Digging into an NTLM Downgrade Attack
https://ift.tt/Cbfi710
Submitted August 31, 2022 at 10:36AM by 0xdea
via reddit https://ift.tt/9TiMpjO
https://ift.tt/Cbfi710
Submitted August 31, 2022 at 10:36AM by 0xdea
via reddit https://ift.tt/9TiMpjO
Praetorian
Digging into an NTLM Downgrade Attack - Praetorian
Overcoming version hurdles to perform an NTLM downgrade attack and obtain an NTLMv1 hash from a target computer during our ADFS research.
CVE-2021-38297 - Technical analysis of a Go WebAssembly vulnerability
https://ift.tt/tMlFcBL
Submitted August 31, 2022 at 01:00PM by SRMish3
via reddit https://ift.tt/bWgVx0S
https://ift.tt/tMlFcBL
Submitted August 31, 2022 at 01:00PM by SRMish3
via reddit https://ift.tt/bWgVx0S
JFrog
CVE-2021-38297 - Go Web Assembly Vulnerability
CVE-2021-38297 allows attackers to override an entire Wasm module & achieve WebAssembly code execution. Read technical analysis & mitigation from JFrog Security research >
From Onboarding to Offboarding - Securing GitHub Apps Integration
https://ift.tt/kr16TSX
Submitted August 31, 2022 at 04:46PM by Hefty_Knowledge_7449
via reddit https://ift.tt/yZf89qN
https://ift.tt/kr16TSX
Submitted August 31, 2022 at 04:46PM by Hefty_Knowledge_7449
via reddit https://ift.tt/yZf89qN
Cider Security Site
From Onboarding to Offboarding - Securing GitHub Apps Integration
GitHub officially recommends using GitHub Apps when integrating with GitHub, as they are easy to build and enjoy a rich and extensive API. Most of us GitHub users have probably installed at least a few GitHub Apps, but have you ever stopped and wondered…
Announcing the Open Sourcing of Paranoid's Library - Detect well-known weaknesses in large amounts of crypto artifacts, like public keys and digital signatures
https://ift.tt/cCkDUuN
Submitted August 31, 2022 at 06:01PM by _rs
via reddit https://ift.tt/2LcM7SG
https://ift.tt/cCkDUuN
Submitted August 31, 2022 at 06:01PM by _rs
via reddit https://ift.tt/2LcM7SG
Google Online Security Blog
Announcing the Open Sourcing of Paranoid's Library
Posted by Pedro Barbosa, Security Engineer, and Daniel Bleichenbacher, Software Engineer Paranoid is a project to detect well-known weaknes...
Restricting Libraries in JVM Compute Platforms - Security challenges with Scala and Java libraries
https://ift.tt/9v0O2Sx
Submitted August 31, 2022 at 05:59PM by _rs
via reddit https://ift.tt/YXUasHj
https://ift.tt/9v0O2Sx
Submitted August 31, 2022 at 05:59PM by _rs
via reddit https://ift.tt/YXUasHj
Databricks
Restricting Libraries in JVM Compute Platforms
Security challenges
Open source automated AWS CIS v1.5 benchmark assessment just released by Steampipe.io
https://ift.tt/DWYMJLZ
Submitted August 31, 2022 at 07:37PM by bobtbot
via reddit https://ift.tt/nsUPdQh
https://ift.tt/DWYMJLZ
Submitted August 31, 2022 at 07:37PM by bobtbot
via reddit https://ift.tt/nsUPdQh
Steampipe Hub
AWS Compliance Mod for Steampipe
Run individual configuration, compliance and security controls or full compliance benchmarks for CIS, FFIEC, PCI, NIST, HIPAA, RBI CSF, GDPR, SOC 2, Audit Manager Control Tower, FedRAMP, GxP and AWS Foundational Security Best Practices controls across all…
MemLabs: Learn Memory Forensics through CTF-styled labs
https://ift.tt/vDJVbma
Submitted August 31, 2022 at 11:02PM by sanitybit
via reddit https://ift.tt/a1wWzvq
https://ift.tt/vDJVbma
Submitted August 31, 2022 at 11:02PM by sanitybit
via reddit https://ift.tt/a1wWzvq
GitHub
GitHub - stuxnet999/MemLabs: Educational, CTF-styled labs for individuals interested in Memory Forensics
Educational, CTF-styled labs for individuals interested in Memory Forensics - GitHub - stuxnet999/MemLabs: Educational, CTF-styled labs for individuals interested in Memory Forensics
Vulnerability in TikTok Android app could lead to one-click account hijacking
https://ift.tt/hMktFVm
Submitted August 31, 2022 at 11:00PM by CyberMasterV
via reddit https://ift.tt/7FHoKa5
https://ift.tt/hMktFVm
Submitted August 31, 2022 at 11:00PM by CyberMasterV
via reddit https://ift.tt/7FHoKa5
Microsoft Security Blog
Vulnerability in TikTok Android app could lead to one-click account hijacking | Microsoft Security Blog
Microsoft discovered a high-severity vulnerability in the TikTok Android application, now identified as CVE-2022-28799 and fixed by TikTok, which could have allowed attackers to compromise users' accounts with a single click.
Linux Audit comes at a cost, is that where BPF steps in?
https://ift.tt/qpMrDfI
Submitted August 31, 2022 at 11:10PM by Blakebvhjjdd
via reddit https://ift.tt/3suzlTD
https://ift.tt/qpMrDfI
Submitted August 31, 2022 at 11:10PM by Blakebvhjjdd
via reddit https://ift.tt/3suzlTD
Goteleport
What You Need to Know About Linux Audit Framework
In this blog post, we'll deep-dive into Linux Audit Framework.
How I Met Your Beacon: Detection Strategies
https://ift.tt/yThR9X4
Submitted September 01, 2022 at 05:53AM by sanitybit
via reddit https://ift.tt/hLxNg32
https://ift.tt/yThR9X4
Submitted September 01, 2022 at 05:53AM by sanitybit
via reddit https://ift.tt/hLxNg32
MDSec
PART 1: How I Met Your Beacon - Overview - MDSec
Introduction Its no secret that MDSec provides a commercial command-and-control framework with a focus on evasion for covert operations. With this in mind, we are continuously performing on-going R&D in...
SETTLERS OF NETLINK: Exploiting a limited Use After Free in nf_tables (CVE-2022-32250) against the latest Ubuntu (22.04) and Linux kernel 5.15 -
https://ift.tt/uk9fqmt
Submitted September 01, 2022 at 02:38PM by digicat
via reddit https://ift.tt/Uh2gLq3
https://ift.tt/uk9fqmt
Submitted September 01, 2022 at 02:38PM by digicat
via reddit https://ift.tt/Uh2gLq3
NCC Group Research
SETTLERS OF NETLINK: Exploiting a limited UAF in nf_tables (CVE-2022-32250)
Introduction netlink and nf_tables Overview Sets Expressions Set Expressions Stateful Expressions Expressions of Interest nft_lookup nft_dynset nft_connlimit Vulnerability Discovery CVE-2022-32250 …
GitHub - RossGeerlings/tio-ad-sync: Group Syncing between Active Directory and Tenable.io, and Automated Access Control
https://ift.tt/JGjqAp2
Submitted September 01, 2022 at 08:06PM by RossGeerlings
via reddit https://ift.tt/SaVe2FA
https://ift.tt/JGjqAp2
Submitted September 01, 2022 at 08:06PM by RossGeerlings
via reddit https://ift.tt/SaVe2FA
GitHub
GitHub - RossGeerlings/tio-ad-sync: Group Syncing between Active Directory and Tenable.io, and Automated Access Control
Group Syncing between Active Directory and Tenable.io, and Automated Access Control - GitHub - RossGeerlings/tio-ad-sync: Group Syncing between Active Directory and Tenable.io, and Automated Access...
Source Code Management Attack Toolkit - Supports GitHub Enterprise, GitLab Enterprise, & Bitbucket Server
https://ift.tt/xEKpQCV
Submitted September 02, 2022 at 09:50AM by sanitybit
via reddit https://ift.tt/mX85gFN
https://ift.tt/xEKpQCV
Submitted September 02, 2022 at 09:50AM by sanitybit
via reddit https://ift.tt/mX85gFN
GitHub
GitHub - h4wkst3r/SCMKit: Source Code Management Attack Toolkit
Source Code Management Attack Toolkit. Contribute to h4wkst3r/SCMKit development by creating an account on GitHub.
More SRE Lessons for SOC: Release Engineering Ideas
https://ift.tt/TIblBv4
Submitted September 02, 2022 at 09:41AM by sanitybit
via reddit https://ift.tt/tLQy1l8
https://ift.tt/TIblBv4
Submitted September 02, 2022 at 09:41AM by sanitybit
via reddit https://ift.tt/tLQy1l8
Medium
More SRE Lessons for SOC: Release Engineering Ideas
As we discussed in our blogs, “Achieving Autonomic Security Operations: Reducing toil” and “Achieving Autonomic Security Operations…
So You Wanna Pwn The Kernel?
https://ift.tt/ZB92EVI
Submitted September 02, 2022 at 03:42PM by _rs
via reddit https://ift.tt/kdhelPQ
https://ift.tt/ZB92EVI
Submitted September 02, 2022 at 03:42PM by _rs
via reddit https://ift.tt/kdhelPQ
sam4k
So You Wanna Pwn The Kernel?
My aim for this post is to provide some insights for getting into Linux kernel vulnerability research and exploit development
CVE-2021-38406 or CISA KEV Catalog Lacks Accountability
https://ift.tt/tLf8MYD
Submitted September 02, 2022 at 04:22PM by chicksdigthelongrun
via reddit https://ift.tt/mPgEl1w
https://ift.tt/tLf8MYD
Submitted September 02, 2022 at 04:22PM by chicksdigthelongrun
via reddit https://ift.tt/mPgEl1w
AttackerKB
CVE-2021-38406 | AttackerKB
Delta Electronic DOPSoft 2 (Version 2.00.07 and prior) lacks proper validation of user-supplied data when parsing specific project files. This could result in …
GraphQL Batching Attacks: Turbo Intruder
https://ift.tt/xoyhPQi
Submitted September 02, 2022 at 05:15PM by _rs
via reddit https://ift.tt/Ze6jG4U
https://ift.tt/xoyhPQi
Submitted September 02, 2022 at 05:15PM by _rs
via reddit https://ift.tt/Ze6jG4U
White Oak Security
GraphQL Batching Attacks: Turbo Intruder | White Oak Security
Michael Rand, one of White Oak Security’s penetration testing experts, demonstrates how to exploit GraphQL batching attacks using Turbo Intruder. Learn more..
iPhone 11 w/ iBoot & iOS16 emulated on QEMU
https://ift.tt/H8FjmAb
Submitted September 02, 2022 at 10:24PM by sanitybit
via reddit https://ift.tt/MJBEDqA
https://ift.tt/H8FjmAb
Submitted September 02, 2022 at 10:24PM by sanitybit
via reddit https://ift.tt/MJBEDqA
GitHub
GitHub - TrungNguyen1909/qemu-t8030: iPhone 11 emulated on QEMU
iPhone 11 emulated on QEMU. Contribute to TrungNguyen1909/qemu-t8030 development by creating an account on GitHub.
Windows Firmware Attack Surface Reduction (FASR)
https://ift.tt/fsgbvt2
Submitted September 02, 2022 at 11:33PM by sanitybit
via reddit https://ift.tt/k5dtJbH
https://ift.tt/fsgbvt2
Submitted September 02, 2022 at 11:33PM by sanitybit
via reddit https://ift.tt/k5dtJbH
Docs
Firmware Attack Surface Reduction (FASR) - Windows drivers
Provides information about how to achieve Secured-core PC compliance with Firmware Attack Surface Reduction (FASR).
curl’s TLS fingerprint
https://ift.tt/2wVXuST
Submitted September 02, 2022 at 11:16PM by sanitybit
via reddit https://ift.tt/mxPfVQ3
https://ift.tt/2wVXuST
Submitted September 02, 2022 at 11:16PM by sanitybit
via reddit https://ift.tt/mxPfVQ3
There’s Another Hole In Your SoC: Unisoc ROM Vulnerabilities as used in the Motorola Moto E40 / Teclast T40 5G etc. - disclosure timeline is a thing of wonder
https://ift.tt/nNeTR69
Submitted September 03, 2022 at 12:16AM by digicat
via reddit https://ift.tt/htAbNDu
https://ift.tt/nNeTR69
Submitted September 03, 2022 at 12:16AM by digicat
via reddit https://ift.tt/htAbNDu
NCC Group Research
There’s Another Hole In Your SoC: Unisoc ROM Vulnerabilities
UNISOC (formerly Spreadtrum) is a rapidly growing semiconductor company that is nowadays focused on the Android entry-level smartphone market. While still a rare sight in the west, the company has …