Misconfiguration on Digital Guardian Endpoint DLP
https://ift.tt/1RgluKD
Submitted July 11, 2022 at 12:20PM by i014n
via reddit https://ift.tt/ztHqvpy
https://ift.tt/1RgluKD
Submitted July 11, 2022 at 12:20PM by i014n
via reddit https://ift.tt/ztHqvpy
Medium
Misconfiguration on Digital Guardian Endpoint DLP
CVE-2022–35412
Exploratory analysis of CVEs - Some interesting viz
https://ift.tt/4ibkgjR
Submitted July 12, 2022 at 06:27PM by 10xpdev
via reddit https://ift.tt/5FPQ0n8
https://ift.tt/4ibkgjR
Submitted July 12, 2022 at 06:27PM by 10xpdev
via reddit https://ift.tt/5FPQ0n8
Kaggle
CVE: Exploratory Analysis
Explore and run machine learning code with Kaggle Notebooks | Using data from CVE (Common Vulnerabilities and Exposures)
From cookie theft to BEC: Attackers use AiTM phishing sites as entry point to further financial fraud
https://ift.tt/kcuahYd
Submitted July 12, 2022 at 09:35PM by SCI_Rusher
via reddit https://ift.tt/26iHRQr
https://ift.tt/kcuahYd
Submitted July 12, 2022 at 09:35PM by SCI_Rusher
via reddit https://ift.tt/26iHRQr
Microsoft Security Blog
From cookie theft to BEC: Attackers use AiTM phishing sites as entry point to further financial fraud - Microsoft Security Blog
A large-scale phishing campaign that attempted to target over 10,000 organizations since September 2021 used adversary-in-the-middle (AiTM) phishing sites to steal passwords, hijack a user’s sign-in session, and skip the authentication process, even if the…
Microsoft Azure Site Recovery DLL Hijacking ($10,000 Bug Bounty)
https://ift.tt/UiGlj5W
Submitted July 12, 2022 at 10:32PM by dinobyt3s
via reddit https://ift.tt/abGVYte
https://ift.tt/UiGlj5W
Submitted July 12, 2022 at 10:32PM by dinobyt3s
via reddit https://ift.tt/abGVYte
Medium
Microsoft Azure Site Recovery DLL Hijacking
Azure Site Recovery is a suite of tools aimed at providing disaster recovery services for cloud resources. It provides utilities for…
How to secure Kubernetes deployment with signature verification – Cosign and Connaisseur
https://ift.tt/AUea6Fi
Submitted July 12, 2022 at 11:56PM by MiguelHzBz
via reddit https://ift.tt/mtqof6i
https://ift.tt/AUea6Fi
Submitted July 12, 2022 at 11:56PM by MiguelHzBz
via reddit https://ift.tt/mtqof6i
Sysdig
How to secure Kubernetes deployment with signature verification – Sysdig
Cosign and Connaisseur allow us to secure the Kubernetes deployment with signature verification, ensures that our images do not change.
Retbleed: Arbitrary Speculative Code Execution with Return Instructions
https://ift.tt/XUlWcuE
Submitted July 13, 2022 at 01:57AM by mstromich
via reddit https://ift.tt/nFrCAzD
https://ift.tt/XUlWcuE
Submitted July 13, 2022 at 01:57AM by mstromich
via reddit https://ift.tt/nFrCAzD
Executing Arbitrary Code Over a Phone Line Thanks to the XBAND Video Game Modem
https://ift.tt/rjybFgw
Submitted July 13, 2022 at 06:44AM by vincelasal
via reddit https://ift.tt/irELFf3
https://ift.tt/rjybFgw
Submitted July 13, 2022 at 06:44AM by vincelasal
via reddit https://ift.tt/irELFf3
fresh-eggs.github.io
Exploring the XBAND Video Game Modem and Executing Arbitrary Code Over a Phone Line in 2022
computers
Rolling PWN Attack Affecting Honda Vehicles
https://ift.tt/kber7JT
Submitted July 13, 2022 at 10:52AM by 0xdea
via reddit https://ift.tt/Q0twJNg
https://ift.tt/kber7JT
Submitted July 13, 2022 at 10:52AM by 0xdea
via reddit https://ift.tt/Q0twJNg
CVE-2022-32223 Discovery: DLL Hijacking via npm CLI
https://ift.tt/3LQSwIs
Submitted July 13, 2022 at 12:36PM by mkatch
via reddit https://ift.tt/khUp1IA
https://ift.tt/3LQSwIs
Submitted July 13, 2022 at 12:36PM by mkatch
via reddit https://ift.tt/khUp1IA
Aquasec
CVE-2022-32223 Discovery: DLL Hijacking via npm CLI
Team Nautilus has recently discovered a vulnerability in Node.js that can lead to DLL hijacking on Windows via npm CLI if OpenSSL is installed on the host
Microsoft Teams — Cross Site Scripting (XSS) Bypass CSP ($6,000 Bug Bounty)
https://ift.tt/rbAo5f0
Submitted July 13, 2022 at 12:02PM by numanturle
via reddit https://ift.tt/084Vqas
https://ift.tt/rbAo5f0
Submitted July 13, 2022 at 12:02PM by numanturle
via reddit https://ift.tt/084Vqas
Medium
Microsoft Teams — Cross Site Scripting (XSS) Bypass CSP
During my early stages of employment at Gais Cyber Security in 2021, my manager had reached out to me over the phone and said with…
Introducing Pretender: Your New Sidekick for Relaying Attacks
https://ift.tt/Q23k0ZU
Submitted July 13, 2022 at 05:27PM by RedTeamPentesting
via reddit https://ift.tt/ezdLO0t
https://ift.tt/Q23k0ZU
Submitted July 13, 2022 at 05:27PM by RedTeamPentesting
via reddit https://ift.tt/ezdLO0t
RedTeam Pentesting - Blog
Introducing Pretender - Your New Sidekick for Relaying Attacks
We’ve just released another open-source tool: pretender, a cross-platform tool to obtain a machine-in-the-middle position inside Windows networks in the spirit of Responder and mitm6. It implements local name resolution spoofing using the mDNS, …
From Prototype Pollution to Remote Code Execution in Blitz.js
https://ift.tt/LS3ANcu
Submitted July 13, 2022 at 07:41PM by SonarPaul
via reddit https://ift.tt/0dTqgtl
https://ift.tt/LS3ANcu
Submitted July 13, 2022 at 07:41PM by SonarPaul
via reddit https://ift.tt/0dTqgtl
Sonarsource
Remote Code Execution via Prototype Pollution in Blitz.js
We recently discovered a Prototype Pollution vulnerability in Blitz.js leading to Remote Code Execution. Learn about this bug class and how to avoid it in your code!
Affinis - Subdomain Discovery Through RNN (Recurrent Neural Network)
https://ift.tt/QJVRmDI
Submitted July 13, 2022 at 07:24PM by jibblz
via reddit https://ift.tt/M1g2BUW
https://ift.tt/QJVRmDI
Submitted July 13, 2022 at 07:24PM by jibblz
via reddit https://ift.tt/M1g2BUW
The Long Tail of Log4Shell Exploitation
https://ift.tt/UuJZhkD
Submitted July 13, 2022 at 07:05PM by scopedsecurity
via reddit https://ift.tt/TIAUYEe
https://ift.tt/UuJZhkD
Submitted July 13, 2022 at 07:05PM by scopedsecurity
via reddit https://ift.tt/TIAUYEe
Horizon3.ai
The Long Tail of Log4Shell Exploitation
It's been more than six months since the Log4Shell vulnerability (CVE-2021-44228) was disclosed, and a number of post-mortems have come out talking about lessons learned and ways to prevent the next Log4Shell-type event from happening.
How Windows Processes Work - Creation, APIs, Data Structures (Part 1)
https://ift.tt/YmgLbN8
Submitted July 13, 2022 at 10:10PM by sciencestudent99
via reddit https://ift.tt/4YhnErx
https://ift.tt/YmgLbN8
Submitted July 13, 2022 at 10:10PM by sciencestudent99
via reddit https://ift.tt/4YhnErx
FourCore
Genesis - The Birth of a Windows Process (Part 1) - FourCore
What happens when you run an executable on your Windows machine? This blog provides a brief overview and the flow for creating a Windows Process, the APIs and structures involved, and the Process Internals.
Attacking Active Directory: 0 to 0.9
https://ift.tt/1uXPGeN
Submitted July 14, 2022 at 12:12AM by CyberMasterV
via reddit https://ift.tt/v9XW1zR
https://ift.tt/1uXPGeN
Submitted July 14, 2022 at 12:12AM by CyberMasterV
via reddit https://ift.tt/v9XW1zR
CVE-2022-29885 - Apache Tomcat Cluster Service DoS
https://ift.tt/GnabYki
Submitted July 14, 2022 at 01:33AM by voidz0r
via reddit https://ift.tt/b1ER5aZ
https://ift.tt/GnabYki
Submitted July 14, 2022 at 01:33AM by voidz0r
via reddit https://ift.tt/b1ER5aZ
Voidzone
CVE-2022-29885 - Apache Tomcat Cluster Service DoS
An analysis of a Denial Of Service vulnerability on the Apache Tomcat Cluster Service listener.
Dealing with Failure: Failure Escalation Policy in CLR Hosts
https://ift.tt/q5WwQ3s
Submitted July 14, 2022 at 01:13AM by jeandrew
via reddit https://ift.tt/VBtwMmg
https://ift.tt/q5WwQ3s
Submitted July 14, 2022 at 01:13AM by jeandrew
via reddit https://ift.tt/VBtwMmg
Medium
Dealing with Failure: Failure Escalation Policy in CLR Hosts
Offensive tooling built upon the .NET framework and its runtime environment, the Common Language Runtime (CLR), is an important part of…
Introducing Decompiler Explorer (🐶⚡️)
https://ift.tt/edNoWkj
Submitted July 14, 2022 at 03:28AM by Psifertex
via reddit https://ift.tt/7bcQAld
https://ift.tt/edNoWkj
Submitted July 14, 2022 at 03:28AM by Psifertex
via reddit https://ift.tt/7bcQAld
Binary Ninja
Binary Ninja - Introducing Decompiler Explorer
Binary Ninja is a modern reverse engineering platform with a noscriptable and extensible decompiler.
This Salesforce Tableau Server XSS vulnerability will not get a CVE attributed. Here is the PoC and the fixed versions.
https://ift.tt/zGUqmpH
Submitted July 13, 2022 at 09:22PM by obilodeau
via reddit https://ift.tt/4BRrS8O
https://ift.tt/zGUqmpH
Submitted July 13, 2022 at 09:22PM by obilodeau
via reddit https://ift.tt/4BRrS8O
GoSecure
Tableau Server Leaks Sensitive Information From Reflected XSS - GoSecure
Penetration testing identifies Tableau Server was vulnerable to reflected XSS which could lead to exposure of sensitive data.
Researching access tokens for fun and knowledge
https://ift.tt/Cl4Tzhn
Submitted July 14, 2022 at 04:15PM by One-Assistance-8552
via reddit https://ift.tt/qxgfnRJ
https://ift.tt/Cl4Tzhn
Submitted July 14, 2022 at 04:15PM by One-Assistance-8552
via reddit https://ift.tt/qxgfnRJ
Huntandhackett
Researching access tokens for fun and knowledge
In this blog we dive into compound identities, Azure Key Vault, JWT tokens and bound identities. For fun and to understand their inner workings.