De4py: Toolkit for python reverse engineering
https://ift.tt/0lH3awx
Submitted October 28, 2023 at 03:08AM by AhmedMinegames
via reddit https://ift.tt/XfsHTln
https://ift.tt/0lH3awx
Submitted October 28, 2023 at 03:08AM by AhmedMinegames
via reddit https://ift.tt/XfsHTln
GitHub
GitHub - Fadi002/de4py: toolkit for python reverse engineering
toolkit for python reverse engineering. Contribute to Fadi002/de4py development by creating an account on GitHub.
Three new NGINX ingress controller vulnerabilities were just reported and how they affect Kubernetes
https://ift.tt/yeS4swu
Submitted October 28, 2023 at 05:01PM by Jonkaftzan
via reddit https://ift.tt/xHivzS0
https://ift.tt/yeS4swu
Submitted October 28, 2023 at 05:01PM by Jonkaftzan
via reddit https://ift.tt/xHivzS0
ARMO
3 new NGINX ingress controller Kubernetes related vulnerabilities
CVE-2023-5043, CVE-2023-5044 and CVE-2022-4886 can be exploited by attacker to steal secret credentials from the cluster. Read all about it!
Turning a boring file move into a privilege escalation on Mac
https://ift.tt/KY34w5i
Submitted October 28, 2023 at 04:41PM by DOTheLOGA
via reddit https://ift.tt/KG5qR6d
https://ift.tt/KY34w5i
Submitted October 28, 2023 at 04:41PM by DOTheLOGA
via reddit https://ift.tt/KG5qR6d
pwn.win
Turning a boring file move into a privilege escalation on Mac
While poking around Parallels Desktop I found a noscript which is invoked by a setuid-root binary, which has the following snippet: local prl_dir="${usr_home}/Library/Parallels" if [ -e "$prl_dir" -a ! -d "$prl_dir" ]; then log warning "'${prl_dir}' is not…
How I Hack WiFi Passwords in 10 minutes using Hashcat
https://ift.tt/oz09gXu
Submitted October 28, 2023 at 07:03PM by keshav_xplore
via reddit https://ift.tt/ilxpdDR
https://ift.tt/oz09gXu
Submitted October 28, 2023 at 07:03PM by keshav_xplore
via reddit https://ift.tt/ilxpdDR
Keshav Xplore
How to Hack WiFi Passwords in 10 minutes using Hashcat
Uncover the steps to hack WiFi passwords using Hashcat. This guide provides a comprehensive walkthrough, from dictionary attacks to brute-force attack
Finally a Offsec ML Framework
https://ift.tt/34ElY8h
Submitted October 28, 2023 at 07:52PM by layzhi
via reddit https://ift.tt/joxqWwh
https://ift.tt/34ElY8h
Submitted October 28, 2023 at 07:52PM by layzhi
via reddit https://ift.tt/joxqWwh
OffSecML Playbook
Welcome to the Offensive ML Playbook - OffSecML Playbook
Latest: 4/02/24 version: 0.9.9 First published 10/26/23. Shiny new things Inverting DNN models with a framework A threat intelligence update to the ML Pipeline Attacks on Ray Updates to repeated tok…
The Importance of Self-Custody Password Managers: A Deep Dive
https://ift.tt/c7rxzmS
Submitted October 30, 2023 at 02:19AM by zoggy90
via reddit https://ift.tt/wkAmGFd
https://ift.tt/c7rxzmS
Submitted October 30, 2023 at 02:19AM by zoggy90
via reddit https://ift.tt/wkAmGFd
Help Everyone Do Better Security
https://ift.tt/KRUzuAC
Submitted October 30, 2023 at 01:26PM by haroldmilesandray47
via reddit https://ift.tt/BnTiCeb
https://ift.tt/KRUzuAC
Submitted October 30, 2023 at 01:26PM by haroldmilesandray47
via reddit https://ift.tt/BnTiCeb
matduggan.com
Help Everyone Do Better Security
One interesting thing about the contrast between infrastructure and security is the expectation of open-source software. When a common problem arises we all experience, a company will launch a product to solve this problem. In infrastructure, typically the…
Detecting and annoying Burp users
https://ift.tt/nLMj6aQ
Submitted October 30, 2023 at 04:32PM by meowerguy
via reddit https://ift.tt/n1rLIqj
https://ift.tt/nLMj6aQ
Submitted October 30, 2023 at 04:32PM by meowerguy
via reddit https://ift.tt/n1rLIqj
web.archive.org
Detecting and annoying Burp users
Personal blog of Julien (jvoisin) Voisin
How HackerOne Is Building Responsible Generative AI
https://ift.tt/LDkb4yU
Submitted October 30, 2023 at 04:29PM by meowerguy
via reddit https://ift.tt/MgmyfEF
https://ift.tt/LDkb4yU
Submitted October 30, 2023 at 04:29PM by meowerguy
via reddit https://ift.tt/MgmyfEF
HackerOne
Responsible AI at HackerOne
At HackerOne, we are combining human intelligence with artificial intelligence at scale to improve the efficiency of people and unlock entirely new capabilities.
NetSupport Intrusion Results in Domain Compromise
https://ift.tt/MI2xkCd
Submitted October 30, 2023 at 06:47PM by TheDFIRReport
via reddit https://ift.tt/df5C6Rm
https://ift.tt/MI2xkCd
Submitted October 30, 2023 at 06:47PM by TheDFIRReport
via reddit https://ift.tt/df5C6Rm
The DFIR Report
NetSupport Intrusion Results in Domain Compromise
NetSupport Manager is one of the oldest third-party remote access tools still currently on the market with over 33 years of history. This is the first time we will report on a NetSupport RAT intrus…
Scapy in your browser
https://ift.tt/eEAqFbf
Submitted October 30, 2023 at 10:07PM by guedou
via reddit https://ift.tt/3CK19oj
https://ift.tt/eEAqFbf
Submitted October 30, 2023 at 10:07PM by guedou
via reddit https://ift.tt/3CK19oj
Introducing SpecterInsight, a new cross-platform, post-exploitation framework designed for quality-of-life and ease of use
https://ift.tt/sj6od5I
Submitted October 31, 2023 at 01:46AM by pracsec
via reddit https://ift.tt/jdPriBI
https://ift.tt/sj6od5I
Submitted October 31, 2023 at 01:46AM by pracsec
via reddit https://ift.tt/jdPriBI
Practical Security Analytics LLC
SpecterInsight
Specter Insight ACHIEVE YOUR OBJECTIVES SpecterInsight is a cross-platform, post-exploitation command and control framework based on .NET for red team engagements, threat emulation, and training. F…
The Emotional Toll of Red Teaming
https://ift.tt/vxbu1je
Submitted October 31, 2023 at 03:12AM by adversisio
via reddit https://ift.tt/vOcaphi
https://ift.tt/vxbu1je
Submitted October 31, 2023 at 03:12AM by adversisio
via reddit https://ift.tt/vOcaphi
Red Team Dispatch
The Emotional Toll of Red Teaming
Red Teaming, one of the best ways to accurately determine your organization's cyber resiliency. But at what cost?
StripedFly: Perennially flying under the radar, infecting 1 million hosts.
https://ift.tt/i5lb91H
Submitted October 30, 2023 at 08:10PM by thehunter699
via reddit https://ift.tt/sGhJFvE
https://ift.tt/i5lb91H
Submitted October 30, 2023 at 08:10PM by thehunter699
via reddit https://ift.tt/sGhJFvE
Securelist
StripedFly: Perennially flying under the radar
Nobody would even suspect the mining malware was merely a mask, masquerading behind an intricate modular framework that supports both Linux and Windows. The amount of effort that went into creating the framework is truly remarkable, and its disclosure was…
DOM-based race condition: racing in the browser for fun
https://ift.tt/DmloFOv
Submitted October 31, 2023 at 03:01PM by poltess0
via reddit https://ift.tt/sFCj2Yb
https://ift.tt/DmloFOv
Submitted October 31, 2023 at 03:01PM by poltess0
via reddit https://ift.tt/sFCj2Yb
blog.ryotak.net
DOM-based race condition: racing in the browser for fun
Disclaimer All projects mentioned in this blog post have been contacted, and I confirmed that the behavior described in this article is either working as intended, already fixed, or will not be fixed.
TL;DR The browser loads elements in the HTML from top…
TL;DR The browser loads elements in the HTML from top…
How to get Wi-Fi password via WPS Button attack using Kali NetHunter
https://ift.tt/UhLycNJ
Submitted October 31, 2023 at 04:18PM by barakadua131
via reddit https://ift.tt/nIowKET
https://ift.tt/UhLycNJ
Submitted October 31, 2023 at 04:18PM by barakadua131
via reddit https://ift.tt/nIowKET
Mobile Hacker
NetHunter Hacker X: WPS attacks - Mobile Hacker
Ever wanted to hack your Wi-Fi network, but your internal adapter doesn’t support monitor mode and you don’t have external adapter? Without switching your Wi-Fi adapter in to monitor mode, WPS attacks allows you to perform various attacks on wireless access…
LDAP authentication in Active Directory environments
https://ift.tt/HxhuQgc
Submitted October 31, 2023 at 05:35PM by AlmondOffSec
via reddit https://ift.tt/aQVP7Um
https://ift.tt/HxhuQgc
Submitted October 31, 2023 at 05:35PM by AlmondOffSec
via reddit https://ift.tt/aQVP7Um
Endomorph: Convert little-endian to big-endian and vice-versa
https://ift.tt/Q6UKlbv
Submitted October 31, 2023 at 06:24PM by r0075h3ll
via reddit https://ift.tt/k7vIP46
https://ift.tt/Q6UKlbv
Submitted October 31, 2023 at 06:24PM by r0075h3ll
via reddit https://ift.tt/k7vIP46
GitHub
GitHub - r0075h3ll/Endomorph: Convert little-endian to big-endian and vice-versa
Convert little-endian to big-endian and vice-versa - r0075h3ll/Endomorph
confluence cve-2023-22518
https://ift.tt/k54Lujo
Submitted October 31, 2023 at 07:10PM by Alfrede81
via reddit https://ift.tt/2LeHp8l
https://ift.tt/k54Lujo
Submitted October 31, 2023 at 07:10PM by Alfrede81
via reddit https://ift.tt/2LeHp8l
How I use John the Ripper for Windows Password Cracking
https://ift.tt/EUHgzib
Submitted October 31, 2023 at 09:48PM by keshav_xplore
via reddit https://ift.tt/R5SaFXj
https://ift.tt/EUHgzib
Submitted October 31, 2023 at 09:48PM by keshav_xplore
via reddit https://ift.tt/R5SaFXj
Keshav Xplore
How to use John the Ripper for Windows Password Cracking
Discover John the Ripper's password-cracking prowess. Crack Windows 10, 8, and 7 passwords and extract hashes with ease.
Practical DoS Attacks Against OPC UA Implementations
https://ift.tt/mZATD0z
Submitted October 31, 2023 at 10:14PM by derp6996
via reddit https://ift.tt/vzgFJBe
https://ift.tt/mZATD0z
Submitted October 31, 2023 at 10:14PM by derp6996
via reddit https://ift.tt/vzgFJBe
Claroty
OPC UA Deep Dive Series (Part 7): Practical Denial of Service Attacks
Throughout our extensive OPC UA Deep Dive Series, we researched the OPC UA protocol and its different functions and importance within operational technology (OT) environments. The centerpiece tool of our work is an advanced OPC UA Exploit Framework we built…