SMM Callouts in HP Products
https://ift.tt/0EzDM2o
Submitted May 16, 2022 at 05:52PM by lightgrains
via reddit https://ift.tt/K7iTNvz
https://ift.tt/0EzDM2o
Submitted May 16, 2022 at 05:52PM by lightgrains
via reddit https://ift.tt/K7iTNvz
StarkeBlog
SMM Callouts in HP Products
My HP PSRT case was PSR-2021-0177 which I have been working to make public since early November 2021. The advisory was released May 10th, 2022 and did not, at least in the initial draft, credit me anywhere.
From Project File to Code Execution: Exploiting XINJE PLC Program Tool
https://ift.tt/Yl4CITv
Submitted May 16, 2022 at 07:14PM by derp6996
via reddit https://ift.tt/2iGevKh
https://ift.tt/Yl4CITv
Submitted May 16, 2022 at 07:14PM by derp6996
via reddit https://ift.tt/2iGevKh
Claroty
From Project File to Code Execution: Exploiting Vulnerabilities in XINJE PLC Program Tool
Shielder - Printing Fake Fiscal Receipts - An Italian Job p.2
https://ift.tt/DZSrPUO
Submitted May 16, 2022 at 09:47PM by smaury
via reddit https://ift.tt/RhoQkya
https://ift.tt/DZSrPUO
Submitted May 16, 2022 at 09:47PM by smaury
via reddit https://ift.tt/RhoQkya
Shielder
Shielder - Printing Fake Fiscal Receipts - An Italian Job p.2
Reverse engineering and analysis of a fiscal printer device for fun and (real) profit.
F5 BIG-IP critical vulnerability exploited by attackers to gain unauthenticated RCE
https://ift.tt/hsriCot
Submitted May 16, 2022 at 10:38PM by sciencestudent99
via reddit https://ift.tt/Cr69IRy
https://ift.tt/hsriCot
Submitted May 16, 2022 at 10:38PM by sciencestudent99
via reddit https://ift.tt/Cr69IRy
FourCore
F5 BIG-IP critical vulnerability exploited by attackers to gain unauthenticated RCE - FourCore
If you are a user of F5 BIG-IP, go patch! CVE-2022-1388 is a vulnerability in F5 BIG-IP that allows an unauthenticated attacker to run arbitrary commands, modify files, or disable services on unpatched systems.
Malcolm v6 released on GitHub, now including Suricata and more new protocol parsers
https://ift.tt/7wusW9P
Submitted May 17, 2022 at 02:36AM by mmguero
via reddit https://ift.tt/1gULACw
https://ift.tt/7wusW9P
Submitted May 17, 2022 at 02:36AM by mmguero
via reddit https://ift.tt/1gULACw
GitHub
GitHub - idaholab/Malcolm: Malcolm is a powerful, easily deployable network traffic analysis tool suite for full packet capture…
Malcolm is a powerful, easily deployable network traffic analysis tool suite for full packet capture artifacts (PCAP files), Zeek logs and Suricata alerts. - GitHub - idaholab/Malcolm: Malcolm is a...
EMBA v1.0 - Black Hat Singapore Edt. - Version 1.0 of the firmware security analyzer EMBA is released
https://ift.tt/mlVD6yk
Submitted May 17, 2022 at 11:44AM by _m-1-k-3_
via reddit https://ift.tt/Wyx50wf
https://ift.tt/mlVD6yk
Submitted May 17, 2022 at 11:44AM by _m-1-k-3_
via reddit https://ift.tt/Wyx50wf
GitHub
GitHub - e-m-b-a/emba: EMBA - The firmware security analyzer
EMBA - The firmware security analyzer. Contribute to e-m-b-a/emba development by creating an account on GitHub.
A dev's critique of OAUTH2, based on their experience. "OAUTH2 ... places the viability of [client developers'] products in the hands of corporate entities who are in no way accountable to anyone except their major shareholders."
https://ift.tt/mMzD6ua
Submitted May 17, 2022 at 11:13AM by flexibeast
via reddit https://ift.tt/wnlgSUc
https://ift.tt/mMzD6ua
Submitted May 17, 2022 at 11:13AM by flexibeast
via reddit https://ift.tt/wnlgSUc
Reddit
From the netsec community on Reddit: A dev's critique of OAUTH2, based on their experience. "OAUTH2 ... places the viability of…
Posted by flexibeast - 5 votes and 0 comments
Hacking Swagger-UI - from XSS to account takeovers
https://ift.tt/TvGgnH8
Submitted May 17, 2022 at 03:47PM by albinowax
via reddit https://ift.tt/VfBSJAW
https://ift.tt/TvGgnH8
Submitted May 17, 2022 at 03:47PM by albinowax
via reddit https://ift.tt/VfBSJAW
Vidoc Security Lab - blog
Hacking Swagger-UI - from XSS to account takeovers
We have reported more than 60 instances of this bug across a wide range of bug bounty programs including companies like Paypal, Atlassian, Microsoft, GitLab, Yahoo, ...
In hot pursuit of ‘cryware’: Defending hot wallets from attacks
https://ift.tt/JeoEiQz
Submitted May 17, 2022 at 09:52PM by SCI_Rusher
via reddit https://ift.tt/NoFkOvH
https://ift.tt/JeoEiQz
Submitted May 17, 2022 at 09:52PM by SCI_Rusher
via reddit https://ift.tt/NoFkOvH
Search - Microsoft Bing
Where cultures converge
The Mosque-Cathedral of Córdoba is a chronicle of
We Love Relaying Credentials: A Technical Guide to Relaying Credentials Everywhere
https://ift.tt/neGO1rN
Submitted May 18, 2022 at 12:27AM by mgalloar
via reddit https://ift.tt/C8MnhWi
https://ift.tt/neGO1rN
Submitted May 18, 2022 at 12:27AM by mgalloar
via reddit https://ift.tt/C8MnhWi
SecureAuth
We Love Relaying Credentials: A Technical Guide to Relaying Credentials Everywhere
A guide to relaying credentials everywhere in 2022 NTLM relay is a well-known technique that has been with us for many years and never seems to go away. Almost every article about NTLM relay could start with that phrase. It could be a cliché but it’s almost…
Stealing Google Drive OAuth tokens from Dropbox
https://ift.tt/FU16xvG
Submitted May 18, 2022 at 01:48AM by staz0t
via reddit https://ift.tt/R28tPBj
https://ift.tt/FU16xvG
Submitted May 18, 2022 at 01:48AM by staz0t
via reddit https://ift.tt/R28tPBj
Stazot
Sivanesh Ashok
Blog about bug bounty and infosec research
TProxy: Wireshark dissection with manual and noscripted interception
https://ift.tt/5NPbKgZ
Submitted May 18, 2022 at 10:25AM by mexicanw
via reddit https://ift.tt/xDcfqwp
https://ift.tt/5NPbKgZ
Submitted May 18, 2022 at 10:25AM by mexicanw
via reddit https://ift.tt/xDcfqwp
Reddit
From the netsec community on Reddit: TProxy: Wireshark dissection with manual and noscripted interception
Posted by mexicanw - 21 votes and 5 comments
Wizard Spider hacking group detailed analysis
https://ift.tt/AetzjWn
Submitted May 18, 2022 at 06:22PM by wtfse
via reddit https://ift.tt/T5gRqat
https://ift.tt/AetzjWn
Submitted May 18, 2022 at 06:22PM by wtfse
via reddit https://ift.tt/T5gRqat
Variant Cloud Analysis
https://ift.tt/lWUJ2w5
Submitted May 18, 2022 at 07:53PM by Gallus
via reddit https://ift.tt/xVHk1o4
https://ift.tt/lWUJ2w5
Submitted May 18, 2022 at 07:53PM by Gallus
via reddit https://ift.tt/xVHk1o4
jspin.re - Keep hacking!
Variant Cloud Analysis
Another yet quick blog post. A few years ago, 3 or 4, maybe 5, I was "working" with @marcioalm in a "Simple Web Vulnerability Scanner" tool intended to be part of an automation vulnerability check for a large and specific environment. Keep in mind that adventure…
Anonymous Social Network Yik Yak Breached Precise GPS Locations
https://ift.tt/wJEx0qT
Submitted May 19, 2022 at 02:16AM by mkdtsh
via reddit https://ift.tt/E8bWa7r
https://ift.tt/wJEx0qT
Submitted May 19, 2022 at 02:16AM by mkdtsh
via reddit https://ift.tt/E8bWa7r
Medium
Yik Yak Vulnerability Exposed Precise GPS Locations: Analysis
Yik Yak app contained a sensitive information disclosure vulnerability that could allow an attacker to de-anonymize the user’s…
Killnet Attacks Against Italy and NATO Countries
https://ift.tt/jw2GJ1O
Submitted May 19, 2022 at 03:20PM by MiguelHzBz
via reddit https://ift.tt/oGpMhwL
https://ift.tt/jw2GJ1O
Submitted May 19, 2022 at 03:20PM by MiguelHzBz
via reddit https://ift.tt/oGpMhwL
Sysdig
Killnet cyber attacks against Italy and NATO countries – Sysdig
The hacker group Killnet claimed the attacks against Italy. How it's possible to detect the activities of the Mirai botnet used through Falco
Exploiting an Unbounded memcpy in a Guest-to-Host escape of Parallels Desktop
https://ift.tt/PAjTLHv
Submitted May 19, 2022 at 08:39PM by gaasedelen
via reddit https://ift.tt/9GETu32
https://ift.tt/PAjTLHv
Submitted May 19, 2022 at 08:39PM by gaasedelen
via reddit https://ift.tt/9GETu32
RET2 Systems Blog
Exploiting an Unbounded memcpy in Parallels Desktop
This post details the development of a guest-to-host virtualization escape for Parallels Desktop on macOS, as used in our successful Pwn2Own 2021 entry. Give...
Rise in XorDdos: A deeper look at the stealthy DDoS malware targeting Linux devices
https://ift.tt/aoPV2UX
Submitted May 19, 2022 at 09:56PM by SCI_Rusher
via reddit https://ift.tt/kFYvW8K
https://ift.tt/aoPV2UX
Submitted May 19, 2022 at 09:56PM by SCI_Rusher
via reddit https://ift.tt/kFYvW8K
Microsoft News
Rise in XorDdos: A deeper look at the stealthy DDoS malware targeting Linux devices
Observing a 254% increase in activity over the last six months from a versatile Linux trojan called XorDdos, the Microsoft 365 Defender research team provides in-depth analysis into this stealthy malware's capabilities and key infection signs.
Scam and Malicious APK targeting Malaysian: MyMaidKL Technical Analysis
https://ift.tt/iBLW8xm
Submitted May 20, 2022 at 12:49AM by Rempah
via reddit https://ift.tt/sbd84Hj
https://ift.tt/iBLW8xm
Submitted May 20, 2022 at 12:49AM by Rempah
via reddit https://ift.tt/sbd84Hj
Netbytesec
Scam and Malicious APK targeting Malaysian: MyMaidKL Technical Analysis
This post was authored by Taqi and Rosamira
Hack The Box - Timing - Writeup by Mădălin Dogaru
https://ift.tt/xCf5aR7
Submitted May 19, 2022 at 12:30AM by Madalin_Dogaru
via reddit https://ift.tt/sk5S087
https://ift.tt/xCf5aR7
Submitted May 19, 2022 at 12:30AM by Madalin_Dogaru
via reddit https://ift.tt/sk5S087
Sentientchip
Timing - HTB Writeup
how to hack timing on hack the box
A journey into IoT - Unknown Chinese alarm - Part 2 - Firmware dump and analysis
https://ift.tt/Dk5i2C0
Submitted May 20, 2022 at 01:56PM by 0xdea
via reddit https://ift.tt/Tq6jupz
https://ift.tt/Dk5i2C0
Submitted May 20, 2022 at 01:56PM by 0xdea
via reddit https://ift.tt/Tq6jupz
hn security
A journey into IoT - Unknown Chinese alarm - Part 2 - Firmware dump and analysis - hn security
Disclaimer: as many other security researchers […]