, 2022 at 02:44AM by CyberMasterV
via reddit https://ift.tt/gexVkt8
LIFARS, a SecurityScorecard company
How to Decrypt the Files Encrypted by the Hive Ransomware
South Korean researchers published an academic paper that presents a method to decrypt the files encrypted by the Hive Ransomware . This article How to Decrypt the Files Encrypted by the Hive Ransomware
The Ransomware Files podcast: In 2019, 23 cities in Texas were infected with the REvil ransomware in a huge attack. The cities recovered quickly but a MSP, whose ScreenConnect software was exploited, was irreparably damaged. It's a heartbreaking story that reveals the human cost of ransomware.
https://ift.tt/PrbN1Lk
Submitted February 26, 2022 at 06:59AM by ferrochron1
via reddit https://ift.tt/ryId5zi
https://ift.tt/PrbN1Lk
Submitted February 26, 2022 at 06:59AM by ferrochron1
via reddit https://ift.tt/ryId5zi
Anchor
The Ransomware Files • A podcast on Anchor
The Ransomware Files podcast tells the harrowing stories of technology experts who have fought back against ransomware, which is one of the greatest crime waves the internet has ever seen. It features in-the-trenches stories about how organisations recovered…
Fuzzing Network Servers with De-Socketing
https://ift.tt/K14UxrG
Submitted February 26, 2022 at 10:49PM by martinclauss
via reddit https://ift.tt/snXmtSW
https://ift.tt/K14UxrG
Submitted February 26, 2022 at 10:49PM by martinclauss
via reddit https://ift.tt/snXmtSW
GitHub
GitHub - fkie-cad/libdesock: A de-socketing library for fuzzing.
A de-socketing library for fuzzing. Contribute to fkie-cad/libdesock development by creating an account on GitHub.
ZDI-CAN-12671: Windows Kernel DoS/Privilege Escalation via a NULL Pointer Deref
https://ift.tt/pUn7vu4
Submitted February 27, 2022 at 09:03AM by yuhong
via reddit https://ift.tt/PORIfNz
https://ift.tt/pUn7vu4
Submitted February 27, 2022 at 09:03AM by yuhong
via reddit https://ift.tt/PORIfNz
Zero Day Initiative
Zero Day Initiative — ZDI-CAN-12671: Windows Kernel DoS/Privilege Escalation via a NULL Pointer Deref
You can find me on Twitter at @HexKitchen , and follow the team for the latest in exploit techniques and security patches.
Circumventing Deep Packet Inspection with Socat and rot13
https://ift.tt/oMLUxRT
Submitted February 27, 2022 at 01:46PM by jrj334
via reddit https://ift.tt/pWOKy5A
https://ift.tt/oMLUxRT
Submitted February 27, 2022 at 01:46PM by jrj334
via reddit https://ift.tt/pWOKy5A
Gist
Circumventing Deep Packet Inspection with Socat and rot13
Circumventing Deep Packet Inspection with Socat and rot13 - socat_caesar_dpi.md
Ukrainian Security Researcher Leaks Conti Ransomware Gang Data
https://ift.tt/vRha7Po
Submitted February 28, 2022 at 10:54AM by ferrochron1
via reddit https://ift.tt/JmDX0kV
https://ift.tt/vRha7Po
Submitted February 28, 2022 at 10:54AM by ferrochron1
via reddit https://ift.tt/JmDX0kV
Databreachtoday
Ukrainian Researcher Leaks Conti Ransomware Gang Data
A Ukrainian cybersecurity researcher has released a huge batch of data that came from the internal systems of the Conti ransomware gang. The researcher released the
Prepare for a post-pandemic career in application security
https://ift.tt/7fWDR6w
Submitted February 28, 2022 at 05:19PM by saigopika
via reddit https://ift.tt/vRjuHmA
https://ift.tt/7fWDR6w
Submitted February 28, 2022 at 05:19PM by saigopika
via reddit https://ift.tt/vRjuHmA
AppSecEngineer
How to Prepare for A Post-Pandemic Career in Application Security
Are you looking for a career in application security in 2022? Here's what you need to know to land a job in a competitive tech landscape.
Alan c2 Framework v6.0: Alan + JavaScript = ♡
https://ift.tt/eCbYlEX
Submitted February 28, 2022 at 09:57PM by aparata_s4tan
via reddit https://ift.tt/0gpzSmU
https://ift.tt/eCbYlEX
Submitted February 28, 2022 at 09:57PM by aparata_s4tan
via reddit https://ift.tt/0gpzSmU
Blogspot
Alan c2 Framework v6.0: Alan + JavaScript = ♡
Twitter: @s4tan Download: https://github.com/enkomio/AlanFramework/releases/latest Documentation: https://github.com/enkomio/AlanFr...
Rouge RDP: New Initial Access Technique via RDP Bypassing Clients/Servers/Security Vendors
https://ift.tt/30VGIb9
Submitted February 28, 2022 at 10:03PM by ustayready
via reddit https://ift.tt/xDcbJpI
https://ift.tt/30VGIb9
Submitted February 28, 2022 at 10:03PM by ustayready
via reddit https://ift.tt/xDcbJpI
Black Hills Information Security, Inc.
Rogue RDP – Revisiting Initial Access Methods - Black Hills Information Security, Inc.
Mike Felch // The Hunt for Initial Access With the default disablement of VBA macros originating from the internet, Microsoft may be pitching a curveball to threat actors and red […]
Breaking Google’s ReCaptcha v2 using.. Google.. Again
https://ift.tt/qOsJ97W
Submitted March 01, 2022 at 12:10AM by n0llbyte
via reddit https://ift.tt/r9MvAOY
https://ift.tt/qOsJ97W
Submitted March 01, 2022 at 12:10AM by n0llbyte
via reddit https://ift.tt/r9MvAOY
East-Ee Security (By Yair Mizrahi)
Re-ReBreakCaptcha: Breaking Google’s ReCaptcha v2 using.. Google.. Again
TL;DR A logic vulnerability working 5 years later, dubbed ReBreakCaptcha, which lets you easily bypass Google’s ReCaptcha v2 anywhere on the web. ReCaptcha Overview Many of us know of ReCaptcha, Go…
Exploiting CVE-2021-26708 (Linux kernel) with sshd
https://ift.tt/ZnWzfAR
Submitted March 01, 2022 at 01:34PM by hardenedvault
via reddit https://ift.tt/75jKYp8
https://ift.tt/ZnWzfAR
Submitted March 01, 2022 at 01:34PM by hardenedvault
via reddit https://ift.tt/75jKYp8
Reddit
From the netsec community on Reddit: Exploiting CVE-2021-26708 (Linux kernel) with sshd
Explore this post and more from the netsec community
TeaBot is now spreading across the globe | Cleafy Labs
https://ift.tt/0JIifOc
Submitted March 01, 2022 at 04:47PM by f3d_0x0
via reddit https://ift.tt/pOmifCB
https://ift.tt/0JIifOc
Submitted March 01, 2022 at 04:47PM by f3d_0x0
via reddit https://ift.tt/pOmifCB
Cleafy
TeaBot is now spreading across the globe | Cleafy Labs
Since TeaBot first discovery in 2021, Cleafy's Threat Intelligence Team has been following this banking trojan's trails to understand how it acts against banks. To know more, read here our latest report.
Multiple vulnerabilities found in voip monitor by an Ethiopian Security firm
https://ift.tt/HkORNra
Submitted March 01, 2022 at 06:57PM by nathanAbejeM
via reddit https://ift.tt/w6beFio
https://ift.tt/HkORNra
Submitted March 01, 2022 at 06:57PM by nathanAbejeM
via reddit https://ift.tt/w6beFio
Reddit
From the netsec community on Reddit: Multiple vulnerabilities found in voip monitor by an Ethiopian Security firm
Posted by nathanAbejeM - 5 votes and no comments
Triaging A Malicious Docker Container
https://ift.tt/Z2hi1jE
Submitted March 01, 2022 at 10:04PM by MiguelHzBz
via reddit https://ift.tt/S7lMfVI
https://ift.tt/Z2hi1jE
Submitted March 01, 2022 at 10:04PM by MiguelHzBz
via reddit https://ift.tt/S7lMfVI
Sysdig
Triaging a Malicious Docker Container
We have outlined some steps for rapid triage of a malicious untrusted Docker container running in our environment.