Heap Overflow in OpenBSD's slaacd via Router Advertisement
https://ift.tt/aODymTj
Submitted March 25, 2022 at 07:18AM by Gallus
via reddit https://ift.tt/fkH5deX
https://ift.tt/aODymTj
Submitted March 25, 2022 at 07:18AM by Gallus
via reddit https://ift.tt/fkH5deX
Quarkslab
Heap Overflow in OpenBSD's slaacd via Router Advertisement
Video - SSH Phishing attack on FIDO protected ssh keys
https://ift.tt/ejtEYNx
Submitted March 25, 2022 at 04:58PM by ssh-mitm
via reddit https://ift.tt/KGbX67n
https://ift.tt/ejtEYNx
Submitted March 25, 2022 at 04:58PM by ssh-mitm
via reddit https://ift.tt/KGbX67n
Vimeo
DS21 - 217 - Manfred Kaiser - SSH spoofing attack on FIDO2 Devices in Combination with Agent Forwarding
With OpenSSH 8.5 agent forwarding was implemented for SFTP and SCP to allow remote copy operations. Agent forwarding has already been considered a security risk…
What to look for when reviewing a company's infrastructure
https://ift.tt/cIQmnjK
Submitted March 25, 2022 at 07:22PM by okram87
via reddit https://ift.tt/TZqIMzt
https://ift.tt/cIQmnjK
Submitted March 25, 2022 at 07:22PM by okram87
via reddit https://ift.tt/TZqIMzt
Marco Lancini's Blog
What to look for when reviewing a company's infrastructure | Marco Lancini's Blog
A comprehensive guide that provides a structured approach to reviewing the security architecture of a multi-cloud SaaS company and finding its most critical components.
Red Canary's 2022 Threat Detection Report
https://ift.tt/4rdX6PT
Submitted March 25, 2022 at 08:19PM by tvjust
via reddit https://ift.tt/swmxfN6
https://ift.tt/4rdX6PT
Submitted March 25, 2022 at 08:19PM by tvjust
via reddit https://ift.tt/swmxfN6
reddit
Red Canary's 2022 Threat Detection Report
Posted in r/netsec by u/tvjust • 2 points and 0 comments
Splunk Patches Indexer Vulnerability Discovered By Team82
https://ift.tt/ME1SumB
Submitted March 25, 2022 at 08:17PM by n0llbyte
via reddit https://ift.tt/E371UxV
https://ift.tt/ME1SumB
Submitted March 25, 2022 at 08:17PM by n0llbyte
via reddit https://ift.tt/E371UxV
Claroty
Splunk Patches Indexer Vulnerability Discovered by Team82
A main component of Splunk Enterprise is Splunk patch indexer, which handles parsing and indexing of data. Discover more with Claroty.
RTLO Injection URI Spoofing CVE-2020-20093; 20094; 20095; 20096... chilling in plain sight for 3 years 👀 — iMessage, WhatsApp, Instagram, and Facebook Messenger. Telegram patched earlier & Signal fixing today!
https://ift.tt/buKfdvg
Submitted March 25, 2022 at 09:43PM by docker-osx
via reddit https://ift.tt/OVafDx0
https://ift.tt/buKfdvg
Submitted March 25, 2022 at 09:43PM by docker-osx
via reddit https://ift.tt/OVafDx0
GitHub
GitHub - zadewg/RIUS: CVE-2020-20093; 20094; 20095; 20096, 2022-28345 RTLO Injection URI Spoofing
CVE-2020-20093; 20094; 20095; 20096, 2022-28345 RTLO Injection URI Spoofing - GitHub - zadewg/RIUS: CVE-2020-20093; 20094; 20095; 20096, 2022-28345 RTLO Injection URI Spoofing
Finding bugs to trigger Unauthenticated Command Injection in a NETGEAR router (PSV-2022–0044)
https://ift.tt/ZOikMuI
Submitted March 25, 2022 at 09:35PM by stypr
via reddit https://ift.tt/157cakN
https://ift.tt/ZOikMuI
Submitted March 25, 2022 at 09:35PM by stypr
via reddit https://ift.tt/157cakN
Medium
Finding bugs to trigger Unauthenticated Command Injection in a NETGEAR router (PSV-2022–0044)
How I found various vulnerabilities and chained some of the vulnerabilities into an unauthenticated command execution in NETGEAR WAC124.
Detect malicious activity in Okta logs with Falco and Sysdig okta-analyzer
https://ift.tt/h7KtT3g
Submitted March 25, 2022 at 11:47PM by MiguelHzBz
via reddit https://ift.tt/xr6NyEJ
https://ift.tt/h7KtT3g
Submitted March 25, 2022 at 11:47PM by MiguelHzBz
via reddit https://ift.tt/xr6NyEJ
Sysdig
Detect malicious activity in Okta logs with Falco and Sysdig okta-analyzer
Sysdig has released the following binaries that will allow us to collect Okta events and using Falco OOTB rules to detect suspicious activity
Using the Dirty Pipe Vulnerability to Break Out from Containers
https://ift.tt/QK6G2Ie
Submitted March 26, 2022 at 05:44AM by freakwin
via reddit https://ift.tt/ho1pEJM
https://ift.tt/QK6G2Ie
Submitted March 26, 2022 at 05:44AM by freakwin
via reddit https://ift.tt/ho1pEJM
Using the Dirty Pipe Vulnerability to Break Out from Containers
Using the Dirty Pipe Vulnerability to Break Out from Containers | Datadog
See Datadog's proof of concept exploit for breaking out from unprivileged containers using the Dirty Pipe vulnerability.
How to detect IMSI catchers
https://ift.tt/uvY9QIX
Submitted March 26, 2022 at 05:19AM by knoy
via reddit https://ift.tt/sW8M7mi
https://ift.tt/uvY9QIX
Submitted March 26, 2022 at 05:19AM by knoy
via reddit https://ift.tt/sW8M7mi
Armadillophone
How to detect IMSI catchers
Your phone is under constant attack from criminals, corporations and foreign governments.
Mining data from Cobalt Strike beacons
https://ift.tt/6zP354g
Submitted March 26, 2022 at 12:03PM by digicat
via reddit https://ift.tt/AbPdU1i
https://ift.tt/6zP354g
Submitted March 26, 2022 at 12:03PM by digicat
via reddit https://ift.tt/AbPdU1i
Nccgroup
Cyber Security Research
Cutting-edge cyber security research from NCC Group. Find public reports, technical advisories, analyses, & other novel insights from our global experts.
PHP filter_var shenanigans
https://ift.tt/FBsZOJj
Submitted March 26, 2022 at 05:19PM by Gallus
via reddit https://ift.tt/CZy4noh
https://ift.tt/FBsZOJj
Submitted March 26, 2022 at 05:19PM by Gallus
via reddit https://ift.tt/CZy4noh
pwning.systems
PHP filter_var shenanigans
It is likely that we have all seen PHP filters that prevent us from encountering vulnerabilities. Here in this blog post, I'll walk you through my thought process for bypassing a filter by looking for a bug in the filter itself in order to reach a bug!
oss-security - Re: zlib memory corruption on deflate (i.e. compress)
https://ift.tt/3hB7L4n
Submitted March 27, 2022 at 04:36AM by Gallus
via reddit https://ift.tt/Nt6S8Pq
https://ift.tt/3hB7L4n
Submitted March 27, 2022 at 04:36AM by Gallus
via reddit https://ift.tt/Nt6S8Pq
reddit
oss-security - Re: zlib memory corruption on deflate (i.e. compress)
Posted in r/netsec by u/Gallus • 72 points and 9 comments
Introduction to CSRF: How can a cookie get you hacked
https://ift.tt/bOrJ2Ng
Submitted March 27, 2022 at 02:33PM by gooldopt
via reddit https://ift.tt/dnYlawe
https://ift.tt/bOrJ2Ng
Submitted March 27, 2022 at 02:33PM by gooldopt
via reddit https://ift.tt/dnYlawe
Medium
Introduction to CSRF: How can a cookie get you hacked? (1/2)
“We use cookies to enhance your browsing experience, by clicking ACCEPT ALL you consent to our use of cookies”
Google Issues Urgent Chrome Update to Patch Actively Exploited Zero-Day Vulnerability. CVE-2022-1096 is the second zero-day vulnerability addressed by Google in Chrome since the start of the year.
https://ift.tt/mrg1vSC
Submitted March 28, 2022 at 07:34AM by Late_Ice_9288
via reddit https://ift.tt/kxUyc4d
https://ift.tt/mrg1vSC
Submitted March 28, 2022 at 07:34AM by Late_Ice_9288
via reddit https://ift.tt/kxUyc4d
cwe.mitre.org
CWE -
CWE-843: Access of Resource Using Incompatible Type ('Type Confusion') (4.6)
CWE-843: Access of Resource Using Incompatible Type ('Type Confusion') (4.6)
Common Weakness Enumeration (CWE) is a list of software weaknesses.
OPNSense Firewall Bypass with Carp
https://ift.tt/bGie7Ym
Submitted March 28, 2022 at 01:34PM by oherrala
via reddit https://ift.tt/hGReDC5
https://ift.tt/bGie7Ym
Submitted March 28, 2022 at 01:34PM by oherrala
via reddit https://ift.tt/hGReDC5
Medium
Firewall bypass with CARP in Packet Filter
One of our isolated network test environments is using the well known OPNSense firewall. It’s a widely used FreeBSD based open source…
New Suncrypt ransomware discovered with added capabilities
https://ift.tt/X4LvOie
Submitted March 28, 2022 at 06:47PM by woja111
via reddit https://ift.tt/Tmnpr2t
https://ift.tt/X4LvOie
Submitted March 28, 2022 at 06:47PM by woja111
via reddit https://ift.tt/Tmnpr2t
LDAP relays for initial foothold in dire situations
https://ift.tt/vBcINyP
Submitted March 28, 2022 at 07:33PM by AlmondOffSec
via reddit https://ift.tt/C0NpuDW
https://ift.tt/vBcINyP
Submitted March 28, 2022 at 07:33PM by AlmondOffSec
via reddit https://ift.tt/C0NpuDW
reddit
LDAP relays for initial foothold in dire situations
Posted in r/netsec by u/AlmondOffSec • 56 points and 1 comment
CVE-2022-0995 exploit - heap out-of-bounds write in the watch_queue Linux kernel component
https://ift.tt/roOFULE
Submitted March 29, 2022 at 01:07AM by 0xdea
via reddit https://ift.tt/18EHeML
https://ift.tt/roOFULE
Submitted March 29, 2022 at 01:07AM by 0xdea
via reddit https://ift.tt/18EHeML
GitHub
GitHub - Bonfee/CVE-2022-0995: CVE-2022-0995 exploit
CVE-2022-0995 exploit. Contribute to Bonfee/CVE-2022-0995 development by creating an account on GitHub.
CVE-2022-27666: Exploit esp6 modules in Linux kernel
https://ift.tt/hEJZWlg
Submitted March 29, 2022 at 01:03AM by 0xdea
via reddit https://ift.tt/WmaTbKJ
https://ift.tt/hEJZWlg
Submitted March 29, 2022 at 01:03AM by 0xdea
via reddit https://ift.tt/WmaTbKJ
ETenal
CVE-2022-27666: Exploit esp6 modules in Linux kernel - ETenal
This post discloses the exploit of CVE-2022-27666, which achieves local privilege escalation on the latest Ubuntu Desktop 21.10.
Ruby Deserialization - New Gadget Chain for Ruby on Rails
https://ift.tt/puwk1me
Submitted March 29, 2022 at 06:27AM by Gallus
via reddit https://ift.tt/qufVMRd
https://ift.tt/puwk1me
Submitted March 29, 2022 at 06:27AM by Gallus
via reddit https://ift.tt/qufVMRd
GitHub
writeups/Ruby-deserialization-gadget-on-rails.md at main · httpvoid/writeups
Contribute to httpvoid/writeups development by creating an account on GitHub.