Shooting Yourself in the .flags – Jailbreaking the Sonos Era 100
https://ift.tt/dIL2A1o
Submitted December 04, 2023 at 04:01PM by poltess0
via reddit https://ift.tt/0RLBrUC
https://ift.tt/dIL2A1o
Submitted December 04, 2023 at 04:01PM by poltess0
via reddit https://ift.tt/0RLBrUC
Phishing and Exfiltrating Leaked Secrets from Slack Workspaces
https://ift.tt/sGkO6FB
Submitted December 04, 2023 at 07:21PM by Dr_Mantis_Tobbogon
via reddit https://ift.tt/YLxn2jR
https://ift.tt/sGkO6FB
Submitted December 04, 2023 at 07:21PM by Dr_Mantis_Tobbogon
via reddit https://ift.tt/YLxn2jR
SQL Brute Force Leads to BlueSky Ransomware
https://ift.tt/jQq7oDl
Submitted December 04, 2023 at 06:46PM by TheDFIRReport
via reddit https://ift.tt/LZ4yu0I
https://ift.tt/jQq7oDl
Submitted December 04, 2023 at 06:46PM by TheDFIRReport
via reddit https://ift.tt/LZ4yu0I
The DFIR Report
SQL Brute Force Leads to BlueSky Ransomware - The DFIR Report
In December 2022, we observed an intrusion on a public-facing MSSQL Server, which resulted in BlueSky ransomware. First discovered in June 2022, BlueSky ransomware has code links to Conti and … Read More
The Art and Science of Automated CVSS Predictions
https://ift.tt/yz1BvjQ
Submitted December 04, 2023 at 11:02PM by gfekkas
via reddit https://ift.tt/rSgwzFj
https://ift.tt/yz1BvjQ
Submitted December 04, 2023 at 11:02PM by gfekkas
via reddit https://ift.tt/rSgwzFj
PRIOn - AI Driven Vulnerablity Analysis & Prioritization
Blog - The Art and Science of Automated CVSS Predictions - PRIOn
With a significant daily influx of vulnerabilities, the assessment and assignment of CVSS base scores demand considerable time, expertise, and human resources.
Vulnerability Management with DefectDojo - presenting capabilities of DefectDojo for DevSecOps and traditional application security engineers.
https://ift.tt/LrO8ymN
Submitted December 05, 2023 at 12:29AM by theowni
via reddit https://ift.tt/sRSvenU
https://ift.tt/LrO8ymN
Submitted December 05, 2023 at 12:29AM by theowni
via reddit https://ift.tt/sRSvenU
Medium
Vulnerability Management with DefectDojo — is it great for DevSecOps?
Presenting capabilities of DefectDojo in context of Vulnerability Management for DevSecOps and traditional application security engineers.
Argument injection leading to unauthenticated RCE and authentication bypass in Atos Unify OpenScape Session Border Controller (and Branch, BCF products)
https://ift.tt/suqAKfw
Submitted December 05, 2023 at 12:28PM by 0x9000
via reddit https://ift.tt/bA6gIyQ
https://ift.tt/suqAKfw
Submitted December 05, 2023 at 12:28PM by 0x9000
via reddit https://ift.tt/bA6gIyQ
SEC Consult
Argument injection vulnerability in multiple Atos Unify OpenScape products
A critical argument injection vulnerability has been identified in the administrative web interface of the Atos Unify OpenScape products Session Border Controller, Branch, and BCF. This allows an unauthenticated attacker to gain root access to the appliance…
It’s not a Feature, It’s a Vulnerability
https://ift.tt/hsZWaYG
Submitted December 05, 2023 at 10:22PM by _solid_snail
via reddit https://ift.tt/KDhCd0t
https://ift.tt/hsZWaYG
Submitted December 05, 2023 at 10:22PM by _solid_snail
via reddit https://ift.tt/KDhCd0t
solid-snail blog
It’s not a Feature, It’s a Vulnerability
It takes a special kind of person to name a company after their own body part. Fortunately the Microsoft Security Response Center doesn’t seem to have inherited that kind of mentality, because when I have reported not a bug but a feature as a vulnerability…
Multiple Vulnerabilities In Extreme Networks ExtremeXOS
https://ift.tt/HsaPVjK
Submitted December 05, 2023 at 11:23PM by hackers_and_builders
via reddit https://ift.tt/nRZv5xi
https://ift.tt/HsaPVjK
Submitted December 05, 2023 at 11:23PM by hackers_and_builders
via reddit https://ift.tt/nRZv5xi
Rhino Security Labs
Multiple Vulnerabilities In Extreme Networks ExtremeXOS
Multiple vulnerabilities found in ExtremeNetworks ExtremeXOS by Rhino Security Labs.
Android Reverse Engineering - apk.sh v1.0.8 is out!
https://ift.tt/UWpkciK
Submitted December 06, 2023 at 06:13AM by recovo_recovo
via reddit https://ift.tt/CDAYUso
https://ift.tt/UWpkciK
Submitted December 06, 2023 at 06:13AM by recovo_recovo
via reddit https://ift.tt/CDAYUso
GitHub
Releases · ax/apk.sh
Makes reverse engineering Android apps easier, automating repetitive tasks like pulling, decoding, rebuilding and patching an APK. - ax/apk.sh
Pre-Auth Kiosk Escape Privilege Escalation in One Identity Password Manager Secure Password Extension
https://ift.tt/sGeBMl2
Submitted December 06, 2023 at 12:08PM by 0x9000
via reddit https://ift.tt/UEIeN7v
https://ift.tt/sGeBMl2
Submitted December 06, 2023 at 12:08PM by 0x9000
via reddit https://ift.tt/UEIeN7v
SEC Consult
Kiosk Escape Privilege Escalation in One Identity Password Manager Secure Password Extension
The Password Manager Extension from One Identity can be used to perform two different kiosk escapes on the lock screen of a Windows client. These two escapes allow an attacker to execute commands with the highest permissions of a user with the SYSTEM role.
RFC 1510: The Kerberos Network Authentication Service (V5)
https://ift.tt/AkOGfvQ
Submitted December 06, 2023 at 03:04PM by ducm
via reddit https://ift.tt/RMaO0pG
https://ift.tt/AkOGfvQ
Submitted December 06, 2023 at 03:04PM by ducm
via reddit https://ift.tt/RMaO0pG
IETF Datatracker
RFC 1510: The Kerberos Network Authentication Service (V5)
This document gives an overview and specification of Version 5 of the protocol for the Kerberos network authentication system. [STANDARDS-TRACK]
Blind CSS Exfiltration: exfiltrate unknown web pages
https://ift.tt/YI7yFZB
Submitted December 06, 2023 at 03:48PM by albinowax
via reddit https://ift.tt/1efF2p5
https://ift.tt/YI7yFZB
Submitted December 06, 2023 at 03:48PM by albinowax
via reddit https://ift.tt/1efF2p5
PortSwigger Research
Blind CSS Exfiltration: exfiltrate unknown web pages
This is a gif of the exfiltration process (We've increased the speed so you're not waiting around for 1 minute). Read on to discover how this works... CSS Cafe presentation I presented this technique
+1500 HuggingFace API Tokens were exposed, leaving millions of Meta-Llama, Bloom, and Pythia users vulnerable to supply chain attacks
https://ift.tt/g2LTbWp
Submitted December 06, 2023 at 05:38PM by Lany_B
via reddit https://ift.tt/SXyvZml
https://ift.tt/g2LTbWp
Submitted December 06, 2023 at 05:38PM by Lany_B
via reddit https://ift.tt/SXyvZml
Vulnerability disclosure for Zyxel's personal cloud storage device (NAS326) - Part1
https://ift.tt/DVWasYM
Submitted December 06, 2023 at 07:22PM by BugProve
via reddit https://ift.tt/sOujdC5
https://ift.tt/DVWasYM
Submitted December 06, 2023 at 07:22PM by BugProve
via reddit https://ift.tt/sOujdC5
Bugprove
CVE-2023-4473 & CVE-2023-4474 - Authentication bypass and multiple blind OS command injection vulnerabilities in Zyxel’s NAS326…
BugProve discovers additional zero-day vulnerabilities in Zyxel's personal cloud storage device. Detailed writeup of the firmware analysis process.
Split-Second DNS Rebinding in Chrome, Edge and Safari
https://ift.tt/iWUDO75
Submitted December 06, 2023 at 06:59PM by dcthatch
via reddit https://ift.tt/2EW4jX5
https://ift.tt/iWUDO75
Submitted December 06, 2023 at 06:59PM by dcthatch
via reddit https://ift.tt/2EW4jX5
www.intruder.io
Tricks for Reliable Split-Second DNS Rebinding in Chrome and Safari
This is the second post in a two-part series on DNS rebinding. In this post, I introduce new techniques for achieving reliable, split-second DNS rebinding in Chrome, Edge, and Safari when IPv6 is available, as well as a technique for bypassing the local network…
Unicode XSS via Combining Characters
https://ift.tt/Stf6rZl
Submitted December 05, 2023 at 07:42PM by ablativeyoyo
via reddit https://ift.tt/jrbFD6x
https://ift.tt/Stf6rZl
Submitted December 05, 2023 at 07:42PM by ablativeyoyo
via reddit https://ift.tt/jrbFD6x
Gist
index.md
GitHub Gist: instantly share code, notes, and snippets.
New RCE popchain in Laravel
https://ift.tt/I4yZm2a
Submitted December 06, 2023 at 09:23PM by monoimpact
via reddit https://ift.tt/hVt4yNF
https://ift.tt/I4yZm2a
Submitted December 06, 2023 at 09:23PM by monoimpact
via reddit https://ift.tt/hVt4yNF
Fenrisk
Gadgets chain in Laravel
Security experts
Red team or adversary? Hunting Supply Chain Threat Actors Targeting A Major Financial Institution.
https://ift.tt/0WiHBPk
Submitted December 07, 2023 at 03:29AM by louis11
via reddit https://ift.tt/hJZ7H0z
https://ift.tt/0WiHBPk
Submitted December 07, 2023 at 03:29AM by louis11
via reddit https://ift.tt/hJZ7H0z
Phylum
Encrypted npm Packages Found Targeting Major Financial Institution
Determining the intent behind a package publication is notoriously difficult. Is it a legitimate threat actor or a security researcher? We can rarely make this determination, so Phylum generally errs on the side of caution and annotates packages that exhibit…
Cybresec & Opensource firmware online party! - today at 5 PM UTC
https://ift.tt/Er6lWTz
Submitted December 07, 2023 at 02:12PM by Mike-Banon1
via reddit https://ift.tt/DiMuRav
https://ift.tt/Er6lWTz
Submitted December 07, 2023 at 02:12PM by Mike-Banon1
via reddit https://ift.tt/DiMuRav
Attendize.com
Dasharo User Group #4
Dasharo User Group (DUG) #4 and Dasharo Developers vPub 0x9 When? 07th December 2023 5PM UTC to last hacker standing...
What is Loader Lock?
https://ift.tt/uHYk46n
Submitted December 07, 2023 at 12:48AM by elliotkillick
via reddit https://ift.tt/YC8FbWO
https://ift.tt/uHYk46n
Submitted December 07, 2023 at 12:48AM by elliotkillick
via reddit https://ift.tt/YC8FbWO
Elliot on Security
Elliot on Security - What is Loader Lock?
A modern investigation of the Windows loader architecure and loader lock
Cueing up a calculator: an introduction to exploit development on Linux
https://ift.tt/vLqlTpt
Submitted December 07, 2023 at 02:03PM by poltess0
via reddit https://ift.tt/UyxmGTP
https://ift.tt/vLqlTpt
Submitted December 07, 2023 at 02:03PM by poltess0
via reddit https://ift.tt/UyxmGTP
The GitHub Blog
Cueing up a calculator: an introduction to exploit development on Linux
Using CVE-2023-43641 as an example, I’ll explain how to develop an exploit for a memory corruption vulnerability on Linux. The exploit has to bypass several mitigations to achieve code execution.