Top News from the Week - Global Cyberattacks and AI Chatbot Risks
https://ift.tt/M5JQ62k
Submitted June 19, 2023 at 04:14PM by NuseAI
via reddit https://ift.tt/J4jxGsS
https://ift.tt/M5JQ62k
Submitted June 19, 2023 at 04:14PM by NuseAI
via reddit https://ift.tt/J4jxGsS
How we tried to book a train ticket and ended up with a databreach with 245,000 records
https://ift.tt/0DJ7lyG
Submitted June 19, 2023 at 10:03PM by _vavkamil_
via reddit https://ift.tt/G2hW1Jl
https://ift.tt/0DJ7lyG
Submitted June 19, 2023 at 10:03PM by _vavkamil_
via reddit https://ift.tt/G2hW1Jl
zerforschung.org
How we tried to book a train ticket and ended up with a databreach with 245,000 records
Dieser Artikel ist auch auf deutsch erschienen
To celebrate Franco-German friendship, German Transport Minister Wissing and his French counterpart Beaune came up with something special:
30,000 free Interrail tickets per country for travel in Germany and…
To celebrate Franco-German friendship, German Transport Minister Wissing and his French counterpart Beaune came up with something special:
30,000 free Interrail tickets per country for travel in Germany and…
Netbackup analysis and network tooling:
https://ift.tt/Bqy6DLk
Submitted June 19, 2023 at 10:01PM by 31angt
via reddit https://ift.tt/XCGKJ9y
https://ift.tt/Bqy6DLk
Submitted June 19, 2023 at 10:01PM by 31angt
via reddit https://ift.tt/XCGKJ9y
GitHub
nbutools/network-analysis at main · airbus-seclab/nbutools
Tools for offensive security of NetBackup infrastructures - airbus-seclab/nbutools
Would appreciate feedbacks for the API Security SaaS I'm currently making
https://chainwide.io
Submitted June 20, 2023 at 12:03AM by mspdude101
via reddit https://ift.tt/tSECZKG
https://chainwide.io
Submitted June 20, 2023 at 12:03AM by mspdude101
via reddit https://ift.tt/tSECZKG
Phishing: What You Need to Know to Stay Safe
https://ift.tt/O695wsE
Submitted June 19, 2023 at 11:50PM by techmedok
via reddit https://ift.tt/ZIRGbOW
https://ift.tt/O695wsE
Submitted June 19, 2023 at 11:50PM by techmedok
via reddit https://ift.tt/ZIRGbOW
Techmedok
Phishing: What You Need To Know To Stay Safe - Techmedok
A phishing attack is a sneaky trick that bad people use to steal your important information. They do this by pretending to be someone you trust, like your
FortiNAC - Just a few more RCEs
https://ift.tt/xeNLujv
Submitted June 20, 2023 at 01:19AM by scopedsecurity
via reddit https://ift.tt/1FAoyZf
https://ift.tt/xeNLujv
Submitted June 20, 2023 at 01:19AM by scopedsecurity
via reddit https://ift.tt/1FAoyZf
Frycos Security Diary
FortiNAC - Just a few more RCEs
FortiNAC is a zero-trust access solution that oversees and protects all digital assets connected to the enterprise network, covering devices from IT, IoT, OT/ICS to IoMT. – https://www.fortinet.com/products/network-access-control
chonked pt.2: exploiting cve-2023-33476 for remote code execution
https://ift.tt/eVUk59q
Submitted June 20, 2023 at 01:59PM by poltess0
via reddit https://ift.tt/E2eIGtz
https://ift.tt/eVUk59q
Submitted June 20, 2023 at 01:59PM by poltess0
via reddit https://ift.tt/E2eIGtz
hyprblog
chonked pt.2: exploiting cve-2023-33476 for remote code execution
second part in a two-part series going over heap overflow in MiniDLNA (CVE-2023-33476). this post provides a walkthrough of steps taken to write an exploit for this vulnerability in order to achieve remote code execution and pop a shell.
Step-by-step blog about to setup grammar-aware in-memory persistent fuzzing campaigns using AFL++-QEMU on 1 practical example
https://ift.tt/Jo3VYKT
Submitted June 20, 2023 at 03:44PM by 31angt
via reddit https://ift.tt/V0TjdCZ
https://ift.tt/Jo3VYKT
Submitted June 20, 2023 at 03:44PM by 31angt
via reddit https://ift.tt/V0TjdCZ
Leaking secrets through caching with Bunny CDN
https://ift.tt/Y8Q1stz
Submitted June 20, 2023 at 08:25PM by pimterry
via reddit https://ift.tt/Pf8KMV4
https://ift.tt/Y8Q1stz
Submitted June 20, 2023 at 08:25PM by pimterry
via reddit https://ift.tt/Pf8KMV4
Httptoolkit
Leaking secrets through caching with Bunny CDN
Caching is hard. Unfortunately though, caching is quite important. Hosted caching & CDNs offer incredible powers that can provide amazing performance boosts,...
nOAuth: How Microsoft OAuth Misconfiguration Can Lead to Full Account Takeover
https://ift.tt/beACcFs
Submitted June 20, 2023 at 10:23PM by meirwah
via reddit https://ift.tt/pOoFcnU
https://ift.tt/beACcFs
Submitted June 20, 2023 at 10:23PM by meirwah
via reddit https://ift.tt/pOoFcnU
Descope
nOAuth: How Microsoft OAuth Misconfiguration Can Lead to Full Account Takeover
This blog will cover an authentication implementation flaw Descope discovered in Microsoft Azure AD OAuth applications that, when exploited, could lead to full account takeover.
Best Wireless Router for Home Users
https://ift.tt/M5G81dV
Submitted June 21, 2023 at 05:41AM by CuriousBee742
via reddit https://ift.tt/IHpkUeD
https://ift.tt/M5G81dV
Submitted June 21, 2023 at 05:41AM by CuriousBee742
via reddit https://ift.tt/IHpkUeD
National Security Agency/Central Security Service
NSA Releases Best Practices For Securing Your Home Network
FORT MEADE, Md. — The National Security Agency (NSA) released the “Best Practices for Securing Your Home Network” Cybersecurity Information Sheet (CSI) today to help teleworkers protect their home
Harmful code in a website
http://crygma.com
Submitted June 21, 2023 at 05:01PM by Crypto-Angel
via reddit https://ift.tt/zJN48tY
http://crygma.com
Submitted June 21, 2023 at 05:01PM by Crypto-Angel
via reddit https://ift.tt/zJN48tY
Crygma
Crygma - Quantum Security
Crygma provides advanced cybersecurity solutions focused on delivering quantum-secure communication, identity, and data protection. Our technologies are designed to eliminate stored secrets, passwords, and static encryption keys.
"Another field where it beats humans [in security] is by being 24/7 available and can stand guard literally non-stop. ChatGPT doesn't need sleep as a regular human being does, so it's always awake and ready."
https://ift.tt/FYeRlmj
Submitted June 21, 2023 at 04:41PM by susanvilleula1
via reddit https://ift.tt/Wd8Pnka
https://ift.tt/FYeRlmj
Submitted June 21, 2023 at 04:41PM by susanvilleula1
via reddit https://ift.tt/Wd8Pnka
Crossplag
ChatGPT and Cybersecurity - friends or foes? - Crossplag
Is ChatGPT truly a trustworthy ally when it comes to cybersecurity? Or does it pose a threat when implemented?
Android Malware on the Rise – A case study of AhMyth RAT
https://ift.tt/8bEXuaD
Submitted June 21, 2023 at 07:29PM by CyberMasterV
via reddit https://ift.tt/60lHDXW
https://ift.tt/8bEXuaD
Submitted June 21, 2023 at 07:29PM by CyberMasterV
via reddit https://ift.tt/60lHDXW
SecurityScorecard
Resources
Explore cybersecurity white papers, data sheets, webinars, videos, informative blogs, and more with SecurityScorecard.
Targeting Core OPC UA Components
https://ift.tt/6ySCvdN
Submitted June 21, 2023 at 06:34PM by derp6996
via reddit https://ift.tt/dKvebOG
https://ift.tt/6ySCvdN
Submitted June 21, 2023 at 06:34PM by derp6996
via reddit https://ift.tt/dKvebOG
Claroty
OPC UA Deep Dive Series (Part 4): Targeting Core OPC UA Components
In Part 3 of the OPC UA series, we described the inner workings of the OPC-UA protocol, its structure, and various security aspects. Learn more with Claroty.
GitHub Dataset Reveals Millions Potentially Vulnerable to RepoJacking
https://ift.tt/482vh1x
Submitted June 21, 2023 at 08:52PM by ilay789
via reddit https://ift.tt/8RPTzj9
https://ift.tt/482vh1x
Submitted June 21, 2023 at 08:52PM by ilay789
via reddit https://ift.tt/8RPTzj9
Aqua
GitHub Dataset Research Reveals Millions Potentially Vulnerable to RepoJacking
Millions of GitHub repositories are potentially vulnerable to RepoJacking, which if exploited may lead to code execution on environments
How To Pass AWS Certified Database – Specialty Exam
https://ift.tt/saz61fH
Submitted June 22, 2023 at 08:45AM by Intelligent_Tune_392
via reddit https://ift.tt/s6R0hxc
https://ift.tt/saz61fH
Submitted June 22, 2023 at 08:45AM by Intelligent_Tune_392
via reddit https://ift.tt/s6R0hxc
ITCertificate.Org
How To Pass AWS Certified Database – Specialty Exam
How to prepare for AWS Certified Database Specialty
Callisto - Automated Binary Vulnerability Discovery Tool
https://ift.tt/v3C2G9z
Submitted June 22, 2023 at 12:11PM by jibblz
via reddit https://ift.tt/r0tbMxj
https://ift.tt/v3C2G9z
Submitted June 22, 2023 at 12:11PM by jibblz
via reddit https://ift.tt/r0tbMxj
GitHub
GitHub - JetP1ane/Callisto: Callisto - An Intelligent Binary Vulnerability Analysis Tool
Callisto - An Intelligent Binary Vulnerability Analysis Tool - JetP1ane/Callisto
Secfault Security - LibreOffice Arbitrary File Write (CVE-2023-1883)
https://ift.tt/5GYbE49
Submitted June 22, 2023 at 01:08PM by Xadartt
via reddit https://ift.tt/bMeRj9N
https://ift.tt/5GYbE49
Submitted June 22, 2023 at 01:08PM by Xadartt
via reddit https://ift.tt/bMeRj9N
Another AWS WAF bypass allowing SQLi caused by an unorthodox MSSQL design choice
https://ift.tt/QgdepHi
Submitted June 22, 2023 at 08:00PM by obilodeau
via reddit https://ift.tt/uDi2JjH
https://ift.tt/QgdepHi
Submitted June 22, 2023 at 08:00PM by obilodeau
via reddit https://ift.tt/uDi2JjH
GoSecure
AWS WAF Clients Left Vulnerable to SQL Injection Due to Unorthodox MSSQL Design Choice - GoSecure
While doing research on Microsoft SQL (MSSQL) Server, GoSecure ethical hackers found an unorthodox design choice that ultimately led to a WAF bypass.
A brief summary about a SSTI to RCE in Bagisto
https://ift.tt/whVJGR4
Submitted June 23, 2023 at 04:41PM by sp1d3rr
via reddit https://ift.tt/yHeXhij
https://ift.tt/whVJGR4
Submitted June 23, 2023 at 04:41PM by sp1d3rr
via reddit https://ift.tt/yHeXhij
Medium
A brief summary about a SSTI to RCE in Bagisto
This is a summary of a Server Side Template Injection vulnerability found and used as RCE.