What was the exploit and how did it benefit only them?
http://ift.tt/2uIxyuM
Submitted August 16, 2017 at 06:42PM by thomasbeck
via reddit http://ift.tt/2uP2xRM
http://ift.tt/2uIxyuM
Submitted August 16, 2017 at 06:42PM by thomasbeck
via reddit http://ift.tt/2uP2xRM
Washington Post
Police: Couple exploited website glitch for free merchandise
Authorities say a New Jersey couple exploited a computer glitch on a home improvement chain’s website to get thousands of dollars’ worth of items shipped to their home for free.
Libsodium Audit Results
http://ift.tt/2x3YkKV
Submitted August 16, 2017 at 07:59PM by privatevpn
via reddit http://ift.tt/2v1VKDv
http://ift.tt/2x3YkKV
Submitted August 16, 2017 at 07:59PM by privatevpn
via reddit http://ift.tt/2v1VKDv
Privacy Online News
Libsodium Audit Results | Privacy Online News
Private Internet Access today releases the results of its Libsodium audit. Libsodium is an open source, cryptographic library that is used far and wide in projects such as Zcash as well as internal applications at Private Internet Access. Private Internet…
VPN TunnelBear publicly releases security audit
http://ift.tt/2vfNBNH
Submitted August 16, 2017 at 09:09PM by Bruncek
via reddit http://ift.tt/2v1tBNc
http://ift.tt/2vfNBNH
Submitted August 16, 2017 at 09:09PM by Bruncek
via reddit http://ift.tt/2v1tBNc
The TunnelBear Blog
TunnelBear Completes Industry-First Consumer VPN Public Security Audit
TunnelBear works with Cure53 to complete consumer VPN industry's first public security audit.
When combining exploits for added effect goes wrong
http://ift.tt/2vVjwFX
Submitted August 16, 2017 at 08:24PM by zelyahzub
via reddit http://ift.tt/2uJo1Ui
http://ift.tt/2vVjwFX
Submitted August 16, 2017 at 08:24PM by zelyahzub
via reddit http://ift.tt/2uJo1Ui
Talosintelligence
When combining exploits for added effect goes wrong
A blog from the world class Intelligence Group, Talos, Cisco's Intelligence Group
TunnelBear security audit
http://ift.tt/2vfaRgg
Submitted August 17, 2017 at 12:47AM by campuscodi
via reddit http://ift.tt/2wQKe02
http://ift.tt/2vfaRgg
Submitted August 17, 2017 at 12:47AM by campuscodi
via reddit http://ift.tt/2wQKe02
Chrome Turbofan Remote Code Execution
http://ift.tt/2w9lJ12
Submitted August 17, 2017 at 01:48PM by campuscodi
via reddit http://ift.tt/2wSgBLG
http://ift.tt/2w9lJ12
Submitted August 17, 2017 at 01:48PM by campuscodi
via reddit http://ift.tt/2wSgBLG
Shattered Trust: When Replacement Smartphone Components Attack
http://ift.tt/2wS7db8
Submitted August 17, 2017 at 01:27PM by xvipr
via reddit http://ift.tt/2i8BWNW
http://ift.tt/2wS7db8
Submitted August 17, 2017 at 01:27PM by xvipr
via reddit http://ift.tt/2i8BWNW
Terms of Service; Didn't Read
https://tosdr.org/
Submitted August 17, 2017 at 02:27PM by zemcunha
via reddit http://ift.tt/2uKJBI4
https://tosdr.org/
Submitted August 17, 2017 at 02:27PM by zemcunha
via reddit http://ift.tt/2uKJBI4
tosdr.org
Terms of Service; Didn't Read
We help you understand Terms of Service and Privacy Policies
Random Vulnerable VM Generator!
http://ift.tt/2aLgHL6
Submitted August 17, 2017 at 05:51PM by Grenian
via reddit http://ift.tt/2fN5WOy
http://ift.tt/2aLgHL6
Submitted August 17, 2017 at 05:51PM by Grenian
via reddit http://ift.tt/2fN5WOy
GitHub
cliffe/SecGen
SecGen - Create randomly insecure VMs
Bypassing Office Password Protection for Analysis
http://ift.tt/2uTrsUh
Submitted August 17, 2017 at 07:28PM by majorllama
via reddit http://ift.tt/2wiCLsG
http://ift.tt/2uTrsUh
Submitted August 17, 2017 at 07:28PM by majorllama
via reddit http://ift.tt/2wiCLsG
Ringzerolabs
Bypassing Anti-Analysis Technique In Office Documents
VBA Enabled Word Document. The authors of this document have password protected the VBA Project within the file to prevent inspection of the malicious code.
Google CTF 2017 Quals Write-up Winners
http://ift.tt/2wBF47T
Submitted August 17, 2017 at 07:24PM by FireFart
via reddit http://ift.tt/2wiW3hH
http://ift.tt/2wBF47T
Submitted August 17, 2017 at 07:24PM by FireFart
via reddit http://ift.tt/2wiW3hH
On-Premises Breached Password Requests Checking in Active Directory
http://ift.tt/2w3uDNI
Submitted August 17, 2017 at 08:31PM by General_Menace
via reddit http://ift.tt/2vGSCAH
http://ift.tt/2w3uDNI
Submitted August 17, 2017 at 08:31PM by General_Menace
via reddit http://ift.tt/2vGSCAH
Login bypass in Ubiquiti airMAX/airOS before 8.0.2, 7.2.5, 6.0.2, 5.6.15 if airControl web-UI was used
http://ift.tt/2fPBALp
Submitted August 18, 2017 at 03:18AM by thenickdude
via reddit http://ift.tt/2uMq2PI
http://ift.tt/2fPBALp
Submitted August 18, 2017 at 03:18AM by thenickdude
via reddit http://ift.tt/2uMq2PI
Dodgy behaviour from Speedtest.net & Google
http://ift.tt/2fQYZw1
Submitted August 18, 2017 at 05:19AM by petermal67
via reddit http://ift.tt/2ibzpT2
http://ift.tt/2fQYZw1
Submitted August 18, 2017 at 05:19AM by petermal67
via reddit http://ift.tt/2ibzpT2
Medium
Dodgy behaviour from Speedtest.net & Google
Apologies for how the images are below — splitting them up was quicker than editing the sensitive info out of them. I did edit the final…
Using SpiderFoot with SHODAN to footprint a target
http://ift.tt/2tk5FH4
Submitted August 18, 2017 at 11:19AM by smicallef
via reddit http://ift.tt/2vNP9yI
http://ift.tt/2tk5FH4
Submitted August 18, 2017 at 11:19AM by smicallef
via reddit http://ift.tt/2vNP9yI
asciinema.org
SpiderFoot and SHODAN
Learn how to use SHODAN from the SpiderFoot CLI to identify open ports and operating systems of your target.
vulscan - Vulnerability Scanning with Nmap
http://ift.tt/2uwof0V
Submitted August 18, 2017 at 01:59PM by hack4net
via reddit http://ift.tt/2uWoAGu
http://ift.tt/2uwof0V
Submitted August 18, 2017 at 01:59PM by hack4net
via reddit http://ift.tt/2uWoAGu
Hack4Net ☠
vulscan - Vulnerability Scanning with Nmap
Vulscan is a module which enhances nmap to a vulnerability scanner. The nmap option -sV enables version detection per service which is us...
Secrets and LIE-abilities: The State of Modern Secret Management
http://ift.tt/2kwm1Ii
Submitted August 18, 2017 at 04:36PM by fagnerbrack
via reddit http://ift.tt/2v7xkc9
http://ift.tt/2kwm1Ii
Submitted August 18, 2017 at 04:36PM by fagnerbrack
via reddit http://ift.tt/2v7xkc9
Medium
Secrets and LIE-abilities: The State of Modern Secret Management (2017)
Covers KeyWhiz, Vault, Docker 1.13, DC/OS 1.8, Rancher 1.4, and Kubernetes
Chainspace: A Sharded Smart Contracts Platform
http://ift.tt/2wgtWR1
Submitted August 18, 2017 at 06:02PM by sjmurdoch
via reddit http://ift.tt/2xaqcNl
http://ift.tt/2wgtWR1
Submitted August 18, 2017 at 06:02PM by sjmurdoch
via reddit http://ift.tt/2xaqcNl
Reverse Engineering My Home Security System: Decompiling Firmware Updates
http://ift.tt/2w8FWUh
Submitted August 18, 2017 at 06:40PM by thugl0r
via reddit http://ift.tt/2uONuM3
http://ift.tt/2w8FWUh
Submitted August 18, 2017 at 06:40PM by thugl0r
via reddit http://ift.tt/2uONuM3
_bullz3ye
Reverse Engineering My Home Security System: Decompiling Firmware Updates
A few weeks ago I got a home security system installed in my home. The package included a 7-inch tablet called the Honeywell Tuxedo that...
CISO of a large retail chain and Expiring passwords (NIST)
http://ift.tt/2vPZ6vt
Submitted August 18, 2017 at 11:08PM by houlila
via reddit http://ift.tt/2uYJxjQ
http://ift.tt/2vPZ6vt
Submitted August 18, 2017 at 11:08PM by houlila
via reddit http://ift.tt/2uYJxjQ
CrossRealms
Should We Stop Expiring Passwords? - CrossRealms
As I read through the new guidelines from the US National Institute of Standards and Technology (NIST) about only changing passwords for a valid reason or condition, I thought these people were nuts. But then I kept reading…I realized that they could be onto…
Inside the Kronos malware
http://ift.tt/2xb1Djm
Submitted August 19, 2017 at 12:28AM by stevewatson301
via reddit http://ift.tt/2xbxPmz
http://ift.tt/2xb1Djm
Submitted August 19, 2017 at 12:28AM by stevewatson301
via reddit http://ift.tt/2xbxPmz
Malwarebytes Labs
Inside the Kronos malware - part 1 - Malwarebytes Labs
The first part of this research looks at the tricks used by the Kronos banking malware.