Vulnerability scanner for open source packages
https://dependuck.dev/
Submitted April 18, 2023 at 03:26PM by mastermindbravery
via reddit https://ift.tt/GtfKDFT
https://dependuck.dev/
Submitted April 18, 2023 at 03:26PM by mastermindbravery
via reddit https://ift.tt/GtfKDFT
dependuck.dev
Dependency Scanning with Dependuck | Find and Fix Vulnerabilities
Dependuck provides dependency scanning to help you identify and fix known vulnerabilities in your dependencies. Find dependency vulnerabilities and more.
Memory corruption in JCRE: An unpatchable HSM may swallow your private key
https://ift.tt/PpB9ReF
Submitted April 18, 2023 at 07:12PM by hardenedvault
via reddit https://ift.tt/YtwqXoQ
https://ift.tt/PpB9ReF
Submitted April 18, 2023 at 07:12PM by hardenedvault
via reddit https://ift.tt/YtwqXoQ
hardenedvault.net
Memory corruption in JCRE: An unpatchable HSM may swallow your private key
Background The key has always been a core target of security protection.
AWS Account ID: An Attacker's Perspective
https://ift.tt/Kn3a5zp
Submitted April 18, 2023 at 08:49PM by VariousAd5147
via reddit https://ift.tt/8QFe9Yh
https://ift.tt/Kn3a5zp
Submitted April 18, 2023 at 08:49PM by VariousAd5147
via reddit https://ift.tt/8QFe9Yh
www.zeuscloud.io
AWS Account ID: An Attacker's Perspective
How attackers can find and use AWS Account IDs
[Responsible Disclosure] How we could have deleted any Linkedin Post [$10K bounty]
https://ift.tt/mBaVhpL
Submitted April 18, 2023 at 08:42PM by apprakash
via reddit https://ift.tt/0avGizT
https://ift.tt/mBaVhpL
Submitted April 18, 2023 at 08:42PM by apprakash
via reddit https://ift.tt/0avGizT
Pingsafe Blog
[Responsible Disclosure] How we could have deleted any Linkedin Post
Issue was disclosed on April 11th, 2023 & was fixed earlier. Linkedin rewarded with a bounty of $10000 for responsible disclosure.
Nation-state threat actor Mint Sandstorm refines tradecraft to attack high-value targets
https://ift.tt/wAJrRy5
Submitted April 18, 2023 at 11:27PM by SCI_Rusher
via reddit https://ift.tt/9CM3ioV
https://ift.tt/wAJrRy5
Submitted April 18, 2023 at 11:27PM by SCI_Rusher
via reddit https://ift.tt/9CM3ioV
Microsoft News
Nation-state threat actor Mint Sandstorm refines tradecraft to attack high-value targets
Today, Microsoft is reporting on a distinct subset of Mint Sandstorm (formerly known as PHOSPHORUS), an Iranian threat actor that specializes in hacking into and stealing sensitive information from high-value targets. This subset is technically and operationally…
RoboDroid | Humanizing Android Mobile Devices
https://ift.tt/MWVHKRv
Submitted April 19, 2023 at 12:44PM by deleee
via reddit https://ift.tt/S5uOLDV
https://ift.tt/MWVHKRv
Submitted April 19, 2023 at 12:44PM by deleee
via reddit https://ift.tt/S5uOLDV
APT28 Attacks on Cisco Routers: What We Know So Far
https://ift.tt/mOnYwqr
Submitted April 19, 2023 at 02:52PM by MiserableWriting2919
via reddit https://ift.tt/Ac4TIoF
https://ift.tt/mOnYwqr
Submitted April 19, 2023 at 02:52PM by MiserableWriting2919
via reddit https://ift.tt/Ac4TIoF
Security Engineering Notebook
APT28 Attacks on Cisco Routers: What We Know So Far
Russian cyber-attack targets Cisco devices. Read on for the details and suggested mitigations.
Presenting my stealthyish DLL shellcode stager
https://ift.tt/WidL5a0
Submitted April 19, 2023 at 05:04PM by thehunter699
via reddit https://ift.tt/jcOvkyL
https://ift.tt/WidL5a0
Submitted April 19, 2023 at 05:04PM by thehunter699
via reddit https://ift.tt/jcOvkyL
GitHub
Mischief-DLL-Stager/README.md at main · MitchHS/Mischief-DLL-Stager
Reasonably undetected shellcode stager and executer. - MitchHS/Mischief-DLL-Stager
NSO Group’s Pegasus Spyware Returns in 2022 with a Trio of iOS 15 and iOS 16 Zero-Click Exploit Chains
https://ift.tt/GhF5vqM
Submitted April 19, 2023 at 07:25PM by Ganacsi
via reddit https://ift.tt/2DPptwE
https://ift.tt/GhF5vqM
Submitted April 19, 2023 at 07:25PM by Ganacsi
via reddit https://ift.tt/2DPptwE
The Citizen Lab
Triple Threat: NSO Group’s Pegasus Spyware Returns in 2022 with a Trio of iOS 15 and iOS 16 Zero-Click Exploit Chains - The Citizen…
In 2022, the Citizen Lab gained extensive forensic visibility into new NSO Group exploit activity after finding infections among members of Mexico’s civil society, including two human rights defenders from Centro PRODH, which represents victims of military…
Legion - Latest Threat In Mass Spam Attacks
https://ift.tt/Ke9fs6D
Submitted April 19, 2023 at 11:35PM by permis0
via reddit https://ift.tt/8VWvjHG
https://ift.tt/Ke9fs6D
Submitted April 19, 2023 at 11:35PM by permis0
via reddit https://ift.tt/8VWvjHG
permiso.io
Permiso | Blog | Legion: The Latest Threat in Mass Spam Attacks
Cado and Permiso researchers team up to do a breakdown of Legion's toolset and discuss the review some of the differences between Legion and the likes of AndroxGh0st and Greenbot.
c2detect: Search for c2 servers by listener outside
https://ift.tt/3xhPMgA
Submitted April 20, 2023 at 12:19AM by SuspiciousIsland2682
via reddit https://ift.tt/qXAkMZl
https://ift.tt/3xhPMgA
Submitted April 20, 2023 at 12:19AM by SuspiciousIsland2682
via reddit https://ift.tt/qXAkMZl
GitHub
GitHub - michael2to3/c2-search-netlas: Search for c2 servers based on netlas
Search for c2 servers based on netlas. Contribute to michael2to3/c2-search-netlas development by creating an account on GitHub.
awesome-edr-bypass: Awesome EDR Bypass Resources For Ethical Hacking
https://ift.tt/gwx92vN
Submitted April 20, 2023 at 12:03AM by tkmru
via reddit https://ift.tt/tIbKZWk
https://ift.tt/gwx92vN
Submitted April 20, 2023 at 12:03AM by tkmru
via reddit https://ift.tt/tIbKZWk
GitHub
GitHub - tkmru/awesome-edr-bypass: Awesome EDR Bypass Resources For Ethical Hacking
Awesome EDR Bypass Resources For Ethical Hacking. Contribute to tkmru/awesome-edr-bypass development by creating an account on GitHub.
Blue Team Guide To Threat Hunting: Free on Kindle Unlimited OR May 11 - 13 will be 0.99
https://ift.tt/ES7NPMJ
Submitted April 20, 2023 at 02:24AM by chronos491
via reddit https://ift.tt/a78J9Ii
https://ift.tt/ES7NPMJ
Submitted April 20, 2023 at 02:24AM by chronos491
via reddit https://ift.tt/a78J9Ii
[free] Hitch Hacker's Guide to the Network
https://ift.tt/6QM7r0e
Submitted April 20, 2023 at 02:24AM by chronos491
via reddit https://ift.tt/7h0xstM
https://ift.tt/6QM7r0e
Submitted April 20, 2023 at 02:24AM by chronos491
via reddit https://ift.tt/7h0xstM
‘AuKill’ EDR killer malware abuses Process Explorer driver
https://ift.tt/86b7eL2
Submitted April 20, 2023 at 05:11AM by montouesto
via reddit https://ift.tt/jUDm4P5
https://ift.tt/86b7eL2
Submitted April 20, 2023 at 05:11AM by montouesto
via reddit https://ift.tt/jUDm4P5
Sophos News
‘AuKill’ EDR killer malware abuses Process Explorer driver
Driver-based attacks against security products are on the rise
Threat Actors Rapidly Adopt Web3 IPFS Technology
https://ift.tt/KFfA2Te
Submitted April 20, 2023 at 05:08AM by montouesto
via reddit https://ift.tt/2BmXz8E
https://ift.tt/KFfA2Te
Submitted April 20, 2023 at 05:08AM by montouesto
via reddit https://ift.tt/2BmXz8E
Unit 42
Threat Actors Rapidly Adopt Web3 IPFS Technology
Web3 technologies are seeing widespread adoption — including by TAs. We discuss Web3 technology InterPlanetary File System (IPFS), and malicious use of it.
Generating Deserialization Payloads for MessagePack C#’s Typeless Mode
https://ift.tt/PC2Tw79
Submitted April 20, 2023 at 06:27PM by NetwrixSecurity
via reddit https://ift.tt/BViFeX2
https://ift.tt/PC2Tw79
Submitted April 20, 2023 at 06:27PM by NetwrixSecurity
via reddit https://ift.tt/BViFeX2
Netwrix
Generating Deserialization Payloads for MessagePack C#’s Typeless Mode
Learn how to easily create deserialization exploit payloads in MessagePack’s Typeless mode.
The Fuzzing Guide to the Galaxy: An Attempt with Android System Services
https://ift.tt/psZv3db
Submitted April 20, 2023 at 07:09PM by poltess0
via reddit https://ift.tt/BeaYtk0
https://ift.tt/psZv3db
Submitted April 20, 2023 at 07:09PM by poltess0
via reddit https://ift.tt/BeaYtk0
blog.thalium.re
The Fuzzing Guide to the Galaxy: An Attempt with Android System Services
Although the Android base is open source, many different constructors customize it with their own UIs and APIs. All these additions represent an extra attack surface that can change from one phone model to another. We tried to automatically fuzz the closed…
CVE-2023-29084 Command injection in ManageEngine ADManager Plus
https://ift.tt/Wzfva31
Submitted April 20, 2023 at 05:38PM by nirohf
via reddit https://ift.tt/dmDl0JS
https://ift.tt/Wzfva31
Submitted April 20, 2023 at 05:38PM by nirohf
via reddit https://ift.tt/dmDl0JS
HoangND
CVE-2023-29084 Command injection in ManageEngine ADManager Plus
CVE-2023-29084 analysis
Multiple Vulnerabilities found in Docker Desktop - privesc, code execution, file overwrite/delete and more.
https://ift.tt/shDANHT
Submitted April 20, 2023 at 08:23PM by jat0369
via reddit https://ift.tt/qk6AmnO
https://ift.tt/shDANHT
Submitted April 20, 2023 at 08:23PM by jat0369
via reddit https://ift.tt/qk6AmnO
Cyberark
Breaking Docker Named Pipes SYSTEMatically: Docker Desktop Privilege Escalation – Part 2
In the previous blog post, we described how the Docker research started and showed how we could gain a full privilege escalation through a vulnerability in Docker Desktop. In this follow-up blog...
8220 Gang Uses Log4Shell Vulnerability to Install CoinMiner
https://ift.tt/TkEb4yn
Submitted April 21, 2023 at 11:10AM by montouesto
via reddit https://ift.tt/ed6uHDt
https://ift.tt/TkEb4yn
Submitted April 21, 2023 at 11:10AM by montouesto
via reddit https://ift.tt/ed6uHDt
ASEC BLOG
8220 Gang Uses Log4Shell Vulnerability to Install CoinMiner - ASEC BLOG
Ahnlab Security Emergency response Center (ASEC) has recently confirmed that the 8220 Gang attack group is using the Log4Shell vulnerability to install CoinMiner in VMware Horizon servers. Among the systems targeted for the attack, there were Korean energy…