Multiple vulnerabilities in RT-Thread RTOS
https://ift.tt/PZ7OYBf
Submitted March 05, 2024 at 04:08PM by 0xdea
via reddit https://ift.tt/F1MlI6k
https://ift.tt/PZ7OYBf
Submitted March 05, 2024 at 04:08PM by 0xdea
via reddit https://ift.tt/F1MlI6k
hn security
Multiple vulnerabilities in RT-Thread RTOS - hn security
“Security is in the mind of […]
Persistence – Explorer
https://ift.tt/8OScvW9
Submitted March 05, 2024 at 05:45PM by netbiosX
via reddit https://ift.tt/FL0HYvA
https://ift.tt/8OScvW9
Submitted March 05, 2024 at 05:45PM by netbiosX
via reddit https://ift.tt/FL0HYvA
Penetration Testing Lab
Persistence – Explorer
Windows File Explorer is the is the graphical file management utility for the Windows operating system and the default desktop environment. Windows explorer was introduced in Windows 95 and it is a…
Release alert - EMBA firmware security analyzer v1.4.0 - ICS testing Edt. is out now
https://ift.tt/phvqmJI
Submitted March 05, 2024 at 05:35PM by _m-1-k-3_
via reddit https://ift.tt/x01qMTt
https://ift.tt/phvqmJI
Submitted March 05, 2024 at 05:35PM by _m-1-k-3_
via reddit https://ift.tt/x01qMTt
GitHub
Release EMBA v1.4.0 - ICS testing Edt. · e-m-b-a/emba
As we do a lot of ICS/OT testing in our daily business, we thought this release should reflect our usual EMBA usage scenario. Welcome to another huge EMBA release with a lot new features: EMBA v1.4...
Executed vs Loaded: a new dimension for Application Security with eBPF
https://ift.tt/KO5D1dR
Submitted March 05, 2024 at 07:13PM by cov_id19
via reddit https://ift.tt/MkQiD2g
https://ift.tt/KO5D1dR
Submitted March 05, 2024 at 07:13PM by cov_id19
via reddit https://ift.tt/MkQiD2g
www.oligo.security
On Loaded vs. Executed Libraries During Runtime | Oligo Security
The Application Security domain has evolved significantly over the last decade. It’s no surprise then, that with this evolution, comes a jungle of tools that not only causes a lot of confusion, but also a lot of noise, and overlapping messages.
Spoofed DNS queries and IP TTL triangulation
https://ift.tt/pY8k6yZ
Submitted March 05, 2024 at 08:23PM by jtkchicago
via reddit https://ift.tt/XHwak4D
https://ift.tt/pY8k6yZ
Submitted March 05, 2024 at 08:23PM by jtkchicago
via reddit https://ift.tt/XHwak4D
Dataplane.org Newsletter
Destination-Adjacent Source Address Spoofing
With a Side of IP TTL-based Origin Triangulation
Smishing with EvilGophish
https://ift.tt/KrlenCA
Submitted March 05, 2024 at 09:02PM by fin3ss3g0d
via reddit https://ift.tt/C5RWXma
https://ift.tt/KrlenCA
Submitted March 05, 2024 at 09:02PM by fin3ss3g0d
via reddit https://ift.tt/C5RWXma
fin3ss3g0d's Blog -
Smishing with EvilGophish - fin3ss3g0d's Blog
Introduction to Smishing: Understanding SMS Phishing Tactics In the evolving landscape of cybersecurity threats, smishing—or SMS phishing—stands out as a formidable technique employed by adversaries to exploit human vulnerabilities. Smishing operates on a…
List of 39 Documented Windows Persistence Techniques
https://ift.tt/E8TAe4P
Submitted March 05, 2024 at 10:27PM by netbiosX
via reddit https://ift.tt/cb1Gxiw
https://ift.tt/E8TAe4P
Submitted March 05, 2024 at 10:27PM by netbiosX
via reddit https://ift.tt/cb1Gxiw
Penetration Testing Lab
Persistence
The following table contains all the techniques covered and whether or not administrator rights are needed to establish persistence. NoTechniqueMITRE IDAdministrator Rights1Registry Run KeysNo2Serv…
Bypassing CSP with Form Hijacking
https://ift.tt/LwWTpOi
Submitted March 06, 2024 at 12:37PM by qwerty0x41
via reddit https://ift.tt/Tamx1iZ
https://ift.tt/LwWTpOi
Submitted March 06, 2024 at 12:37PM by qwerty0x41
via reddit https://ift.tt/Tamx1iZ
PortSwigger Research
Using form hijacking to bypass CSP
In this post we'll show you how to bypass CSP by using an often overlooked technique that can enable password theft in a seemingly secure configuration. What is form hijacking? Form hijacking isn't re
Kali NetHunter now supports Bad Bluetooth HID attacks to inject keystrokes wirelessly
https://ift.tt/rMis5gV
Submitted March 06, 2024 at 03:31PM by barakadua131
via reddit https://ift.tt/KcUDf4X
https://ift.tt/rMis5gV
Submitted March 06, 2024 at 03:31PM by barakadua131
via reddit https://ift.tt/KcUDf4X
Mobile Hacker
Kali NetHunter now supports Bad Bluetooth HID attacks to inject keystrokes wirelessly
This technique allows to impersonate any Bluetooth device and inject keystrokes that allows an attacker to open unwanted website, install malware or lockout user from the smartphone. Further I will explain how Bad Bluetooth attacks work, how they can be carry…
Code injection on Android without ptrace
https://ift.tt/ikRou5W
Submitted March 06, 2024 at 11:34PM by ihavelotsofspac
via reddit https://ift.tt/VcDsCKP
https://ift.tt/ikRou5W
Submitted March 06, 2024 at 11:34PM by ihavelotsofspac
via reddit https://ift.tt/VcDsCKP
erfur's bits and pieces
Code injection on Android without ptrace
CVE-2024-1403: Progress OpenEdge Authentication Bypass Deep-Dive, IOCs, and Exploit
https://ift.tt/Q6dOEjv
Submitted March 06, 2024 at 10:41PM by scopedsecurity
via reddit https://ift.tt/QASTyjw
https://ift.tt/Q6dOEjv
Submitted March 06, 2024 at 10:41PM by scopedsecurity
via reddit https://ift.tt/QASTyjw
Horizon3.ai
CVE-2024-1403: Progress OpenEdge Authentication Bypass Deep-Dive – Horizon3.ai
CVE-2024-1403 Progress OpenEdge Authentication Bypass Deep-Dive and Indicators of Compromise. This blog details the authentication bypass which allows an unauthenticated attacker to access the OpenEdge platform as an administrator.
Clickstudios Passwordstate - Potential authentication bypass issue [High Severity] (CVE-Pending)
https://ift.tt/M2HsoEQ
Submitted March 07, 2024 at 10:42AM by chirping_cat
via reddit https://ift.tt/c7RZHlu
https://ift.tt/M2HsoEQ
Submitted March 07, 2024 at 10:42AM by chirping_cat
via reddit https://ift.tt/c7RZHlu
VMWare release patches for CVE-2024-22252, CVE-2024-22253, CVE-2024-22254 and CVE-2024-22255
https://ift.tt/la7N3nW
Submitted March 07, 2024 at 08:50PM by woja111
via reddit https://ift.tt/omLdDqb
https://ift.tt/la7N3nW
Submitted March 07, 2024 at 08:50PM by woja111
via reddit https://ift.tt/omLdDqb
OP Innovate - Premium Application Penetration testing and Incident Response
VMware Issues Security Patches for ESXi, Workstation, and Fusion Flaws - OP INNOVATE
VMware has released security patches for four vulnerabilities in ESXi, Workstation, and Fusion. Critical flaws CVE-2024-22252 and CVE-2024-22253, use-after-free vulnerabilities in the XHCI USB controller, could lead to code execution. Additionally, CVE-2024…
Iranian Hacktivist claims responsibility for Israel academic institute hack
https://ift.tt/7o6dkmP
Submitted March 07, 2024 at 08:48PM by woja111
via reddit https://ift.tt/IpVsq7h
https://ift.tt/7o6dkmP
Submitted March 07, 2024 at 08:48PM by woja111
via reddit https://ift.tt/IpVsq7h
OP Innovate - Premium Application Penetration testing and Incident Response
Lord Nemesis Strikes: Supply Chain Attack on the Israeli Academic Sector - OP INNOVATE
Lord Nemesis, an Iranian hacktivist group, breaches Rashim Software and its Israeli academic clients in a supply chain attack. Learn about the attack, the risks posed by third-party vendors, and how organizations can strengthen their defenses against politically…
Introducing CloudGrappler: An Open-Source Threat Detection Tool for AWS and Azure
https://ift.tt/5V8pfi1
Submitted March 07, 2024 at 08:40PM by permis0
via reddit https://ift.tt/5OrHEts
https://ift.tt/5V8pfi1
Submitted March 07, 2024 at 08:40PM by permis0
via reddit https://ift.tt/5OrHEts
permiso.io
Introducing CloudGrappler: A Powerful Open-Source Threat Detection Tool for Cloud Environments
CloudGrappler is an open-source tool that is purpose-built for querying high-fidelity and single-event detections related to well-known threat actors in popular cloud environments such as AWS and Azure.
Source Code Disclosure in ASP.NET via Cookieless Sessions
https://ift.tt/vJGFWSV
Submitted March 07, 2024 at 08:01PM by albinowax
via reddit https://ift.tt/JeFS0Qx
https://ift.tt/vJGFWSV
Submitted March 07, 2024 at 08:01PM by albinowax
via reddit https://ift.tt/JeFS0Qx
PT SWARM
Source Code Disclosure in ASP.NET apps
Earn $10,000 on bugbounty with this little trick!
HappyCamper: Doubling Down On Naming Space Location Randomization (NSLR)
https://ift.tt/mqkQaUI
Submitted March 07, 2024 at 10:19PM by operat1ve
via reddit https://ift.tt/YH3S06X
https://ift.tt/mqkQaUI
Submitted March 07, 2024 at 10:19PM by operat1ve
via reddit https://ift.tt/YH3S06X
www.karma-x.io
HappyCamper: Doubling Down On Naming Space Location Randomization (NSLR)
Git-Rotate: Leveraging GitHub Actions for Password Spraying
https://ift.tt/Gnw1UmZ
Submitted March 08, 2024 at 02:38AM by Acceptable-Doubt-878
via reddit https://ift.tt/vrKjwcS
https://ift.tt/Gnw1UmZ
Submitted March 08, 2024 at 02:38AM by Acceptable-Doubt-878
via reddit https://ift.tt/vrKjwcS
Aura Research Division
Git-Rotate: Leveraging GitHub Actions to Bypass Microsoft Entra Smart lockout
Explore how GitHub Actions can be leveraged to rotate IP addresses during password spraying attacks to bypass IP-Based blocking such as Entra Smart lockout.
pgAdmin (<=8.3) Path Traversal in Session Handling Leads to Unsafe Deserialization and Remote Code Execution (RCE) - Shielder
https://ift.tt/GCkWRBI
Submitted March 08, 2024 at 07:27PM by smaury
via reddit https://ift.tt/9o6ePUA
https://ift.tt/GCkWRBI
Submitted March 08, 2024 at 07:27PM by smaury
via reddit https://ift.tt/9o6ePUA
Shielder
Shielder - pgAdmin (<=8.3) Path Traversal in Session Handling Leads to Unsafe Deserialization and Remote Code Execution (RCE)
pgAdmin <= 8.3 is affected by a path-traversal vulnerability while deserializing user's session in the session handling code. If the server is running on Windows, an unauthenticated attacker can load and deserialize remote pickle objects and gain code execution.…
Docker containers under attack in new malware campaign
https://ift.tt/sP7RCOS
Submitted March 08, 2024 at 09:00PM by ShadowStackRE
via reddit https://ift.tt/XUG5Mz4
https://ift.tt/sP7RCOS
Submitted March 08, 2024 at 09:00PM by ShadowStackRE
via reddit https://ift.tt/XUG5Mz4
Behind the doors of a Chinese hacking company, a sordid culture fuelled by influence, alcohol and sex
https://ift.tt/vs4WFj8
Submitted March 09, 2024 at 03:15AM by nexxai
via reddit https://ift.tt/QiqPAa5
https://ift.tt/vs4WFj8
Submitted March 09, 2024 at 03:15AM by nexxai
via reddit https://ift.tt/QiqPAa5
CTVNews
Behind the doors of a Chinese hacking company, a sordid culture fuelled by influence, alcohol and sex
A highly unusual leak last month of internal documents from a private contractor linked to China's government and police revealed the sordid wheeling and dealing that takes place behind the scenes in China's hacking industry.