Retrofitting encrypted firmware is a Bad Idea™
https://ift.tt/TLVFvIx
Submitted October 27, 2024 at 06:10PM by AlmondOffSec
via reddit https://ift.tt/DjAQ16x
https://ift.tt/TLVFvIx
Submitted October 27, 2024 at 06:10PM by AlmondOffSec
via reddit https://ift.tt/DjAQ16x
haxx.in
Retrofitting encrypted firmware is a Bad Idea™
Lexmark decided to frustrate vulnerability researchers last minute. Let’s have a look at their new root filesystem encryption.
Akamai and Kyndryl partner for Zero Trust Segmentation defence
https://ift.tt/KhzrYfG
Submitted October 27, 2024 at 07:23PM by vrebtimaj
via reddit https://ift.tt/QuF4ZJM
https://ift.tt/KhzrYfG
Submitted October 27, 2024 at 07:23PM by vrebtimaj
via reddit https://ift.tt/QuF4ZJM
CRN
Akamai and Kyndryl partner for Zero Trust Segmentation cyber defence
Using Akamai's Guardicore Segmentation platform.
Threats Spike Amid Rising Vulnerabilities
https://ift.tt/QYMPLxn
Submitted October 27, 2024 at 07:04PM by vrebtimaj
via reddit https://ift.tt/DXBiWsd
https://ift.tt/QYMPLxn
Submitted October 27, 2024 at 07:04PM by vrebtimaj
via reddit https://ift.tt/DXBiWsd
The Pinnacle Gazette
Cybersecurity Threats Spike Amid Rising Vulnerabilities
The world of cybersecurity is as dynamic as it is perilous, with threats looming around every digital corner. The recent surge in cyber attacks has amplified concerns…
Scammers blackmail people using 'digital arrest'
https://ift.tt/KQ3HckE
Submitted October 27, 2024 at 11:37PM by towtoo893
via reddit https://ift.tt/P9b4c1X
https://ift.tt/KQ3HckE
Submitted October 27, 2024 at 11:37PM by towtoo893
via reddit https://ift.tt/P9b4c1X
Deccan Herald
Scammers blackmail people using 'digital arrest', online scams: Cyber advisory
The Computer Emergency Response Team of India (CERT-In) issued an advisory listing more than dozen ways how the online scams are being perpetrated by fraudsters in the country, including "digital arrest" to dupe people by stealing their money and private…
Tiktok hacking services
https://ift.tt/pjE8Mm5
Submitted October 28, 2024 at 01:19AM by Ok_Income1221
via reddit https://ift.tt/rW8ufp3
https://ift.tt/pjE8Mm5
Submitted October 28, 2024 at 01:19AM by Ok_Income1221
via reddit https://ift.tt/rW8ufp3
Linktree
@FARARMAHACK12 | Linktree
Clink on my like for quick response
Introducing zizmor: now you can have beautiful clean workflows
https://ift.tt/SP48Izg
Submitted October 28, 2024 at 06:40AM by yossarian_flew_away
via reddit https://ift.tt/hHkYCzD
https://ift.tt/SP48Izg
Submitted October 28, 2024 at 06:40AM by yossarian_flew_away
via reddit https://ift.tt/hHkYCzD
blog.yossarian.net
Introducing zizmor: now you can have beautiful clean workflows
Engineering WCF Hacks
https://ift.tt/qhPyvfm
Submitted October 28, 2024 at 12:44PM by buherator
via reddit https://ift.tt/d9zy0vg
https://ift.tt/qhPyvfm
Submitted October 28, 2024 at 12:44PM by buherator
via reddit https://ift.tt/d9zy0vg
Silent Signal Techblog
Engineering WCF Hacks
Because we can!
Give Me the Green Light Part 1: Hacking Traffic Control Systems
https://ift.tt/WCc5q1E
Submitted October 28, 2024 at 01:59PM by towtoo893
via reddit https://ift.tt/0J6OYaD
https://ift.tt/WCc5q1E
Submitted October 28, 2024 at 01:59PM by towtoo893
via reddit https://ift.tt/0J6OYaD
Red Threat
Give Me the Green Light Part 1: Hacking Traffic Control Systems — Red Threat
Adventures in Responsible Disclosure
Privilege escalation through TPM Sniffing when BitLocker PIN is enabled
https://ift.tt/SibzfBZ
Submitted October 28, 2024 at 05:38PM by dukeofmola
via reddit https://ift.tt/DaQvTzB
https://ift.tt/SibzfBZ
Submitted October 28, 2024 at 05:38PM by dukeofmola
via reddit https://ift.tt/DaQvTzB
Anatomy of an LLM RCE
https://ift.tt/gjl3rsd
Submitted October 28, 2024 at 07:40PM by jat0369
via reddit https://ift.tt/JLvUMsD
https://ift.tt/gjl3rsd
Submitted October 28, 2024 at 07:40PM by jat0369
via reddit https://ift.tt/JLvUMsD
Cyberark
Anatomy of an LLM RCE
As large language models (LLMs) become more advanced and are granted additional capabilities by developers, security risks increase dramatically. Manipulated LLMs are no longer just a risk of...
Global InfoSec Salary Data in the Public Domain 💰📊
https://ift.tt/i019S2j
Submitted October 29, 2024 at 12:26AM by infosec-jobs
via reddit https://ift.tt/jraPb5O
https://ift.tt/i019S2j
Submitted October 29, 2024 at 12:26AM by infosec-jobs
via reddit https://ift.tt/jraPb5O
isecjobs.com
The Global InfoSec / Cybersecurity Salary Index for 2025
An open database of salaries in the InfoSec / Cybersecurity space.
What Are My OPTIONS? CyberPanel v2.3.6 pre-auth RCE
https://ift.tt/vdouHV6
Submitted October 29, 2024 at 01:43PM by albinowax
via reddit https://ift.tt/esoUv6R
https://ift.tt/vdouHV6
Submitted October 29, 2024 at 01:43PM by albinowax
via reddit https://ift.tt/esoUv6R
Mastering Memory Exploitation: Fundamentals, Stack Overflows, Shellcode, Format String Bugs, and Heap Overflows
https://ift.tt/LHeEQpu
Submitted October 29, 2024 at 07:05PM by tapmylap
via reddit https://ift.tt/uW82gfI
https://ift.tt/LHeEQpu
Submitted October 29, 2024 at 07:05PM by tapmylap
via reddit https://ift.tt/uW82gfI
Medium
Mastering Memory Exploitation: Fundamentals, Stack Overflows, Shellcode, Format String Bugs, and Heap Overflows
In the world of cybersecurity, exploiting vulnerabilities is a technical art form that combines deep knowledge of systems with a practical…
Cracking into a Just Eat / Takeaway.com terminal with an NFC card
https://ift.tt/LtwRU9s
Submitted October 30, 2024 at 04:45AM by Titokhan
via reddit https://ift.tt/8b7Ce0O
https://ift.tt/LtwRU9s
Submitted October 30, 2024 at 04:45AM by Titokhan
via reddit https://ift.tt/8b7Ce0O
MGD Blog
Cracking into a Just Eat / Takeaway.com terminal with an NFC card
So this is a pretty interesting one, i found this one on a local marketplace for 25 dollars, so i immediately snagged it up.
After it booted up, it showed an activation screen. Looks like the previous owner has logged out.
We can't do much from this screen…
After it booted up, it showed an activation screen. Looks like the previous owner has logged out.
We can't do much from this screen…
Using AFL++ on bug bounty programs: an example with Gnome libsoup
https://ift.tt/wpufMYJ
Submitted October 30, 2024 at 06:25PM by AlmondOffSec
via reddit https://ift.tt/zicA4HQ
https://ift.tt/wpufMYJ
Submitted October 30, 2024 at 06:25PM by AlmondOffSec
via reddit https://ift.tt/zicA4HQ
An analysis of the Keycloak authentication system
https://ift.tt/igS07p6
Submitted October 30, 2024 at 07:50PM by 0xdea
via reddit https://ift.tt/197ByzA
https://ift.tt/igS07p6
Submitted October 30, 2024 at 07:50PM by 0xdea
via reddit https://ift.tt/197ByzA
HN Security
An analysis of the Keycloak authentication system - HN Security
Earlier this year, I was working with my colleague Ema on a source-assisted application and architecture assessment for a client […]
Can't trust any VPN these days
https://ift.tt/yIdkF5p
Submitted October 30, 2024 at 09:03PM by sadyetfly11
via reddit https://ift.tt/Dt3oMjq
https://ift.tt/yIdkF5p
Submitted October 30, 2024 at 09:03PM by sadyetfly11
via reddit https://ift.tt/Dt3oMjq
blog.orhun.dev
Can't trust any VPN these days - Orhun's Blog
FOSS • Linux • Programming
Give Me the Green Light Part 2: Dirty Little Secrets
https://ift.tt/SkOFpr7
Submitted October 30, 2024 at 11:52PM by towtoo893
via reddit https://ift.tt/vV7LhF9
https://ift.tt/SkOFpr7
Submitted October 30, 2024 at 11:52PM by towtoo893
via reddit https://ift.tt/vV7LhF9
Red Threat
Give Me the Green Light Part 2: Dirty Little Secrets — Red Threat
A peek behind the curtain and an introduction to the protocol the Traffic Industry doesn’t want you to know about.
Exploiting a Blind Format String Vulnerability in Modern Binaries: A Case Study from Pwn2Own Ireland 2024
https://ift.tt/UpePiMN
Submitted October 30, 2024 at 11:47PM by vrebtimaj
via reddit https://ift.tt/U30dwxT
https://ift.tt/UpePiMN
Submitted October 30, 2024 at 11:47PM by vrebtimaj
via reddit https://ift.tt/U30dwxT
Synacktiv
Exploiting a Blind Format String Vulnerability in Modern Binaries: A Case Study from Pwn2Own Ireland 2024
Paranoids’ Vulnerability Research: NetIQ iManager Security Alerts | Paranoids | Yahoo Inc.
https://ift.tt/XjBPKmf
Submitted October 31, 2024 at 01:00AM by jrozner
via reddit https://ift.tt/7HypY8Q
https://ift.tt/XjBPKmf
Submitted October 31, 2024 at 01:00AM by jrozner
via reddit https://ift.tt/7HypY8Q
Yahooinc
Paranoids’ Vulnerability Research: NetIQ iManager Security Alerts | Paranoids | Yahoo Inc.
Stay informed on the latest security threats with Yahoo Inc.'s Paranoids Vulnerability Research. Protect your business with NetIQ iManager security alerts.
EMERALDWHALE: 15k Cloud Credentials Stolen in Operation Targeting Exposed Git Config Files
https://ift.tt/esPOzW5
Submitted October 31, 2024 at 06:13AM by alt69785
via reddit https://ift.tt/6RKqWlj
https://ift.tt/esPOzW5
Submitted October 31, 2024 at 06:13AM by alt69785
via reddit https://ift.tt/6RKqWlj
Sysdig
EMERALDWHALE: 15k Cloud credentials stolen in operation targeting exposed Git config files | Sysdig
EMERALDWHALE is an operation targeting exposed Git configurations, resulting in more than 15,000 cloud service credentials stolen.