Lastpass Security Incident - December 22 update
https://ift.tt/4U5Ku1y
Submitted December 23, 2022 at 02:04AM by tkokilroy
via reddit https://ift.tt/gvWwfaU
https://ift.tt/4U5Ku1y
Submitted December 23, 2022 at 02:04AM by tkokilroy
via reddit https://ift.tt/gvWwfaU
The LastPass Blog
Notice of Recent Security Incident - The LastPass Blog
We are working diligently to understand the scope of the incident and identify what specific information has been accessed.
[Hiring] InfoSec Assurance Roles in USA and Europe
https://ift.tt/6Oxy8zY
Submitted December 23, 2022 at 04:01AM by RecruitingAdmin
via reddit https://ift.tt/402rYbd
https://ift.tt/6Oxy8zY
Submitted December 23, 2022 at 04:01AM by RecruitingAdmin
via reddit https://ift.tt/402rYbd
boards.greenhouse.io
Laika
Laika helps companies manage compliance, obtain security certifications, and build trust with enterprise customers.
Introducing the Columbus Project
https://ift.tt/X0lBYgv
Submitted December 23, 2022 at 01:08PM by g0rbe
via reddit https://ift.tt/oDn712q
https://ift.tt/X0lBYgv
Submitted December 23, 2022 at 01:08PM by g0rbe
via reddit https://ift.tt/oDn712q
Elmasy Blog
Introducing the Columbus Project
An open source append only database of known subdomains to discover, store and serve subdomains as fast as possible.
PyRDP 1.2.0 released – Can perform Net-NTLM hash capture before the certificate error on RDP
https://ift.tt/T2P9WAn
Submitted December 23, 2022 at 11:36PM by obilodeau
via reddit https://ift.tt/UimejZM
https://ift.tt/T2P9WAn
Submitted December 23, 2022 at 11:36PM by obilodeau
via reddit https://ift.tt/UimejZM
GoSecure
A New PyRDP Release: The Rudolph Desktop Protocol! - GoSecure
Isn’t there a better moment than the Holiday season to release a major update of our RDP Attack and Eavesdropping tool PyRDP? That’s right, pour yourself a little glass of eggnog, sit in a comfortable chair, put on some Christmas music and read about the…
Linux kernel module generator for Hidden firewall that follows the rules in the external YAML file.
https://ift.tt/DU1J6XY
Submitted December 24, 2022 at 11:46AM by CoolerVoid
via reddit https://ift.tt/Lhk1BFO
https://ift.tt/DU1J6XY
Submitted December 24, 2022 at 11:46AM by CoolerVoid
via reddit https://ift.tt/Lhk1BFO
Overview of Glibc Heap Exploitation Techniques (currently up to v2.34)
https://ift.tt/dnPVLZc
Submitted December 25, 2022 at 10:17AM by himeko98
via reddit https://ift.tt/YqBW6Sz
https://ift.tt/dnPVLZc
Submitted December 25, 2022 at 10:17AM by himeko98
via reddit https://ift.tt/YqBW6Sz
Low-level adventures
Overview of GLIBC heap exploitation techniques
Overview of current GLIBC heap exploitation techniques up to GLIBC 2.34, including their ideas and introduced mitigations along the way
Pass-the-Challenge: Defeating Windows Defender Credential Guard
https://ift.tt/uvYgfJw
Submitted December 27, 2022 at 02:16AM by ly4k_
via reddit https://ift.tt/A3MntOD
https://ift.tt/uvYgfJw
Submitted December 27, 2022 at 02:16AM by ly4k_
via reddit https://ift.tt/A3MntOD
Medium
Pass-the-Challenge: Defeating Windows Defender Credential Guard
In this blog post, we present new techniques for recovering the NTLM hash from an encrypted credential protected by Windows Defender…
Netcomm NF20MESH Cloud Mesh router - Unauthenticated Remote Code Execution
https://ift.tt/cgkmQ5R
Submitted December 27, 2022 at 11:47AM by Gallus
via reddit https://ift.tt/QgnITcd
https://ift.tt/cgkmQ5R
Submitted December 27, 2022 at 11:47AM by Gallus
via reddit https://ift.tt/QgnITcd
GitHub
advisories/2022_netcomm_nf20mesh_unauth_rce.md at main · scarvell/advisories
Contribute to scarvell/advisories development by creating an account on GitHub.
Scaling Continuous Security Testing on the Cheap
https://ift.tt/GkPhWUB
Submitted December 27, 2022 at 10:13PM by DH_Prelude
via reddit https://ift.tt/uNOvC6d
https://ift.tt/GkPhWUB
Submitted December 27, 2022 at 10:13PM by DH_Prelude
via reddit https://ift.tt/uNOvC6d
Preludesecurity
A Practical Guide for Scaling Continuous Security Testing | Prelude
An abbreviated guide to scaling automated security testing using tooling from the Prelude ecosystem.
Spice up your persistence: loading PHP extensions from memory
https://ift.tt/EoF3gDj
Submitted December 28, 2022 at 03:25AM by gid0rah
via reddit https://ift.tt/gA8Zb91
https://ift.tt/EoF3gDj
Submitted December 28, 2022 at 03:25AM by gid0rah
via reddit https://ift.tt/gA8Zb91
Spice up your persistence: loading PHP extensions from memory |
Spice up your persistence: loading PHP extensions from memory | AdeptsOf0xCC
Load shared object (PHP extension) from memory
New AMSI Bypass Using CLR Hooking
https://ift.tt/FyPlmOA
Submitted December 28, 2022 at 04:44AM by pracsec
via reddit https://ift.tt/pcHKbWq
https://ift.tt/FyPlmOA
Submitted December 28, 2022 at 04:44AM by pracsec
via reddit https://ift.tt/pcHKbWq
Practical Security Analytics LLC
New AMSI Bypass Using CLR Hooking
Introduction In this article, I will present a new technique to bypass Microsoft’s Anti-Malware Scan Interface (AMSI) using API Call Hooking of CLR methods. When executed on a Windows system,…
Certificate Ripper v2 released - tool to extract server certificates
https://ift.tt/1Yr83Px
Submitted December 28, 2022 at 06:24AM by Hakky54
via reddit https://ift.tt/S8YAlmQ
https://ift.tt/1Yr83Px
Submitted December 28, 2022 at 06:24AM by Hakky54
via reddit https://ift.tt/S8YAlmQ
GitHub
GitHub - Hakky54/certificate-ripper: 🔐 A CLI tool to extract server certificates
🔐 A CLI tool to extract server certificates. Contribute to Hakky54/certificate-ripper development by creating an account on GitHub.
Video game save file Trojan personified
https://ift.tt/xfrDS4s
Submitted December 28, 2022 at 08:36AM by bemodtwz
via reddit https://ift.tt/oljIPvB
https://ift.tt/xfrDS4s
Submitted December 28, 2022 at 08:36AM by bemodtwz
via reddit https://ift.tt/oljIPvB
GitHub
GitHub - swoops/video-game-save-file-trojans: Demonstrates why it's not safe to download random save files from the Internet
Demonstrates why it's not safe to download random save files from the Internet - swoops/video-game-save-file-trojans
Attack Surface Reduction BOF
https://ift.tt/BPgEDe4
Submitted December 28, 2022 at 10:51PM by IamaCerealKilla
via reddit https://ift.tt/utO7Li0
https://ift.tt/BPgEDe4
Submitted December 28, 2022 at 10:51PM by IamaCerealKilla
via reddit https://ift.tt/utO7Li0
GitHub
GitHub - mlcsec/ASRenum-BOF: Cobalt Strike BOF that identifies Attack Surface Reduction (ASR) rules, actions, and exclusion locations
Cobalt Strike BOF that identifies Attack Surface Reduction (ASR) rules, actions, and exclusion locations - GitHub - mlcsec/ASRenum-BOF: Cobalt Strike BOF that identifies Attack Surface Reduction (A...
G-3PO: A Protocol Droid for Ghidra (a Ghidra noscript that glosses decompiled functions with GPT-3 generated comments)
https://ift.tt/kVojhGD
Submitted December 29, 2022 at 01:12AM by 0xdeba5e12
via reddit https://ift.tt/3dWO7ID
https://ift.tt/kVojhGD
Submitted December 29, 2022 at 01:12AM by 0xdeba5e12
via reddit https://ift.tt/3dWO7ID
Medium
G-3PO: A Protocol Droid for Ghidra
(A Script that Solicits GPT-3 for Comments on Decompiled Code)
Turning Google smart speakers into wiretaps for $100k
https://ift.tt/1I46qzE
Submitted December 29, 2022 at 07:17AM by Gallus
via reddit https://ift.tt/j1Lorq7
https://ift.tt/1I46qzE
Submitted December 29, 2022 at 07:17AM by Gallus
via reddit https://ift.tt/j1Lorq7
Matt’s internet home
Turning Google smart speakers into wiretaps for $100k
I was recently rewarded a total of $107,500 by Google for responsibly disclosing security issues in the Google Home smart speaker that allowed an attacker within wireless proximity to install a “backdoor” account on the device, enabling them to send commands…
dnstwist: send potential spear phishing domains to Slack
https://ift.tt/2Kflmk9
Submitted December 29, 2022 at 06:05PM by nindustries
via reddit https://ift.tt/LDlcuiZ
https://ift.tt/2Kflmk9
Submitted December 29, 2022 at 06:05PM by nindustries
via reddit https://ift.tt/LDlcuiZ
GitHub
GitHub - hazcod/dnstwist: A tool to monitor for potential spear phishing domains and send to Slack.
A tool to monitor for potential spear phishing domains and send to Slack. - GitHub - hazcod/dnstwist: A tool to monitor for potential spear phishing domains and send to Slack.
New CatB Ransomware Employs 2-Year Old DLL Hijacking Technique To Evade Detection
https://ift.tt/0WcASQy
Submitted December 29, 2022 at 07:21PM by woja111
via reddit https://ift.tt/C5seIhw
https://ift.tt/0WcASQy
Submitted December 29, 2022 at 07:21PM by woja111
via reddit https://ift.tt/C5seIhw
Minerva Labs
New CatB Ransomware Employs 2-Year Old DLL Hijacking Technique To Evade Detection
We recently discovered a new ransomware variant, which performs MSDTC service DLL Hijacking to silently execute its payload. We have named this ransomware CatB, based on the contact email and performed an analysis on how it works.
A brief analysis of Hornet Ransomware
https://ift.tt/74YzloN
Submitted December 29, 2022 at 10:13PM by navneetmuffin
via reddit https://ift.tt/Q1cXIeb
https://ift.tt/74YzloN
Submitted December 29, 2022 at 10:13PM by navneetmuffin
via reddit https://ift.tt/Q1cXIeb
rixed.blog
A brief analysis of Hornet Ransomware
Redirecting….
𓅃 Announcing Matano + Crowdstrike: Open source project to analyze security logs on S3 using SQL & build realtime detections-as-code
https://ift.tt/tDVYxsk
Submitted December 29, 2022 at 10:07PM by shaeqahmed
via reddit https://ift.tt/OF6PEqn
https://ift.tt/tDVYxsk
Submitted December 29, 2022 at 10:07PM by shaeqahmed
via reddit https://ift.tt/OF6PEqn
www.matano.dev
Adding Crowdstrike Support to Matano | Matano
We're excited to announce that Matano now supports managed log sources from
Mosca SAST tool
https://ift.tt/aRWgTfc
Submitted December 30, 2022 at 10:14AM by CoolerVoid
via reddit https://ift.tt/EngzbWT
https://ift.tt/aRWgTfc
Submitted December 30, 2022 at 10:14AM by CoolerVoid
via reddit https://ift.tt/EngzbWT