What the 3 major data breaches can teach us
https://medium.com/cybersecurityspace/e82826fb6211
Submitted June 30, 2022 at 09:39PM by alertnoalert
via reddit https://ift.tt/HkYmusq
https://medium.com/cybersecurityspace/e82826fb6211
Submitted June 30, 2022 at 09:39PM by alertnoalert
via reddit https://ift.tt/HkYmusq
Medium
You Won’t Believe These Data Breaches (+ How They Did It)
Catch SOC Prime’s pick of top 3 most devastating data breaches that affected large businesses and left victims wondering: how they did it?
How to expose a potential cybercriminal due to misconfigurations
https://ift.tt/6kyr3nK
Submitted June 30, 2022 at 09:33PM by CyberMasterV
via reddit https://ift.tt/h71CroW
https://ift.tt/6kyr3nK
Submitted June 30, 2022 at 09:33PM by CyberMasterV
via reddit https://ift.tt/h71CroW
Toll fraud malware: How an Android application can drain your wallet
https://ift.tt/Bj3xyio
Submitted June 30, 2022 at 10:09PM by SCI_Rusher
via reddit https://ift.tt/dXZRGAp
https://ift.tt/Bj3xyio
Submitted June 30, 2022 at 10:09PM by SCI_Rusher
via reddit https://ift.tt/dXZRGAp
Microsoft Security Blog
Toll fraud malware: How an Android application can drain your wallet - Microsoft Security Blog
Toll fraud malware, a subcategory of billing fraud in which malicious applications subscribe users to premium services without their knowledge or consent, is one of the most prevalent types of Android malware – and it continues to evolve.
Cloudy with a Chance of Risk: Managing Risks in Cloud-Managed OT Networks
https://ift.tt/aBILiJ0
Submitted June 30, 2022 at 09:56PM by c_f13
via reddit https://ift.tt/8XjITv5
https://ift.tt/aBILiJ0
Submitted June 30, 2022 at 09:56PM by c_f13
via reddit https://ift.tt/8XjITv5
Medium
Cloudy with a Chance of Risk: Managing Risks in Cloud-Managed OT Networks
Digital transformation: Most of us have probably already heard this term, sometime, somewhere. It’s somewhat difficult to miss when…
Weaponizing and Abusing Hidden Functionalities Contained in Office Document Properties
https://ift.tt/Uxk9dlu
Submitted June 30, 2022 at 11:38PM by McLabraid
via reddit https://ift.tt/0svRzjb
https://ift.tt/Uxk9dlu
Submitted June 30, 2022 at 11:38PM by McLabraid
via reddit https://ift.tt/0svRzjb
Offensive-Security
Weaponizing and Abusing Hidden Functionalities Contained in Office Document Properties | Offensive Security
TJ shows us how adversaries use macro weaponization techniques to abuse hidden functionalities contained in Office document properties.
Flubot: the evolution of a notorious Android Banking Malware
https://ift.tt/lLOMTsp
Submitted July 01, 2022 at 02:47AM by Goovscoov
via reddit https://ift.tt/m3Ta8u0
https://ift.tt/lLOMTsp
Submitted July 01, 2022 at 02:47AM by Goovscoov
via reddit https://ift.tt/m3Ta8u0
Fox-IT International blog
Flubot: the evolution of a notorious Android Banking Malware
Authored by Alberto Segura (main author) and Rolf Govers (co-author) Summary Flubot is an Android based malware that has been distributed in the past 1.5 years inEurope, Asia and Oceania affecting …
RanSim: a ransomware simulation noscript written in PowerShell. Useful for testing your defenses and backups in a controlled simulation. The same noscript is used for encryption and decryption.
https://ift.tt/50h7do4
Submitted July 01, 2022 at 02:18AM by doctormay6
via reddit https://ift.tt/SkGjzv6
https://ift.tt/50h7do4
Submitted July 01, 2022 at 02:18AM by doctormay6
via reddit https://ift.tt/SkGjzv6
GitHub
GitHub - lawndoc/RanSim: Ransomware simulation noscript written in PowerShell. Useful for testing your defenses and backups against…
Ransomware simulation noscript written in PowerShell. Useful for testing your defenses and backups against real ransomware-like activity in a controlled setting. - GitHub - lawndoc/RanSim: Ransomware...
Intel SGX deprecation review
https://ift.tt/BLvU2ip
Submitted July 01, 2022 at 04:38PM by hardenedvault
via reddit https://ift.tt/Q4n9afm
https://ift.tt/BLvU2ip
Submitted July 01, 2022 at 04:38PM by hardenedvault
via reddit https://ift.tt/Q4n9afm
hardenedvault.net
Intel SGX deprecation review
The rumors about Intel SGX deprecated in new processors has been confirmed, 12th generation processors (Workstation/Desktop/Laptop/embedded platforms) will deprecate SGX and the SGX will continue to support only in high-end Xeon CPU for server:
It’s Been Zero Days Since BIND9 Crashed
https://ift.tt/SzgbNAu
Submitted July 01, 2022 at 03:52PM by jen140
via reddit https://ift.tt/WTZNLQ3
https://ift.tt/SzgbNAu
Submitted July 01, 2022 at 03:52PM by jen140
via reddit https://ift.tt/WTZNLQ3
Please sign this open letter asking Intel to open-source their Firmware Support Package (FSP)
https://ift.tt/njy8aSp
Submitted July 01, 2022 at 05:51PM by hardenedvault
via reddit https://ift.tt/LWlvV8B
https://ift.tt/njy8aSp
Submitted July 01, 2022 at 05:51PM by hardenedvault
via reddit https://ift.tt/LWlvV8B
Building a scalable static analysis program at Razorpay
https://ift.tt/DXmCYby
Submitted July 01, 2022 at 07:09PM by jubbaonjeans
via reddit https://ift.tt/SMhxlod
https://ift.tt/DXmCYby
Submitted July 01, 2022 at 07:09PM by jubbaonjeans
via reddit https://ift.tt/SMhxlod
Medium
Building a SAST program at Razorpay’s scale
The inner workings of how we build a Static Application Security Testing program at Razorpay
Bulk Analysis of Cobalt Strike’s Beacon Configurations
https://ift.tt/ylzPbcq
Submitted July 02, 2022 at 08:09AM by DLLCoolJ
via reddit https://ift.tt/51W4QPp
https://ift.tt/ylzPbcq
Submitted July 02, 2022 at 08:09AM by DLLCoolJ
via reddit https://ift.tt/51W4QPp
Archcloudlabs
Bulk Analysis of Cobalt Stirke's Beacon Configurations
About The Project Security researcher Silas Cutler recently tweeted a link to a unique data set of Cobalt Strike Beacon payloads, and their extracted configurations (thanks Silas!). This is a fairly large data set going back to November of 2021, and containing…
Over 900k Kubernetes Clusters Were Found Exposed Online
https://ift.tt/JueKr4C
Submitted July 03, 2022 at 02:22PM by uleadiengwunn
via reddit https://ift.tt/K3bv7VR
https://ift.tt/JueKr4C
Submitted July 03, 2022 at 02:22PM by uleadiengwunn
via reddit https://ift.tt/K3bv7VR
ARMO
Over 900k Kubernetes Clusters Were Found Exposed Online | ARMO
Recent research showed that over 900,000 Kubernetes clusters were found exposed to the internet to potentially malicious scans
Code replay attack on the myGovID Scheme
https://ift.tt/osfFCw4
Submitted July 03, 2022 at 07:16PM by Gallus
via reddit https://ift.tt/PNiCx3S
https://ift.tt/osfFCw4
Submitted July 03, 2022 at 07:16PM by Gallus
via reddit https://ift.tt/PNiCx3S
Bypassing Firefox's HTML Sanitizer API
https://ift.tt/nQ2Eecw
Submitted July 04, 2022 at 12:18AM by digicat
via reddit https://ift.tt/FnsNAW2
https://ift.tt/nQ2Eecw
Submitted July 04, 2022 at 12:18AM by digicat
via reddit https://ift.tt/FnsNAW2
PortSwigger Research
Bypassing Firefox's HTML Sanitizer API
The HTML Sanitizer is a great new API that allows web developers to filter untrusted HTML natively in the browser rather than use a JavaScript library such as DOM Purify. Microsoft created a similar A
nday exploit: netgear orbi unauthenticated command injection (CVE-2020-27861)
https://ift.tt/Mrjodbw
Submitted July 04, 2022 at 01:38AM by 0xdea
via reddit https://ift.tt/JGj0xMc
https://ift.tt/Mrjodbw
Submitted July 04, 2022 at 01:38AM by 0xdea
via reddit https://ift.tt/JGj0xMc
hyprblog
nday exploit: netgear orbi unauthenticated command injection (CVE-2020-27861)
rediscovering and developing a weaponized exploit for a command injection vulnerability in Orbi wifi systems that was reported and patched last year.
From Misconfigured Certificate Template to Windows Domain Admin
https://ift.tt/f4oaYvB
Submitted July 05, 2022 at 02:08AM by Kondencuotaspienas
via reddit https://ift.tt/fEpa2j7
https://ift.tt/f4oaYvB
Submitted July 05, 2022 at 02:08AM by Kondencuotaspienas
via reddit https://ift.tt/fEpa2j7
www.ired.team
From Misconfigured Certificate Template to Domain Admin
From NtObjectManager to PetitPotam
https://ift.tt/a4btFhf
Submitted July 05, 2022 at 07:56PM by onlinereadme
via reddit https://ift.tt/rG4b3Dk
https://ift.tt/a4btFhf
Submitted July 05, 2022 at 07:56PM by onlinereadme
via reddit https://ift.tt/rG4b3Dk
clearbluejar
From NtObjectManager to PetitPotam
Windows RPC enumeration, discovery, and auditing via NtObjectManager. We will audit the vulnerable RPC interfaces that lead to PetitPotam, discover how they have changed over the past year, and overcome some common RPC auditing pitfalls.
Starting a career in Application Security? A real world perspective.
https://ift.tt/oFbjchi
Submitted July 04, 2022 at 11:30PM by theappsecteam
via reddit https://ift.tt/PLvMKWY
https://ift.tt/oFbjchi
Submitted July 04, 2022 at 11:30PM by theappsecteam
via reddit https://ift.tt/PLvMKWY
Abusing functionality to exploit a super SSRF in Jira Server (CVE-2022-26135)
https://ift.tt/91cElgx
Submitted July 06, 2022 at 04:19AM by Mempodipper
via reddit https://ift.tt/PJKpTu4
https://ift.tt/91cElgx
Submitted July 06, 2022 at 04:19AM by Mempodipper
via reddit https://ift.tt/PJKpTu4
Assetnote
Abusing functionality to exploit a super SSRF in Jira Server (CVE-2022-26135)
Application security issues found by Assetnote
Optimizing CI/CD Credential Hygiene – A Comparison of CI/CD Solutions
https://ift.tt/9tNlz5k
Submitted July 06, 2022 at 07:20PM by TupleType1
via reddit https://ift.tt/ypoAZVE
https://ift.tt/9tNlz5k
Submitted July 06, 2022 at 07:20PM by TupleType1
via reddit https://ift.tt/ypoAZVE
Cider Security Site
Optimizing CI/CD Credential Hygiene - A Comparison of CI/CD Solutions - Cider Security Site
Attackers are always on the lookout to gain access to credentials, which are a critical asset to protect and are widespread throughout the organization.