A Deep Dive into Brute Ratel C4 payloads
https://ift.tt/QRNU0mw
Submitted August 31, 2023 at 06:31PM by CyberMasterV
via reddit https://ift.tt/vI7bcd8
https://ift.tt/QRNU0mw
Submitted August 31, 2023 at 06:31PM by CyberMasterV
via reddit https://ift.tt/vI7bcd8
BitLocker, TPM and Pluton | What Are They and How Do They Work
https://ift.tt/Gi5evfX
Submitted August 31, 2023 at 11:28PM by HotCakeXXXXXXXXXXXXX
via reddit https://ift.tt/hvEe5ft
https://ift.tt/Gi5evfX
Submitted August 31, 2023 at 11:28PM by HotCakeXXXXXXXXXXXXX
via reddit https://ift.tt/hvEe5ft
GitHub
BitLocker, TPM and Pluton | What Are They and How Do They Work
Harden Windows Safely, Securely using Official Supported Microsoft methods and proper explanation | Always up-to-date and works with the latest build of Windows | Provides tools and Guides for Pers...
(nodejs) CVEAggregate - Generate and work with EPSS probabilities, CVSS vectors, and CISA-KEV due dates mapped by CVE IDs
https://ift.tt/Lg5CWZw
Submitted August 31, 2023 at 10:57PM by r3volved
via reddit https://ift.tt/R6iNsGl
https://ift.tt/Lg5CWZw
Submitted August 31, 2023 at 10:57PM by r3volved
via reddit https://ift.tt/R6iNsGl
GitHub
GitHub - r3volved/CVEAggregate: Build a CVE library with aggregated CISA, EPSS and CVSS data
Build a CVE library with aggregated CISA, EPSS and CVSS data - r3volved/CVEAggregate
Bypassing Windows Defender LSASS Dump Detection with EvilLsassTwin
https://ift.tt/BLHeAJX
Submitted September 01, 2023 at 12:02AM by EphReborn
via reddit https://ift.tt/cdlCXRD
https://ift.tt/BLHeAJX
Submitted September 01, 2023 at 12:02AM by EphReborn
via reddit https://ift.tt/cdlCXRD
GitHub
Nimperiments/EvilLsassTwin at main · RePRGM/Nimperiments
Various one-off pentesting projects written in Nim. Updates happen on a whim. - RePRGM/Nimperiments
Mashing Enter to bypass Linux full disk encryption with TPM, Clevis, dracut and systemd
https://ift.tt/qiMJ4Xs
Submitted September 01, 2023 at 04:20AM by MysteriousHotel3017
via reddit https://ift.tt/90xtb8R
https://ift.tt/qiMJ4Xs
Submitted September 01, 2023 at 04:20AM by MysteriousHotel3017
via reddit https://ift.tt/90xtb8R
Pulse Security
Mashing Enter to bypass full disk encryption with TPM, Clevis, dracut and systemd
This vulnerability allows a physically-present attacker to control the full disk encryption unlock process and gain complete access to decrypted content in some cases where a TPM, dracut and Clevis are used.
NetNTLMv1 Downgrade attacks
https://ift.tt/MaUlozT
Submitted September 01, 2023 at 02:30PM by S3cur3Th1sSh1t
via reddit https://ift.tt/rXKovwS
https://ift.tt/MaUlozT
Submitted September 01, 2023 at 02:30PM by S3cur3Th1sSh1t
via reddit https://ift.tt/rXKovwS
www.r-tec.net
NetNTLMv1 Downgrade to compromise
Easy to understand NetNTLMv1 downgrade, relaying stuff and further resources for those who want to get the bigger picture at the end of this post.
New OpenSecurityTraining2 class "Debuggers 3301: HyperDbg" by Sina Karvandi (~16 hours)
https://ift.tt/1Cy6tIZ
Submitted September 01, 2023 at 05:46PM by OpenSecurityTraining
via reddit https://ift.tt/T0UnbpD
https://ift.tt/1Cy6tIZ
Submitted September 01, 2023 at 05:46PM by OpenSecurityTraining
via reddit https://ift.tt/T0UnbpD
p.ost2.fyi
Debuggers 3301: HyperDbg
This class teaches you how to use HyperDbg, a virtualization-based debugger.
Session Hijacking Visual Exploitation (SHVE). New tool for XSS Exploitation
https://ift.tt/IxT5CmD
Submitted September 02, 2023 at 05:01AM by nibblesec
via reddit https://ift.tt/eNzLRkm
https://ift.tt/IxT5CmD
Submitted September 02, 2023 at 05:01AM by nibblesec
via reddit https://ift.tt/eNzLRkm
Doyensec
Introducing Session Hijacking Visual Exploitation (SHVE): An Innovative Open-Source Tool for XSS Exploitation · Doyensec's Blog
Doyensec's Blog :: Doyensec is an independent security research and development company focused on vulnerability discovery and remediation.
Annoying Apple Fans: The Flipper Zero Bluetooth Prank Revealed
https://ift.tt/oDZG2O1
Submitted September 02, 2023 at 06:23AM by Techryptic
via reddit https://ift.tt/H7gMLwB
https://ift.tt/oDZG2O1
Submitted September 02, 2023 at 06:23AM by Techryptic
via reddit https://ift.tt/H7gMLwB
Secure FastAPI with eBPF
https://ift.tt/Vum1IOr
Submitted September 03, 2023 at 04:32PM by cov_id19
via reddit https://ift.tt/FMtvCQ2
https://ift.tt/Vum1IOr
Submitted September 03, 2023 at 04:32PM by cov_id19
via reddit https://ift.tt/FMtvCQ2
Medium
Secure FastAPI with eBPF
Leverage eBPF to secure internet-facing APIs: FastAPI, BlackSheep, Flask, Django, aiohttp, tornado, and more.
New advisory: File History Service (fhsvc.dll) Elevation of Privilege - SSD Secure Disclosure
https://ift.tt/Ya7jgX3
Submitted September 03, 2023 at 07:49PM by SSDisclosure
via reddit https://ift.tt/0a6rOZp
https://ift.tt/Ya7jgX3
Submitted September 03, 2023 at 07:49PM by SSDisclosure
via reddit https://ift.tt/0a6rOZp
SSD Secure Disclosure
SSD Advisory - File History Service (fhsvc.dll) Elevation of Privilege - SSD Secure Disclosure
Summary A vulnerability in Windows’s File History Service allows local users to gain elevated privileges on the Windows operating system. Credit An independent security researcher working with SSD Secure Disclosure, the vulnerability was one of the winners…
China-linked cybercriminals bypass Barracuda’s security patch
https://ift.tt/VMThCIB
Submitted September 04, 2023 at 01:44AM by nareksays
via reddit https://ift.tt/mAiPV8r
https://ift.tt/VMThCIB
Submitted September 04, 2023 at 01:44AM by nareksays
via reddit https://ift.tt/mAiPV8r
Deform
China-linked Cybercriminals Bypass Barracuda's Security Patch - Deform
Barracuda email security gateway devices became the target of a cyber espionage attack from a group with ties to China, known as UNC4841. This group managed
WordPress website fingerprint techniques
https://ift.tt/ngGvuB7
Submitted September 04, 2023 at 01:37PM by theMiddleBlue
via reddit https://ift.tt/FqhoTvQ
https://ift.tt/ngGvuB7
Submitted September 04, 2023 at 01:37PM by theMiddleBlue
via reddit https://ift.tt/FqhoTvQ
Sicuranext Blog
How attackers fingerprint your WordPress website
Attackers have quite a few sneaky ways to gather information from your WordPress website. They can get their hands on details like the WordPress version you're using, the active plugins and their versions, and even info about your active users. In this article…
Microsoft Edge Forensics: Screenshot History
https://ift.tt/olZncUd
Submitted September 04, 2023 at 01:08PM by OwnPreparation3424
via reddit https://ift.tt/pF50ly9
https://ift.tt/olZncUd
Submitted September 04, 2023 at 01:08PM by OwnPreparation3424
via reddit https://ift.tt/pF50ly9
Medium
Microsoft Edge Forensics: Screenshot History
According to a recent article on Neowin, Microsoft Edge has a new feature that allows it to take screenshots of every web page a user…
Arbitrary Configuration Injection 💉 (intro)
https://ift.tt/7jcTYfy
Submitted September 04, 2023 at 02:25PM by Sim4n6
via reddit https://ift.tt/i23FnlB
https://ift.tt/7jcTYfy
Submitted September 04, 2023 at 02:25PM by Sim4n6
via reddit https://ift.tt/i23FnlB
Query Chronicles
Arbitrary Configuration Injection
A full report of penetration test of OPNsense (an open source, FreeBSD based firewall and routing platform).
https://ift.tt/ti5G4JI
Submitted September 04, 2023 at 06:29PM by logicaltrust-net
via reddit https://ift.tt/wtjhHnO
https://ift.tt/ti5G4JI
Submitted September 04, 2023 at 06:29PM by logicaltrust-net
via reddit https://ift.tt/wtjhHnO
Pwn2Own contest offers $1M in cash and prizes for hacking cars
https://ift.tt/MVlJxgO
Submitted September 04, 2023 at 08:28PM by nhavag
via reddit https://ift.tt/tYA6L4f
https://ift.tt/MVlJxgO
Submitted September 04, 2023 at 08:28PM by nhavag
via reddit https://ift.tt/tYA6L4f
Useful resources for SOC Analyst and SOC Analyst candidates.
https://ift.tt/cEwxLKC
Submitted September 04, 2023 at 08:43PM by ogunal00
via reddit https://ift.tt/vqlzSti
https://ift.tt/cEwxLKC
Submitted September 04, 2023 at 08:43PM by ogunal00
via reddit https://ift.tt/vqlzSti
GitHub
GitHub - LetsDefend/awesome-soc-analyst: Useful resources for SOC Analyst and SOC Analyst candidates.
Useful resources for SOC Analyst and SOC Analyst candidates. - GitHub - LetsDefend/awesome-soc-analyst: Useful resources for SOC Analyst and SOC Analyst candidates.
Using Open Source Software Composition Analysis Tool From Google. Presenting the usage of the osv-scanner tool in real-life Python and Java projects. A tool review with pros and cons.
https://ift.tt/Xx5uWhH
Submitted September 04, 2023 at 11:05PM by theowni
via reddit https://ift.tt/woiDvS2
https://ift.tt/Xx5uWhH
Submitted September 04, 2023 at 11:05PM by theowni
via reddit https://ift.tt/woiDvS2
Medium
Using Open-Source Software Composition Analysis Tool From Google
Presenting the usage of the osv-scanner tool from Google in real-life Python and Java projects. A tool review with its pros and cons.
Nascent Malware Campaign Targets npm, PyPI, and RubyGems Developers
https://ift.tt/R7uW1hi
Submitted September 05, 2023 at 12:27AM by louis11
via reddit https://ift.tt/Jf32kxe
https://ift.tt/R7uW1hi
Submitted September 05, 2023 at 12:27AM by louis11
via reddit https://ift.tt/Jf32kxe
Phylum
Malware targets Python, Ruby and Javanoscript Developers
Phylum has identified a malware campaign spanning PyPI, npm and RubyGems. Delivering early stage malware to users.
Uncovering Web Cache Deception: A Missed Vulnerability in the Most Unexpected Places
https://ift.tt/AEjCxYS
Submitted September 05, 2023 at 03:30AM by vikzsharma
via reddit https://ift.tt/Uxf96Ts
https://ift.tt/AEjCxYS
Submitted September 05, 2023 at 03:30AM by vikzsharma
via reddit https://ift.tt/Uxf96Ts
Agilehunt
Uncovering Web Cache Deception: A Missed Vulnerability in the Most Unexpected Places
VULNERABILITY DESCRIPTION
This vulnerability involves a Web Cache Deception attack targeting the https://redacted.com/anynonexisting URL endpoint. By manipulating the caching mechanisms, unauthorized users can gain access to sensitive Personally Identifiable…
This vulnerability involves a Web Cache Deception attack targeting the https://redacted.com/anynonexisting URL endpoint. By manipulating the caching mechanisms, unauthorized users can gain access to sensitive Personally Identifiable…