Scanning 1.7 million Australian domains and finding 1.62 million SPF & DMARC security issues
https://ift.tt/8AsTOzN
Submitted July 08, 2022 at 04:13PM by caniphish_ltd
via reddit https://ift.tt/J6BuXRT
https://ift.tt/8AsTOzN
Submitted July 08, 2022 at 04:13PM by caniphish_ltd
via reddit https://ift.tt/J6BuXRT
Caniphish
Email security issues with SPF & DMARC Adoption | CanIPhish
Scanning 1.7 million Australian domains and finding 1.62 million SPF & DMARC email security issues.
Practical Approach on Securing Web Sessions
https://ift.tt/9HR2GoA
Submitted July 10, 2022 at 04:04PM by quercialab
via reddit https://ift.tt/B3EFkUP
https://ift.tt/9HR2GoA
Submitted July 10, 2022 at 04:04PM by quercialab
via reddit https://ift.tt/B3EFkUP
Quercialabs
Securing Web Sessions
One student sent us an email and asked “why most of websites implements a session id that seems to be a content hashed?”. Well, it’s important to discuss at this time why protecting session id must be done, and how it is evolved.
The obligatory disclaimer:…
The obligatory disclaimer:…
WAF from the scratch
https://ift.tt/mxU9Rb6
Submitted July 11, 2022 at 10:02AM by CoolerVoid
via reddit https://ift.tt/Odz84ov
https://ift.tt/mxU9Rb6
Submitted July 11, 2022 at 10:02AM by CoolerVoid
via reddit https://ift.tt/Odz84ov
antonio-cooler.gitbook.io
Whoami
Little words about me
hijagger: Checks all maintainers of all NPM and Pypi packages for hijackable packages through domain re-registration
https://ift.tt/mjKTHn1
Submitted July 11, 2022 at 05:45PM by FireFart
via reddit https://ift.tt/xU0iSyb
https://ift.tt/mjKTHn1
Submitted July 11, 2022 at 05:45PM by FireFart
via reddit https://ift.tt/xU0iSyb
GitHub
GitHub - firefart/hijagger: Checks all maintainers of all NPM and Pypi packages for hijackable packages through domain re-registration
Checks all maintainers of all NPM and Pypi packages for hijackable packages through domain re-registration - GitHub - firefart/hijagger: Checks all maintainers of all NPM and Pypi packages for hija...
Exploiting Authentication in AWS IAM Authenticator for Kubernetes
https://ift.tt/ZxFlcDJ
Submitted July 12, 2022 at 12:42PM by albinowax
via reddit https://ift.tt/2pCdqPG
https://ift.tt/ZxFlcDJ
Submitted July 12, 2022 at 12:42PM by albinowax
via reddit https://ift.tt/2pCdqPG
blog.lightspin.io
Exploiting Authentication in AWS IAM Authenticator for Kubernetes
This blog post explains three vulnerabilities detected in the AWS IAM Authenticator where all of them were caused by the same code line.
Misconfiguration on Digital Guardian Endpoint DLP
https://ift.tt/1RgluKD
Submitted July 11, 2022 at 12:20PM by i014n
via reddit https://ift.tt/ztHqvpy
https://ift.tt/1RgluKD
Submitted July 11, 2022 at 12:20PM by i014n
via reddit https://ift.tt/ztHqvpy
Medium
Misconfiguration on Digital Guardian Endpoint DLP
CVE-2022–35412
Exploratory analysis of CVEs - Some interesting viz
https://ift.tt/4ibkgjR
Submitted July 12, 2022 at 06:27PM by 10xpdev
via reddit https://ift.tt/5FPQ0n8
https://ift.tt/4ibkgjR
Submitted July 12, 2022 at 06:27PM by 10xpdev
via reddit https://ift.tt/5FPQ0n8
Kaggle
CVE: Exploratory Analysis
Explore and run machine learning code with Kaggle Notebooks | Using data from CVE (Common Vulnerabilities and Exposures)
From cookie theft to BEC: Attackers use AiTM phishing sites as entry point to further financial fraud
https://ift.tt/kcuahYd
Submitted July 12, 2022 at 09:35PM by SCI_Rusher
via reddit https://ift.tt/26iHRQr
https://ift.tt/kcuahYd
Submitted July 12, 2022 at 09:35PM by SCI_Rusher
via reddit https://ift.tt/26iHRQr
Microsoft Security Blog
From cookie theft to BEC: Attackers use AiTM phishing sites as entry point to further financial fraud - Microsoft Security Blog
A large-scale phishing campaign that attempted to target over 10,000 organizations since September 2021 used adversary-in-the-middle (AiTM) phishing sites to steal passwords, hijack a user’s sign-in session, and skip the authentication process, even if the…
Microsoft Azure Site Recovery DLL Hijacking ($10,000 Bug Bounty)
https://ift.tt/UiGlj5W
Submitted July 12, 2022 at 10:32PM by dinobyt3s
via reddit https://ift.tt/abGVYte
https://ift.tt/UiGlj5W
Submitted July 12, 2022 at 10:32PM by dinobyt3s
via reddit https://ift.tt/abGVYte
Medium
Microsoft Azure Site Recovery DLL Hijacking
Azure Site Recovery is a suite of tools aimed at providing disaster recovery services for cloud resources. It provides utilities for…
How to secure Kubernetes deployment with signature verification – Cosign and Connaisseur
https://ift.tt/AUea6Fi
Submitted July 12, 2022 at 11:56PM by MiguelHzBz
via reddit https://ift.tt/mtqof6i
https://ift.tt/AUea6Fi
Submitted July 12, 2022 at 11:56PM by MiguelHzBz
via reddit https://ift.tt/mtqof6i
Sysdig
How to secure Kubernetes deployment with signature verification – Sysdig
Cosign and Connaisseur allow us to secure the Kubernetes deployment with signature verification, ensures that our images do not change.
Retbleed: Arbitrary Speculative Code Execution with Return Instructions
https://ift.tt/XUlWcuE
Submitted July 13, 2022 at 01:57AM by mstromich
via reddit https://ift.tt/nFrCAzD
https://ift.tt/XUlWcuE
Submitted July 13, 2022 at 01:57AM by mstromich
via reddit https://ift.tt/nFrCAzD
Executing Arbitrary Code Over a Phone Line Thanks to the XBAND Video Game Modem
https://ift.tt/rjybFgw
Submitted July 13, 2022 at 06:44AM by vincelasal
via reddit https://ift.tt/irELFf3
https://ift.tt/rjybFgw
Submitted July 13, 2022 at 06:44AM by vincelasal
via reddit https://ift.tt/irELFf3
fresh-eggs.github.io
Exploring the XBAND Video Game Modem and Executing Arbitrary Code Over a Phone Line in 2022
computers
Rolling PWN Attack Affecting Honda Vehicles
https://ift.tt/kber7JT
Submitted July 13, 2022 at 10:52AM by 0xdea
via reddit https://ift.tt/Q0twJNg
https://ift.tt/kber7JT
Submitted July 13, 2022 at 10:52AM by 0xdea
via reddit https://ift.tt/Q0twJNg
CVE-2022-32223 Discovery: DLL Hijacking via npm CLI
https://ift.tt/3LQSwIs
Submitted July 13, 2022 at 12:36PM by mkatch
via reddit https://ift.tt/khUp1IA
https://ift.tt/3LQSwIs
Submitted July 13, 2022 at 12:36PM by mkatch
via reddit https://ift.tt/khUp1IA
Aquasec
CVE-2022-32223 Discovery: DLL Hijacking via npm CLI
Team Nautilus has recently discovered a vulnerability in Node.js that can lead to DLL hijacking on Windows via npm CLI if OpenSSL is installed on the host
Microsoft Teams — Cross Site Scripting (XSS) Bypass CSP ($6,000 Bug Bounty)
https://ift.tt/rbAo5f0
Submitted July 13, 2022 at 12:02PM by numanturle
via reddit https://ift.tt/084Vqas
https://ift.tt/rbAo5f0
Submitted July 13, 2022 at 12:02PM by numanturle
via reddit https://ift.tt/084Vqas
Medium
Microsoft Teams — Cross Site Scripting (XSS) Bypass CSP
During my early stages of employment at Gais Cyber Security in 2021, my manager had reached out to me over the phone and said with…
Introducing Pretender: Your New Sidekick for Relaying Attacks
https://ift.tt/Q23k0ZU
Submitted July 13, 2022 at 05:27PM by RedTeamPentesting
via reddit https://ift.tt/ezdLO0t
https://ift.tt/Q23k0ZU
Submitted July 13, 2022 at 05:27PM by RedTeamPentesting
via reddit https://ift.tt/ezdLO0t
RedTeam Pentesting - Blog
Introducing Pretender - Your New Sidekick for Relaying Attacks
We’ve just released another open-source tool: pretender, a cross-platform tool to obtain a machine-in-the-middle position inside Windows networks in the spirit of Responder and mitm6. It implements local name resolution spoofing using the mDNS, …
From Prototype Pollution to Remote Code Execution in Blitz.js
https://ift.tt/LS3ANcu
Submitted July 13, 2022 at 07:41PM by SonarPaul
via reddit https://ift.tt/0dTqgtl
https://ift.tt/LS3ANcu
Submitted July 13, 2022 at 07:41PM by SonarPaul
via reddit https://ift.tt/0dTqgtl
Sonarsource
Remote Code Execution via Prototype Pollution in Blitz.js
We recently discovered a Prototype Pollution vulnerability in Blitz.js leading to Remote Code Execution. Learn about this bug class and how to avoid it in your code!
Affinis - Subdomain Discovery Through RNN (Recurrent Neural Network)
https://ift.tt/QJVRmDI
Submitted July 13, 2022 at 07:24PM by jibblz
via reddit https://ift.tt/M1g2BUW
https://ift.tt/QJVRmDI
Submitted July 13, 2022 at 07:24PM by jibblz
via reddit https://ift.tt/M1g2BUW
The Long Tail of Log4Shell Exploitation
https://ift.tt/UuJZhkD
Submitted July 13, 2022 at 07:05PM by scopedsecurity
via reddit https://ift.tt/TIAUYEe
https://ift.tt/UuJZhkD
Submitted July 13, 2022 at 07:05PM by scopedsecurity
via reddit https://ift.tt/TIAUYEe
Horizon3.ai
The Long Tail of Log4Shell Exploitation
It's been more than six months since the Log4Shell vulnerability (CVE-2021-44228) was disclosed, and a number of post-mortems have come out talking about lessons learned and ways to prevent the next Log4Shell-type event from happening.
How Windows Processes Work - Creation, APIs, Data Structures (Part 1)
https://ift.tt/YmgLbN8
Submitted July 13, 2022 at 10:10PM by sciencestudent99
via reddit https://ift.tt/4YhnErx
https://ift.tt/YmgLbN8
Submitted July 13, 2022 at 10:10PM by sciencestudent99
via reddit https://ift.tt/4YhnErx
FourCore
Genesis - The Birth of a Windows Process (Part 1) - FourCore
What happens when you run an executable on your Windows machine? This blog provides a brief overview and the flow for creating a Windows Process, the APIs and structures involved, and the Process Internals.
Attacking Active Directory: 0 to 0.9
https://ift.tt/1uXPGeN
Submitted July 14, 2022 at 12:12AM by CyberMasterV
via reddit https://ift.tt/v9XW1zR
https://ift.tt/1uXPGeN
Submitted July 14, 2022 at 12:12AM by CyberMasterV
via reddit https://ift.tt/v9XW1zR