Social Minefield - a higher stakes game of Minesweeper using Clickjacking
https://ift.tt/LYECBOf
Submitted March 18, 2024 at 04:42PM by pnappa
via reddit https://ift.tt/rHUepat
https://ift.tt/LYECBOf
Submitted March 18, 2024 at 04:42PM by pnappa
via reddit https://ift.tt/rHUepat
Gaining kernel code execution on an MTE-enabled Pixel 8
https://ift.tt/YkB3169
Submitted March 19, 2024 at 09:32AM by netsec_burn
via reddit https://ift.tt/xDoGXBa
https://ift.tt/YkB3169
Submitted March 19, 2024 at 09:32AM by netsec_burn
via reddit https://ift.tt/xDoGXBa
The GitHub Blog
Gaining kernel code execution on an MTE-enabled Pixel 8
In this post, I’ll look at CVE-2023-6241, a vulnerability in the Arm Mali GPU that allows a malicious app to gain arbitrary kernel code execution and root on an Android phone. I’ll show how this vulnerability can be exploited even when Memory Tagging Extension…
Bypassing USBGuard on Linux
https://ift.tt/Yclyptn
Submitted March 19, 2024 at 12:04PM by MysteriousHotel3017
via reddit https://ift.tt/CRISBc8
https://ift.tt/Yclyptn
Submitted March 19, 2024 at 12:04PM by MysteriousHotel3017
via reddit https://ift.tt/CRISBc8
Pulse Security
Bypassing USBGuard on Linux
Configuring USBGuard without explicitly specifying vendor and product IDs allows an attacker to bypass some USB authorisation policies on Linux.
Exploit Development: No Code Execution? No Problem! Living The Age of VBS, HVCI, and Kernel CFG
https://ift.tt/grTUAEK
Submitted March 19, 2024 at 11:39AM by oil_sardine
via reddit https://ift.tt/z0FBJbr
https://ift.tt/grTUAEK
Submitted March 19, 2024 at 11:39AM by oil_sardine
via reddit https://ift.tt/z0FBJbr
Home
Exploit Development: No Code Execution? No Problem! Living The Age of VBS, HVCI, and Kernel CFG
Dealing with Virtualization-Based Security (VBS), Hypervisor-Protected Code Integrity (HVCI), and Kernel Control Flow Guard (kCFG).
Microsoft AITM honeytoken: warning the victims
https://ift.tt/2p8dzwv
Submitted March 19, 2024 at 04:58PM by wez32
via reddit https://ift.tt/V5Ais0d
https://ift.tt/2p8dzwv
Submitted March 19, 2024 at 04:58PM by wez32
via reddit https://ift.tt/V5Ais0d
Zolder - Applied Security Research
Microsoft AITM honeytoken: warning the victims | Zolder - Applied Security Research
In January we launched new functionality for Attic to detect AiTM attacks targeting the Microsoft 365 tenant of customers. Using the platform of didsomeoneclone.me and custom...
How Rogue ISPs Tamper With Geofeeds
https://ift.tt/HzQTBM2
Submitted March 19, 2024 at 07:25PM by OwnPreparation3424
via reddit https://ift.tt/JZyU7z5
https://ift.tt/HzQTBM2
Submitted March 19, 2024 at 07:25PM by OwnPreparation3424
via reddit https://ift.tt/JZyU7z5
Medium
How Rogue ISPs Tamper With Geofeeds
Geofeeds allow ISPs to publish information on the physical location of their networks. But what if a rogue ISP puts false information in…
Weaponizing Windows Thread Pool APIs: Proxying DLL Loads Using I/O Completion Callbacks
https://ift.tt/NYlqyPD
Submitted March 19, 2024 at 06:54PM by fin3ss3g0d
via reddit https://ift.tt/kyL5icz
https://ift.tt/NYlqyPD
Submitted March 19, 2024 at 06:54PM by fin3ss3g0d
via reddit https://ift.tt/kyL5icz
From Error to Entry: Cracking the Code of Password-Spraying Tools - Discovery around the handling of AADSTS50079 error message in Password spraying tools. This error has changed over the years from Microsoft and does not longer mean that MFA is in use, it actually means that MFA must be onboarded
https://ift.tt/iGaSLgB
Submitted March 19, 2024 at 08:38PM by oddvarmoe
via reddit https://ift.tt/y9md8qf
https://ift.tt/iGaSLgB
Submitted March 19, 2024 at 08:38PM by oddvarmoe
via reddit https://ift.tt/y9md8qf
TrustedSec
From Error to Entry: Cracking the Code of Password-Spraying Tools
Discover how to effectively onboard MFA for Office 365 users with MSOLSpray, and unlock remote access with our expert guide.
From Error to Entry: Cracking the Code of Password-Spraying Tools
https://ift.tt/iGaSLgB
Submitted March 19, 2024 at 10:35PM by oddvarmoe
via reddit https://ift.tt/ovd86tj
https://ift.tt/iGaSLgB
Submitted March 19, 2024 at 10:35PM by oddvarmoe
via reddit https://ift.tt/ovd86tj
TrustedSec
From Error to Entry: Cracking the Code of Password-Spraying Tools
Discover how to effectively onboard MFA for Office 365 users with MSOLSpray, and unlock remote access with our expert guide.
CVE-2024-1212: Unauthenticated Command Injection In Progress Kemp LoadMaster
https://ift.tt/oY0Agz9
Submitted March 19, 2024 at 10:13PM by hackers_and_builders
via reddit https://ift.tt/W03rbsD
https://ift.tt/oY0Agz9
Submitted March 19, 2024 at 10:13PM by hackers_and_builders
via reddit https://ift.tt/W03rbsD
Rhino Security Labs
CVE-2024-1212: Unauthenticated Command Injection In Progress Kemp LoadMaster
CVE-2024-1212 is an unauthenticated command injection found in Progress Kemp LoadMaster load balancer's administrator web interface by Rhino Security Labs.
New Short Episode Podcast ft. Insane Stories from Real Penetration Tests
https://www.youtube.com/watch?v=85tMZ_8m7wc&list=PLRQLxipnETnkricBrUexOIM6IUqApdVCe&index=2
Submitted March 19, 2024 at 10:43PM by hpo1n7
via reddit https://ift.tt/ymhYZcl
https://www.youtube.com/watch?v=85tMZ_8m7wc&list=PLRQLxipnETnkricBrUexOIM6IUqApdVCe&index=2
Submitted March 19, 2024 at 10:43PM by hpo1n7
via reddit https://ift.tt/ymhYZcl
YouTube
Episode 1: "Then we got arrested" ft. Matt Barnett
Zac Davis hosts War Stories, a podcast featuring stories from real life penetration testers. Zac covers their background, favorite tools, and stories that define their career.
Sponsored by Cyber Coffee. Real hackers need real caffeine.
www.sevnx.com/shop
Sponsored by Cyber Coffee. Real hackers need real caffeine.
www.sevnx.com/shop
How to Emulate a Ransomware Attack
https://ift.tt/c5IZoE1
Submitted March 20, 2024 at 03:21AM by pracsec
via reddit https://ift.tt/gC4OcUR
https://ift.tt/c5IZoE1
Submitted March 20, 2024 at 03:21AM by pracsec
via reddit https://ift.tt/gC4OcUR
Practical Security Analytics LLC
How to Emulate a Ransomware Attack
Overview Ransomware is here to stay and cyber security professionals need to be trained to prevent, detect, respond, and recover from ransomeware attacks. So, how do we do that in an ethical and re…
Open Source - Terminal based AI Powered Ethical Hacking Assistant.
https://ift.tt/qGVhexY
Submitted March 20, 2024 at 03:56AM by Civil_Alternative410
via reddit https://ift.tt/8wHlTap
https://ift.tt/qGVhexY
Submitted March 20, 2024 at 03:56AM by Civil_Alternative410
via reddit https://ift.tt/8wHlTap
GitHub
GitHub - berylliumsec/neutron: AI Powered Terminal Based Ethical Hacking Assistant
AI Powered Terminal Based Ethical Hacking Assistant - berylliumsec/neutron
Honeypots vs Canary Infra : Bringing Honeypots towards general adoption
https://ift.tt/WrbUz5x
Submitted March 20, 2024 at 06:23PM by tracebit
via reddit https://ift.tt/xUNbAoV
https://ift.tt/WrbUz5x
Submitted March 20, 2024 at 06:23PM by tracebit
via reddit https://ift.tt/xUNbAoV
Tracebit
Canary Infra: Bringing Honeypots towards general adoption | Tracebit
Laying out why we think 'Canary Infra' is a game changer for honeypots and intrusion detection.
Abusing the DHCP Administrators Group to Escalate Privileges in Windows Domains
https://ift.tt/WHeMz28
Submitted March 20, 2024 at 07:59PM by oridavid1231
via reddit https://ift.tt/q0j9Kk6
https://ift.tt/WHeMz28
Submitted March 20, 2024 at 07:59PM by oridavid1231
via reddit https://ift.tt/q0j9Kk6
Akamai
Abusing the DHCP Administrators Group to Escalate Privileges in Windows Domains | Akamai
A new malicious privilege escalation technique can be disastrous. In this post, get context and defensive measures against this threat.
Threat actors leverage document publishing sites for ongoing credential and session token theft
https://ift.tt/FPm5YRi
Submitted March 20, 2024 at 10:06PM by 8bit_zach
via reddit https://ift.tt/mZlYbh3
https://ift.tt/FPm5YRi
Submitted March 20, 2024 at 10:06PM by 8bit_zach
via reddit https://ift.tt/mZlYbh3
Cisco Talos Blog
Threat actors leverage document publishing sites for ongoing credential and session token theft
Talos IR has responded to several recent incidents in which threat actors used legitimate digital document publishing sites such as Publuu and Marq to host phishing documents as part of ongoing credential and session harvesting attacks.
One Line Backdoors in Classic ASP, Flask, Node.js, and PHP (FOSS Tool)
https://ift.tt/E14Ou6D
Submitted March 21, 2024 at 03:18AM by SkrilHexNukehul
via reddit https://ift.tt/cF2zp6X
https://ift.tt/E14Ou6D
Submitted March 21, 2024 at 03:18AM by SkrilHexNukehul
via reddit https://ift.tt/cF2zp6X
GitHub
GitHub - Geeoon/asploit: One line command and control backdoors for APIs and web applications.
One line command and control backdoors for APIs and web applications. - Geeoon/asploit
GitHub - riza/indextree: Generates the tree of the directory listing page.
https://ift.tt/bcFtVRL
Submitted March 21, 2024 at 01:49PM by rjz4
via reddit https://ift.tt/lwcaJgu
https://ift.tt/bcFtVRL
Submitted March 21, 2024 at 01:49PM by rjz4
via reddit https://ift.tt/lwcaJgu
GitHub
GitHub - riza/indextree: Generates the tree of the directory listing page.
Generates the tree of the directory listing page. Contribute to riza/indextree development by creating an account on GitHub.
OpenBSD RCE to be released at t2.fi
https://ift.tt/wRG598L
Submitted March 21, 2024 at 06:24PM by nextgens
via reddit https://ift.tt/dGYDV8U
https://ift.tt/wRG598L
Submitted March 21, 2024 at 06:24PM by nextgens
via reddit https://ift.tt/dGYDV8U
CVE-2023-48788: Fortinet FortiClientEMS SQL Injection Deep Dive and IOCs
https://ift.tt/pR5K0ht
Submitted March 21, 2024 at 06:14PM by scopedsecurity
via reddit https://ift.tt/C53ytGQ
https://ift.tt/pR5K0ht
Submitted March 21, 2024 at 06:14PM by scopedsecurity
via reddit https://ift.tt/C53ytGQ
Horizon3.ai
CVE-2023-48788: Fortinet FortiClient EMS SQL Injection Deep Dive
CVE-2023-48788 Fortinet FortiClient EMS SQL Injection Deep-Dive and Indicators of Compromise. This blog details the SQL injection which allows an unauthenticated attacker to access the FortiClient EMS server as SYSTEM to execute arbitrary commands.
Unsaflok: Master Keys for dormakaba Saflok Hotel Locks
https://unsaflok.com/
Submitted March 21, 2024 at 10:37PM by netsec_burn
via reddit https://ift.tt/4nLKMr1
https://unsaflok.com/
Submitted March 21, 2024 at 10:37PM by netsec_burn
via reddit https://ift.tt/4nLKMr1
Reddit
From the netsec community on Reddit: Unsaflok: Master Keys for dormakaba Saflok Hotel Locks
Posted by netsec_burn - 15 votes and 0 comments