Howtorotate.com - Open Source Guides on Key Rotations from the Most Popular Providers
https://ift.tt/fQdUIK8
Submitted September 20, 2023 at 12:27AM by Phorcez
via reddit https://ift.tt/8W9QuZL
https://ift.tt/fQdUIK8
Submitted September 20, 2023 at 12:27AM by Phorcez
via reddit https://ift.tt/8W9QuZL
Atlassian Security Bulletin September 23
https://ift.tt/IqYJ9Qb
Submitted September 20, 2023 at 11:27AM by Alfrede81
via reddit https://ift.tt/UuwnOy0
https://ift.tt/IqYJ9Qb
Submitted September 20, 2023 at 11:27AM by Alfrede81
via reddit https://ift.tt/UuwnOy0
RCE in Tutanota Desktop: How a single email could compromise your machine
https://ift.tt/7NDJg09
Submitted September 20, 2023 at 09:24PM by SonarPaul
via reddit https://ift.tt/sPKqu7k
https://ift.tt/7NDJg09
Submitted September 20, 2023 at 09:24PM by SonarPaul
via reddit https://ift.tt/sPKqu7k
Sonarsource
Remote Code Execution in Tutanota Desktop due to Code Flaw
Our Research team discovered critical code vulnerabilities in Proton Mail, Skiff, and Tutanota. This post covers an XSS vulnerability in Tutanota Desktop and how it can be prevented.
LUCR-3: Scattered Spider Getting SaaS-y in the Cloud
https://ift.tt/04rgSo1
Submitted September 20, 2023 at 09:53PM by permis0
via reddit https://ift.tt/n20Ge3J
https://ift.tt/04rgSo1
Submitted September 20, 2023 at 09:53PM by permis0
via reddit https://ift.tt/n20Ge3J
permiso.io
LUCR-3: Scattered Spider Getting SaaS-y in the Cloud
LUCR-3 overlaps with groups such as Scattered Spider, Oktapus, UNC3944, and STORM-0875 and is a financially motivated attacker that leverages the Identity Provider (IDP) as initial access into an environment with the goal of stealing Intellectual Property…
Google Chrome is erroring chase.com for containing malware from static.chasecdn.com trying to load marketing-loader.js
https://chase.com
Submitted September 21, 2023 at 01:42AM by cybersecscrub
via reddit https://ift.tt/t3XaWrj
https://chase.com
Submitted September 21, 2023 at 01:42AM by cybersecscrub
via reddit https://ift.tt/t3XaWrj
Chase
Credit Card, Mortgage, Banking, Auto | Chase Online | Chase.com
Chase online; credit cards, mortgages, commercial banking, auto loans, investing & retirement planning, checking and business banking.
HDF5 - Multiple Memory Corruption Vulnerabilities
https://ift.tt/yYmBO3t
Submitted September 21, 2023 at 04:14AM by MysteriousHotel3017
via reddit https://ift.tt/Zu36rf1
https://ift.tt/yYmBO3t
Submitted September 21, 2023 at 04:14AM by MysteriousHotel3017
via reddit https://ift.tt/Zu36rf1
Pulse Security
HDF5 - Multiple Memory Corruption Vulnerabilities
Multiple memory corruption vulnerabilities were discovered in the LibHDF5 library including heap overflow, use-after-free and stack exhaustion.
New ways to inject system CA certificates in Android 14
https://ift.tt/UgATxmY
Submitted September 21, 2023 at 06:05PM by pimterry
via reddit https://ift.tt/MB6wXRO
https://ift.tt/UgATxmY
Submitted September 21, 2023 at 06:05PM by pimterry
via reddit https://ift.tt/MB6wXRO
Httptoolkit
New ways to inject system CA certificates in Android 14
A couple of weeks ago I published a post about changes in Android 14 that fundamentally break existing approaches to installing system-level…
Finnish authorities have shut down PIILOPUOTI - a darknet drug market
https://ift.tt/6lC5ctJ
Submitted September 21, 2023 at 07:20PM by nareksays
via reddit https://ift.tt/c3yC7Wk
https://ift.tt/6lC5ctJ
Submitted September 21, 2023 at 07:20PM by nareksays
via reddit https://ift.tt/c3yC7Wk
Deform
Finnish Authorities Have Shut Down the Darknet Drug Market PIILOPUOTI - Deform
Finnish law enforcement authorities have announced the dismantling of PIILOPUOTI, a shady online marketplace that specialized in illegal drug trafficking
The WebP 0day
https://ift.tt/xJct8Ew
Submitted September 22, 2023 at 01:03AM by MegaManSec2
via reddit https://ift.tt/ZmdS3HE
https://ift.tt/xJct8Ew
Submitted September 22, 2023 at 01:03AM by MegaManSec2
via reddit https://ift.tt/ZmdS3HE
Isosceles Blog
The WebP 0day
Early last week, Google released a new stable update for Chrome. The update included a single security fix that was reported by Apple's Security Engineering and Architecture (SEAR) team. The issue, CVE-2023-4863, was a heap buffer overflow in the WebP image…
Critical DICOM Server Misconfigurations Lead to Exposure of 1.6M Medical Records
https://ift.tt/wDbVeS5
Submitted September 22, 2023 at 04:22PM by ziyahanalbeniz
via reddit https://ift.tt/184vwEk
https://ift.tt/wDbVeS5
Submitted September 22, 2023 at 04:22PM by ziyahanalbeniz
via reddit https://ift.tt/184vwEk
SOCRadar® Cyber Intelligence Inc.
Critical DICOM Server Misconfigurations Lead to Exposure of 1.6M Medical Records
In a regular threat and vulnerability hunting activity, SOCRadar has discovered during their research that thousands of DICOM servers were...
Cryptomining malware detected on a Russian thesaurus with 5 Million+ monthly visits
https://ift.tt/O3aT1dR
Submitted September 22, 2023 at 05:05PM by nareksays
via reddit https://ift.tt/XOVB0IS
https://ift.tt/O3aT1dR
Submitted September 22, 2023 at 05:05PM by nareksays
via reddit https://ift.tt/XOVB0IS
Group-IB
It’s a trap: Detecting a cryptominer on a popular website using Group-IB MXDR
Group-IB analysts discovered and analyzed a cryptojacking campaign on a popular educational resource using Group-IB Managed XDR.
Muppets group reportedly breached Sirena Travel: 3.5 Billion records compromised
https://ift.tt/W4uf7oy
Submitted September 23, 2023 at 12:07AM by nareksays
via reddit https://ift.tt/ecYTu2Z
https://ift.tt/W4uf7oy
Submitted September 23, 2023 at 12:07AM by nareksays
via reddit https://ift.tt/ecYTu2Z
Defeating Visual Studio Code embedded reverse shell
https://ift.tt/nWajPsv
Submitted September 23, 2023 at 01:13AM by ipfyx
via reddit https://ift.tt/hNJpTg3
https://ift.tt/nWajPsv
Submitted September 23, 2023 at 01:13AM by ipfyx
via reddit https://ift.tt/hNJpTg3
ipfyx.fr
Blocking Visual Studio Code embedded reverse shell before it's too late
Visual studio code tunnel Introduction Since July 2023, Microsoft is offering the perfect reverse shell, embedded inside Visual Studio Code, a widely used …
Past week in brief - Microsoft's 38TB Data Leak, Cisco's Splunk Acquisition, Apple's Triple Zero-Days, LastPass Security Update, and OpenAI's Red Teaming Initiative
https://ift.tt/TWNR4wL
Submitted September 24, 2023 at 02:22PM by mandos_io
via reddit https://ift.tt/5V9XQ1A
https://ift.tt/TWNR4wL
Submitted September 24, 2023 at 02:22PM by mandos_io
via reddit https://ift.tt/5V9XQ1A
Mandos Way
Brief #18: Microsoft's 38TB Data Leak, Cisco's Splunk Acquisition
Mandos Brief, Week 38 2023: Microsoft's 38TB data leak, Cisco's acquisition of Splunk, LastPass's new security measures, and OpenAI's Red Teaming Network.
A Prime on Client-side JavaScript Instrumentation
https://ift.tt/dWIvGpr
Submitted September 25, 2023 at 01:58PM by nibblesec
via reddit https://ift.tt/7ZxmFU2
https://ift.tt/dWIvGpr
Submitted September 25, 2023 at 01:58PM by nibblesec
via reddit https://ift.tt/7ZxmFU2
Doyensec
Client-side JavaScript Instrumentation · Doyensec's Blog
Doyensec's Blog :: Doyensec is an independent security research and development company focused on vulnerability discovery and remediation.
Insecure URL handler (Electron) in iRacing leading to RCE in the client - bug discovery and exploit
https://ift.tt/hPT17Yn
Submitted September 25, 2023 at 03:58PM by ss2342-
via reddit https://ift.tt/iIVDceJ
https://ift.tt/hPT17Yn
Submitted September 25, 2023 at 03:58PM by ss2342-
via reddit https://ift.tt/iIVDceJ
Blog
iRacing Exploit allows attackers to take control of user’s computer
I’ve recently been looking into iRacing, which is an online racing simulation video game.
[P2O Vancouver 2023] SharePoint Pre-Auth RCE chain (CVE-2023–29357 & CVE-2023–24955)
https://ift.tt/FbH5fJ8
Submitted September 25, 2023 at 05:20PM by scopedsecurity
via reddit https://ift.tt/SluYEte
https://ift.tt/FbH5fJ8
Submitted September 25, 2023 at 05:20PM by scopedsecurity
via reddit https://ift.tt/SluYEte
STAR Labs
[P2O Vancouver 2023] SharePoint Pre-Auth RCE chain (CVE-2023–29357 & CVE-2023–24955)
Brief I may have achieved successful exploitation of a SharePoint target during Pwn2Own Vancouver 2023. While the live demonstration lasted only approximately 30 seconds, it is noteworthy that the process of discovering and crafting the exploit chain consumed…
Over 400K Buckets and 10.4B Files Are Public Due to Cloud Misconfigurations
https://ift.tt/NS0ojx7
Submitted September 25, 2023 at 06:17PM by ziyahanalbeniz
via reddit https://ift.tt/SsXqcb9
https://ift.tt/NS0ojx7
Submitted September 25, 2023 at 06:17PM by ziyahanalbeniz
via reddit https://ift.tt/SsXqcb9
SOCRadar® Cyber Intelligence Inc.
Over 400K Buckets and 10.4B Files Are Public Due to Cloud Misconfigurations
Using the open source programs/platform, anyone can scan millions of public buckets at once using certain keywords. Typically, buckets...
From ScreenConnect to Hive Ransomware in 61 hours
https://ift.tt/ktaKgpS
Submitted September 25, 2023 at 05:54PM by TheDFIRReport
via reddit https://ift.tt/kdoan3t
https://ift.tt/ktaKgpS
Submitted September 25, 2023 at 05:54PM by TheDFIRReport
via reddit https://ift.tt/kdoan3t
The DFIR Report
From ScreenConnect to Hive Ransomware in 61 hours - The DFIR Report
In 2022, The DFIR Report observed an increase in the adversarial usage of Remote Management and Monitoring (RMM) tools. When compared to post-exploitation channels that heavily rely on terminals, such … Read More
Analysis of CVE-2023-38831 Zero-Day vulnerability in WinRAR
https://ift.tt/lydIJ9M
Submitted September 26, 2023 at 01:33AM by SL7reach
via reddit https://ift.tt/EoRI2d9
https://ift.tt/lydIJ9M
Submitted September 26, 2023 at 01:33AM by SL7reach
via reddit https://ift.tt/EoRI2d9
Penetration Testing and CyberSecurity Solution - SecureLayer7
Analysis of CVE-2023-38831 Zero-Day vulnerability in WinRAR
CVE: CVE-2023-38831: A New WinRar Vulnerabilty A remote code execution when the user attempts to view a benign file within a ZIP archive. The issue occurs because a) ZIP archive may include a...
SocketSleuth: Improving security testing for WebSocket applications | The Snyk blog
https://ift.tt/kd2xZhi
Submitted September 26, 2023 at 02:12AM by lirantal
via reddit https://ift.tt/ekIErH8
https://ift.tt/kd2xZhi
Submitted September 26, 2023 at 02:12AM by lirantal
via reddit https://ift.tt/ekIErH8
Snyk
SocketSleuth: Improving security testing for WebSocket applications | Snyk
Today, we are proud to announce the beta version of SocketSleuth, our new Burp Suite extension for performing security testing against WebSocket-based applications. SocketSleuth was created out of our security research group to aid in our security research…