Dissect: An incident response game-changer
https://ift.tt/uRJ7tBY
Submitted October 05, 2022 at 01:57AM by CyberMasterV
via reddit https://ift.tt/eJKknHZ
https://ift.tt/uRJ7tBY
Submitted October 05, 2022 at 01:57AM by CyberMasterV
via reddit https://ift.tt/eJKknHZ
GitHub
GitHub - fox-it/dissect: Dissect is a digital forensics & incident response framework and toolset that allows you to quickly access…
Dissect is a digital forensics & incident response framework and toolset that allows you to quickly access and analyse forensic artefacts from various disk and file formats, developed by Fo...
A New Supply Chain Attack on PHP
https://ift.tt/KRJ7jVP
Submitted October 05, 2022 at 10:50AM by Gallus
via reddit https://ift.tt/ZaLuWhO
https://ift.tt/KRJ7jVP
Submitted October 05, 2022 at 10:50AM by Gallus
via reddit https://ift.tt/ZaLuWhO
Sonarsource
Securing Developer Tools: A New Supply Chain Attack on PHP
What is your worst supply chain nightmare and why is it somebody that could take over all the PHP packages at once? Let's deep dive into how we could demonstrate it!
Wireshark 4.0.0 has been released
https://ift.tt/xABGiW4
Submitted October 05, 2022 at 10:06AM by Fugitif
via reddit https://ift.tt/yWtsQ7E
https://ift.tt/xABGiW4
Submitted October 05, 2022 at 10:06AM by Fugitif
via reddit https://ift.tt/yWtsQ7E
Pixel 6 bootloader: Emulation, ROP
https://ift.tt/Ink8s3m
Submitted October 05, 2022 at 11:05AM by jeandrew
via reddit https://ift.tt/0Rtdq2n
https://ift.tt/Ink8s3m
Submitted October 05, 2022 at 11:05AM by jeandrew
via reddit https://ift.tt/0Rtdq2n
dirsearch - release v0.4.3 - crawling supported
https://ift.tt/UzIFPqr
Submitted October 05, 2022 at 06:34PM by maurosoria
via reddit https://ift.tt/h0VOUKx
https://ift.tt/UzIFPqr
Submitted October 05, 2022 at 06:34PM by maurosoria
via reddit https://ift.tt/h0VOUKx
GitHub
Release v0.4.3 · maurosoria/dirsearch
Automatically detect the URI scheme (http or https) if no scheme is provided
SQLite report format
Option to overwrite unwanted extensions with selected extensions
Option to view redirects history w...
SQLite report format
Option to overwrite unwanted extensions with selected extensions
Option to view redirects history w...
Fuzzing Trackmania Nations Forever for RCE
https://ift.tt/VkUNbpD
Submitted October 05, 2022 at 07:23PM by rdjgr
via reddit https://ift.tt/yVhHtf6
https://ift.tt/VkUNbpD
Submitted October 05, 2022 at 07:23PM by rdjgr
via reddit https://ift.tt/yVhHtf6
blog.bricked.tech
Hacking TMNF: Part 1 - Fuzzing the game server
The first of a two-part series. This part will cover how I set up a grammar fuzzer with LibAFL and Nautilus in order to fuzz the game server for Trackmania Nations Forever.
MSSQL, meet Maggie - a novel backdoor for MSSQL servers.
https://ift.tt/otNAG7Y
Submitted October 04, 2022 at 06:05PM by OwnPreparation3424
via reddit https://ift.tt/KIvMqgw
https://ift.tt/otNAG7Y
Submitted October 04, 2022 at 06:05PM by OwnPreparation3424
via reddit https://ift.tt/KIvMqgw
Medium
MSSQL, meet Maggie
A novel backdoor for Microsoft SQL servers controlled using SQL queries
A Deep Dive of CVE-2022–33987 (Got allows a redirect to a UNIX socket)
https://ift.tt/iwHhPJN
Submitted October 06, 2022 at 06:10AM by csanders_
via reddit https://ift.tt/Act317l
https://ift.tt/iwHhPJN
Submitted October 06, 2022 at 06:10AM by csanders_
via reddit https://ift.tt/Act317l
Medium
A Deep Dive of CVE-2022–33987 (Got allows a redirect to a UNIX socket)
Every week, almost without fail, I come across one thing that confuses, entertains, or most commonly infuriates me. I’ve decided to keep a…
CVE-2022-41343 - RCE via Phar Deserialisation (Dompdf)
https://ift.tt/n2WRMwT
Submitted October 06, 2022 at 12:12PM by Gallus
via reddit https://ift.tt/DAVGlhs
https://ift.tt/n2WRMwT
Submitted October 06, 2022 at 12:12PM by Gallus
via reddit https://ift.tt/DAVGlhs
Tantosec
CVE-2022-41343 - RCE via Phar Deserialisation
A Remote Code Execution vulnerability on Dompdf <= v2.0.0
Introducing Campaigns to MITRE ATT&CK
https://ift.tt/hZTumnv
Submitted October 06, 2022 at 12:07PM by CyberMasterV
via reddit https://ift.tt/mdo6fBy
https://ift.tt/hZTumnv
Submitted October 06, 2022 at 12:07PM by CyberMasterV
via reddit https://ift.tt/mdo6fBy
Medium
Introducing Campaigns to MITRE ATT&CK
By: Amy Robertson, Jared Ondricek, and Matt Malone
Releasing GitFive - Track down GitHub users by doing advanced investigation (usernames history, names variations, links between multiple identities, and more).
https://ift.tt/TcwAxJC
Submitted October 06, 2022 at 06:20AM by mxrchreborn
via reddit https://ift.tt/ysG5uLB
https://ift.tt/TcwAxJC
Submitted October 06, 2022 at 06:20AM by mxrchreborn
via reddit https://ift.tt/ysG5uLB
GitHub
GitHub - mxrch/GitFive: 🐙 Track down GitHub users.
🐙 Track down GitHub users. Contribute to mxrch/GitFive development by creating an account on GitHub.
Comparing Semgrep and CodeQL
https://ift.tt/JryeVtC
Submitted October 06, 2022 at 02:48PM by nibblesec
via reddit https://ift.tt/O7FDE8p
https://ift.tt/JryeVtC
Submitted October 06, 2022 at 02:48PM by nibblesec
via reddit https://ift.tt/O7FDE8p
Doyensec
Comparing Semgrep and CodeQL · Doyensec's Blog
Doyensec's Blog :: Doyensec is an independent security research and development company focused on vulnerability discovery and remediation.
Hidden DNS resolvers and how to compromise your infrastructure Kaminsky style
https://ift.tt/mkAaSG5
Submitted October 06, 2022 at 01:51PM by The_Login
via reddit https://ift.tt/N0YSOJc
https://ift.tt/mkAaSG5
Submitted October 06, 2022 at 01:51PM by The_Login
via reddit https://ift.tt/N0YSOJc
SEC Consult
Melting the DNS Iceberg: Taking over your infrastructure Kaminsky style
Hidden DNS resolvers and how to compromise your infrastructure
A deep dive into the AWS security posture of 600+ organizations and thousands of AWS accounts
https://ift.tt/PlbFJZY
Submitted October 06, 2022 at 05:51PM by thorn42
via reddit https://ift.tt/MoOwvmj
https://ift.tt/PlbFJZY
Submitted October 06, 2022 at 05:51PM by thorn42
via reddit https://ift.tt/MoOwvmj
State of AWS Security
State of AWS Security | Datadog
We analyzed trends in the implementation of security best practices and took a closer look at various types of misconfigurations that contribute to the most common causes of security breaches.
Release EMBA firmware analyzer v1.1.2 - Knight Rider Edt.
https://ift.tt/TYQtq8x
Submitted October 06, 2022 at 06:06PM by _m-1-k-3_
via reddit https://ift.tt/yEc83pA
https://ift.tt/TYQtq8x
Submitted October 06, 2022 at 06:06PM by _m-1-k-3_
via reddit https://ift.tt/yEc83pA
GitHub
Release EMBA v1.1.2 - Knight Rider Edt. · e-m-b-a/emba
Highlights:
Bonnie: I have a new feature integrated into K.I.T.T.
Michael: Give me more details
K.I.T.T.: With my new friend EMBA I am able to find the weak spot in every firmware.
40 years later ....
Bonnie: I have a new feature integrated into K.I.T.T.
Michael: Give me more details
K.I.T.T.: With my new friend EMBA I am able to find the weak spot in every firmware.
40 years later ....
CVE-2022–36635 — A SQL Injection in ZKSecurityBio to RCE
https://ift.tt/6FvtD0b
Submitted October 06, 2022 at 07:16PM by sp1d3rr
via reddit https://ift.tt/aGSJrUh
https://ift.tt/6FvtD0b
Submitted October 06, 2022 at 07:16PM by sp1d3rr
via reddit https://ift.tt/aGSJrUh
Medium
CVE-2022–36635 — A SQL Injection in ZKSecurityBio to RCE
Researched and written by: Caio Burgardt and Silton Santos
Fully loaded: testing vulnerable PyYAML versions
https://ift.tt/qDcWKVm
Submitted October 06, 2022 at 11:41PM by iterablewords
via reddit https://ift.tt/JC9xQOb
https://ift.tt/qDcWKVm
Submitted October 06, 2022 at 11:41PM by iterablewords
via reddit https://ift.tt/JC9xQOb
Fully loaded: testing vulnerable PyYAML versions
Understanding which PyYAML API versions are vulnerable with a testing matrix
Uncovering a Fake Recruiter Scam with OSINT techniques
https://ift.tt/xZmhEzR
Submitted October 07, 2022 at 01:13AM by smicallef
via reddit https://ift.tt/90Rha4W
https://ift.tt/xZmhEzR
Submitted October 07, 2022 at 01:13AM by smicallef
via reddit https://ift.tt/90Rha4W
Unpatched vulnerability on Zimbra (again!) - symlink abuse in cpio
https://ift.tt/7PgbZ0G
Submitted October 07, 2022 at 02:31AM by iagox86
via reddit https://ift.tt/UMZbJ3B
https://ift.tt/7PgbZ0G
Submitted October 07, 2022 at 02:31AM by iagox86
via reddit https://ift.tt/UMZbJ3B
AttackerKB
CVE-2022-41352 | AttackerKB
An issue was discovered in Zimbra Collaboration (ZCS) 8.8.15 and 9.0. An attacker can upload arbitrary files through amavis via a cpio loophole (extraction to …
Securely Implementing IdP-initiated SAML2 Login
https://ift.tt/d6qWzsg
Submitted October 07, 2022 at 02:59AM by benarent
via reddit https://ift.tt/db9AKyl
https://ift.tt/d6qWzsg
Submitted October 07, 2022 at 02:59AM by benarent
via reddit https://ift.tt/db9AKyl
Goteleport
Securely Implementing IdP-initiated SAML2 Login
In this blog post, we'll deep-dive into the SAML2 protocol, how IdP-initiated login works and how to implement it securely.
Disclosure time for Zoneminder findings
https://ift.tt/OqvrgUM
Submitted October 07, 2022 at 08:31PM by trenchesofit
via reddit https://ift.tt/COszbEJ
https://ift.tt/OqvrgUM
Submitted October 07, 2022 at 08:31PM by trenchesofit
via reddit https://ift.tt/COszbEJ