Practice Safe Signing. Why? Because sooner or later I think somebody will create a BadCoin (or a wallet) with a transaction signature algorithm designed to leak your private keys in the signature data that is broadcast to the world.
http://ift.tt/2hwcyhF
Submitted November 20, 2017 at 08:18AM by BobsBurgers3Bitcoin
via reddit http://ift.tt/2iwLeRz
http://ift.tt/2hwcyhF
Submitted November 20, 2017 at 08:18AM by BobsBurgers3Bitcoin
via reddit http://ift.tt/2iwLeRz
Gavin Andresen on Svbtle
Practice Safe Signing
Are you holding some cryptocurrency secured by a paper wallet in a safe deposit box? Good for you! That’s an excellent way to keep it safe. But then your currency splits. Last week that piece of paper was worth 100 FooCoins, and this week it is... | Gavin…
The Motherboard Guide to Not Getting Hacked
http://ift.tt/2APjjUb
Submitted November 20, 2017 at 10:11AM by cleanbrowsing
via reddit http://ift.tt/2jGLd0M
http://ift.tt/2APjjUb
Submitted November 20, 2017 at 10:11AM by cleanbrowsing
via reddit http://ift.tt/2jGLd0M
Motherboard
The Motherboard Guide To Not Getting Hacked
Do you want to stop criminals from getting into your Gmail or Facebook account? Are you worried about the cops spying on you? We have all the answers on how to protect yourself.
How likely would it be that someone scans for IP's on windows that don't have X update(s) yet and can gain access?
Always rush to install updates after a fresh install but wonder am I overthinking this? I'd imagine there are 100's or maybe 1000's of boxes scanning IP's for vulnerability 24/7 to sploit.
Submitted November 20, 2017 at 11:44AM by Darknezz19
via reddit http://ift.tt/2mJhghL
Always rush to install updates after a fresh install but wonder am I overthinking this? I'd imagine there are 100's or maybe 1000's of boxes scanning IP's for vulnerability 24/7 to sploit.
Submitted November 20, 2017 at 11:44AM by Darknezz19
via reddit http://ift.tt/2mJhghL
reddit
How likely would it be that someone scans for IP's on... • r/security
Always rush to install updates after a fresh install but wonder am I overthinking this? I'd imagine there are 100's or maybe 1000's of boxes...
Penetration Testing - RainbowCrack and Rainbow Table
http://ift.tt/2fxfPAi
Submitted November 20, 2017 at 01:22PM by paperboy-
via reddit http://ift.tt/2z3u5VX
http://ift.tt/2fxfPAi
Submitted November 20, 2017 at 01:22PM by paperboy-
via reddit http://ift.tt/2z3u5VX
Securitydocs
Penetration Testing - RainbowCrack and Rainbow Table
RainbowCrack is a hash cracker tool which uses a time and memory based algorithm. This tool is different from a brute force hash cracker, in the sense that it does not have to compile all the required
Banking Trojan Can Hack Facebook, Twitter, and Gmail Accounts
http://ift.tt/2B33g5y
Submitted November 20, 2017 at 08:48AM by securitynewsIO
via reddit http://ift.tt/2AeBJAL
http://ift.tt/2B33g5y
Submitted November 20, 2017 at 08:48AM by securitynewsIO
via reddit http://ift.tt/2AeBJAL
Security News iO
Banking Trojan Can Hack Facebook, Twitter, and Gmail Accounts | Security News iO
Security researchers have discovered a new sophisticated version of the infamous Zeus Trojan, and this version can steal more than
Practice Safe Signing. Why? Because sooner or later I think somebody will create a BadCoin (or a wallet) with a transaction signature algorithm designed to leak your private keys in the signature data that is broadcast to the world.
http://ift.tt/2hwcyhF
Submitted November 20, 2017 at 08:08AM by BobsBurgers3Bitcoin
via reddit http://ift.tt/2AeQSCb
http://ift.tt/2hwcyhF
Submitted November 20, 2017 at 08:08AM by BobsBurgers3Bitcoin
via reddit http://ift.tt/2AeQSCb
Gavin Andresen on Svbtle
Practice Safe Signing
Are you holding some cryptocurrency secured by a paper wallet in a safe deposit box? Good for you! That’s an excellent way to keep it safe. But then your currency splits. Last week that piece of paper was worth 100 FooCoins, and this week it is... | Gavin…
Using a .scf file to capture domain or workgroup user credentials with responder.
http://ift.tt/2jD4Syu
Submitted November 20, 2017 at 03:31PM by myexploit2600
via reddit http://ift.tt/2B55YY3
http://ift.tt/2jD4Syu
Submitted November 20, 2017 at 03:31PM by myexploit2600
via reddit http://ift.tt/2B55YY3
1337red
Using a SCF file to Gather Hashes
Have you ever been on a internal network assessment and discovered an unauthenticated writable Windows-based file share? Well, in addition to finding potentially sensitive information, you can abus…
Global Security Advisory Services Market Size, Share & Security Advisory Services Market|TechSci Research
http://ift.tt/2zk4agI
Submitted November 20, 2017 at 05:15PM by techsciresearch1
via reddit http://ift.tt/2mIGzAA
http://ift.tt/2zk4agI
Submitted November 20, 2017 at 05:15PM by techsciresearch1
via reddit http://ift.tt/2mIGzAA
Techsciresearch
Global Security Advisory Services Market Size, Share & Security Advisory Services Market|TechSci Research
Global Security Advisory Services Size, Share, Outlook & Global Security Advisory Services Analysis By Service Type (Penetration Testing, Vulnerability Management, Risk Management Competition Forecast & Opportunities
Some 'security people are f*cking morons' says Linus Torvalds
http://ift.tt/2hE033C
Submitted November 20, 2017 at 06:56PM by speckz
via reddit http://ift.tt/2jFdcOn
http://ift.tt/2hE033C
Submitted November 20, 2017 at 06:56PM by speckz
via reddit http://ift.tt/2jFdcOn
www.theregister.co.uk
Some 'security people are f*cking morons' says Linus Torvalds
Linux Lord fires up over proposal to secure Linux by shutting down wonky processes
South Korea Winter Olympics: Cyber lessons from the past
http://ift.tt/2jG6nfo
Submitted November 20, 2017 at 06:02PM by Uminekoshi
via reddit http://ift.tt/2jGMViu
http://ift.tt/2jG6nfo
Submitted November 20, 2017 at 06:02PM by Uminekoshi
via reddit http://ift.tt/2jGMViu
Help Net Security
South Korea Winter Olympics: Cyber lessons from the past - Help Net Security
South Korea Winter Olympics offer an opportunity for cybercriminals to achieve notoriety and profit. There are lessons to be learned from the past.
CVE-2017-16544: A Busybox autocompletion vulnerability
http://ift.tt/2AWg1Oc
Submitted November 20, 2017 at 07:15PM by reddit_read_today
via reddit http://ift.tt/2zQhIQF
http://ift.tt/2AWg1Oc
Submitted November 20, 2017 at 07:15PM by reddit_read_today
via reddit http://ift.tt/2zQhIQF
Twistlock
CVE-2017-16544: A Busybox autocompletion vulnerability | Twistlock
CVE-2017-16544: A Busybox autocompletion vulnerability from Twistlock. Dev-to-Production Docker and container security for enterprises.
BASELINE – SANS & Offensive-Security
http://ift.tt/2zI0N2Q
Submitted November 20, 2017 at 08:00PM by fullboy1001
via reddit http://ift.tt/2hP1pfU
http://ift.tt/2zI0N2Q
Submitted November 20, 2017 at 08:00PM by fullboy1001
via reddit http://ift.tt/2hP1pfU
FAST RELEASE
[Download] Offensive Security Training Videos - FAST RELEASE
BASELINE – SANS & Offensive-Security File size: 85 GB
BASELINE – SANS & Offensive-Security
http://ift.tt/2zI0N2Q
Submitted November 20, 2017 at 07:38PM by fastrls
via reddit http://ift.tt/2iyblaC
http://ift.tt/2zI0N2Q
Submitted November 20, 2017 at 07:38PM by fastrls
via reddit http://ift.tt/2iyblaC
FAST RELEASE
[Download] Offensive Security Training Videos - FAST RELEASE
BASELINE – SANS & Offensive-Security File size: 85 GB
Security In 5: Episode 115 - IoT Strikes Again - Bluetooth Flaw Impacts 20 Million Amazon and Google Home Devices
http://ift.tt/2B6PvTi
Submitted November 20, 2017 at 07:30PM by BinaryBlog
via reddit http://ift.tt/2z3KycA
http://ift.tt/2B6PvTi
Submitted November 20, 2017 at 07:30PM by BinaryBlog
via reddit http://ift.tt/2z3KycA
Libsyn
Security In Five Podcast: Episode 115 - IoT Strikes Again - Bluetooth Flaw Impacts 20 Million Amazon and Google Home Devices
The Internet of Things lack of security focus strikes again! This times it is a flaw in Bluetooth dubbed BlueBorne than impacts billions of mobiles devices and now your home devices too. This episode goes into the flaw, how it can be exploited and what you…
Pins and Staples: Enhanced SSL Security
http://ift.tt/2zYng9j
Submitted November 20, 2017 at 09:31PM by fang0654
via reddit http://ift.tt/2zT3lKO
http://ift.tt/2zYng9j
Submitted November 20, 2017 at 09:31PM by fang0654
via reddit http://ift.tt/2zT3lKO
Depthsecurity
Pins and Staples: Enhanced SSL Security
With Chrome backing away from HTTP Public Key Pinning and other industry thought-leaders calling for its death, I figured I'd take some time to review some
Fully undetectable backdooring PE files
http://ift.tt/2zms9f9
Submitted November 20, 2017 at 09:07PM by InformationSecurity
via reddit http://ift.tt/2AXUZiy
http://ift.tt/2zms9f9
Submitted November 20, 2017 at 09:07PM by InformationSecurity
via reddit http://ift.tt/2AXUZiy
Haider Mahmood Infosec Blog
Fully undetectable backdooring PE files
Table of Contents1 Introduction2 Self Imposed Restrictions3 Methods used:4 Criteria for PE file selection for implanting backdoor4.1 ASLR: 4.2 Static Analysis5 Backdooring PE file6 Adding a new Section header method6.1 Hijack Execution Flow6.2 Adding Shellcode6.3…
Fully undetectable backdooring of portable executable files
http://ift.tt/2zms9f9
Submitted November 20, 2017 at 09:43PM by InformationSecurity
via reddit http://ift.tt/2zVNNWV
http://ift.tt/2zms9f9
Submitted November 20, 2017 at 09:43PM by InformationSecurity
via reddit http://ift.tt/2zVNNWV
Haider Mahmood Infosec Blog
Fully undetectable backdooring PE files
Table of Contents1 Introduction2 Self Imposed Restrictions3 Methods used:4 Criteria for PE file selection for implanting backdoor4.1 ASLR: 4.2 Static Analysis5 Backdooring PE file6 Adding a new Section header method6.1 Hijack Execution Flow6.2 Adding Shellcode6.3…
Has BYOD taken over your office? Here are 3 strategies in securing your data
http://ift.tt/2izMxPE
Submitted November 20, 2017 at 09:57PM by dj3poka
via reddit http://ift.tt/2mKgIrL
http://ift.tt/2izMxPE
Submitted November 20, 2017 at 09:57PM by dj3poka
via reddit http://ift.tt/2mKgIrL
Tgdaily
Has BYOD taken over your office? Here are 3 strategies in securing your data
BYOD, or bring-your-own-device, had been a buzzword in the enterprise and small business community since the mid 2000s. When smartphones and tablets came into fashion, not all businesses were ready to spend for their employees’ device needs.
Glad to see this finally happening: U.S. nails Kentucky gas-pump skimmers. Made $3.5M from ~50 pumps
http://ift.tt/2zkTvlU
Submitted November 20, 2017 at 09:53PM by MadSecuritySquirrel
via reddit http://ift.tt/2mKgRvj
http://ift.tt/2zkTvlU
Submitted November 20, 2017 at 09:53PM by MadSecuritySquirrel
via reddit http://ift.tt/2mKgRvj
Arkansas Online
U.S. nails Kentucky gas-pump skimmers
LOUISVILLE, Ky. -- Federal authorities pointed Friday to multiple arrests and convictions in Kentucky as just the start of a crackdown on credit card skimmers who target gas pumps to steal personal information.
Android Bug Lets Attackers Record Audio & Screen Activity on 3 of 4 Smartphones
http://ift.tt/2zh6WmR
Submitted November 20, 2017 at 09:50PM by MadSecuritySquirrel
via reddit http://ift.tt/2zkTApI
http://ift.tt/2zh6WmR
Submitted November 20, 2017 at 09:50PM by MadSecuritySquirrel
via reddit http://ift.tt/2zkTApI
BleepingComputer
Android Bug Lets Attackers Record Audio & Screen Activity on 3 of 4 Smartphones
Android smartphones running Lolipop, Marshmallow, and Nougat, are vulnerable to an attack that exploits the MediaProjection service to capture the user's screen and record system audio
Modifying and Building Burp Extensions
http://ift.tt/2wyoTeK
Submitted November 20, 2017 at 10:29PM by Mempodipper
via reddit http://ift.tt/2zYTv8e
http://ift.tt/2wyoTeK
Submitted November 20, 2017 at 10:29PM by Mempodipper
via reddit http://ift.tt/2zYTv8e
DecidedlyGray
Modifying and Building Burp Extensions
Reference on modifying and repackaging, as well as compiling Burp Suite extensions from source.