Flipping Pages: An analysis of a new Linux vulnerability in nf_tables and hardened exploitation techniques
https://ift.tt/oA30QhP
Submitted March 27, 2024 at 10:15AM by Soggy_Sally
via reddit https://ift.tt/wISFybh
https://ift.tt/oA30QhP
Submitted March 27, 2024 at 10:15AM by Soggy_Sally
via reddit https://ift.tt/wISFybh
Pwning Tech
Flipping Pages: An analysis of a new Linux vulnerability in nf_tables and hardened exploitation techniques
A tale about exploiting KernelCTF Mitigation, Debian, and Ubuntu instances with a double-free in nf_tables in the Linux kernel, using novel techniques like Dirty Pagedirectory. All without even having to recompile the exploit for different kernel targets…
Reversing a vulnerability in the Ichitaro Office Suite and Leveraging it into an FP overwrite for Silent Code Execution (RE walkthrough)
https://ift.tt/dkKfQht
Submitted March 27, 2024 at 06:43PM by arizvisa
via reddit https://ift.tt/kmAQNy9
https://ift.tt/dkKfQht
Submitted March 27, 2024 at 06:43PM by arizvisa
via reddit https://ift.tt/kmAQNy9
Cisco Talos Blog
Dissecting a complex vulnerability and achieving arbitrary code execution in Ichitaro Word
Research conducted by Cisco Talos last year uncovered multiple vulnerabilities rated as low severity despite their ability to allow for full arbitrary code execution.
31 Round SHA256 Collision Proof of Concept
https://ift.tt/L5CtyjK
Submitted March 27, 2024 at 05:58PM by netsec_burn
via reddit https://ift.tt/rZ9sCFK
https://ift.tt/L5CtyjK
Submitted March 27, 2024 at 05:58PM by netsec_burn
via reddit https://ift.tt/rZ9sCFK
Gist
31_round_sha256_poc.py
GitHub Gist: instantly share code, notes, and snippets.
Malwarebytes adds AI functionality to ThreatDown Security Advisor
https://ift.tt/WIqT8v5
Submitted March 27, 2024 at 07:41PM by gragordyrb
via reddit https://ift.tt/7v8VPAk
https://ift.tt/WIqT8v5
Submitted March 27, 2024 at 07:41PM by gragordyrb
via reddit https://ift.tt/7v8VPAk
Help Net Security
Malwarebytes adds AI functionality to ThreatDown Security Advisor - Help Net Security
The AI-powered capabilities in Security Advisor will help streamline the process for ThreatDown administrators to access crucial information.
ANSI Escape sequence injection in wall (util-linux)
https://ift.tt/H17dScj
Submitted March 27, 2024 at 08:49PM by sky0023
via reddit https://ift.tt/2jhK8BF
https://ift.tt/H17dScj
Submitted March 27, 2024 at 08:49PM by sky0023
via reddit https://ift.tt/2jhK8BF
GitHub
GitHub - skyler-ferrante/CVE-2024-28085: WallEscape vulnerability in util-linux
WallEscape vulnerability in util-linux. Contribute to skyler-ferrante/CVE-2024-28085 development by creating an account on GitHub.
Zero-days exploited in the wild jumped 50% in 2023, fueled by spyware vendors
https://ift.tt/TDWjHg6
Submitted March 27, 2024 at 08:35PM by armpergo
via reddit https://ift.tt/0HKqGcP
https://ift.tt/TDWjHg6
Submitted March 27, 2024 at 08:35PM by armpergo
via reddit https://ift.tt/0HKqGcP
therecord.media
Zero-days exploited in the wild jumped 50% in 2023, fueled by spyware vendors
Cybersecurity experts are warning that zero-day exploits, which can be used to compromise devices before anyone is aware they’re vulnerable, have become more common as nation-state hackers and cybercriminals find sophisticated ways to carry out their attacks.
“CVE-2024-21388”- Microsoft Edge’s Marketing API Exploited for Covert Extension Installation
https://ift.tt/RleF3ZJ
Submitted March 27, 2024 at 10:00PM by pinpepnet
via reddit https://ift.tt/TX13cN8
https://ift.tt/RleF3ZJ
Submitted March 27, 2024 at 10:00PM by pinpepnet
via reddit https://ift.tt/TX13cN8
Medium
“CVE-2024-21388”- Microsoft Edge’s Marketing API Exploited for Covert Extension Installation
By Oleg Zaytsev (Guardio Labs)
11 year old security bug in util-linux (Leak user passwords on Ubuntu)
https://ift.tt/z08aWOb
Submitted March 27, 2024 at 11:11PM by sky0023
via reddit https://ift.tt/sWbR631
https://ift.tt/z08aWOb
Submitted March 27, 2024 at 11:11PM by sky0023
via reddit https://ift.tt/sWbR631
Crumbled Security: Unmasking the Cookie-Stealing Malware Threat
https://ift.tt/yLza15t
Submitted March 28, 2024 at 12:30AM by jat0369
via reddit https://ift.tt/9axYzkB
https://ift.tt/yLza15t
Submitted March 28, 2024 at 12:30AM by jat0369
via reddit https://ift.tt/9axYzkB
Cyberark
Crumbled Security: Unmasking the Cookie-Stealing Malware Threat
Over the past few years, we’ve seen a huge increase in the adoption of identity security solutions. Since these types of solutions help protect against a whole range of password-guessing and...
Malicious Implant to remotely control Electronic Locks via WiFi
https://ift.tt/EVtahcU
Submitted March 28, 2024 at 02:15AM by Zealousideal_Tip2086
via reddit https://ift.tt/tPqSXuQ
https://ift.tt/EVtahcU
Submitted March 28, 2024 at 02:15AM by Zealousideal_Tip2086
via reddit https://ift.tt/tPqSXuQ
PRIDE Security Blog
Turnstiles from a hacker perspective - Part 2
Physical implants in turnstiles, replay attacks, and a brief introduction to the Wiegand protocol
Disclaimer
This Security Advisory is provided on an "as is" basis and do not imply any kind of guarantee or warranty. Your use of the information in this…
Disclaimer
This Security Advisory is provided on an "as is" basis and do not imply any kind of guarantee or warranty. Your use of the information in this…
Introducing SharpConflux
https://ift.tt/cTNQnJL
Submitted March 28, 2024 at 04:28PM by campuscodi
via reddit https://ift.tt/mKHblZI
https://ift.tt/cTNQnJL
Submitted March 28, 2024 at 04:28PM by campuscodi
via reddit https://ift.tt/mKHblZI
LRQA Nettitude Labs
Introducing SharpConflux
Today, we are releasing a new tool called SharpConflux, a .NET application built to facilitate Confluence exploration. It allows Red Team operators to easily investigate Confluence instances with the goal of finding credential material and documentation relating…
After almost 7 years, new version of drozer was released
https://ift.tt/V4DrXop
Submitted March 28, 2024 at 07:08PM by agathocles11
via reddit https://ift.tt/2S97jsX
https://ift.tt/V4DrXop
Submitted March 28, 2024 at 07:08PM by agathocles11
via reddit https://ift.tt/2S97jsX
GitHub
GitHub - ReversecLabs/drozer: The Leading Security Assessment Framework for Android.
The Leading Security Assessment Framework for Android. - ReversecLabs/drozer
PyPI Suspends New User Registration In Wake of Large Typosquatting Campaign
https://ift.tt/pLWqZMz
Submitted March 28, 2024 at 11:05PM by louis11
via reddit https://ift.tt/dBmynGM
https://ift.tt/pLWqZMz
Submitted March 28, 2024 at 11:05PM by louis11
via reddit https://ift.tt/dBmynGM
Phylum
Typosquatting Campaign Targets Python Developers
On 26 March 2024, Phylum’s automated risk detection platform picked up yet another typosquat campaign targeting some attackers’ favorite targets in PyPI. As of writing, this attack still appears to be active and has come in two big waves after about a 20…
Mind the Patch Gap: Exploiting an io_uring Vulnerability in Ubuntu - Exodus Intelligence
https://ift.tt/8v3SMU0
Submitted March 29, 2024 at 01:22AM by Soggy_Sally
via reddit https://ift.tt/KgrxbX8
https://ift.tt/8v3SMU0
Submitted March 29, 2024 at 01:22AM by Soggy_Sally
via reddit https://ift.tt/KgrxbX8
Exodus Intelligence
Mind the Patch Gap: Exploiting an io_uring Vulnerability in Ubuntu - Exodus Intelligence
By Oriol Castejón Overview This post discusses a use-after-free vulnerability, CVE-2024-0582, in io_uring in the Linux kernel. Despite the vulnerability being patched in the stable kernel in December 2023, it wasn’t ported to Ubuntu kernels for over two months…
Bref Security Audit - Shielder
https://ift.tt/zyRN0ML
Submitted March 29, 2024 at 05:42PM by smaury
via reddit https://ift.tt/zrdiRQE
https://ift.tt/zyRN0ML
Submitted March 29, 2024 at 05:42PM by smaury
via reddit https://ift.tt/zrdiRQE
Shielder
Shielder - Bref Security Audit
Bref Security Audit, sponsored by Amazon Web Services (AWS), facilitated by Open Source Technology Improvement Fund (OSTIF) and performed by Shielder.
oss-security - Backdoor in upstream xz/liblzma leading to ssh server compromise
https://ift.tt/Vga5SMu
Submitted March 29, 2024 at 10:57PM by netsec_burn
via reddit https://ift.tt/mP0GuWj
https://ift.tt/Vga5SMu
Submitted March 29, 2024 at 10:57PM by netsec_burn
via reddit https://ift.tt/mP0GuWj
Hijacking Chatbots: Dangerous Methods Manipulating GPTs
https://ift.tt/ZXwk8hm
Submitted March 30, 2024 at 05:10AM by derjanni
via reddit https://ift.tt/KWADa8t
https://ift.tt/ZXwk8hm
Submitted March 30, 2024 at 05:10AM by derjanni
via reddit https://ift.tt/KWADa8t
Medium
Hijacking Chatbots: Dangerous Methods Manipulating GPTs
Security research on GPTs and LLMs has only just begun. It’s already become a meme to force customer service chatbots to start programming…
Vulnerability Management Lifecycle in DevSecOps
https://ift.tt/Xo9gmMa
Submitted April 01, 2024 at 02:27AM by doctormay6
via reddit https://ift.tt/bVQWTU7
https://ift.tt/Xo9gmMa
Submitted April 01, 2024 at 02:27AM by doctormay6
via reddit https://ift.tt/bVQWTU7
GitGuardian Blog - Take Control of Your Secrets Security
Vulnerability Management Lifecycle in DevSecOps
In this new series, CJ May shares his expertise in implementing secure-by-design software processes that empower engineering teams.
The first stage of his DevSecOps program: vulnerability management.
The first stage of his DevSecOps program: vulnerability management.
ROP Emporium - ret2win Buffer Overflow Challenge
https://ift.tt/NtyTMaJ
Submitted April 01, 2024 at 09:29AM by Accomplished-Mud1210
via reddit https://ift.tt/sNnzfpu
https://ift.tt/NtyTMaJ
Submitted April 01, 2024 at 09:29AM by Accomplished-Mud1210
via reddit https://ift.tt/sNnzfpu
RingBuffer's Blog
ROP Challenge – Exploiting ret2win Binary – RingBuffer's Blog
A detail guide on how to capture the flag using return oriented programming buffer overflow challenge on ROP Emporium.
What is Deception Technology? - Fidelis Security
https://ift.tt/wrWvsx8
Submitted April 01, 2024 at 12:11PM by cybergeekus
via reddit https://ift.tt/4SGkec3
https://ift.tt/wrWvsx8
Submitted April 01, 2024 at 12:11PM by cybergeekus
via reddit https://ift.tt/4SGkec3
Fidelis Security
What is Cyber Deception and Why Does an Organization Need It?| Fidelis Security
Discover what cyber deception is, how it works, and why organizations need it to detect, mislead, and stop attackers effectively.
Fine-tuning Semgrep for Ruby Security: Pundit and SQL injection
https://ift.tt/MmJn6Th
Submitted April 01, 2024 at 12:39PM by s0rcy
via reddit https://ift.tt/QonF83g
https://ift.tt/MmJn6Th
Submitted April 01, 2024 at 12:39PM by s0rcy
via reddit https://ift.tt/QonF83g
sorted unsorted thoughts
Fine-tuning Semgrep for Ruby Security: Pundit and SQL injection
In this blog post, we’ll go over the construction and tuning of a few Semgrep rules I created while looking at a Ruby on Rails application. Semgrep is a powerful code analysis tool, and while there are a fair number of community rules, the default rules don’t…