Ivanti Connect Secure Under Attack: Uncovering Five Exploitable CVEs - XXE
https://ift.tt/sKEwe80
Submitted February 20, 2024 at 07:56AM by appsec1337
via reddit https://ift.tt/tmFaNHb
https://ift.tt/sKEwe80
Submitted February 20, 2024 at 07:56AM by appsec1337
via reddit https://ift.tt/tmFaNHb
Penetration Testing and CyberSecurity Solution - SecureLayer7
Ivanti Connect Secure Under Attack: Uncovering Five Exploitable CVEs
Overview Recently, five CVEs have been discovered in Ivanti Connect Secure, a software product designed to offer secure remote access to corporate resources and applications. This product is...
AS-REP Roasting
https://ift.tt/FYDvsUr
Submitted February 20, 2024 at 01:44PM by netbiosX
via reddit https://ift.tt/jvaPsEn
https://ift.tt/FYDvsUr
Submitted February 20, 2024 at 01:44PM by netbiosX
via reddit https://ift.tt/jvaPsEn
Penetration Testing Lab
AS-REP Roasting
Active Directory users that have the Kerberos pre-authentication enabled and require access to a resource initiate the Kerberos authentication process by sending an Authentication Server Request (A…
Auto DNS poisoning: while charging Android smartphone via computer it is possible to perform automated and even remotely controlled DNS poisoning without any user interaction
https://ift.tt/vp2HyMc
Submitted February 20, 2024 at 03:59PM by barakadua131
via reddit https://ift.tt/16szY9c
https://ift.tt/vp2HyMc
Submitted February 20, 2024 at 03:59PM by barakadua131
via reddit https://ift.tt/16szY9c
Mobile Hacker
Automated local DNS cache poisoning using Android while charging via computer - Mobile Hacker
I will delve into using Android smartphone while charging from computer to perform automated DNS poisoning attack without any user interaction. I go through its results, downsides and effective prevention tips.
GitHub - naksyn/Embedder: Embedder is a collection of sources in different languages to embed Python interpreter with minimal dependencies
https://ift.tt/NkWEi7K
Submitted February 20, 2024 at 06:11PM by naksyn_
via reddit https://ift.tt/g0mVu4Z
https://ift.tt/NkWEi7K
Submitted February 20, 2024 at 06:11PM by naksyn_
via reddit https://ift.tt/g0mVu4Z
GitHub
GitHub - naksyn/Embedder: Embedder is a collection of sources in different languages to embed Python interpreter with minimal dependencies
Embedder is a collection of sources in different languages to embed Python interpreter with minimal dependencies - naksyn/Embedder
Exploiting Cacheable Responses
https://ift.tt/tueSYzH
Submitted February 20, 2024 at 08:59PM by 6W99ocQnb8Zy17
via reddit https://ift.tt/KnmZ2qx
https://ift.tt/tueSYzH
Submitted February 20, 2024 at 08:59PM by 6W99ocQnb8Zy17
via reddit https://ift.tt/KnmZ2qx
attackshipsonfi.re
Exploiting Cacheable Responses
TL;DR The main browsers share their cache between Fetch requests and normal navigation.
GitHub - mlcsec/FormThief: Spoofing desktop login applications with WinForms and WPF
https://ift.tt/ZNTlKVS
Submitted February 20, 2024 at 08:55PM by Frequent_Passenger82
via reddit https://ift.tt/dfqUsrW
https://ift.tt/ZNTlKVS
Submitted February 20, 2024 at 08:55PM by Frequent_Passenger82
via reddit https://ift.tt/dfqUsrW
GitHub
GitHub - mlcsec/FormThief: Spoofing desktop login applications with WinForms and WPF
Spoofing desktop login applications with WinForms and WPF - mlcsec/FormThief
Lockbit Ransomeware global taketown
https://ift.tt/p6hGQuO
Submitted February 21, 2024 at 03:26AM by foundapairofknickers
via reddit https://ift.tt/ds6kx1J
https://ift.tt/p6hGQuO
Submitted February 21, 2024 at 03:26AM by foundapairofknickers
via reddit https://ift.tt/ds6kx1J
iTnews
Lockbit cybercrime gang faces global takedown
With indictments and arrests.
Authentication bypass in the IWD and wpa_supplicant Wi-Fi deamons
https://ift.tt/9bJPeZo
Submitted February 21, 2024 at 06:38AM by omegga
via reddit https://ift.tt/2CMDplh
https://ift.tt/9bJPeZo
Submitted February 21, 2024 at 06:38AM by omegga
via reddit https://ift.tt/2CMDplh
Top10Vpn
New WiFi Authentication Vulnerabilities Discovered
Two new WiFi vulnerabilities allow hackers to trick you into connecting to fake hotspots and steal your data, and join secure networks without the password.
PEAP Phase-2 authentication in Linux's wpa_suppcliant could be bypassed
https://ift.tt/AiNYyDj
Submitted February 21, 2024 at 07:17AM by omegga
via reddit https://ift.tt/fX82Nc5
https://ift.tt/AiNYyDj
Submitted February 21, 2024 at 07:17AM by omegga
via reddit https://ift.tt/fX82Nc5
Detection Rules Development Framework
https://ift.tt/ExwslWR
Submitted February 21, 2024 at 03:06PM by netbiosX
via reddit https://ift.tt/YCPMhkc
https://ift.tt/ExwslWR
Submitted February 21, 2024 at 03:06PM by netbiosX
via reddit https://ift.tt/YCPMhkc
Purple Team
Detection Rules Development Framework
Organizations who invest in detection engineering have an edge towards identification of threats. However, there is no industry standard to define the framework around the development of detection …
A deep dive into the RansomHouse encryptor
https://ift.tt/qxvMESi
Submitted February 21, 2024 at 08:04PM by ShadowStackRE
via reddit https://ift.tt/ReaVWhK
https://ift.tt/qxvMESi
Submitted February 21, 2024 at 08:04PM by ShadowStackRE
via reddit https://ift.tt/ReaVWhK
ShadowStackRE
RansomHouse encryptor malware analysis — ShadowStackRE
RansomHouse technical malware analysis and yara rules
Ongoing Malware Laced Developer Job Interviews
https://ift.tt/ykaOmZK
Submitted February 21, 2024 at 09:13PM by louis11
via reddit https://ift.tt/PRuQhqt
https://ift.tt/ykaOmZK
Submitted February 21, 2024 at 09:13PM by louis11
via reddit https://ift.tt/PRuQhqt
Phylum
Fake Developer Jobs Laced With Malware
Phylum continues to discover malware polluting open-source ecosystems. In this blog post, we take a deep-dive into an npm package trying to masquerade as code profiler which actually installs several malicious noscripts including a cryptocurrency and credential…
re: Zyxel VPN Series Pre-auth Remote Command Execution
https://ift.tt/1zcqnPB
Submitted February 21, 2024 at 09:53PM by chicksdigthelongrun
via reddit https://ift.tt/xBWFCgl
https://ift.tt/1zcqnPB
Submitted February 21, 2024 at 09:53PM by chicksdigthelongrun
via reddit https://ift.tt/xBWFCgl
VulnCheck
re: Zyxel VPN Series Pre-auth Remote Command Execution - Blog - VulnCheck
VulnCheck uncovers the truth behind the recently published Zyxel pre-auth remote code execution: limited to specific configurations, limitations on repeated exploitation, and no evidence of active exploitation.
Statically detecting AWS Canary Tokens without setting them off
https://ift.tt/6e2UHBu
Submitted February 21, 2024 at 11:40PM by wifihack
via reddit https://ift.tt/W739LUc
https://ift.tt/6e2UHBu
Submitted February 21, 2024 at 11:40PM by wifihack
via reddit https://ift.tt/W739LUc
Trufflesecurity
TruffleHog Now Detects AWS Canaries without setting them off ◆ Truffle Security Co.
Today we’re unveiling a novel way to identify canarytokens.org canaries completely statically without setting them off. Thinkst offers self hosted, and paid alternatives that are protected from these techniques. We’re open sourcing this capability and including…
Optum / Change Healthcare Breach
https://ift.tt/5BWxpPu
Submitted February 22, 2024 at 04:00AM by ssgzeke
via reddit https://ift.tt/iRfNrVF
https://ift.tt/5BWxpPu
Submitted February 22, 2024 at 04:00AM by ssgzeke
via reddit https://ift.tt/iRfNrVF
Changehealthcare
Update: Some applications are experiencing connectivity issues. Hover or tap here for updates.
Optum Solutions's Status Page - Update: Some applications are experiencing connectivity issues. Hover or tap here for updates..
Auth Bypass in ConnectWise ScreenConnect
https://ift.tt/fcjHCU0
Submitted February 22, 2024 at 01:50PM by smokiesmk
via reddit https://ift.tt/YBD65SJ
https://ift.tt/fcjHCU0
Submitted February 22, 2024 at 01:50PM by smokiesmk
via reddit https://ift.tt/YBD65SJ
GitHub
GitHub - jhonnybonny/auth_bypass_connectwise_screenconnect: Exploit ConnectWise ScreenConnect (bypass authentication)
Exploit ConnectWise ScreenConnect (bypass authentication) - jhonnybonny/auth_bypass_connectwise_screenconnect
A stealthy threat uncovered: TeaBot on Google Play Store | Cleafy Labs
https://ift.tt/78Kf0Tj
Submitted February 22, 2024 at 02:39PM by f3d_0x0
via reddit https://ift.tt/aAovPSq
https://ift.tt/78Kf0Tj
Submitted February 22, 2024 at 02:39PM by f3d_0x0
via reddit https://ift.tt/aAovPSq
Cleafy
A stealthy threat uncovered: TeaBot on Google Play Store | Cleafy Labs
Recently, we have observed an increase in TeaBot banking trojan infections across several European countries, now even infiltrating the Google Play Store. Read the technical analysis to know all his functionalities and how to prevent it.
“To live is to fight, to fight is to live! - IBM ODM Remote Code Execution (watchTowr Labs)
https://ift.tt/vQgue6x
Submitted February 22, 2024 at 02:32PM by dx7r__
via reddit https://ift.tt/BLTuPDe
https://ift.tt/vQgue6x
Submitted February 22, 2024 at 02:32PM by dx7r__
via reddit https://ift.tt/BLTuPDe
watchTowr Labs - Blog
“To live is to fight, to fight is to live! - IBM ODM Remote Code Execution
In previous blogs, we’ve discussed some of the big players in the enterprise software space, but there is one that we have not mentioned before, that is - quite frankly - the heavy-weight champion of the world in terms of applications for large enterprises.…
SHA-256 Under the Hood
https://ift.tt/Nyzdsok
Submitted February 22, 2024 at 02:53PM by pickeydotai
via reddit https://ift.tt/kxTPgZw
https://ift.tt/Nyzdsok
Submitted February 22, 2024 at 02:53PM by pickeydotai
via reddit https://ift.tt/kxTPgZw
Medium
SHA-256 Under the Hood
Look inside the popular hash function and learn what makes it work so well.
New TP-Link authentication Bypass!
https://ift.tt/jivZgCR
Submitted February 22, 2024 at 08:20PM by Status_Resolve2971
via reddit https://ift.tt/Jp3c5z7
https://ift.tt/jivZgCR
Submitted February 22, 2024 at 08:20PM by Status_Resolve2971
via reddit https://ift.tt/Jp3c5z7
Go-EPSS: Golang library for interacting with EPSS (Exploit Prediction Scoring System)
https://ift.tt/5T7t8LW
Submitted February 23, 2024 at 04:38AM by KaanSK
via reddit https://ift.tt/ja0pP1E
https://ift.tt/5T7t8LW
Submitted February 23, 2024 at 04:38AM by KaanSK
via reddit https://ift.tt/ja0pP1E
GitHub
GitHub - KaanSK/go-epss: A Golang library for interacting with the EPSS (Exploit Prediction Scoring System).
A Golang library for interacting with the EPSS (Exploit Prediction Scoring System). - KaanSK/go-epss