Uncovering drIBAN fraud operations - Chapter 1 | Cleafy Labs
https://ift.tt/93hLdJk
Submitted May 04, 2023 at 03:43PM by f3d_0x0
via reddit https://ift.tt/BNt2Iyh
https://ift.tt/93hLdJk
Submitted May 04, 2023 at 03:43PM by f3d_0x0
via reddit https://ift.tt/BNt2Iyh
Cleafy
Uncovering drIBAN fraud operations 1 | Cleafy Labs
The threat intelligence team of Cleafy analyzed undercovering drIBAN fraud operations. Read here the first episode of the series of technical analysis.
I had a machine running for two weeks on the public cloud. Every few seconds there was an automated SSH login attempt. Here is the full list of usernames - some of which are quite curious.
https://ift.tt/autTKAW
Submitted May 04, 2023 at 04:39PM by scared_codeless
via reddit https://ift.tt/tBU2vwq
https://ift.tt/autTKAW
Submitted May 04, 2023 at 04:39PM by scared_codeless
via reddit https://ift.tt/tBU2vwq
Gist
ssh-login-attempts-usernames
GitHub Gist: instantly share code, notes, and snippets.
Introducing SpiderSuite: Advance web security crawler
https://ift.tt/qyX2Lv3
Submitted May 04, 2023 at 06:44PM by 3nock_N
via reddit https://ift.tt/yrps3it
https://ift.tt/qyX2Lv3
Submitted May 04, 2023 at 06:44PM by 3nock_N
via reddit https://ift.tt/yrps3it
GitHub
GitHub - 3nock/SpiderSuite: Advance web spider/crawler for cyber security professionals
Advance web spider/crawler for cyber security professionals - GitHub - 3nock/SpiderSuite: Advance web spider/crawler for cyber security professionals
PaperCut Exploitation: A Different Path to Code Execution
https://ift.tt/l4PbcUC
Submitted May 04, 2023 at 08:01PM by chicksdigthelongrun
via reddit https://ift.tt/IWd4GQS
https://ift.tt/l4PbcUC
Submitted May 04, 2023 at 08:01PM by chicksdigthelongrun
via reddit https://ift.tt/IWd4GQS
PaperCut Exploitation - A Different Path to Code Execution- Blog - VulnCheck
Public exploits and detections for CVE-2023-27350 focus on code execution using the PaperCut print noscripting interface. In this blog, VulnCheck shares a new code execution vector and demonstrates how existing detections aren't robust enough to flag the new…
Remote Bitcoin Upstream Drain / Financial Attack
https://ift.tt/MeAsV7F
Submitted May 05, 2023 at 01:21PM by SharpAd1823
via reddit https://ift.tt/MC1gkG2
https://ift.tt/MeAsV7F
Submitted May 05, 2023 at 01:21PM by SharpAd1823
via reddit https://ift.tt/MC1gkG2
GitHub
GitHub - visualbasic6/drain: bitdrain - remote p2p bandwidth/cpu overage attack against bitcoin, dogecoin, etc.
bitdrain - remote p2p bandwidth/cpu overage attack against bitcoin, dogecoin, etc. - GitHub - visualbasic6/drain: bitdrain - remote p2p bandwidth/cpu overage attack against bitcoin, dogecoin, etc.
Redash SAML Authentication Bypass
https://ift.tt/DF0YNaE
Submitted May 05, 2023 at 03:03PM by albinowax
via reddit https://ift.tt/VfPXhBy
https://ift.tt/DF0YNaE
Submitted May 05, 2023 at 03:03PM by albinowax
via reddit https://ift.tt/VfPXhBy
blog.calif.io
Redash SAML Authentication Bypass
Redash is a popular data analysis and visualization tool. We recently reported a critical SAML authentication bypass vulnerability affecting it latest version (10.1.0). The vulnerability could be exploited by anyone to gain highest possible privileges on…
Google Chrome WebRTC RTCStatsCollector out of bounds memory access vulnerability
https://ift.tt/TIztBwp
Submitted May 05, 2023 at 04:53PM by Gallus
via reddit https://ift.tt/JnxBqDK
https://ift.tt/TIztBwp
Submitted May 05, 2023 at 04:53PM by Gallus
via reddit https://ift.tt/JnxBqDK
gowhois - Support for various whois servers
https://ift.tt/BQ5qmd1
Submitted May 06, 2023 at 09:16AM by oil_sardine
via reddit https://ift.tt/pvjh0Rq
https://ift.tt/BQ5qmd1
Submitted May 06, 2023 at 09:16AM by oil_sardine
via reddit https://ift.tt/pvjh0Rq
GitHub
GitHub - famasoon/gowhois: whois command implemented by golang with awesome whois servers list
whois command implemented by golang with awesome whois servers list - famasoon/gowhois
Cookie Bugs - Smuggling & Injection
https://ift.tt/g68WkZy
Submitted May 06, 2023 at 02:12PM by albinowax
via reddit https://ift.tt/zgHm7ei
https://ift.tt/g68WkZy
Submitted May 06, 2023 at 02:12PM by albinowax
via reddit https://ift.tt/zgHm7ei
arxenix's blog
Cookie Bugs - Smuggling & Injection
Research on how browsers encode & send cookies, how they are parsed by various web frameworks, and some bugs
I created a GitHub repo for learning application security from scratch. It's perfect for beginners and includes a comprehensive list of reference links. But it's not complete yet! Contributors are welcome to add more details.
https://ift.tt/rdzjB1t
Submitted May 06, 2023 at 11:56PM by Ano_F
via reddit https://ift.tt/hlg8raq
https://ift.tt/rdzjB1t
Submitted May 06, 2023 at 11:56PM by Ano_F
via reddit https://ift.tt/hlg8raq
GitHub
GitHub - Anof-cyber/Application-Security: Resources for Application Security including Web, API, Android, iOS and Thick Client
Resources for Application Security including Web, API, Android, iOS and Thick Client - Anof-cyber/Application-Security
Dependabot Confusion: Gaining Access to Private GitHub Repositories using Dependabot
https://ift.tt/7Qin9mG
Submitted May 07, 2023 at 01:08AM by giraffesecurity
via reddit https://ift.tt/TV64zcy
https://ift.tt/7Qin9mG
Submitted May 07, 2023 at 01:08AM by giraffesecurity
via reddit https://ift.tt/TV64zcy
Breaking down Reverse shell commands
https://ift.tt/rCApuhj
Submitted May 07, 2023 at 10:04PM by adityatelange
via reddit https://ift.tt/bjpW9AS
https://ift.tt/rCApuhj
Submitted May 07, 2023 at 10:04PM by adityatelange
via reddit https://ift.tt/bjpW9AS
Aditya Telange
Breaking down Reverse shell commands
In pentesting assessments and CTFs we always need reverse shells to execute commands on target machine once we have exploited a system and have a command injection at some point in our engagement.
For that we have an awesome project: revshells.com or reverse…
For that we have an awesome project: revshells.com or reverse…
Evading MDATP for Full Endpoint Compromising
https://ift.tt/UMpH2Zr
Submitted May 08, 2023 at 01:57AM by florilsk
via reddit https://ift.tt/n2VKY3J
https://ift.tt/UMpH2Zr
Submitted May 08, 2023 at 01:57AM by florilsk
via reddit https://ift.tt/n2VKY3J
ETWHash - "He who listens, shall receive" - Nettitude Labs
https://ift.tt/lWC3Vye
Submitted May 08, 2023 at 12:40PM by lefterispanos
via reddit https://ift.tt/ozaPDc8
https://ift.tt/lWC3Vye
Submitted May 08, 2023 at 12:40PM by lefterispanos
via reddit https://ift.tt/ozaPDc8
LRQA
ETWHash -
ETWHash is a small C# tool used during Red Team engagements, that can consume ETW SMB events and extract NetNTLMv2 hashes for cracking offline, unlike currently documented methods.
Building a Red Team Infrastructure in 2023
https://ift.tt/j8J9HCE
Submitted May 08, 2023 at 02:48PM by co1nc1dence
via reddit https://ift.tt/6CoObNa
https://ift.tt/j8J9HCE
Submitted May 08, 2023 at 02:48PM by co1nc1dence
via reddit https://ift.tt/6CoObNa
www.securesystems.de
Building a Red Team Infrastructure in 2023
In this blog post an overview of the different components of a red team infrastructure is given. This includes explanations how these work, as well as the comparison of different solutions and their characteristics.
Backhand v0.12.0: Now supporting custom Squashfs images
https://ift.tt/AI8ZSqv
Submitted May 08, 2023 at 04:59PM by arch_rust
via reddit https://ift.tt/yGQevMt
https://ift.tt/AI8ZSqv
Submitted May 08, 2023 at 04:59PM by arch_rust
via reddit https://ift.tt/yGQevMt
GitHub
Release v0.12.0 · wcampbell0x2a/backhand
Thanks @rbran for the contributions!
backhand
Kind has been extended to take an CompressionAction to have a custom compression and decompression
algorithm. This defaults to the DefaultCompressor i...
backhand
Kind has been extended to take an CompressionAction to have a custom compression and decompression
algorithm. This defaults to the DefaultCompressor i...
PRFs, PRPs and other fantastic things
https://ift.tt/zSmp7qQ
Submitted May 08, 2023 at 08:32PM by feross
via reddit https://ift.tt/yCVgZDf
https://ift.tt/zSmp7qQ
Submitted May 08, 2023 at 08:32PM by feross
via reddit https://ift.tt/yCVgZDf
A Few Thoughts on Cryptographic Engineering
PRFs, PRPs and other fantastic things
A few weeks ago I ran into a conversation on Twitter about the weaknesses of applied cryptography textbooks, and how they tend to spend way too much time lecturing people about Feistel networks and…
GitHub - almandin/ntdsdotsqlite: A small utility to translate NTDS.dit files to SQLite format.
https://ift.tt/oTWZDil
Submitted May 08, 2023 at 11:17PM by almandin_jv
via reddit https://ift.tt/Gyzs0QF
https://ift.tt/oTWZDil
Submitted May 08, 2023 at 11:17PM by almandin_jv
via reddit https://ift.tt/Gyzs0QF
GitHub
GitHub - almandin/ntdsdotsqlite: A small utility to translate NTDS.dit files to SQLite format.
A small utility to translate NTDS.dit files to SQLite format. - almandin/ntdsdotsqlite
Vulnerability Analysis with Ghidra Scripting
https://ift.tt/oReVUfW
Submitted May 09, 2023 at 03:50AM by cy1337
via reddit https://ift.tt/AVR9rLB
https://ift.tt/oReVUfW
Submitted May 09, 2023 at 03:50AM by cy1337
via reddit https://ift.tt/AVR9rLB
Medium
Vulnerability Analysis with Ghidra Scripting
As some of you may have seen, I posted a challenge to use Ghidra to identify a vulnerability in a WarGames themed game. There has been a…
Guardians of the Network: Exploring the World of Intrusion Detection and Prevention Systems
https://ift.tt/XfB0hJY
Submitted May 09, 2023 at 10:56AM by Smooth-Obligation181
via reddit https://ift.tt/qpbH5Ut
https://ift.tt/XfB0hJY
Submitted May 09, 2023 at 10:56AM by Smooth-Obligation181
via reddit https://ift.tt/qpbH5Ut
Codelivly
Guardians of the Network: Exploring the World of Intrusion Detection and Prevention Systems - Codelivly
In today's increasingly digital world, the need for robust cybersecurity measures has never been gre
Backdooring Electron Apps
https://ift.tt/K3wHXaj
Submitted May 09, 2023 at 12:54PM by nv1t
via reddit https://ift.tt/YfQqGng
https://ift.tt/K3wHXaj
Submitted May 09, 2023 at 12:54PM by nv1t
via reddit https://ift.tt/YfQqGng
Inside Out Insights
Backdooring Electron Applications – Inside Out Insights
Recently, we discussed various methods of persistence on corporate devices and a colleague of mine mentioned a tool he had written. We we...