Introducing SMTP Smuggling: A novel technique for spoofing e-mails
https://ift.tt/3rPMl4L
Submitted December 18, 2023 at 03:31PM by The_Login
via reddit https://ift.tt/8ZrKnLD
https://ift.tt/3rPMl4L
Submitted December 18, 2023 at 03:31PM by The_Login
via reddit https://ift.tt/8ZrKnLD
SEC Consult
SMTP Smuggling - Spoofing E-Mails Worldwide
Introducing a novel technique for e-mail spoofing
Lets Open(Dir) Some Presents: An Analysis of a Persistent Actor’s Activity
https://ift.tt/CouOGYU
Submitted December 18, 2023 at 05:11PM by TheDFIRReport
via reddit https://ift.tt/nqNPstQ
https://ift.tt/CouOGYU
Submitted December 18, 2023 at 05:11PM by TheDFIRReport
via reddit https://ift.tt/nqNPstQ
The DFIR Report
Lets Open(Dir) Some Presents: An Analysis of a Persistent Actor’s Activity
This report is a little different than our typical content. We were able to analyze data from a perspective we typically don’t get to see… a threat actor’s host! In early November…
Issue #3 of Paged Out! zine is out
https://ift.tt/PiF7z6c
Submitted December 18, 2023 at 06:28PM by gynvael
via reddit https://ift.tt/25EDW4o
https://ift.tt/PiF7z6c
Submitted December 18, 2023 at 06:28PM by gynvael
via reddit https://ift.tt/25EDW4o
OS Command Injection in cPH2 Charging Station <2.0.0 (CVE-2023-46359 and CVE-2023-46360) | Offensity
https://ift.tt/0yjc1RG
Submitted December 18, 2023 at 06:22PM by Offensity
via reddit https://ift.tt/m84AG7N
https://ift.tt/0yjc1RG
Submitted December 18, 2023 at 06:22PM by Offensity
via reddit https://ift.tt/m84AG7N
Offensity
OS Command Injection in cPH2 Charging Station <2.0.0 (CVE-2023-46359 and CVE-2023-46360) | Offensity
Security reports: efficient and straightforward. The simplest way to detect and fix vulnerabilities
Log4Shell Retrospective: Overblown and Exaggerated
https://ift.tt/wyqQTE5
Submitted December 18, 2023 at 08:38PM by chicksdigthelongrun
via reddit https://ift.tt/cthG1sY
https://ift.tt/wyqQTE5
Submitted December 18, 2023 at 08:38PM by chicksdigthelongrun
via reddit https://ift.tt/cthG1sY
VulnCheck
A Log4Shell Retrospective - Overblown and Exaggerated - Blog - VulnCheck
Log4Shell was proclaimed one of the most critical vulnerabilities, but in this blog, VulnCheck challenges that perspective, revealing the limited number of vulnerable systems still present two years after the initial disclosure.
CVE-2023-6483: Improper/missing API authentication in ADiTaaS v5.1
https://ift.tt/EwG5vyV
Submitted December 18, 2023 at 10:17PM by EatonZ
via reddit https://ift.tt/5vRceXG
https://ift.tt/EwG5vyV
Submitted December 18, 2023 at 10:17PM by EatonZ
via reddit https://ift.tt/5vRceXG
Eaton-Works
CVE-2023-6483: Improper/missing API authentication in ADiTaaS v5.1
The story of CVE-2023-6483, my first CVE and biggest security disclosure yet.
How Microsoft might have lured unsuspecting end-users into the hands of criminals
https://ift.tt/Kt2EcAF
Submitted December 19, 2023 at 02:41PM by vaizor
via reddit https://ift.tt/UWF9u3J
https://ift.tt/Kt2EcAF
Submitted December 19, 2023 at 02:41PM by vaizor
via reddit https://ift.tt/UWF9u3J
www.eye.security
How Microsoft might have lured unsuspecting end-users into the hands of criminals
We found a serious error in Microsoft’s Attack Simulator program. Without a fix, it would have turned into a real phishing attack platform circumventing all protection mechanisms.
Algosec - network segmentation
http://www.algosec.com
Submitted December 19, 2023 at 04:40PM by BurkeSooty
via reddit https://ift.tt/ED3sCx2
http://www.algosec.com
Submitted December 19, 2023 at 04:40PM by BurkeSooty
via reddit https://ift.tt/ED3sCx2
AlgoSec
AlgoSec Horizon Platform | AlgoSec
Algosec helps to securely accelerate application delivery by automating application connectivity and security policy across the hybrid network estate.
Marvin Attack on rsa ( Rust ): potential key recovery through timing sidechannels
https://ift.tt/SBkvYm8
Submitted December 19, 2023 at 11:49AM by hardenedvault
via reddit https://ift.tt/wojnZ4U
https://ift.tt/SBkvYm8
Submitted December 19, 2023 at 11:49AM by hardenedvault
via reddit https://ift.tt/wojnZ4U
GitHub
Marvin Attack: potential key recovery through timing sidechannels
### Impact
Due to a non-constant-time implementation, information about the private key is leaked through timing information which is observable over the network. An attacker may be able to use th...
Due to a non-constant-time implementation, information about the private key is leaked through timing information which is observable over the network. An attacker may be able to use th...
Retro Gaming Vulnerability Research: Warcraft 2
https://ift.tt/7QLcl3E
Submitted December 19, 2023 at 04:54PM by poltess0
via reddit https://ift.tt/1AgSf3V
https://ift.tt/7QLcl3E
Submitted December 19, 2023 at 04:54PM by poltess0
via reddit https://ift.tt/1AgSf3V
Mute the Sound: Chaining Vulnerabilities to Achieve RCE on Outlook: Pt 1
https://ift.tt/PKCJe3q
Submitted December 19, 2023 at 04:52PM by poltess0
via reddit https://ift.tt/ozwsNXW
https://ift.tt/PKCJe3q
Submitted December 19, 2023 at 04:52PM by poltess0
via reddit https://ift.tt/ozwsNXW
Akamai
Mute the Sound: Chaining Vulnerabilities to Achieve RCE on Outlook: Pt 1 | Akamai
In part 1 of this two-part series, Akamai researchers explore two new Windows vulnerabilities that could lead to remote code execution against Outlook clients.
CVE-2023-42793 - Attacking and Defending JetBrains Teamcity
https://ift.tt/7QRStiZ
Submitted December 19, 2023 at 05:52PM by gfekkas
via reddit https://ift.tt/0UYiqZ3
https://ift.tt/7QRStiZ
Submitted December 19, 2023 at 05:52PM by gfekkas
via reddit https://ift.tt/0UYiqZ3
Understanding The Workings of Russian Hacker “Wazawaka”
https://ift.tt/IJYP21x
Submitted December 19, 2023 at 08:56PM by wtfse
via reddit https://ift.tt/Z5MdiAD
https://ift.tt/IJYP21x
Submitted December 19, 2023 at 08:56PM by wtfse
via reddit https://ift.tt/Z5MdiAD
Terrapin - SSH prefix truncation attack - CVE-2023-48795
https://ift.tt/Sp05lbk
Submitted December 20, 2023 at 03:39PM by lubricin
via reddit https://ift.tt/AiZrDTE
https://ift.tt/Sp05lbk
Submitted December 20, 2023 at 03:39PM by lubricin
via reddit https://ift.tt/AiZrDTE
A detailed analysis of the Menorah malware used by APT34
https://ift.tt/PDjp3Ym
Submitted December 20, 2023 at 07:34PM by CyberMasterV
via reddit https://ift.tt/TuJtm5Q
https://ift.tt/PDjp3Ym
Submitted December 20, 2023 at 07:34PM by CyberMasterV
via reddit https://ift.tt/TuJtm5Q
Command line tool for extracting secrets such as passwords, API keys, and tokens from WARC (Web ARChive) files
https://ift.tt/i0xEhBf
Submitted December 20, 2023 at 10:44PM by neathack
via reddit https://ift.tt/wsHmMLI
https://ift.tt/i0xEhBf
Submitted December 20, 2023 at 10:44PM by neathack
via reddit https://ift.tt/wsHmMLI
GitHub
GitHub - crissyfield/troll-a: Drill into WARC web archives
Drill into WARC web archives. Contribute to crissyfield/troll-a development by creating an account on GitHub.
Weaponizing DHCP DNS Spoofing: Part 2 — A Hands-On Guide
https://ift.tt/yNnfHR5
Submitted December 21, 2023 at 09:00PM by oridavid1231
via reddit https://ift.tt/ytqsiHQ
https://ift.tt/yNnfHR5
Submitted December 21, 2023 at 09:00PM by oridavid1231
via reddit https://ift.tt/ytqsiHQ
Akamai
Weaponizing DHCP DNS Spoofing — A Hands-On Guide | Akamai
In part 2 of this two-part series, Akamai researchers detail methods and attack imitations within DHCP to spoof DNS — and introduce a new tool for your toolkit.
Ghidriff: Ghidra Binary Diffing Engine
https://ift.tt/wOEMTSV
Submitted December 21, 2023 at 11:56PM by onlinereadme
via reddit https://ift.tt/7BmSe5C
https://ift.tt/wOEMTSV
Submitted December 21, 2023 at 11:56PM by onlinereadme
via reddit https://ift.tt/7BmSe5C
clearbluejar
Ghidriff: Ghidra Binary Diffing Engine
As seen in most security blog posts today, binary diffing tools are essential for reverse engineering, vulnerability research, and malware analysis. Patch diffing is a technique widely used to identify changes across versions of binaries as related to security…
SSH ProxyCommand == RCE
https://ift.tt/X8bp5kJ
Submitted December 22, 2023 at 02:19AM by nex25519
via reddit https://ift.tt/S9ZhCFW
https://ift.tt/X8bp5kJ
Submitted December 22, 2023 at 02:19AM by nex25519
via reddit https://ift.tt/S9ZhCFW
Vin01’s Blog
SSH ProxyCommand == RCE
Summary
SSH ProxyCommand == unexpected code execution (CVE-2023-51385)
https://ift.tt/X8bp5kJ
Submitted December 22, 2023 at 05:44PM by nex25519
via reddit https://ift.tt/tfUQnIK
https://ift.tt/X8bp5kJ
Submitted December 22, 2023 at 05:44PM by nex25519
via reddit https://ift.tt/tfUQnIK
Vin01’s Blog
SSH ProxyCommand == RCE
Summary
Developers are juicy targets: DCOM & Visual Studio
https://ift.tt/yIrCeqi
Submitted December 24, 2023 at 03:11PM by gid0rah
via reddit https://ift.tt/COJK0Yx
https://ift.tt/yIrCeqi
Submitted December 24, 2023 at 03:11PM by gid0rah
via reddit https://ift.tt/COJK0Yx
Developers are juicy targets: DCOM & Visual Studio |
Developers are juicy targets: DCOM & Visual Studio | AdeptsOf0xCC
Umpteenth time that you will see a lateral movement based on DCOM. This time it's Visual Studio.