Frida 16.3 is out with CoreDevice/RemoteXPC support, new Service API, and many other improvements
https://ift.tt/h3B04iR
Submitted June 05, 2024 at 10:02PM by oleavr
via reddit https://ift.tt/XYbaKRU
https://ift.tt/h3B04iR
Submitted June 05, 2024 at 10:02PM by oleavr
via reddit https://ift.tt/XYbaKRU
Frida • A world-class dynamic instrumentation toolkit
Frida 16.3.0 Released
Observe and reprogram running programs on Windows, macOS, GNU/Linux, iOS, watchOS, tvOS, Android, FreeBSD, and QNX
How to Achieve Eternal Persistence Part 3: How to access and recover replicated secrets
https://ift.tt/DsgR4dz
Submitted June 07, 2024 at 03:26AM by One-Assistance-8552
via reddit https://ift.tt/PjQiAwI
https://ift.tt/DsgR4dz
Submitted June 07, 2024 at 03:26AM by One-Assistance-8552
via reddit https://ift.tt/PjQiAwI
Huntandhackett
How to Achieve Eternal Persistence Part 3: How to access and recover replicated secrets
Learn how to access and recover replicated secrets in order to achieve eternal persistence in an Active Directory environment. Understand the steps involved in decoding replication traffic and understanding RPC calls.
No Way, PHP Strikes Again! (CVE-2024-4577) - watchTowr Labs
https://ift.tt/sGqACOa
Submitted June 07, 2024 at 01:58PM by dx7r__
via reddit https://ift.tt/3hjvonC
https://ift.tt/sGqACOa
Submitted June 07, 2024 at 01:58PM by dx7r__
via reddit https://ift.tt/3hjvonC
watchTowr Labs
No Way, PHP Strikes Again! (CVE-2024-4577)
Orange Tsai tweeted a few hours ago about “One of [his] PHP vulnerabilities, which affects XAMPP by default”, and we were curious to say the least. XAMPP is a very popular way for administrators and developers to rapidly deploy Apache, PHP, and a bunch of…
Create your own C# Obfuscator to evade Static Analysis - Blog
https://ift.tt/CvEpJPa
Submitted June 09, 2024 at 07:28PM by PersonalState343
via reddit https://ift.tt/aHB8Xfd
https://ift.tt/CvEpJPa
Submitted June 09, 2024 at 07:28PM by PersonalState343
via reddit https://ift.tt/aHB8Xfd
Thinking in states to handle information security complexities
https://ift.tt/QWFamvZ
Submitted June 09, 2024 at 11:12PM by Over-Amoeba2779
via reddit https://ift.tt/97WHi4P
https://ift.tt/QWFamvZ
Submitted June 09, 2024 at 11:12PM by Over-Amoeba2779
via reddit https://ift.tt/97WHi4P
Random Access Memory
State Thinking
Thinking in states to handle information security complexities
Unsecure time-based secret and Sandwich Attack - Analysis of my research and release of the "Reset Tolkien" tool
https://ift.tt/seKd5M3
Submitted June 10, 2024 at 09:53AM by _PentesterLab_
via reddit https://ift.tt/9chNHCL
https://ift.tt/seKd5M3
Submitted June 10, 2024 at 09:53AM by _PentesterLab_
via reddit https://ift.tt/9chNHCL
Detection as Code
https://ift.tt/OcVHmGN
Submitted June 10, 2024 at 12:37PM by netbiosX
via reddit https://ift.tt/j2o3fPb
https://ift.tt/OcVHmGN
Submitted June 10, 2024 at 12:37PM by netbiosX
via reddit https://ift.tt/j2o3fPb
Substack
Detection as Code
A guide for detection engineers to establish their workflows & methodologies
Uncovering a Critical Vulnerability in Authentik's PKCE Implementation (CVE-2023-48228) | Offensity
https://ift.tt/irVHTCw
Submitted June 10, 2024 at 02:51PM by Offensity
via reddit https://ift.tt/rwagQvh
https://ift.tt/irVHTCw
Submitted June 10, 2024 at 02:51PM by Offensity
via reddit https://ift.tt/rwagQvh
Offensity
Uncovering a Critical Vulnerability in Authentik's PKCE Implementation (CVE-2023-48228) | Offensity
Security reports: efficient and straightforward. The simplest way to detect and fix vulnerabilities
How to prevent domain verification bypasses of your server certificate
https://ift.tt/uJtq9VA
Submitted June 10, 2024 at 03:47PM by fr0r
via reddit https://ift.tt/o53JhWp
https://ift.tt/uJtq9VA
Submitted June 10, 2024 at 03:47PM by fr0r
via reddit https://ift.tt/o53JhWp
Pentagrid AG
How to prevent domain verification bypasses of your server certificate
Denoscription of the CAA accounturi binding to mitigate or prevent domain verification bypasses and monitoring approaches like certificate transparency log analysis.
Create your own VPN Service with Cableguard VPN and NEAR Protocol
https://ift.tt/KRoNQIU
Submitted June 10, 2024 at 04:55PM by alanesmizi
via reddit https://ift.tt/ROv3ZCI
https://ift.tt/KRoNQIU
Submitted June 10, 2024 at 04:55PM by alanesmizi
via reddit https://ift.tt/ROv3ZCI
Medium
Create your own VPN Service with Cableguard VPN and NEAR Protocol
It is easy!
IcedID Brings ScreenConnect and CSharp Streamer to ALPHV Ransomware Deployment
https://ift.tt/dpzvPLh
Submitted June 10, 2024 at 05:58PM by TheDFIRReport
via reddit https://ift.tt/QMAsjKZ
https://ift.tt/dpzvPLh
Submitted June 10, 2024 at 05:58PM by TheDFIRReport
via reddit https://ift.tt/QMAsjKZ
The DFIR Report
IcedID Brings ScreenConnect and CSharp Streamer to ALPHV Ransomware Deployment
Key Takeaways In October 2023, we observed an intrusion that began with a spam campaign, distributing a forked IcedID loader. The threat actor used Impacket’s wmiexec and RDP to install Scree…
Bypassing Veeam Authentication CVE-2024-29849
https://ift.tt/KwGF5XR
Submitted June 10, 2024 at 05:44PM by scopedsecurity
via reddit https://ift.tt/LuhoxRk
https://ift.tt/KwGF5XR
Submitted June 10, 2024 at 05:44PM by scopedsecurity
via reddit https://ift.tt/LuhoxRk
Summoning Team
Bypassing Veeam Authentication CVE-2024-29849
An interesting authentication bypass exploit in Veeam Backup Enterprise Manager
Finding the slab cache for each object in Linux kernel using static analysis
https://ift.tt/ncUrbNL
Submitted June 11, 2024 at 12:52AM by albocoder1
via reddit https://ift.tt/EsHV9gM
https://ift.tt/ncUrbNL
Submitted June 11, 2024 at 12:52AM by albocoder1
via reddit https://ift.tt/EsHV9gM
Erin Avllazagaj
Finding the slab cache for each object in Linux kernel using static analysis
Reimagining Contextualized SaaS Security with Generative AI
https://ift.tt/e02x4aE
Submitted June 11, 2024 at 01:49PM by vicanurim
via reddit https://ift.tt/s9mFA6W
https://ift.tt/e02x4aE
Submitted June 11, 2024 at 01:49PM by vicanurim
via reddit https://ift.tt/s9mFA6W
RSTCON: research, tradecraft, and exploitation of industrial sensors, systems, and architectures. Sept 13-15, 2024
https://ift.tt/6vhIUmP
Submitted June 11, 2024 at 08:08PM by h3rrmiller
via reddit https://ift.tt/yVernju
https://ift.tt/6vhIUmP
Submitted June 11, 2024 at 08:08PM by h3rrmiller
via reddit https://ift.tt/yVernju
rstcon.org
RSTCON 2024
September 13-15, 2024 in Savannah, GA
Disrupting Hell's Gate and GuLoader with DJB2 Hash Collisions
https://ift.tt/GKqXWYm
Submitted June 11, 2024 at 07:46PM by operat1ve
via reddit https://ift.tt/UARlaIn
https://ift.tt/GKqXWYm
Submitted June 11, 2024 at 07:46PM by operat1ve
via reddit https://ift.tt/UARlaIn
karma-x.io
Disrupting Hell's Gate, Caro Kann, and GuLoader with DJB2 Hash Collisions
AI Helps Catch CSRF Vulnerability Being Introduced in to 100,000+ Install WordPress Plugin Modula
https://ift.tt/UPpNE0R
Submitted June 11, 2024 at 11:10PM by PluginVulns
via reddit https://ift.tt/bz87Lxt
https://ift.tt/UPpNE0R
Submitted June 11, 2024 at 11:10PM by PluginVulns
via reddit https://ift.tt/bz87Lxt
Plugin Vulnerabilities
AI Helps Catch CSRF Vulnerability Being Introduced in to 100,000+ Install WordPress Plugin Modula
Decrypting Thecus NAS Firmware Images
https://ift.tt/L6eX78d
Submitted June 11, 2024 at 11:01PM by lightgrains
via reddit https://ift.tt/xakH3It
https://ift.tt/L6eX78d
Submitted June 11, 2024 at 11:01PM by lightgrains
via reddit https://ift.tt/xakH3It
CVE-2024-29824 Deep Dive: Ivanti EPM SQL Injection Remote Code Execution Vulnerability, IOCs, and POC
https://ift.tt/GZsdF28
Submitted June 12, 2024 at 08:08PM by scopedsecurity
via reddit https://ift.tt/5VTHm7M
https://ift.tt/GZsdF28
Submitted June 12, 2024 at 08:08PM by scopedsecurity
via reddit https://ift.tt/5VTHm7M
Horizon3.ai
CVE-2024-29824 Deep Dive: Ivanti EPM SQL Injection Remote Code Execution Vulnerability
CVE-2024-29824 Ivanti EPM SQL Injection Remote Code Execution Vulnerability. This blog details the internals of a SQLi RCE vulnerability.
BusKill Warrant Canary for 2024 H2 🕵️
https://ift.tt/mxfz7R4
Submitted June 12, 2024 at 10:02PM by maltfield
via reddit https://ift.tt/kxdwLbD
https://ift.tt/mxfz7R4
Submitted June 12, 2024 at 10:02PM by maltfield
via reddit https://ift.tt/kxdwLbD
BusKill
BusKill Canary #8 - BusKill
This post contains the cryptographically-signed BusKill warrant canary #008 for June 2024 to January 2025.
CVE-2024–4956 -Unauthenticated Path Traversal
https://ift.tt/phQEIFf
Submitted June 13, 2024 at 09:01PM by Justin_coco
via reddit https://ift.tt/CrwfR5L
https://ift.tt/phQEIFf
Submitted June 13, 2024 at 09:01PM by Justin_coco
via reddit https://ift.tt/CrwfR5L
Medium
POC — CVE-2024–4956 -Unauthenticated Path Traversal
POC — CVE-2024–4956 — Nexus Repository Manager 3 Unauthenticated Path Traversal