Security Now 641 The iOS Security Trade-off | TWiT.TV
http://ift.tt/2z5ub1m
Submitted December 13, 2017 at 11:18PM by dmp1ce
via reddit http://ift.tt/2nZczAY
http://ift.tt/2z5ub1m
Submitted December 13, 2017 at 11:18PM by dmp1ce
via reddit http://ift.tt/2nZczAY
TWiT.tv
Security Now 641 The iOS Security Trade-off | TWiT.TV
This week we discuss the details behind the 'USB / JTAG takeover' of Intel's Management Engine, a rare Project Zero discovery, Microsoft's well-meaning but ill-tested IoT security …
Loveland Co to start tracking you via your cell phone's MAC address
http://ift.tt/2j0rBRq
Submitted December 13, 2017 at 11:23PM by Fearm0nger
via reddit http://ift.tt/2CeOjxQ
http://ift.tt/2j0rBRq
Submitted December 13, 2017 at 11:23PM by Fearm0nger
via reddit http://ift.tt/2CeOjxQ
Lovelandpolitics
Loveland tracking resident movements using unique identifier on mobile devices
Loveland's interim director of public works mislead Loveland's City Council on December 5, 2017 claiming receivers the city is placing around the community cannot link an individual to a phone.
How Email Open Tracking Quietly Took Over the Web
http://ift.tt/2B3jbmG
Submitted December 14, 2017 at 12:10AM by volci
via reddit http://ift.tt/2ATyso5
http://ift.tt/2B3jbmG
Submitted December 14, 2017 at 12:10AM by volci
via reddit http://ift.tt/2ATyso5
WIRED
How Email Open Tracking Quietly Took Over the Web
You give up more privacy than you might think each time you open an email.
Remote Root in DirectTV's Wireless Video Bridge
http://ift.tt/2ABRvqh
Submitted December 14, 2017 at 12:08AM by zalzane453
via reddit http://ift.tt/2C2dsuP
http://ift.tt/2ABRvqh
Submitted December 14, 2017 at 12:08AM by zalzane453
via reddit http://ift.tt/2C2dsuP
Zero Day Initiative
Remote Root in DirecTV's Wireless Video Bridge: A Tale of Rage and Despair
In this guest blog, Trend Micro DVLabs researcher Ricky Lawshae discusses the recently disclosed CVE-2017-17411. He discovered and reported this bug through the ZDI program. Earlier this year, I learned that AT&T was starting to move customers away from its…
Hermes: cryptographic access control for distributed systems
http://ift.tt/2BikWNs
Submitted December 13, 2017 at 11:59PM by paFarb
via reddit http://ift.tt/2iY8yav
http://ift.tt/2BikWNs
Submitted December 13, 2017 at 11:59PM by paFarb
via reddit http://ift.tt/2iY8yav
reddit
Hermes: cryptographic access control for distributed... • r/security
1 points and 0 comments so far on reddit
Don't Trust the Host Header for Sending Password Reset Emails
http://ift.tt/2CdrUko
Submitted December 14, 2017 at 12:34AM by cablej
via reddit http://ift.tt/2AiwjB7
http://ift.tt/2CdrUko
Submitted December 14, 2017 at 12:34AM by cablej
via reddit http://ift.tt/2AiwjB7
lightningsecurity.io
Don't Trust the Host Header for Sending Password Reset Emails
Mirai botnet creators plead guilty to charges over 2016 attack
http://ift.tt/2AUCHzP
Submitted December 14, 2017 at 01:47AM by DJRWolf
via reddit http://ift.tt/2C1yx8y
http://ift.tt/2AUCHzP
Submitted December 14, 2017 at 01:47AM by DJRWolf
via reddit http://ift.tt/2C1yx8y
Engadget
Mirai botnet creators plead guilty to charges over 2016 attack
They face fines and prison time for their roles in creating and using the botnet.
Hiding content from git diff
http://ift.tt/2ynh6Nq
Submitted December 14, 2017 at 01:26AM by reddit_read_today
via reddit http://ift.tt/2zaguOS
http://ift.tt/2ynh6Nq
Submitted December 14, 2017 at 01:26AM by reddit_read_today
via reddit http://ift.tt/2zaguOS
Twistlock
Hiding content from Git + more on escape sequences | TwistlockLabs Experiment | Twistlock
Hiding content from Git + more on escape sequences | TwistlockLabs Experiment from Twistlock. Dev-to-Production Docker and container security for enterprises.
Camp++ 0x7e2 call for papers
http://ift.tt/2CcAIXI
Submitted December 14, 2017 at 01:08AM by dn3t
via reddit http://ift.tt/2AjFBNb
http://ift.tt/2CcAIXI
Submitted December 14, 2017 at 01:08AM by dn3t
via reddit http://ift.tt/2AjFBNb
reddit
Camp++ 0x7e2 call for papers • r/netsec
1 points and 1 comments so far on reddit
attacking encrypted systems with qemu and volatility
http://ift.tt/2ACp8rY
Submitted December 14, 2017 at 03:54AM by virtual_pirate
via reddit http://ift.tt/2Bk8wEN
http://ift.tt/2ACp8rY
Submitted December 14, 2017 at 03:54AM by virtual_pirate
via reddit http://ift.tt/2Bk8wEN
DiabloHorn
attacking encrypted systems with qemu and volatility
Lately I’ve had to deal with setups which had transparent full disk encryption and were pretty hardened. If you are wondering what ‘transparent full disk encryption’ means, that&…
Guide to API Security Testing: The father of SQL injection offers his expert opinion on effective methodologies for security testing APIs.
http://ift.tt/2zafzOt
Submitted December 14, 2017 at 05:17AM by ju1i3k
via reddit http://ift.tt/2j1Z6TH
http://ift.tt/2zafzOt
Submitted December 14, 2017 at 05:17AM by ju1i3k
via reddit http://ift.tt/2j1Z6TH
resource.cobalt.io
Guide to API Security Testing
APIs have unique challenges when it comes to testing. Jeff Forristal offers his expert opinion on effective methodologies for security testing APIs.
AppLocker - How insecure is it really?
http://ift.tt/2CdabJS
Submitted December 13, 2017 at 08:09PM by oddvarmoe
via reddit http://ift.tt/2z9UCDa
http://ift.tt/2CdabJS
Submitted December 13, 2017 at 08:09PM by oddvarmoe
via reddit http://ift.tt/2z9UCDa
Oddvar Moe's Blog
AppLocker – Case study – How insecure is it really? – Part 1
I often hear that AppLocker is not very safe and it is easy to bypass. Since I really like AppLocker and I recommend it to customers, I decided to do this blogpost series and go over the different …
I'm Sorry You Feel This Way NatWest, but HTTPS on Your Landing Page Is Important
http://ift.tt/2BhZ0C1
Submitted December 14, 2017 at 05:59AM by volci
via reddit http://ift.tt/2nZqsyZ
http://ift.tt/2BhZ0C1
Submitted December 14, 2017 at 05:59AM by volci
via reddit http://ift.tt/2nZqsyZ
Troy Hunt
I'm Sorry You Feel This Way NatWest, but HTTPS on Your Landing Page Is Important
Occasionally, I feel like I'm just handing an organisation more shovels - "here, keep digging, I'm sure this'll work out just fine..." The latest such event was with NatWest (a bank in the UK), and it culminated with this tweet from them: I'm sorry you feel
[Discord Server] Information Security Chat
http://ift.tt/2j2NeAU
Submitted December 14, 2017 at 10:42AM by PoliFish
via reddit http://ift.tt/2kqJSrv
http://ift.tt/2j2NeAU
Submitted December 14, 2017 at 10:42AM by PoliFish
via reddit http://ift.tt/2kqJSrv
Discord
Discord - Free voice and text chat for gamers
Step up your game with a modern voice & text chat app. Crystal clear voice, multiple server and channel support, mobile apps, and more. Get your free server now!
Hardening Windows with AppLocker - Mitigate msbuild.exe
http://ift.tt/2kuwQcq
Submitted December 14, 2017 at 12:43PM by oddvarmoe
via reddit http://ift.tt/2Bj27Kb
http://ift.tt/2kuwQcq
Submitted December 14, 2017 at 12:43PM by oddvarmoe
via reddit http://ift.tt/2Bj27Kb
Oddvar Moe's Blog
Harden Windows with AppLocker – based on Case study part 1
This blogpost is actually a tribute to Matt Graeber’s request from twitter. Since I have learned so much stuff from that guy, I take these sort of request really seriously. In my post …
DNS Performance Compared: Google, Quad9, OpenDNS, Norton, CleanBrowsing, and Yandex
http://ift.tt/2BY2J4t?
Submitted December 14, 2017 at 11:24AM by rmddos
via reddit http://ift.tt/2zaoq2x
http://ift.tt/2BY2J4t?
Submitted December 14, 2017 at 11:24AM by rmddos
via reddit http://ift.tt/2zaoq2x
Medium
DNS Performance Comparison: Google, Quad9, OpenDNS, Norton, CleanBrowsing, and Yandex
Since my ISP thought was a good idea to modify their resolver responses to push me to their own "search engine", I realized the importance…
InfoSec Week 49, 2017
http://ift.tt/2AXVfPH
Submitted December 14, 2017 at 01:17PM by undercomm
via reddit http://ift.tt/2AHspWL
http://ift.tt/2AXVfPH
Submitted December 14, 2017 at 01:17PM by undercomm
via reddit http://ift.tt/2AHspWL
Malgregator
InfoSec Week 49, 2017
The
"2017 EU Security Awareness Summit - After Action Report"
http://ift.tt/2o5M1hy
Submitted December 14, 2017 at 06:06PM by volci
via reddit http://ift.tt/2CjeBiy
http://ift.tt/2o5M1hy
Submitted December 14, 2017 at 06:06PM by volci
via reddit http://ift.tt/2CjeBiy
securingthehuman.sans.org
Security Awareness Blog | 2017 EU Security Awareness Summit - After Action Report
Security Awareness Blog blog pertaining to 2017 EU Security Awareness Summit - After Action Report
How a Dorm Room Minecraft Scam Brought Down the Internet
http://ift.tt/2Aj5yg4
Submitted December 14, 2017 at 04:51PM by whitehattracker
via reddit http://ift.tt/2zbaF3R
http://ift.tt/2Aj5yg4
Submitted December 14, 2017 at 04:51PM by whitehattracker
via reddit http://ift.tt/2zbaF3R
WIRED
How a Dorm Room Minecraft Scam Brought Down the Internet
The DDoS attack that crippled the internet last fall wasn't the work of a nation-state. It was three college kids working a Minecraft hustle.
How to Secure Your Data from Ransomware and Other Threats
https://jelvix.com
Submitted December 14, 2017 at 03:54PM by Jelvix
via reddit http://ift.tt/2kt2IhZ
https://jelvix.com
Submitted December 14, 2017 at 03:54PM by Jelvix
via reddit http://ift.tt/2kt2IhZ
Jelvix
Enterprise Software Development Company - Jelvix
Jelvix is a global technology company providing custom software development services to leading businesses in a variety of industries and domains.
Yara sweeper for incident response
http://ift.tt/2o5BYsy
Submitted December 14, 2017 at 06:29PM by _spartak
via reddit http://ift.tt/2jT6ZLN
http://ift.tt/2o5BYsy
Submitted December 14, 2017 at 06:29PM by _spartak
via reddit http://ift.tt/2jT6ZLN
GitLab
nowayout / yara_sweeper
Yara Sweeper for Incident Response