The Ethernaut CTF Writeup
http://ift.tt/2zjbDcy
Submitted November 06, 2017 at 05:55PM by alexlash
via reddit http://ift.tt/2lSJh5O
http://ift.tt/2zjbDcy
Submitted November 06, 2017 at 05:55PM by alexlash
via reddit http://ift.tt/2lSJh5O
Medium
The Ethernaut CTF Writeup
Zeppelin Solutions invited everybody to participate in their smart contract CTF competition called “The Ethernaut” which started together…
Security In 5: Episode 105 - What Is Browser Canvas Fingerprinting And Why You Should Care?
http://ift.tt/2y9wjlO
Submitted November 06, 2017 at 07:31PM by BinaryBlog
via reddit http://ift.tt/2zkrzvn
http://ift.tt/2y9wjlO
Submitted November 06, 2017 at 07:31PM by BinaryBlog
via reddit http://ift.tt/2zkrzvn
Libsyn
Security In Five Podcast: Episode 105 - What Is Browser Canvas Fingerprinting And Why You Should Care?
This episode talks about Browser Canvas Fingerprinter, the less known 'super tracking cookie' of the Internet. Firefox announced that their next browser update will block Canvas Fingerprinting by default, built-in to the browser. So what? What is it and why…
Back to basics: Email privacy part 2: Encryption
http://ift.tt/2y9wuO0
Submitted November 06, 2017 at 07:29PM by EasyCrypt
via reddit http://ift.tt/2zkIOMZ
http://ift.tt/2y9wuO0
Submitted November 06, 2017 at 07:29PM by EasyCrypt
via reddit http://ift.tt/2zkIOMZ
EasyCrypt.co
Email privacy crash course – Part 2: Encryption - EasyCrypt.co
Summary End-to-end encryption empowers users to control safe transmission of their emails over untrusted services and networks, thwarting surveillance and intrusion. Do not use non-standard encryption, PGP is the gold standard Look for full 4096 bit encryption…
Wireless routers with built-in IDS/IPS Functionality (For Home Users)
Hi Guys, I am looking to buy a home router with IDS/IPS functionality. So far I came up with Asus AIProtection (for various Asus Router models), Synology routers with Qualys Guard and Norton Core router. There is some vague statement from Synology and Norton Core. It seems to me that both Synology and Norton Core do not have any IDS/IPS but some kind of Vulnerability Management system which periodically scan the network range and report their vulnerabilities. In the Synology website they claim IPS is included but looking at Qualys Guard I do not see anything related to IPS. Norton Core also only mention Network level protection but there is no details provided.The only thing so far is Asus which has a TrendMicro IPS which their technical details shows that they indeed have an IPS.Is there any other home users router with such functionality? Which one is better? My budget is around 200 to 250 USD. Any idea?Update: I noticed that TrendMicro also sells a IDS/IPS box separately for home users, which is only available in Australia and New Zealand: http://ift.tt/2p8xNc3 http://ift.tt/2hKzuunUpdate 2: There is another product called SonicWall SonicWALL Tz 100Link to AIProtection: http://ift.tt/2hLKnfo Synology Qualys Guard http://ift.tt/2Adk9JA http://ift.tt/2hLEEWN
Submitted November 06, 2017 at 08:10PM by bl4ckic3
via reddit http://ift.tt/2Ad7eHs
Hi Guys, I am looking to buy a home router with IDS/IPS functionality. So far I came up with Asus AIProtection (for various Asus Router models), Synology routers with Qualys Guard and Norton Core router. There is some vague statement from Synology and Norton Core. It seems to me that both Synology and Norton Core do not have any IDS/IPS but some kind of Vulnerability Management system which periodically scan the network range and report their vulnerabilities. In the Synology website they claim IPS is included but looking at Qualys Guard I do not see anything related to IPS. Norton Core also only mention Network level protection but there is no details provided.The only thing so far is Asus which has a TrendMicro IPS which their technical details shows that they indeed have an IPS.Is there any other home users router with such functionality? Which one is better? My budget is around 200 to 250 USD. Any idea?Update: I noticed that TrendMicro also sells a IDS/IPS box separately for home users, which is only available in Australia and New Zealand: http://ift.tt/2p8xNc3 http://ift.tt/2hKzuunUpdate 2: There is another product called SonicWall SonicWALL Tz 100Link to AIProtection: http://ift.tt/2hLKnfo Synology Qualys Guard http://ift.tt/2Adk9JA http://ift.tt/2hLEEWN
Submitted November 06, 2017 at 08:10PM by bl4ckic3
via reddit http://ift.tt/2Ad7eHs
Trendmicro-Apac
Official Site of Trend Micro Home Network Security
Trend Micro Home Network Security provides protection against cyber-attacks for every internet-connected device in your home - including game consoles, smart TVs, and appliances
Changed contact email on AES web portal, confirmation sent to new email?
American Education Services (AES) probably the largest student loan holding entity.I updated my contact email, but they sent this to the new email...If you did not make this change or require further assistance, please contact us by visiting http://ift.tt/2j50YOH.Am I missing something here? Why would the alert go out to the new email instead of the old one in case someone maliciously changes it?
Submitted November 06, 2017 at 08:56PM by whathe2016
via reddit http://ift.tt/2AnXivu
American Education Services (AES) probably the largest student loan holding entity.I updated my contact email, but they sent this to the new email...If you did not make this change or require further assistance, please contact us by visiting http://ift.tt/2j50YOH.Am I missing something here? Why would the alert go out to the new email instead of the old one in case someone maliciously changes it?
Submitted November 06, 2017 at 08:56PM by whathe2016
via reddit http://ift.tt/2AnXivu
Ifttt
IFTTT helps you do more with the services you love. Connect Amazon Alexa, Facebook, Twitter, Instagram, Fitbit, Slack, Skype, and hundreds more.
Application Introspection & Hooking With Frida
http://ift.tt/2h9iBJ2
Submitted November 06, 2017 at 08:37PM by maxxori
via reddit http://ift.tt/2j49wFG
http://ift.tt/2h9iBJ2
Submitted November 06, 2017 at 08:37PM by maxxori
via reddit http://ift.tt/2j49wFG
reddit
Application Introspection & Hooking With Frida • r/netsec
3 points and 0 comments so far on reddit
Play with FILE Structure - Yet Another Binary Exploit Technique
http://ift.tt/2j5kw5C
Submitted November 06, 2017 at 12:24PM by b0920075
via reddit http://ift.tt/2y8LSKy
http://ift.tt/2j5kw5C
Submitted November 06, 2017 at 12:24PM by b0920075
via reddit http://ift.tt/2y8LSKy
www.slideshare.net
Play with FILE Structure - Yet Another Binary Exploit Technique
Building and Attacking an Active Directory lab with PowerShell - Easy to follow lab guide includes kerberoasting
http://ift.tt/2h9Brjd
Submitted November 06, 2017 at 09:19PM by myexploit2600
via reddit http://ift.tt/2zlqrYm
http://ift.tt/2h9Brjd
Submitted November 06, 2017 at 09:19PM by myexploit2600
via reddit http://ift.tt/2zlqrYm
1337red
Building and Attacking an Active Directory lab with PowerShell
Let me open this with a few questions Do you have your own penetration testing lab? Have you installed Windows Server 2016 before? Do you have Active Directory at home? What version of PowerShell a…
Buri Nazar Se Bachne Ki Dua | Buri Nazar Ko Khatam Karna Ka Amal
http://ift.tt/2lXTvSE
Submitted November 06, 2017 at 11:48PM by Ahmadali0786
via reddit http://ift.tt/2yAnV3h
http://ift.tt/2lXTvSE
Submitted November 06, 2017 at 11:48PM by Ahmadali0786
via reddit http://ift.tt/2yAnV3h
Love Problem Solution Astrologer
Buri Nazar Se Bachne Ki Dua | Buri Nazar Ko Khatam Karna Ka Amal
Buri Nazar Se Bachne Ki Dua, " Aaj ke samye me har ek aadmi dusre ki kamyabi se jalta hai. Agar kisi insan ko saflta milti hai to uska koi mitr..
GDPR raising cybersecurity awareness among EU business leaders
http://ift.tt/2yqxi5H
Submitted November 06, 2017 at 11:11PM by yourbasicgeek
via reddit http://ift.tt/2zlzJpb
http://ift.tt/2yqxi5H
Submitted November 06, 2017 at 11:11PM by yourbasicgeek
via reddit http://ift.tt/2zlzJpb
reddit
GDPR raising cybersecurity awareness among EU... • r/security
4 points and 0 comments so far on reddit
Technical Details on OceanLotus' Attacks Targeting ASEAN, Asian Nations, and Human Rights Groups
http://ift.tt/2lX9G2F
Submitted November 07, 2017 at 12:14AM by transt
via reddit http://ift.tt/2yACUKu
http://ift.tt/2lX9G2F
Submitted November 07, 2017 at 12:14AM by transt
via reddit http://ift.tt/2yACUKu
Bypassing Modern Process Hollowing Detection (via Hotswapping Maps)
http://ift.tt/2zm3e88
Submitted November 07, 2017 at 12:47AM by MalwareSeattle
via reddit http://ift.tt/2AduOUk
http://ift.tt/2zm3e88
Submitted November 07, 2017 at 12:47AM by MalwareSeattle
via reddit http://ift.tt/2AduOUk
reddit
Bypassing Modern Process Hollowing Detection (via... • r/netsec
3 points and 0 comments so far on reddit
Please Stop Naming Vulnerabilities: Exploring 6 Previously Unknown Remote Kernel Bugs Affecting Android Phones
http://ift.tt/2yAeuAP
Submitted November 07, 2017 at 01:08AM by overflowingInt
via reddit http://ift.tt/2zmhNe2
http://ift.tt/2yAeuAP
Submitted November 07, 2017 at 01:08AM by overflowingInt
via reddit http://ift.tt/2zmhNe2
Pleasestopnamingvulnerabilities
Please Stop Naming Vulnerabilities: Exploring 6 Previously Unknown Remote Kernel Bugs Affecting Android Phones
PreludeIn today’s world everyone knows that a security vulnerability isn’t really a security vulnerability unless it has been given a name other than a CVE, ...
Estonia freezes resident ID cards due to security flaw
http://ift.tt/2zdRkjb
Submitted November 07, 2017 at 01:26AM by volci
via reddit http://ift.tt/2zj8TyA
http://ift.tt/2zdRkjb
Submitted November 07, 2017 at 01:26AM by volci
via reddit http://ift.tt/2zj8TyA
Engadget
Estonia freezes resident ID cards due to security flaw
Estonia's mandatory national IDs have a serious flaw affecting over half the country's population.
US-CERT Warns of Crypto Bugs in IEEE Standard
http://ift.tt/2zmlcaR
Submitted November 07, 2017 at 01:18AM by volci
via reddit http://ift.tt/2hfMyuF
http://ift.tt/2zmlcaR
Submitted November 07, 2017 at 01:18AM by volci
via reddit http://ift.tt/2hfMyuF
Threatpost | The first stop for security news
US-CERT Warns of Crypto Bugs in IEEE Standard
Weak cryptography in the IEEE P1735 electronics standard allow attackers to recover valuable intellectual property in plaintext from SoCs and integrated circuits.
Taking over instagram accounts
http://ift.tt/2lQnhsA
Submitted November 07, 2017 at 02:02AM by luc1o
via reddit http://ift.tt/2znapgH
http://ift.tt/2lQnhsA
Submitted November 07, 2017 at 02:02AM by luc1o
via reddit http://ift.tt/2znapgH
reddit
Taking over instagram accounts • r/netsec
1 points and 0 comments so far on reddit
Concerns about relative security of TOTP
I was reading the RFC for TOTP/HOTP and it seems the security relies entirely on SHA-1 remaining cryptographically secure. With shattered and SHA-1 being deprecated since 2011, should the RFC be updated/replaced? I understand there is no immediate threat, but all the same, shouldn't an alternative be implemented?
Submitted November 07, 2017 at 02:21AM by IronManMark20
via reddit http://ift.tt/2m0oo9c
I was reading the RFC for TOTP/HOTP and it seems the security relies entirely on SHA-1 remaining cryptographically secure. With shattered and SHA-1 being deprecated since 2011, should the RFC be updated/replaced? I understand there is no immediate threat, but all the same, shouldn't an alternative be implemented?
Submitted November 07, 2017 at 02:21AM by IronManMark20
via reddit http://ift.tt/2m0oo9c
reddit
Concerns about relative security of TOTP • r/security
I was reading the RFC for TOTP/HOTP and it seems the security relies entirely on SHA-1 remaining cryptographically secure. With shattered and...
PoC||GTFO 0x16 [pdf]
http://ift.tt/2y69D61
Submitted November 07, 2017 at 04:04AM by albinowax
via reddit http://ift.tt/2hc79Mx
http://ift.tt/2y69D61
Submitted November 07, 2017 at 04:04AM by albinowax
via reddit http://ift.tt/2hc79Mx
reddit
PoC||GTFO 0x16 [pdf] • r/netsec
4 points and 0 comments so far on reddit
PingCastle, a fast AD self-audit
http://ift.tt/2zinYjN
Submitted November 07, 2017 at 04:30AM by k3nnyfr
via reddit http://ift.tt/2hh71iA
http://ift.tt/2zinYjN
Submitted November 07, 2017 at 04:30AM by k3nnyfr
via reddit http://ift.tt/2hh71iA
PingCastle
Get Active Directory Security at 80% in 20% of the time - PingCastle
Because the Active Directory security lies in the process and not in expensive tools, our solution is simple: download PingCastle and apply its methodology.
Kerberoast Attack Techniques
http://ift.tt/2Agck5E
Submitted November 07, 2017 at 05:41AM by ju1i3k
via reddit http://ift.tt/2hNirb0
http://ift.tt/2Agck5E
Submitted November 07, 2017 at 05:41AM by ju1i3k
via reddit http://ift.tt/2hNirb0
Cobalt.io
Kerberoast Attack Techniques
In this blog we will focus on Kerberoast attack techniques (Old Technique and New Technique).
How to get my foot in the door? Masters in IT Security or Security certifications?
I'm a recent grad with a BS in Management Information Systems that is currently pursuing a security route but do not know where or how to start. I've been looking at masters programs as well as security certifications -- what's the best way to get my foot in the door? I'm a junior System Admin with experience in web dev etc. My question, 1. How do I get my foot in the door? 2. Is a masters a good idea? 3. What certifications should I study and take? 4. What type of jobs are hot in the market? 5. Your experience getting in the field.Thank you so much for reading and any comment is appreciated! Please give insight to this fellow newb - thanks.
Submitted November 07, 2017 at 10:32AM by bigpoppaash
via reddit http://ift.tt/2AfoiwD
I'm a recent grad with a BS in Management Information Systems that is currently pursuing a security route but do not know where or how to start. I've been looking at masters programs as well as security certifications -- what's the best way to get my foot in the door? I'm a junior System Admin with experience in web dev etc. My question, 1. How do I get my foot in the door? 2. Is a masters a good idea? 3. What certifications should I study and take? 4. What type of jobs are hot in the market? 5. Your experience getting in the field.Thank you so much for reading and any comment is appreciated! Please give insight to this fellow newb - thanks.
Submitted November 07, 2017 at 10:32AM by bigpoppaash
via reddit http://ift.tt/2AfoiwD
reddit
How to get my foot in the door? Masters in IT... • r/security
I'm a recent grad with a BS in Management Information Systems that is currently pursuing a security route but do not know where or how to start....