Impersonating Slack Users - Red Team Tradecraft
https://ift.tt/0nwkcfl
Submitted November 01, 2023 at 11:41AM by FalconSpy
via reddit https://ift.tt/HjV7wSO
https://ift.tt/0nwkcfl
Submitted November 01, 2023 at 11:41AM by FalconSpy
via reddit https://ift.tt/HjV7wSO
FalconSpy
Impersonating Slack Users - Red Team Tradecraft
Introduction
Critical phpFox RCE Vulnerability Risked Social Networks
https://ift.tt/12F4QxD
Submitted November 01, 2023 at 04:52PM by eg1x
via reddit https://ift.tt/HvQbgFV
https://ift.tt/12F4QxD
Submitted November 01, 2023 at 04:52PM by eg1x
via reddit https://ift.tt/HvQbgFV
LHN
Critical PHPFox RCE Vulnerability Risked Social Networks
Heads up, phpFox users! A critical remote code execution vulnerability existed in the phpFox service that allowed community takeovers. Following the bug report, phpFox patched the flaw with the latest service version to which, the
Official release of CVSS v4.0
https://ift.tt/C80KsAB
Submitted November 01, 2023 at 11:39PM by adityatelange
via reddit https://ift.tt/6BcFGkm
https://ift.tt/C80KsAB
Submitted November 01, 2023 at 11:39PM by adityatelange
via reddit https://ift.tt/6BcFGkm
Infosec Exchange
FIRST.org (@firstdotorg@infosec.exchange)
Attached: 1 image
The CVSS Special Interest Group is proud to announce the official release of CVSS v4.0. This latest release marks a significant step forward with added capabilities crucial for teams with the importance of using threat intelligence and…
The CVSS Special Interest Group is proud to announce the official release of CVSS v4.0. This latest release marks a significant step forward with added capabilities crucial for teams with the importance of using threat intelligence and…
EKS Cluster Games: An EKS-focused CTF Challenge
https://ift.tt/bwh3iNc
Submitted November 01, 2023 at 10:59PM by nirohf
via reddit https://ift.tt/nGQiVK1
https://ift.tt/bwh3iNc
Submitted November 01, 2023 at 10:59PM by nirohf
via reddit https://ift.tt/nGQiVK1
Eksclustergames
EKS Cluster Games
The mission? To identify common AWS EKS security issues and vulnerabilities and learn how to exploit them in practice.
CRLF Injection in SAP HTTP Content Server - CVE-2023-26457
https://ift.tt/CKiAJzW
Submitted November 02, 2023 at 03:21PM by usdAG
via reddit https://ift.tt/y0bOIsR
https://ift.tt/CKiAJzW
Submitted November 02, 2023 at 03:21PM by usdAG
via reddit https://ift.tt/y0bOIsR
usd HeroLab
usd-2022-0046 | usd HeroLab
Advisory ID: usd-2022-0046 | Product: SAP HTTP Content Server | Vulnerability Type: Neutralization of HTTP Headers for Scripting Syntax (CWE-644)
LdrLockLiberator: For when DLLMain is the only way
https://ift.tt/s9QmCwi
Submitted November 02, 2023 at 02:39PM by elliotkillick
via reddit https://ift.tt/Bvb3JNH
https://ift.tt/s9QmCwi
Submitted November 02, 2023 at 02:39PM by elliotkillick
via reddit https://ift.tt/Bvb3JNH
GitHub
GitHub - ElliotKillick/LdrLockLiberator: For when DLLMain is the only way
For when DLLMain is the only way. Contribute to ElliotKillick/LdrLockLiberator development by creating an account on GitHub.
Free and open-source approach to Domain Monitoring.
https://ift.tt/qlCpI5s
Submitted November 02, 2023 at 09:31PM by Seaerkin2
via reddit https://ift.tt/NSOhK3s
https://ift.tt/qlCpI5s
Submitted November 02, 2023 at 09:31PM by Seaerkin2
via reddit https://ift.tt/NSOhK3s
Guardyourdomain
DomainGuard | Threat Visibility Platform
We guard your domain, so you have peace of mind. Threat Visibility Platform.
Security Researchers from Salt-Security explain in a super detailed post how they did account takeover on Grammarly.com, Booking.com, Expo.io, Codecademy.com, Vidio.com, Bukalapak.com, and 100+ Other Websites.
https://ift.tt/9DTVNfd
Submitted November 02, 2023 at 10:06PM by MoreMoreMoreM
via reddit https://ift.tt/vcWihBN
https://ift.tt/9DTVNfd
Submitted November 02, 2023 at 10:06PM by MoreMoreMoreM
via reddit https://ift.tt/vcWihBN
salt.security
Salt Labs Finds OAuth Abuse Used to Take Over Accounts
OAuth Account Takeover. Salt Labs shows how hackers could abuse OAuth to take over millions of accounts on Grammarly, Vidio, and Bukalapak.
Advice For Catching a RedLine Stealer - includes tools to identify C2 protocol
https://ift.tt/gWRkT9M
Submitted November 02, 2023 at 09:56PM by The_Abjuri5t
via reddit https://ift.tt/oOcASZI
https://ift.tt/gWRkT9M
Submitted November 02, 2023 at 09:56PM by The_Abjuri5t
via reddit https://ift.tt/oOcASZI
Medium
Advice For Catching a RedLine Stealer
RedLine Stealer is an infamous malware strain that provides cyber-criminals with a reliable payload for stealing sensitive information from…
Firmware Security Analyzer - EMBA v1.3.1 with firmware diffing mechanism available
https://ift.tt/2Pig6nC
Submitted November 02, 2023 at 11:47PM by _m-1-k-3_
via reddit https://ift.tt/uOBR1Hp
https://ift.tt/2Pig6nC
Submitted November 02, 2023 at 11:47PM by _m-1-k-3_
via reddit https://ift.tt/uOBR1Hp
GitHub
Release EMBA v1.3.1 - Diff it · e-m-b-a/emba
What happened since the last EMBA release?
There was the absolute great #Hackersummercamp with our talks at BSidesLV, ICS Village (DEF CON) and Black Hat (Arsenal). The recording of the BSides talk...
There was the absolute great #Hackersummercamp with our talks at BSidesLV, ICS Village (DEF CON) and Black Hat (Arsenal). The recording of the BSides talk...
Prioritising Vulnerabilities Remedial Actions at Scale with EPSS
https://ift.tt/AsRoeF5
Submitted November 03, 2023 at 12:48AM by theowni
via reddit https://ift.tt/n25KZfo
https://ift.tt/AsRoeF5
Submitted November 03, 2023 at 12:48AM by theowni
via reddit https://ift.tt/n25KZfo
Medium
Prioritising Vulnerabilities Remedial Actions at Scale with EPSS
In this article, I’m presenting the Exploit Prediction Scoring System, its practical use cases, and how it can be used in tandem with CVSS.
Dozens of npm Packages Caught Attempting to Deploy Reverse Shell
https://ift.tt/7MC0VkE
Submitted November 02, 2023 at 11:57PM by louis11
via reddit https://ift.tt/9OVRfUM
https://ift.tt/7MC0VkE
Submitted November 02, 2023 at 11:57PM by louis11
via reddit https://ift.tt/9OVRfUM
Phylum
Dozens of npm Packages Caught Attempting to Deploy Reverse Shell
On October 27, Phylum’s automated risk detection platform began alerting us to a series of suspicious publications on npm. Over the course of the following few days, we discovered a campaign involving at least 48 different publications. These packages, deceptively…
Use Wasm to Bypass Latest Chrome v8sbx Again
https://ift.tt/wS5ML6z
Submitted November 03, 2023 at 03:18PM by poltess0
via reddit https://ift.tt/4hNxTXq
https://ift.tt/wS5ML6z
Submitted November 03, 2023 at 03:18PM by poltess0
via reddit https://ift.tt/4hNxTXq
Medium
Use Wasm to Bypass Latest Chrome v8sbx Again
01 - Introduction
Keylogger keyboard leaks passwords via Apple's "Find My" location network
https://ift.tt/DOvZBHb
Submitted November 03, 2023 at 07:01PM by ctmagazin
via reddit https://ift.tt/Lpx7AtV
https://ift.tt/DOvZBHb
Submitted November 03, 2023 at 07:01PM by ctmagazin
via reddit https://ift.tt/Lpx7AtV
Security
Keylogger keyboard leaks passwords via Apple's "Find My" location network
Originally, it is supposed to help track down lost things. However, our keylogger keyboard uses Apple's "Find My" location network to send sensitive data.
Looney Tunables Vulnerability Exploited by Kinsing
https://ift.tt/anibrgV
Submitted November 03, 2023 at 10:04PM by Easy-Bumblebee2503
via reddit https://ift.tt/ywlBYcT
https://ift.tt/anibrgV
Submitted November 03, 2023 at 10:04PM by Easy-Bumblebee2503
via reddit https://ift.tt/ywlBYcT
Aqua
Looney Tunables Vulnerability Exploited by Kinsing
We intercepted Kinsing's experimental incursions into cloud environments and have uncovered their efforts to manipulate the Looney Tunables vulnerability.
A stranger knows your lock code.
https://ift.tt/WNsYTk3
Submitted November 04, 2023 at 03:53PM by Thekeksociety-1313
via reddit https://ift.tt/mUK3hFP
https://ift.tt/WNsYTk3
Submitted November 04, 2023 at 03:53PM by Thekeksociety-1313
via reddit https://ift.tt/mUK3hFP
Smashing the TLB for fun and profit - ekoparty 2023
https://ift.tt/mrVCF3M
Submitted November 05, 2023 at 07:52AM by maurosoria
via reddit https://ift.tt/bvpNueM
https://ift.tt/mrVCF3M
Submitted November 05, 2023 at 07:52AM by maurosoria
via reddit https://ift.tt/bvpNueM
Looking for exploit dev/ vulnerability research blogs
https://ift.tt/1v5Hzt8
Submitted November 05, 2023 at 06:14PM by SnooSeagulls7023
via reddit https://ift.tt/wUKk05f
https://ift.tt/1v5Hzt8
Submitted November 05, 2023 at 06:14PM by SnooSeagulls7023
via reddit https://ift.tt/wUKk05f
Malwaretech
BlueKeep: A Journey from DoS to RCE (CVE-2019-0708) – MalwareTech
Due to the serious risk of a BlueKeep based worm, I’ve held back this write-up to avoid advancing the timeline. Now that a proof-of-concept for RCE (remote code execution) has been release as part of Metasploit, i feel it’s now safe for me to post this.
Persistence – Windows Telemetry
https://ift.tt/OHKmSpx
Submitted November 06, 2023 at 02:36PM by netbiosX
via reddit https://ift.tt/n6bgCQF
https://ift.tt/OHKmSpx
Submitted November 06, 2023 at 02:36PM by netbiosX
via reddit https://ift.tt/n6bgCQF
Penetration Testing Lab
Persistence – Windows Telemetry
Microsoft has introduced the compatibility telemetry in order to collect usage and performance data about Windows systems. The telemetry tasks are collected via the binary “CompatTelRunner.ex…
Blue2thprinting (blue-[tooth)-printing]: answering the question of 'WTF am I even looking at?!' (Slides from Hardwear.io last week)
https://ift.tt/GbUHTVR
Submitted November 06, 2023 at 05:45PM by BIOS4breakfast
via reddit https://ift.tt/F5csKw2
https://ift.tt/GbUHTVR
Submitted November 06, 2023 at 05:45PM by BIOS4breakfast
via reddit https://ift.tt/F5csKw2
Dark Mentor LLC
Blue2thprinting (blue-[tooth)-printing]: answering the question of 'WTF am I even looking at?!'
| Dark Mentor LLC
| Dark Mentor LLC
If one wants to know (for attack or defense) whether a Bluetooth (BT) device is vulnerable to unauthenticated remote over-the-air exploits, one needs to be able to query what firmware or OS the target is running. Unfortunately there is no universally-available…
Open Wounds: The last 5 years have left Bluetooth to bleed (Slides & Hack.lu video)
https://ift.tt/6UoylSz
Submitted November 06, 2023 at 05:45PM by BIOS4breakfast
via reddit https://ift.tt/275x4MK
https://ift.tt/6UoylSz
Submitted November 06, 2023 at 05:45PM by BIOS4breakfast
via reddit https://ift.tt/275x4MK
Dark Mentor LLC
Open Wounds: The last 5 years have left Bluetooth to bleed
| Dark Mentor LLC
| Dark Mentor LLC
Over the past 20 years there have been 3 waves of Bluetooth (BT) security research. The first wave peaked in 2004, and rather abruptly ended after 2005. Then for a long time there was very low interest and activity. That began to change around 2011 with the…