CVE-2022-22715 PoC: Windows Dirty Pipe
https://ift.tt/eofE1ga
Submitted August 23, 2022 at 11:02AM by sanitybit
via reddit https://ift.tt/5qCbFpA
https://ift.tt/eofE1ga
Submitted August 23, 2022 at 11:02AM by sanitybit
via reddit https://ift.tt/5qCbFpA
Masky is a python library providing an alternative way to remotely dump domain users’ credentials
https://ift.tt/SpyJL06
Submitted August 23, 2022 at 10:59AM by sanitybit
via reddit https://ift.tt/UzamvdB
https://ift.tt/SpyJL06
Submitted August 23, 2022 at 10:59AM by sanitybit
via reddit https://ift.tt/UzamvdB
Zak’s blog
Masky release (v0.0.3)
Masky is a python library providing an alternative way to remotely dump domain users’ credentials thanks to an ADCS. A command line tool has been built on top of this library in order to easily harvest PFX, NT hashes and TGT on a larger scope.
HTTP header Blind SQL injection Example
https://ift.tt/Io7DFE8
Submitted August 23, 2022 at 12:17PM by InformationSecurity
via reddit https://ift.tt/ESRlqsB
https://ift.tt/Io7DFE8
Submitted August 23, 2022 at 12:17PM by InformationSecurity
via reddit https://ift.tt/ESRlqsB
Haider's Infosec Blog
HTTP header Blind SQL injection Example
HTTP header Blind SQL injection Example is explained in this article to show how to exploit SQL injection in HTTP headers.
[CVE-2020-2733] Technical overview and PoC of bypassing admin authentication of JD Edwards EnterpriseOne
https://ift.tt/9hmEGdc
Submitted August 23, 2022 at 05:40PM by vah_13
via reddit https://ift.tt/5qUj1O0
https://ift.tt/9hmEGdc
Submitted August 23, 2022 at 05:40PM by vah_13
via reddit https://ift.tt/5qUj1O0
RedRays
[CVE-2020-2733] JD Edwards EnterpriseOne Tools admin password not adequately protected
JD Edwards EnterpriseOne Tools 9.2 or lower versions allow unauthenticated attackers to bypass the authentication and get Administrator rights on the system.
Argument Injection in Visual Studio Code < 1.67.1 (CVE-2022-30129)
https://ift.tt/rzMN6OQ
Submitted August 23, 2022 at 07:09PM by monoimpact
via reddit https://ift.tt/DI9jVuM
https://ift.tt/rzMN6OQ
Submitted August 23, 2022 at 07:09PM by monoimpact
via reddit https://ift.tt/DI9jVuM
Sonarsource
Securing Developer Tools: Argument Injection in Visual Studio Code
In the third part of our Securing Developer Tools series, we look at a critical vulnerability that affects one of the most popular code editors: Visual Studio Code.
SBOM 101 - All the questions you were afraid to ask Software Bill of Materials
https://ift.tt/4cGzIha
Submitted August 23, 2022 at 08:36PM by MiguelHzBz
via reddit https://ift.tt/fatcrnR
https://ift.tt/4cGzIha
Submitted August 23, 2022 at 08:36PM by MiguelHzBz
via reddit https://ift.tt/fatcrnR
Sysdig
SBOM 101
SBOM is a key piece in securing the software supply chain and fundamental for vulnerability matching and management.
Chainsaw 2.0: Allows users to rapidly search through Windows event logs and hunt for threats using Sigma detection rules.
https://ift.tt/maRhUns
Submitted August 23, 2022 at 09:19PM by sanitybit
via reddit https://ift.tt/OVeaFps
https://ift.tt/maRhUns
Submitted August 23, 2022 at 09:19PM by sanitybit
via reddit https://ift.tt/OVeaFps
GitHub
GitHub - WithSecureLabs/chainsaw: Rapidly Search and Hunt through Windows Forensic Artefacts
Rapidly Search and Hunt through Windows Forensic Artefacts - GitHub - WithSecureLabs/chainsaw: Rapidly Search and Hunt through Windows Forensic Artefacts
But You Told Me You Were Safe: Attacking the Mozilla Firefox Renderer (Part 2)
https://ift.tt/k9J2x6Z
Submitted August 24, 2022 at 02:21AM by sanitybit
via reddit https://ift.tt/b8s3JP4
https://ift.tt/k9J2x6Z
Submitted August 24, 2022 at 02:21AM by sanitybit
via reddit https://ift.tt/b8s3JP4
Zero Day Initiative
Zero Day Initiative — But You Told Me You Were Safe: Attacking the Mozilla Firefox Sandbox (Part 2)
In the first part of this series , we reviewed how Pwn2Own contestant Manfred Paul was able to compromise the Mozilla Firefox renderer process via a prototype pollution vulnerability in the await implementation. In modern browser architecture design, compromising…
bomber - a vulnerability scanner for SBOMs
https://ift.tt/i5QOJWk
Submitted August 24, 2022 at 02:07AM by sanitybit
via reddit https://ift.tt/IWOSxil
https://ift.tt/i5QOJWk
Submitted August 24, 2022 at 02:07AM by sanitybit
via reddit https://ift.tt/IWOSxil
GitHub
GitHub - devops-kung-fu/bomber: Scans Software Bill of Materials (SBOMs) for security vulnerabilities
Scans Software Bill of Materials (SBOMs) for security vulnerabilities - GitHub - devops-kung-fu/bomber: Scans Software Bill of Materials (SBOMs) for security vulnerabilities
Misconfigured Resource-Based Policies - Hacking The Cloud
https://ift.tt/POozQgw
Submitted August 24, 2022 at 08:04PM by RedTermSession
via reddit https://ift.tt/zDqOvQG
https://ift.tt/POozQgw
Submitted August 24, 2022 at 08:04PM by RedTermSession
via reddit https://ift.tt/zDqOvQG
Twitter Whistleblower Document Archive
https://ift.tt/8cbunMI
Submitted August 24, 2022 at 11:11PM by sanitybit
via reddit https://ift.tt/G2hzcZ4
https://ift.tt/8cbunMI
Submitted August 24, 2022 at 11:11PM by sanitybit
via reddit https://ift.tt/G2hzcZ4
How I was able to delete 13k+ Microsoft Translator Projects
https://ift.tt/U8XbrTd
Submitted August 25, 2022 at 12:40AM by InformationSecurity
via reddit https://ift.tt/9J0f1sr
https://ift.tt/U8XbrTd
Submitted August 25, 2022 at 12:40AM by InformationSecurity
via reddit https://ift.tt/9J0f1sr
Haider's Infosec Blog
How I was able to delete 13k+ Microsoft Translator Projects
Critical vulnerability found in Microsoft Translator Hub where all of its 13000 projects could be deleted using indirect object reference vulnerability
Exploitation in the era of formal verification - a peek at a new frontier
https://ift.tt/bdzMmfC
Submitted August 25, 2022 at 12:53AM by lojump1
via reddit https://ift.tt/9japBWK
https://ift.tt/bdzMmfC
Submitted August 25, 2022 at 12:53AM by lojump1
via reddit https://ift.tt/9japBWK
Attack surface of browser extension pages
https://ift.tt/n0eQqDS
Submitted August 25, 2022 at 03:12AM by sanitybit
via reddit https://ift.tt/gdGCQAj
https://ift.tt/n0eQqDS
Submitted August 25, 2022 at 03:12AM by sanitybit
via reddit https://ift.tt/gdGCQAj
Almost Secure
Attack surface of extension pages
Remote Code Execution in extension pages is actually hard to achieve. We’ll produce a vulnerable extension nevertheless and look into how it can be exploited.
Stripping nthLink VPN encryption
https://ift.tt/k7mMHIV
Submitted August 25, 2022 at 03:53AM by yarmak
via reddit https://ift.tt/507KlOy
https://ift.tt/k7mMHIV
Submitted August 25, 2022 at 03:53AM by yarmak
via reddit https://ift.tt/507KlOy
Snawoot.github.io
Stripping nthLink VPN encryption
Website
EtwSessionHijacking: Blocking Procmon from monitoring network events
https://ift.tt/r63ptPN
Submitted August 25, 2022 at 05:01AM by sanitybit
via reddit https://ift.tt/82EJskR
https://ift.tt/r63ptPN
Submitted August 25, 2022 at 05:01AM by sanitybit
via reddit https://ift.tt/82EJskR
GitHub
GitHub - NUL0x4C/EtwSessionHijacking: A Poc on blocking Procmon from monitoring network events
A Poc on blocking Procmon from monitoring network events - GitHub - NUL0x4C/EtwSessionHijacking: A Poc on blocking Procmon from monitoring network events
Uncovering a ChromeOS remote memory corruption vulnerability
https://ift.tt/L9nYlbq
Submitted August 25, 2022 at 11:39AM by sanitybit
via reddit https://ift.tt/j3dAPDK
https://ift.tt/L9nYlbq
Submitted August 25, 2022 at 11:39AM by sanitybit
via reddit https://ift.tt/j3dAPDK
Microsoft Security Blog
Uncovering a ChromeOS remote memory corruption vulnerability - Microsoft Security Blog
Microsoft discovered a memory corruption vulnerability in a ChromeOS component that could have been triggered remotely, allowing attackers to perform either a denial-of-service (DoS) or, in extreme cases, remote code execution (RCE).
whids - Open Source EDR for Windows
https://ift.tt/ascgALu
Submitted August 25, 2022 at 11:35AM by sanitybit
via reddit https://ift.tt/S5pUrok
https://ift.tt/ascgALu
Submitted August 25, 2022 at 11:35AM by sanitybit
via reddit https://ift.tt/S5pUrok
GitHub
GitHub - 0xrawsec/whids: Open Source EDR for Windows
Open Source EDR for Windows. Contribute to 0xrawsec/whids development by creating an account on GitHub.
Investigating .NET CLR Usage Log Tampering Techniques For EDR Evasion (Part 2)
https://ift.tt/i9f4yZ0
Submitted August 25, 2022 at 12:49PM by sanitybit
via reddit https://ift.tt/jOwvtY4
https://ift.tt/i9f4yZ0
Submitted August 25, 2022 at 12:49PM by sanitybit
via reddit https://ift.tt/jOwvtY4
bohops
Investigating .NET CLR Usage Log Tampering Techniques For EDR Evasion (Part 2)
Introduction Last year, I blogged about Investigating .NET CLR Usage Log Tampering Techniques For EDR Evasion. In that part 1 post, we covered: The purpose of .NET Usage Logs and when they are crea…
Cherrybomb: OAS file auditor and API scanner just released version v0.7.0! would love input for more scans to implement
https://ift.tt/W2PjCeJ
Submitted August 24, 2022 at 10:35PM by RazCherrybomb
via reddit https://ift.tt/lAS1iMJ
https://ift.tt/W2PjCeJ
Submitted August 24, 2022 at 10:35PM by RazCherrybomb
via reddit https://ift.tt/lAS1iMJ
GitHub
GitHub - blst-security/cherrybomb: Stop half-done APIs! Cherrybomb is a CLI tool that helps you avoid undefined user behaviour…
Stop half-done APIs! Cherrybomb is a CLI tool that helps you avoid undefined user behaviour by auditing your API specifications, validating them and running API security tests. - GitHub - blst-secu...
2-byte DoS in freebsd-telnetd / netbsd-telnetd / netkit-telnetd / inetutils-telnetd / telnetd in Kerberos Version 5 Applications - Binary Golf Grand Prix 3
https://ift.tt/3AVcabz
Submitted August 25, 2022 at 04:37PM by PierreKimSec
via reddit https://ift.tt/lDBydzi
https://ift.tt/3AVcabz
Submitted August 25, 2022 at 04:37PM by PierreKimSec
via reddit https://ift.tt/lDBydzi