Decoding ScamClub’s Malicious VAST Attack
https://ift.tt/0Yy7lRu
Submitted March 12, 2024 at 08:59PM by moriya_pedael
via reddit https://ift.tt/0DPVz1f
https://ift.tt/0Yy7lRu
Submitted March 12, 2024 at 08:59PM by moriya_pedael
via reddit https://ift.tt/0DPVz1f
GeoEdge
Decoding ScamClub’s Malicious VAST Attack
ScamClub, a notorious threat actor, has shifted its focus towards video malvertising assaults, resulting in a surge in VAST forced redirect volumes since February 11, 2024. According to GeoEdge security research, upwards of a dozen SSPs and DSPs have fallen…
GhostRace - Exploiting and Mitigating Speculative Race Conditions (CVE-2024-2193)
https://ift.tt/I2abWHO
Submitted March 13, 2024 at 02:11AM by LordAlfredo
via reddit https://ift.tt/ZtrCpX3
https://ift.tt/I2abWHO
Submitted March 13, 2024 at 02:11AM by LordAlfredo
via reddit https://ift.tt/ZtrCpX3
vusec
GhostRace - vusec
Exploiting and Mitigating Speculative Race Conditions GhostRace: CVE-2024-2193 Race conditions arise when multiple threads attempt to access a shared resource without proper synchronization, often leading to vulnerabilities such as concurrent use-after-free.…
Unveiling the Ultimate Pentesting Distro: Perfectly Tailored for Ubuntu Aficionados!
https://ift.tt/MTF3vQL
Submitted March 13, 2024 at 02:07AM by snoopgodlinux
via reddit https://ift.tt/chAxo6F
https://ift.tt/MTF3vQL
Submitted March 13, 2024 at 02:07AM by snoopgodlinux
via reddit https://ift.tt/chAxo6F
Download
Discover SnoopGod, the open-source security-oriented OS based on Ubuntu. With 800+ pre-installed tools, it
Google's 'BeyondCorp and the long tail of Zero Trust' article
https://ift.tt/pSm2kxI
Submitted March 13, 2024 at 04:29PM by PhilipLGriffiths88
via reddit https://ift.tt/dr07GgJ
https://ift.tt/pSm2kxI
Submitted March 13, 2024 at 04:29PM by PhilipLGriffiths88
via reddit https://ift.tt/dr07GgJ
USENIX
BeyondCorp and the long tail of Zero Trust
Donex a new ransomware gang malware technical analysis
https://ift.tt/eEiIynK
Submitted March 13, 2024 at 05:25PM by ShadowStackRE
via reddit https://ift.tt/ulxgRe6
https://ift.tt/eEiIynK
Submitted March 13, 2024 at 05:25PM by ShadowStackRE
via reddit https://ift.tt/ulxgRe6
ShadowStackRE
Donex a new ransomware gang — ShadowStackRE
Donex, A new ransomware gang on the scene with a capable Windows based encryptor.
Building an AITM attack tool in Cloudflare Workers (174 LOC)
https://ift.tt/DBZTlgh
Submitted March 13, 2024 at 07:29PM by wez32
via reddit https://ift.tt/GKej4dQ
https://ift.tt/DBZTlgh
Submitted March 13, 2024 at 07:29PM by wez32
via reddit https://ift.tt/GKej4dQ
Zolder B.V.
Building an AITM attack tool in Cloudflare Workers (174 LOC)
In January we launched new functionality for Attic to detect AiTM attacks targeting the Microsoft 365 tenant of customers. Using the platform of didsomeoneclone.me and custom CSS in the Microsoft l…
A case of missing bytes: bruteforcing your way through Jenkins’ CVE-2024-23897
https://ift.tt/ZPhorIQ
Submitted March 13, 2024 at 10:32PM by gquere
via reddit https://ift.tt/4ZqT3jB
https://ift.tt/ZPhorIQ
Submitted March 13, 2024 at 10:32PM by gquere
via reddit https://ift.tt/4ZqT3jB
Threat Modeling on a Virtual Factory Floor
https://ift.tt/BUVcRh4
Submitted March 13, 2024 at 10:31PM by derp6996
via reddit https://ift.tt/VWP3I6F
https://ift.tt/BUVcRh4
Submitted March 13, 2024 at 10:31PM by derp6996
via reddit https://ift.tt/VWP3I6F
Claroty
Threat Modeling Industrial Environments Using A Virtual Factory (Part 1)
Claroty Team82 has built a virtual factory environment in order to help cybersecurity defenders visualize dependencies between components on a factory floor, and also threat model in an industrial setting.
Discovering Deserialization Gadget Chains in Rubyland - Include Security Research Blog
https://ift.tt/BEPldfT
Submitted March 14, 2024 at 12:45AM by 907jessejones
via reddit https://ift.tt/WJ1Cjly
https://ift.tt/BEPldfT
Submitted March 14, 2024 at 12:45AM by 907jessejones
via reddit https://ift.tt/WJ1Cjly
Include Security Research Blog
Discovering Deserialization Gadget Chains in Rubyland - Include Security Research Blog
If you have ever looked at the source code of a Ruby deserialization gadget chain, I bet you've thought "what sorcery is this"?
Researchers trying offensive capabilities of LLM agents
https://ift.tt/9sWFAQq
Submitted March 14, 2024 at 10:21AM by OtojonXudayarov
via reddit https://ift.tt/08jfLBE
https://ift.tt/9sWFAQq
Submitted March 14, 2024 at 10:21AM by OtojonXudayarov
via reddit https://ift.tt/08jfLBE
arXiv.org
LLM Agents can Autonomously Hack Websites
In recent years, large language models (LLMs) have become increasingly capable and can now interact with tools (i.e., call functions), read documents, and recursively call themselves. As a result,...
Microsoft Entra ID: The Complete Guide to Conditional Access Policies
https://ift.tt/dSG7MD5
Submitted March 14, 2024 at 02:30PM by Or1rez
via reddit https://ift.tt/Re4CuY8
https://ift.tt/dSG7MD5
Submitted March 14, 2024 at 02:30PM by Or1rez
via reddit https://ift.tt/Re4CuY8
Rezonate - Protect Identities, Everywhere
Microsoft Entra ID: The Complete Guide to Conditional Access Policies - Rezonate
Here it is - everything you need to know about using Entra ID's Conditional Access policies to boost your identity security posture.
Fortinet FortiWLM Multiple Vulnerabilities Deep-Dive and IOCs
https://ift.tt/MiEHZCp
Submitted March 14, 2024 at 07:00PM by scopedsecurity
via reddit https://ift.tt/F96Qtzw
https://ift.tt/MiEHZCp
Submitted March 14, 2024 at 07:00PM by scopedsecurity
via reddit https://ift.tt/F96Qtzw
Horizon3.ai
Fortinet FortiWLM Deep-Dive, IOCs, and the Almost Story of the “Forti Forty”
FortiWLM Deep Dive and Indicators of Compromise. This blog details the discovery of many critical security issues such as RCE, SQLi, and file reads leading to full device compromise. CVE-2023-34993, CVE-2023-34991, CVE-2023-42783, CVE-2023-34989.
IoT Penetration Testing Part 1: The Basics
https://ift.tt/mTchAok
Submitted March 14, 2024 at 06:49PM by needmorejava
via reddit https://ift.tt/cp6BfME
https://ift.tt/mTchAok
Submitted March 14, 2024 at 06:49PM by needmorejava
via reddit https://ift.tt/cp6BfME
The Anatomy of an ALPHA SPIDER Ransomware Attack
https://ift.tt/kNmLPoh
Submitted March 14, 2024 at 06:23PM by Due_Spare_6458
via reddit https://ift.tt/lH6i0EN
https://ift.tt/kNmLPoh
Submitted March 14, 2024 at 06:23PM by Due_Spare_6458
via reddit https://ift.tt/lH6i0EN
crowdstrike.com
The Anatomy of an ALPHA SPIDER Ransomware Attack
Read this blog on the anatomy of an ALPHA SPIDER ransomware attack to better understand how they operate and how to better protect your business.
Oauth implementation flaws allow access to private repos via ChatGPT plugins
https://ift.tt/U5rEtpX
Submitted March 15, 2024 at 02:18AM by ScottContini
via reddit https://ift.tt/pSQ0Nk2
https://ift.tt/U5rEtpX
Submitted March 15, 2024 at 02:18AM by ScottContini
via reddit https://ift.tt/pSQ0Nk2
salt.security
ChatGPT Vulnerability - Security Flaws within ChatGPT
Salt Labs researchers identified vulnerabilities in the ChatGPT ecosystem that could have granted access to accounts of users and sensitive data.
[Blog and Video] Turnstiles from a hacker perspective - Part 1
https://ift.tt/6WNGDIQ
Submitted March 15, 2024 at 05:52AM by NoUserAvailableLOL
via reddit https://ift.tt/AbuORZk
https://ift.tt/6WNGDIQ
Submitted March 15, 2024 at 05:52AM by NoUserAvailableLOL
via reddit https://ift.tt/AbuORZk
PRIDE Security Blog
Turnstiles from a hacker perspective - Part 1
Attacking face recognition, lock bumping and physical security design issue
Disclaimer
This Security Advisory is provided on an "as is" basis and do not imply any kind of guarantee or warranty. Your use of the information in this publication or linked…
Disclaimer
This Security Advisory is provided on an "as is" basis and do not imply any kind of guarantee or warranty. Your use of the information in this publication or linked…
A Look at Software Composition Analysis. It’s time to ignore most of dependency alerts.
https://ift.tt/ErfIbS5
Submitted March 15, 2024 at 08:03PM by nibblesec
via reddit https://ift.tt/K7Rw4Pk
https://ift.tt/ErfIbS5
Submitted March 15, 2024 at 08:03PM by nibblesec
via reddit https://ift.tt/K7Rw4Pk
Opening Pandora’s box - Supply Chain Insider Threats in Open Source projects
https://ift.tt/woBcxsT
Submitted March 15, 2024 at 11:11PM by fproulx
via reddit https://ift.tt/ExpcsDh
https://ift.tt/woBcxsT
Submitted March 15, 2024 at 11:11PM by fproulx
via reddit https://ift.tt/ExpcsDh
boostsecurity.io
Opening Pandora’s box - Supply Chain Insider Threats in Open Source projects
Granting "Write" access in an Open Source repo is a high-stakes decision. We discuss risks of insider threats, using a responsible disclosure for the AWS Karpenter project. Strict safeguards are essential, especially for release artifacts. Also GitHub lacks…
Two Bytes is Plenty: FortiGate RCE with CVE-2024-21762
https://ift.tt/VNfhCqM
Submitted March 17, 2024 at 06:27AM by Mempodipper
via reddit https://ift.tt/rgUfICV
https://ift.tt/VNfhCqM
Submitted March 17, 2024 at 06:27AM by Mempodipper
via reddit https://ift.tt/rgUfICV
www.assetnote.io
Two Bytes is Plenty: FortiGate RCE with CVE-2024-21762
Early this February, Fortinet released an advisory for an "out-of-bounds write vulnerability" that could lead to remote code execution. The issue affected the SSL VPN component of their FortiGate network appliance and was potentially already being exploited…
De4py Python RE Toolkit: v1.0.8 has been released
https://ift.tt/kDvb3uw
Submitted March 17, 2024 at 06:26PM by AhmedMinegames
via reddit https://ift.tt/RLzsHNw
https://ift.tt/kDvb3uw
Submitted March 17, 2024 at 06:26PM by AhmedMinegames
via reddit https://ift.tt/RLzsHNw
GitHub
Release v1.0.8 · Fadi002/de4py
Features added:
* Error reporting
* Stealth windows noscripts mode
* Stealth injection mode
* PYC dumper runtime
* Added deobfuscator for development tools obfuscator
* Fixed some bugs
* Added installer
* Error reporting
* Stealth windows noscripts mode
* Stealth injection mode
* PYC dumper runtime
* Added deobfuscator for development tools obfuscator
* Fixed some bugs
* Added installer
Analyzing Pipedream / Incontroller with MITRE/STIX
https://ift.tt/VgvWE5D
Submitted March 17, 2024 at 07:45PM by DiabloHorn
via reddit https://ift.tt/nXqu6GZ
https://ift.tt/VgvWE5D
Submitted March 17, 2024 at 07:45PM by DiabloHorn
via reddit https://ift.tt/nXqu6GZ
DiabloHorn
Analyzing Pipedream / Incontroller with MITRE/STIX
This blog post is intended to further practice with MITRE data as well as understand some OT attack techniques implemented by OT malware. For this we are going to look at Pipedream (researched by D…