ICS & OT Risk and Vulnerability Report
https://ift.tt/JDniBWK
Submitted March 04, 2022 at 07:22PM by h4ck3dit
via reddit https://ift.tt/IkmCSsx
https://ift.tt/JDniBWK
Submitted March 04, 2022 at 07:22PM by h4ck3dit
via reddit https://ift.tt/IkmCSsx
Claroty
Claroty ICS Risk and Vulnerability Report for 2H 2021
Claroty's Biannual ICS Risk and Vulnerability Report provides an analysis of OT, ICS, and IoT vulnerabilities disclosed in the 2H of 2021.
The perils of the “real” client IP [or the many ways to use X-Forwarded-For for incorrectly]
https://ift.tt/786oCeD
Submitted March 05, 2022 at 04:20AM by yesyoucantrip
via reddit https://ift.tt/REGvWix
https://ift.tt/786oCeD
Submitted March 05, 2022 at 04:20AM by yesyoucantrip
via reddit https://ift.tt/REGvWix
reddit
The perils of the “real” client IP [or the many ways to use...
Posted in r/netsec by u/yesyoucantrip • 1 point and 0 comments
webOS Revisited - Even More Mistaken Identities · The Recurity Lablog
https://ift.tt/PBQXZFl
Submitted March 05, 2022 at 11:23PM by addelindh
via reddit https://ift.tt/GfU7d52
https://ift.tt/PBQXZFl
Submitted March 05, 2022 at 11:23PM by addelindh
via reddit https://ift.tt/GfU7d52
reddit
webOS Revisited - Even More Mistaken Identities · The Recurity Lablog
Posted in r/netsec by u/addelindh • 93 points and 6 comments
Escaping privileged containers for fun.
https://ift.tt/wmHcxkY
Submitted March 06, 2022 at 03:25PM by JordyZomer
via reddit https://ift.tt/21W0pYd
https://ift.tt/wmHcxkY
Submitted March 06, 2022 at 03:25PM by JordyZomer
via reddit https://ift.tt/21W0pYd
pwning.systems
Escaping privileged containers for fun
Despite the fact that it is not a 'real' vulnerability, escaping privileged Docker containers is nevertheless pretty funny. And because there will always be people who will come up with reasons or excuses to run a privileged container (even though you really…
Backdooring WordPress using PyShell
https://ift.tt/zoCidyS
Submitted March 07, 2022 at 12:06AM by jonas02
via reddit https://ift.tt/hSPkaI1
https://ift.tt/zoCidyS
Submitted March 07, 2022 at 12:06AM by jonas02
via reddit https://ift.tt/hSPkaI1
WPSec
Backdooring WordPress using PyShell - WPSec
PyShell is new tool made for bug bounty, ethical hacking, penetration testers or red-teamers. This tool helps you to obtain a shell-like interface on a web server to be remotely accessed. Unlike other webshells, the main goal of the tool is to use as little…
2021 Year In Review - Tools, TTPs, and more!
https://ift.tt/eGTRtkK
Submitted March 07, 2022 at 06:18PM by TheDFIRReport
via reddit https://ift.tt/7bAGlu3
https://ift.tt/eGTRtkK
Submitted March 07, 2022 at 06:18PM by TheDFIRReport
via reddit https://ift.tt/7bAGlu3
The DFIR Report
2021 Year In Review
As we come to the end of the first quarter of 2022, we want to take some time to look back over our cases from 2021, in aggregate, and look at some of the top tactics, techniques and procedures (TT…
Hi, I have updated the scodescanner v2.0 which has integration of semgrep and scans the pHP source code. I used this tool on 1000+ files and observed that number of SQL injections and XSSes were found along with SSRFs, Open redirection. Github - https://ift.tt/Rqdt6Dj
https://ift.tt/t6ZLc9r
Submitted March 07, 2022 at 07:03PM by agrawal7
via reddit https://ift.tt/tGx3RlW
https://ift.tt/t6ZLc9r
Submitted March 07, 2022 at 07:03PM by agrawal7
via reddit https://ift.tt/tGx3RlW
GitHub
GitHub - agrawalsmart7/scodescanner: SCodeScanner stands for Source Code scanner where the user can scans the source code for finding…
SCodeScanner stands for Source Code scanner where the user can scans the source code for finding the Critical Vulnerabilities. - GitHub - agrawalsmart7/scodescanner: SCodeScanner stands for Source...
Critical Cross-Account Vulnerability Found in Microsoft Azure Automation Service
https://ift.tt/XsDIM32
Submitted March 07, 2022 at 08:41PM by FoShizzleMyWeasle
via reddit https://ift.tt/7xs1i6D
https://ift.tt/XsDIM32
Submitted March 07, 2022 at 08:41PM by FoShizzleMyWeasle
via reddit https://ift.tt/7xs1i6D
Complete Cloud Security in Minutes - Orca Security
AutoWarp Microsoft Azure Automation Vulnerability - Orca Security
AutoWarp is a critical vulnerability in Microsoft Azure Automation Service that allows unauthorized access to other customer accounts using the service.
Kerbit, the Ethiopian firm that discovered multiple vulnerabilities on voip monitor last week, has now blogged about 3 vulnerabilities that are chained to a preauth RCE on Pascom Cloud phone systems. It is a must read, everything is detailed in the article.
https://ift.tt/5ZKqmUi
Submitted March 07, 2022 at 10:08PM by nathanAbejeM
via reddit https://ift.tt/g9G0cSW
https://ift.tt/5ZKqmUi
Submitted March 07, 2022 at 10:08PM by nathanAbejeM
via reddit https://ift.tt/g9G0cSW
reddit
Kerbit, the Ethiopian firm that discovered multiple...
Posted in r/netsec by u/nathanAbejeM • 0 points and 0 comments
The Dirty Pipe Vulnerability [CVE-2022-0847]
https://ift.tt/mWIwbed
Submitted March 07, 2022 at 08:14PM by moviuro
via reddit https://ift.tt/7VyXahH
https://ift.tt/mWIwbed
Submitted March 07, 2022 at 08:14PM by moviuro
via reddit https://ift.tt/7VyXahH
reddit
The Dirty Pipe Vulnerability [CVE-2022-0847]
Posted in r/netsec by u/moviuro • 2 points and 0 comments
PreAuth RCE in Passcom Cloud Phone Systems found by Kerbit Security Firm.
https://ift.tt/5ZKqmUi
Submitted March 08, 2022 at 01:30PM by nathanAbejeM
via reddit https://ift.tt/lrbXAsk
https://ift.tt/5ZKqmUi
Submitted March 08, 2022 at 01:30PM by nathanAbejeM
via reddit https://ift.tt/lrbXAsk
reddit
PreAuth RCE in Passcom Cloud Phone Systems found by Kerbit...
Posted in r/netsec by u/nathanAbejeM • 3 points and 0 comments
Container Escape to Shadow Admin: GKE Autopilot Vulnerabilities
https://ift.tt/ZXqGQcE
Submitted March 08, 2022 at 08:57PM by YuvalAvra
via reddit https://ift.tt/i6wAvH8
https://ift.tt/ZXqGQcE
Submitted March 08, 2022 at 08:57PM by YuvalAvra
via reddit https://ift.tt/i6wAvH8
Unit42
Container Escape to Shadow Admin: GKE Autopilot Vulnerabilities
We disclosed several GKE Autopilot vulnerabilities and attack techniques to Google. The issues are now fixed – we provide a technical analysis.
Three critical 0-days allow RCE and even physical ignition in APC UPS
https://ift.tt/ka7PvQY
Submitted March 08, 2022 at 10:04PM by Subterminal303
via reddit https://ift.tt/4iUJsyl
https://ift.tt/ka7PvQY
Submitted March 08, 2022 at 10:04PM by Subterminal303
via reddit https://ift.tt/4iUJsyl
Armis
TLStorm
RESEARCH // TLSTORM TLStorm Three critical vulnerabilities discovered in APC Smart-UPS devices can allow attackers to remotely manipulate the power of
DomainProactive: Security Monitoring for Internet Presence
https://ift.tt/En5cd8Z
Submitted March 09, 2022 at 12:37AM by genemcculley
via reddit https://ift.tt/Ee81qg5
https://ift.tt/En5cd8Z
Submitted March 09, 2022 at 12:37AM by genemcculley
via reddit https://ift.tt/Ee81qg5
Domainproactive
DomainProactive: Website and Domain Security Monitoring
DomainProactive helps businesses stay on top of Internet security and best practices.
CVE-2022-26143: TP240PhoneHome reflection/amplification DDoS attack vector
https://ift.tt/FsAzOTY
Submitted March 08, 2022 at 11:52PM by AlexForster
via reddit https://ift.tt/6LW1q0p
https://ift.tt/FsAzOTY
Submitted March 08, 2022 at 11:52PM by AlexForster
via reddit https://ift.tt/6LW1q0p
The Cloudflare Blog
CVE-2022-26143: TP240PhoneHome reflection/amplification DDoS attack vector
A new reflection/amplification distributed denial-of-service (DDoS) vector with a record-breaking potential amplification ratio of 4,294,967,296:1 has been abused by attackers in the wild to launch multiple high-impact DDoS attacks
Reversing embedded device bootloader (U-Boot) - p.1 - Shielder
https://ift.tt/fNIR7sF
Submitted March 09, 2022 at 01:04AM by smaury
via reddit https://ift.tt/YubOmwj
https://ift.tt/fNIR7sF
Submitted March 09, 2022 at 01:04AM by smaury
via reddit https://ift.tt/YubOmwj
Shielder
Shielder - Reversing embedded device bootloader (U-Boot) - p.1
In the course of these two articles, we will share an analysis of some aspects of reversing a low-level binary.
Put an io_uring on it: Exploiting the Linux Kernel
https://ift.tt/hCuXqm8
Submitted March 09, 2022 at 01:02AM by eberkut
via reddit https://ift.tt/1gIUQjG
https://ift.tt/hCuXqm8
Submitted March 09, 2022 at 01:02AM by eberkut
via reddit https://ift.tt/1gIUQjG
reddit
Put an io_uring on it: Exploiting the Linux Kernel
Posted in r/netsec by u/eberkut • 1 point and 0 comments
Forgiva Enterprise: A password manager that never saves your passwords.
https://ift.tt/3OdIlWH
Submitted March 09, 2022 at 01:40PM by marcusfrex
via reddit https://ift.tt/HC32hRo
https://ift.tt/3OdIlWH
Submitted March 09, 2022 at 01:40PM by marcusfrex
via reddit https://ift.tt/HC32hRo
GitHub
GitHub - Sceptive/forgiva-integrator: Core module for Forgiva Enterprise connecting Forgiva Server to Forgiva Webclient.
Core module for Forgiva Enterprise connecting Forgiva Server to Forgiva Webclient. - GitHub - Sceptive/forgiva-integrator: Core module for Forgiva Enterprise connecting Forgiva Server to Forgiva We...
Yarn, Pip, Composer & co: Vulnerabilities in popular package managers
https://ift.tt/8r0nvCb
Submitted March 09, 2022 at 10:21PM by SonarPaul
via reddit https://ift.tt/YkEBPoj
https://ift.tt/8r0nvCb
Submitted March 09, 2022 at 10:21PM by SonarPaul
via reddit https://ift.tt/YkEBPoj
Sonarsource
Securing Developer Tools: Package Managers
Yarn, Pip, Composer & friends: Learn about 3 types of vulnerabilities we found in popular package managers that can be used by attackers to target developers.
IDA Pro plugin: query based xref finder for vulnerability research
https://ift.tt/mO1GSyX
Submitted March 09, 2022 at 10:02PM by Martypx00
via reddit https://ift.tt/I7MRAfw
https://ift.tt/mO1GSyX
Submitted March 09, 2022 at 10:02PM by Martypx00
via reddit https://ift.tt/I7MRAfw
GitHub
GitHub - Accenture/VulFi
Contribute to Accenture/VulFi development by creating an account on GitHub.
Branch History Injection - Circumventing Spectre-v2 Hardware Mitigations
https://ift.tt/2OjxnCd
Submitted March 10, 2022 at 12:06AM by LordAlfredo
via reddit https://ift.tt/OVipq4E
https://ift.tt/2OjxnCd
Submitted March 10, 2022 at 12:06AM by LordAlfredo
via reddit https://ift.tt/OVipq4E
VUSec
Branch History Injection - VUSec
BHI (or Spectre-BHB) is a revival of cross-privilege Spectre-v2 attacks on modern systems deploying in-hardware defenses. And we have a very neat end-to-end exploit leaking arbitrary kernel memory on modern Intel CPUs to prove it