Domain Escalation – Backup Operator
https://ift.tt/Mil2FZN
Submitted January 22, 2024 at 04:37PM by netbiosX
via reddit https://ift.tt/Gtv79cN
https://ift.tt/Mil2FZN
Submitted January 22, 2024 at 04:37PM by netbiosX
via reddit https://ift.tt/Gtv79cN
Penetration Testing Lab
Domain Escalation – Backup Operator
The Backup Operators is a Windows built-in group. Users which are part of this group have permissions to perform backup and restore operations. More specifically, these users have the SeBackupPrivi…
Vulnerability in Gambio pertains to an insecure deserialization flaw, which ultimately allows an attacker to execute remote code on affected systems.
https://ift.tt/sIBkJ9b
Submitted January 22, 2024 at 06:23PM by usdAG
via reddit https://ift.tt/yvXFKb5
https://ift.tt/sIBkJ9b
Submitted January 22, 2024 at 06:23PM by usdAG
via reddit https://ift.tt/yvXFKb5
usd HeroLab
usd-2023-0046 | usd HeroLab
Advisory ID: usd-2023-0046 | Product: Gambio | Vulnerability Type: Deserialization of Untrusted Data (CWE-502)
How a vulnerability in WifiKey's AC Gateway allows remote attackers to trigger a pre-auth RCE
https://ift.tt/g1HvRdw
Submitted January 22, 2024 at 10:24PM by SSDisclosure
via reddit https://ift.tt/zpn1P9E
https://ift.tt/g1HvRdw
Submitted January 22, 2024 at 10:24PM by SSDisclosure
via reddit https://ift.tt/zpn1P9E
SSD Secure Disclosure
SSD Advisory - WifiKey AC Gateway Pre-auth RCE - SSD Secure Disclosure
Summary A vulnerability exists in WifiKey’s AC Gateway allowing remote attackers to trigger a pre-auth RCE vulnerability in the product allowing complete compromise of the device. Credit An independent security researcher working with SSD Secure Disclosure.…
EC2 Privilege Escalation Through User Data
https://ift.tt/A6ohNxk
Submitted January 22, 2024 at 11:02PM by RedTermSession
via reddit https://ift.tt/akEXMWn
https://ift.tt/A6ohNxk
Submitted January 22, 2024 at 11:02PM by RedTermSession
via reddit https://ift.tt/akEXMWn
hackingthe.cloud
EC2 Privilege Escalation Through User Data - Hacking The Cloud
How to escalate privileges on an EC2 instance by abusing user data.
Many CVE Records Are Listing the Wrong Versions of Software as Being Affected
https://ift.tt/xXjyTpJ
Submitted January 23, 2024 at 12:26AM by PluginVulns
via reddit https://ift.tt/0iQJa4I
https://ift.tt/xXjyTpJ
Submitted January 23, 2024 at 12:26AM by PluginVulns
via reddit https://ift.tt/0iQJa4I
Plugin Vulnerabilities
Many CVE Records Are Listing the Wrong Versions of Software as Being Affected
[VNCERT/CC] CVE-2023-22527 realworld poc The original PoC: payload is length limited Solution: 1. Write the noscript file in parts 2. Run the noscript
https://ift.tt/rKI1UYN
Submitted January 23, 2024 at 01:01PM by arleth94
via reddit https://ift.tt/W2ULexi
https://ift.tt/rKI1UYN
Submitted January 23, 2024 at 01:01PM by arleth94
via reddit https://ift.tt/W2ULexi
GitHub
GitHub - VNCERT-CC/CVE-2023-22527-confluence: [Confluence] CVE-2023-22527 realworld poc
[Confluence] CVE-2023-22527 realworld poc. Contribute to VNCERT-CC/CVE-2023-22527-confluence development by creating an account on GitHub.
Exploiting 0-click Android Bluetooth vulnerability to inject keystrokes without pairing (CVE-2023-45866)
https://ift.tt/G2c5R1n
Submitted January 23, 2024 at 03:14PM by barakadua131
via reddit https://ift.tt/8mjWXuO
https://ift.tt/G2c5R1n
Submitted January 23, 2024 at 03:14PM by barakadua131
via reddit https://ift.tt/8mjWXuO
Mobile Hacker
Exploiting 0-click Android Bluetooth vulnerability to inject keystrokes without pairing - Mobile Hacker
[update 2024-02-19] This vulnerability can be even used to remotely wipe data of targeted Android smartphone. Using this vulnerability it is possible to guess user lock screen PIN. After five incorrect PINs device is locked out for 30 seconds. This operation…
Typhooncon 2024 has less than 2 weeks left for CFT submissions. Don't miss out!
https://ift.tt/0vFf7n5
Submitted January 23, 2024 at 04:04PM by Straight-Zombie-646
via reddit https://ift.tt/CoXhp6N
https://ift.tt/0vFf7n5
Submitted January 23, 2024 at 04:04PM by Straight-Zombie-646
via reddit https://ift.tt/CoXhp6N
Export Controls: Explained
https://ift.tt/9AXZWwf
Submitted January 23, 2024 at 05:05PM by zolakrystie
via reddit https://ift.tt/Py1bJWH
https://ift.tt/9AXZWwf
Submitted January 23, 2024 at 05:05PM by zolakrystie
via reddit https://ift.tt/Py1bJWH
NextLabs
What are Export Controls?
Export Controls are laws and regulations that govern the transfer or disclosure of goods, technology and funds originating in one country to persons or entities based or having citizenship in another country. This applies even if the regulated items are not…
A recent analysis of the Cactus Ransomware
https://ift.tt/Menxqzd
Submitted January 23, 2024 at 07:58PM by ShadowStackRE
via reddit https://ift.tt/YO5Ehpj
https://ift.tt/Menxqzd
Submitted January 23, 2024 at 07:58PM by ShadowStackRE
via reddit https://ift.tt/YO5Ehpj
ShadowStackRE
Cactus Ransomware malware analysis — ShadowStackRE
A technical analysis of the Cactus Ransomware malware
Windows - Data Protection API - A journey into various DPAPI potential abuses from an offensive security perspective
https://ift.tt/DWBMa1F
Submitted January 24, 2024 at 12:48AM by clod81
via reddit https://ift.tt/I9q81Kr
https://ift.tt/DWBMa1F
Submitted January 24, 2024 at 12:48AM by clod81
via reddit https://ift.tt/I9q81Kr
Tier Zero Security
Information Security Services. Offensive Security, Penetration Testing, Mobile and Application, Purple Team, Red Team
CVE-2024-0204: Fortra GoAnywhere MFT Authentication Bypass Deep-Dive, IOCs, and Exploit
https://ift.tt/aO0xWdR
Submitted January 24, 2024 at 02:22AM by scopedsecurity
via reddit https://ift.tt/PeRKiBf
https://ift.tt/aO0xWdR
Submitted January 24, 2024 at 02:22AM by scopedsecurity
via reddit https://ift.tt/PeRKiBf
Horizon3.ai
CVE-2024-0204: Fortra GoAnywhere MFT Authentication Bypass Deep-Dive – Horizon3.ai
CVE-2024-0204 Fortra GoAnywhere MFT Deep-Dive and Indicators of Compromise. This blog details the authentication bypass which allows an unauthenticated attacker to add an administrative user to the application.
Improving LLM Security Against Prompt Injection: AppSec Guidance For Pentesters and Developers
https://ift.tt/pZ36WGC
Submitted January 24, 2024 at 02:50AM by 907jessejones
via reddit https://ift.tt/4jVBqlv
https://ift.tt/pZ36WGC
Submitted January 24, 2024 at 02:50AM by 907jessejones
via reddit https://ift.tt/4jVBqlv
Include Security Research Blog
Improving LLM Security Against Prompt Injection: AppSec Guidance For Pentesters and Developers - Include Security Research Blog
Developers should be using OpenAI roles to mitigate LLM prompt injection, while pentesters are missing vulnerabilities in LLM design.
15 MCQ questions for practice related to security
https://ift.tt/HaZmbXs
Submitted January 24, 2024 at 11:59AM by eren_rndm
via reddit https://ift.tt/7EsJPMm
https://ift.tt/HaZmbXs
Submitted January 24, 2024 at 11:59AM by eren_rndm
via reddit https://ift.tt/7EsJPMm
practicepedia
15 MCQ questions for practice related to cybersecurity on practicepedia
15 cybersecurity MCQ questions to practice and improve your knowledge in cybersecurity with practicepedia. improve your knowledge
Kubernetes Scheduling And Secure Design
https://ift.tt/DQ120E7
Submitted January 24, 2024 at 02:22PM by nibblesec
via reddit https://ift.tt/SM7sjgy
https://ift.tt/DQ120E7
Submitted January 24, 2024 at 02:22PM by nibblesec
via reddit https://ift.tt/SM7sjgy
Methodology - Security Research: How we discovered over 18,000 API secret tokens & $20M in Stripe tokens
https://ift.tt/yqxwd3E
Submitted January 24, 2024 at 06:12PM by AlarmingApartment236
via reddit https://ift.tt/aVbYZ85
https://ift.tt/yqxwd3E
Submitted January 24, 2024 at 06:12PM by AlarmingApartment236
via reddit https://ift.tt/aVbYZ85
Escape - The API Security Blog
How we discovered over 18,000 API secret tokens
Our security team scanned 189.5M URLs and found more than 18,000 exposed API secrets. Explore the methodology.
Pwning a DLP solution: CVE-2024-22107 & CVE-2024-22108
https://ift.tt/VcS73Jn
Submitted January 25, 2024 at 01:46PM by gid0rah
via reddit https://ift.tt/6UkRruB
https://ift.tt/VcS73Jn
Submitted January 25, 2024 at 01:46PM by gid0rah
via reddit https://ift.tt/6UkRruB
A christmas tale: pwning GTB Central Console (CVE-2024-22107 & CVE-2024-22108) |
A christmas tale: pwning GTB Central Console (CVE-2024-22107 & CVE-2024-22108) | AdeptsOf0xCC
Yet another security platform being pwned by trivial vulnerabilities (CVE-2024-22107 & CVE-2024-22108)
*nix libX11: Uncovering and exploiting a 35-year-old vulnerability – Part 2 of 2
https://ift.tt/dx51IR0
Submitted January 25, 2024 at 02:57PM by SRMish3
via reddit https://ift.tt/9SC82VM
https://ift.tt/dx51IR0
Submitted January 25, 2024 at 02:57PM by SRMish3
via reddit https://ift.tt/9SC82VM
JFrog
CVE-2023-43786 & CVE-2023-43787 Vulns in libX11: All You Need To Know
Learn all about the 35-year-old vulnerabilities found by our Security Team in libX11, causing a denial-of-service and remote code execution.
Shipping your Private Key - CVE-2023-43870, Paxton do a Lenovo.
https://ift.tt/JyMZdmB
Submitted January 25, 2024 at 05:14PM by craigsblackie
via reddit https://ift.tt/PBveISc
https://ift.tt/JyMZdmB
Submitted January 25, 2024 at 05:14PM by craigsblackie
via reddit https://ift.tt/PBveISc
Cryptic Red Ltd
Shipping your Private Key - CVE-2023-43870, Paxton do a Lenovo
Paxton Access is a UK-based company specialising in access control solutions. Their products cater to a wide range of security needs in various sectors, including commercial, educational, and healthcare facilities.One of the key products from Paxton Access…
New Zyxel RCE Vulnerability allows remote attackes execute commands as root!
https://ift.tt/3CTYdEj
Submitted January 25, 2024 at 07:18PM by Straight-Zombie-646
via reddit https://ift.tt/KvMgwVf
https://ift.tt/3CTYdEj
Submitted January 25, 2024 at 07:18PM by Straight-Zombie-646
via reddit https://ift.tt/KvMgwVf
SSD Secure Disclosure
SSD Advisory - Zyxel VPN Series Pre-auth Remote Command Execution - SSD Secure Disclosure
Summary Chaining of three vulnerabilities allows unauthenticated attackers to execute arbitrary command with root privileges on Zyxel VPN firewall (VPN50, VPN100, VPN300, VPN500, VPN1000). Due to recent attack surface changes in Zyxel, the chain described…
We build X.509 chains so you don’t have to
https://ift.tt/yQi7eGz
Submitted January 25, 2024 at 09:30PM by yossarian_flew_away
via reddit https://ift.tt/4VHCymJ
https://ift.tt/yQi7eGz
Submitted January 25, 2024 at 09:30PM by yossarian_flew_away
via reddit https://ift.tt/4VHCymJ
The Trail of Bits Blog
We build X.509 chains so you don’t have to
For the past eight months, Trail of Bits has worked with the Python Cryptographic Authority to build cryptography-x509-verification, a brand-new, pure-Rust implementation of the X.509 path validation algorithm that TLS and other encryption and authentication…