A case of missing bytes: bruteforcing your way through Jenkins’ CVE-2024-23897
https://ift.tt/ZPhorIQ
Submitted March 13, 2024 at 10:32PM by gquere
via reddit https://ift.tt/4ZqT3jB
https://ift.tt/ZPhorIQ
Submitted March 13, 2024 at 10:32PM by gquere
via reddit https://ift.tt/4ZqT3jB
Threat Modeling on a Virtual Factory Floor
https://ift.tt/BUVcRh4
Submitted March 13, 2024 at 10:31PM by derp6996
via reddit https://ift.tt/VWP3I6F
https://ift.tt/BUVcRh4
Submitted March 13, 2024 at 10:31PM by derp6996
via reddit https://ift.tt/VWP3I6F
Claroty
Threat Modeling Industrial Environments Using A Virtual Factory (Part 1)
Claroty Team82 has built a virtual factory environment in order to help cybersecurity defenders visualize dependencies between components on a factory floor, and also threat model in an industrial setting.
Discovering Deserialization Gadget Chains in Rubyland - Include Security Research Blog
https://ift.tt/BEPldfT
Submitted March 14, 2024 at 12:45AM by 907jessejones
via reddit https://ift.tt/WJ1Cjly
https://ift.tt/BEPldfT
Submitted March 14, 2024 at 12:45AM by 907jessejones
via reddit https://ift.tt/WJ1Cjly
Include Security Research Blog
Discovering Deserialization Gadget Chains in Rubyland - Include Security Research Blog
If you have ever looked at the source code of a Ruby deserialization gadget chain, I bet you've thought "what sorcery is this"?
Researchers trying offensive capabilities of LLM agents
https://ift.tt/9sWFAQq
Submitted March 14, 2024 at 10:21AM by OtojonXudayarov
via reddit https://ift.tt/08jfLBE
https://ift.tt/9sWFAQq
Submitted March 14, 2024 at 10:21AM by OtojonXudayarov
via reddit https://ift.tt/08jfLBE
arXiv.org
LLM Agents can Autonomously Hack Websites
In recent years, large language models (LLMs) have become increasingly capable and can now interact with tools (i.e., call functions), read documents, and recursively call themselves. As a result,...
Microsoft Entra ID: The Complete Guide to Conditional Access Policies
https://ift.tt/dSG7MD5
Submitted March 14, 2024 at 02:30PM by Or1rez
via reddit https://ift.tt/Re4CuY8
https://ift.tt/dSG7MD5
Submitted March 14, 2024 at 02:30PM by Or1rez
via reddit https://ift.tt/Re4CuY8
Rezonate - Protect Identities, Everywhere
Microsoft Entra ID: The Complete Guide to Conditional Access Policies - Rezonate
Here it is - everything you need to know about using Entra ID's Conditional Access policies to boost your identity security posture.
Fortinet FortiWLM Multiple Vulnerabilities Deep-Dive and IOCs
https://ift.tt/MiEHZCp
Submitted March 14, 2024 at 07:00PM by scopedsecurity
via reddit https://ift.tt/F96Qtzw
https://ift.tt/MiEHZCp
Submitted March 14, 2024 at 07:00PM by scopedsecurity
via reddit https://ift.tt/F96Qtzw
Horizon3.ai
Fortinet FortiWLM Deep-Dive, IOCs, and the Almost Story of the “Forti Forty”
FortiWLM Deep Dive and Indicators of Compromise. This blog details the discovery of many critical security issues such as RCE, SQLi, and file reads leading to full device compromise. CVE-2023-34993, CVE-2023-34991, CVE-2023-42783, CVE-2023-34989.
IoT Penetration Testing Part 1: The Basics
https://ift.tt/mTchAok
Submitted March 14, 2024 at 06:49PM by needmorejava
via reddit https://ift.tt/cp6BfME
https://ift.tt/mTchAok
Submitted March 14, 2024 at 06:49PM by needmorejava
via reddit https://ift.tt/cp6BfME
The Anatomy of an ALPHA SPIDER Ransomware Attack
https://ift.tt/kNmLPoh
Submitted March 14, 2024 at 06:23PM by Due_Spare_6458
via reddit https://ift.tt/lH6i0EN
https://ift.tt/kNmLPoh
Submitted March 14, 2024 at 06:23PM by Due_Spare_6458
via reddit https://ift.tt/lH6i0EN
crowdstrike.com
The Anatomy of an ALPHA SPIDER Ransomware Attack
Read this blog on the anatomy of an ALPHA SPIDER ransomware attack to better understand how they operate and how to better protect your business.
Oauth implementation flaws allow access to private repos via ChatGPT plugins
https://ift.tt/U5rEtpX
Submitted March 15, 2024 at 02:18AM by ScottContini
via reddit https://ift.tt/pSQ0Nk2
https://ift.tt/U5rEtpX
Submitted March 15, 2024 at 02:18AM by ScottContini
via reddit https://ift.tt/pSQ0Nk2
salt.security
ChatGPT Vulnerability - Security Flaws within ChatGPT
Salt Labs researchers identified vulnerabilities in the ChatGPT ecosystem that could have granted access to accounts of users and sensitive data.
[Blog and Video] Turnstiles from a hacker perspective - Part 1
https://ift.tt/6WNGDIQ
Submitted March 15, 2024 at 05:52AM by NoUserAvailableLOL
via reddit https://ift.tt/AbuORZk
https://ift.tt/6WNGDIQ
Submitted March 15, 2024 at 05:52AM by NoUserAvailableLOL
via reddit https://ift.tt/AbuORZk
PRIDE Security Blog
Turnstiles from a hacker perspective - Part 1
Attacking face recognition, lock bumping and physical security design issue
Disclaimer
This Security Advisory is provided on an "as is" basis and do not imply any kind of guarantee or warranty. Your use of the information in this publication or linked…
Disclaimer
This Security Advisory is provided on an "as is" basis and do not imply any kind of guarantee or warranty. Your use of the information in this publication or linked…
A Look at Software Composition Analysis. It’s time to ignore most of dependency alerts.
https://ift.tt/ErfIbS5
Submitted March 15, 2024 at 08:03PM by nibblesec
via reddit https://ift.tt/K7Rw4Pk
https://ift.tt/ErfIbS5
Submitted March 15, 2024 at 08:03PM by nibblesec
via reddit https://ift.tt/K7Rw4Pk
Opening Pandora’s box - Supply Chain Insider Threats in Open Source projects
https://ift.tt/woBcxsT
Submitted March 15, 2024 at 11:11PM by fproulx
via reddit https://ift.tt/ExpcsDh
https://ift.tt/woBcxsT
Submitted March 15, 2024 at 11:11PM by fproulx
via reddit https://ift.tt/ExpcsDh
boostsecurity.io
Opening Pandora’s box - Supply Chain Insider Threats in Open Source projects
Granting "Write" access in an Open Source repo is a high-stakes decision. We discuss risks of insider threats, using a responsible disclosure for the AWS Karpenter project. Strict safeguards are essential, especially for release artifacts. Also GitHub lacks…
Two Bytes is Plenty: FortiGate RCE with CVE-2024-21762
https://ift.tt/VNfhCqM
Submitted March 17, 2024 at 06:27AM by Mempodipper
via reddit https://ift.tt/rgUfICV
https://ift.tt/VNfhCqM
Submitted March 17, 2024 at 06:27AM by Mempodipper
via reddit https://ift.tt/rgUfICV
www.assetnote.io
Two Bytes is Plenty: FortiGate RCE with CVE-2024-21762
Early this February, Fortinet released an advisory for an "out-of-bounds write vulnerability" that could lead to remote code execution. The issue affected the SSL VPN component of their FortiGate network appliance and was potentially already being exploited…
De4py Python RE Toolkit: v1.0.8 has been released
https://ift.tt/kDvb3uw
Submitted March 17, 2024 at 06:26PM by AhmedMinegames
via reddit https://ift.tt/RLzsHNw
https://ift.tt/kDvb3uw
Submitted March 17, 2024 at 06:26PM by AhmedMinegames
via reddit https://ift.tt/RLzsHNw
GitHub
Release v1.0.8 · Fadi002/de4py
Features added:
* Error reporting
* Stealth windows noscripts mode
* Stealth injection mode
* PYC dumper runtime
* Added deobfuscator for development tools obfuscator
* Fixed some bugs
* Added installer
* Error reporting
* Stealth windows noscripts mode
* Stealth injection mode
* PYC dumper runtime
* Added deobfuscator for development tools obfuscator
* Fixed some bugs
* Added installer
Analyzing Pipedream / Incontroller with MITRE/STIX
https://ift.tt/VgvWE5D
Submitted March 17, 2024 at 07:45PM by DiabloHorn
via reddit https://ift.tt/nXqu6GZ
https://ift.tt/VgvWE5D
Submitted March 17, 2024 at 07:45PM by DiabloHorn
via reddit https://ift.tt/nXqu6GZ
DiabloHorn
Analyzing Pipedream / Incontroller with MITRE/STIX
This blog post is intended to further practice with MITRE data as well as understand some OT attack techniques implemented by OT malware. For this we are going to look at Pipedream (researched by D…
jsmug - A PoC code for smuggling arbitrary files using insignificant bytes through JSON Smuggling
https://ift.tt/ktDsgTz
Submitted March 18, 2024 at 03:54AM by xscorp7
via reddit https://ift.tt/I1vu7XF
https://ift.tt/ktDsgTz
Submitted March 18, 2024 at 03:54AM by xscorp7
via reddit https://ift.tt/I1vu7XF
GitHub
GitHub - xscorp/jsmug: A PoC code for JSON Smuggling technique to smuggle arbitrary files through JSON
A PoC code for JSON Smuggling technique to smuggle arbitrary files through JSON - xscorp/jsmug
Blind SQL Injection in update query for OSWE - PostgreSQL Database
https://ift.tt/LF9D0QC
Submitted March 18, 2024 at 10:25AM by 1046ica
via reddit https://ift.tt/4lygnfv
https://ift.tt/LF9D0QC
Submitted March 18, 2024 at 10:25AM by 1046ica
via reddit https://ift.tt/4lygnfv
www.mannulinux.org
Blind SQL Injection in update query for OSWE - PostgreSQL Database
Learn Basic Concepts of Linux. Best site to learn Linux from beginner to Advanced.
Return Oriented Programming Buffer Overflow Exploitation Part 1 - In Lab Exercise
https://ift.tt/QBA1Igm
Submitted March 18, 2024 at 11:59AM by Accomplished-Mud1210
via reddit https://ift.tt/F6Enfw7
https://ift.tt/QBA1Igm
Submitted March 18, 2024 at 11:59AM by Accomplished-Mud1210
via reddit https://ift.tt/F6Enfw7
RingBuffer's Blog
Return Oriented Programming – Buffer Overflow Part 1 – RingBuffer's Blog
Return Oriented Programming Buffer Overflow Attack Demonstration
Social Minefield - a higher stakes game of Minesweeper using Clickjacking
https://ift.tt/LYECBOf
Submitted March 18, 2024 at 04:42PM by pnappa
via reddit https://ift.tt/rHUepat
https://ift.tt/LYECBOf
Submitted March 18, 2024 at 04:42PM by pnappa
via reddit https://ift.tt/rHUepat
Gaining kernel code execution on an MTE-enabled Pixel 8
https://ift.tt/YkB3169
Submitted March 19, 2024 at 09:32AM by netsec_burn
via reddit https://ift.tt/xDoGXBa
https://ift.tt/YkB3169
Submitted March 19, 2024 at 09:32AM by netsec_burn
via reddit https://ift.tt/xDoGXBa
The GitHub Blog
Gaining kernel code execution on an MTE-enabled Pixel 8
In this post, I’ll look at CVE-2023-6241, a vulnerability in the Arm Mali GPU that allows a malicious app to gain arbitrary kernel code execution and root on an Android phone. I’ll show how this vulnerability can be exploited even when Memory Tagging Extension…
Bypassing USBGuard on Linux
https://ift.tt/Yclyptn
Submitted March 19, 2024 at 12:04PM by MysteriousHotel3017
via reddit https://ift.tt/CRISBc8
https://ift.tt/Yclyptn
Submitted March 19, 2024 at 12:04PM by MysteriousHotel3017
via reddit https://ift.tt/CRISBc8
Pulse Security
Bypassing USBGuard on Linux
Configuring USBGuard without explicitly specifying vendor and product IDs allows an attacker to bypass some USB authorisation policies on Linux.