Reverse Engineering My Home Security System: Decompiling Firmware Updates
http://ift.tt/2w8FWUh
Submitted August 18, 2017 at 06:40PM by thugl0r
via reddit http://ift.tt/2uONuM3
http://ift.tt/2w8FWUh
Submitted August 18, 2017 at 06:40PM by thugl0r
via reddit http://ift.tt/2uONuM3
_bullz3ye
Reverse Engineering My Home Security System: Decompiling Firmware Updates
A few weeks ago I got a home security system installed in my home. The package included a 7-inch tablet called the Honeywell Tuxedo that...
CISO of a large retail chain and Expiring passwords (NIST)
http://ift.tt/2vPZ6vt
Submitted August 18, 2017 at 11:08PM by houlila
via reddit http://ift.tt/2uYJxjQ
http://ift.tt/2vPZ6vt
Submitted August 18, 2017 at 11:08PM by houlila
via reddit http://ift.tt/2uYJxjQ
CrossRealms
Should We Stop Expiring Passwords? - CrossRealms
As I read through the new guidelines from the US National Institute of Standards and Technology (NIST) about only changing passwords for a valid reason or condition, I thought these people were nuts. But then I kept reading…I realized that they could be onto…
Inside the Kronos malware
http://ift.tt/2xb1Djm
Submitted August 19, 2017 at 12:28AM by stevewatson301
via reddit http://ift.tt/2xbxPmz
http://ift.tt/2xb1Djm
Submitted August 19, 2017 at 12:28AM by stevewatson301
via reddit http://ift.tt/2xbxPmz
Malwarebytes Labs
Inside the Kronos malware - part 1 - Malwarebytes Labs
The first part of this research looks at the tricks used by the Kronos banking malware.
Why do I get the impression these people are ordinary shoppers who just happened to be using a broken online shopping system that someone else provided for them? - Police: Couple exploited website glitch for free merchandise
http://ift.tt/2vax4Jb
Submitted August 19, 2017 at 11:42AM by badon_
via reddit http://ift.tt/2wiSfh7
http://ift.tt/2vax4Jb
Submitted August 19, 2017 at 11:42AM by badon_
via reddit http://ift.tt/2wiSfh7
Times Union
Police: Couple exploited website glitch for free merchandise
BRICK, N.J. (AP) - Authorities say a New Jersey couple exploited a computer glitch on a home improvement chain's website to get thousands of dollars' worth of items shipped to their home for free. Authorities say the Brick residents tried to get about $258…
Bypass an Anti Virus Detection with Encrypted Payloads using VENOM Tool
http://ift.tt/2uRHodT
Submitted August 19, 2017 at 04:04PM by balajinm
via reddit http://ift.tt/2vaFvnK
http://ift.tt/2uRHodT
Submitted August 19, 2017 at 04:04PM by balajinm
via reddit http://ift.tt/2vaFvnK
GBHackers On Security
Bypass an AV Detection with Encrypted Payload using VENOM Tool
Nowadays many Malware and Payload are using Encryption techniques and packing techniques using Packers to Evade the Anti Virus Software
Interested in Malware Analysis? Fastest Automated Malware Analysis Lab Setup With FREE VM from Microsoft and Tools.
http://ift.tt/2vNDz8m
Submitted August 19, 2017 at 11:22PM by majorllama
via reddit http://ift.tt/2vSj34N
http://ift.tt/2vNDz8m
Submitted August 19, 2017 at 11:22PM by majorllama
via reddit http://ift.tt/2vSj34N
Ringzerolabs
Fastest Automated Malware Analysis Lab Setup with FREE VM and Tools
Here is the fastest way to automatically setup a Virtual Lab Environment complete with a FREE VM directly from Microsoft and FREE analysis tools.
RETGUARD, the OpenBSD next level in exploit mitigation, is about to debut
http://ift.tt/2wklL6b
Submitted August 20, 2017 at 01:42PM by NagateTanikaze
via reddit http://ift.tt/2v34rOJ
http://ift.tt/2wklL6b
Submitted August 20, 2017 at 01:42PM by NagateTanikaze
via reddit http://ift.tt/2v34rOJ
DeathStar - Automate getting Domain Admin using Empire
http://ift.tt/2vP0bp3
Submitted August 20, 2017 at 03:01PM by hack4net
via reddit http://ift.tt/2vdwxWU
http://ift.tt/2vP0bp3
Submitted August 20, 2017 at 03:01PM by hack4net
via reddit http://ift.tt/2vdwxWU
Hack4Net ☠
DeathStar - Automate getting Domain Admin using Empire
DeathStar is a Python noscript that uses Empire's RESTful API to automate gaining Domain Admin rights in Active Directory environments ...
Security.txt - a standard which allows websites to define security research and reporting policies
http://ift.tt/2uBidvO
Submitted August 20, 2017 at 06:28PM by colinodell
via reddit http://ift.tt/2v3uqWj
http://ift.tt/2uBidvO
Submitted August 20, 2017 at 06:28PM by colinodell
via reddit http://ift.tt/2v3uqWj
GitHub
EdOverflow/security-txt
security-txt - A standard that allows websites to define security policies.
CLKSCREW: Exposing the Perils of Security-Oblivious Energy Management (PDF)
http://ift.tt/2fVEvSs
Submitted August 20, 2017 at 07:36PM by digicat
via reddit http://ift.tt/2vdP6KP
http://ift.tt/2fVEvSs
Submitted August 20, 2017 at 07:36PM by digicat
via reddit http://ift.tt/2vdP6KP
Scan multiple organizations with Shodan and Golang. Bug Bounty example.
http://ift.tt/2uVNlq8
Submitted August 21, 2017 at 01:12AM by Mysterii8
via reddit http://ift.tt/2x3Xi2m
http://ift.tt/2uVNlq8
Submitted August 21, 2017 at 01:12AM by Mysterii8
via reddit http://ift.tt/2x3Xi2m
Medium
Scan multiple organizations with Shodan and Golang. Bug Bounty example.
TL;DR I wrote a noscript in Go, which queries Shodan database based on given list of organizations. Next, I retrieve all bug bounty…
Couple Accused of Using Lowes Website Flaw to Steal Expensive Goods
http://ift.tt/2xdnMxv
Submitted August 21, 2017 at 03:26AM by soonbesleeping
via reddit http://ift.tt/2v4AsWT
http://ift.tt/2xdnMxv
Submitted August 21, 2017 at 03:26AM by soonbesleeping
via reddit http://ift.tt/2v4AsWT
BleepingComputer
Couple Accused of Using Lowes Website Flaw to Steal Expensive Goods
A couple from the Brick Township in New Jersey stands accused of using a flaw in the Lowes online portal to receive goods for free at their home.
Udp2raw,a UDP Tunnel which tunnels UDP via FakeTCP/UDP/ICMP Traffic by using Raw Socket,helps you Bypass UDP FireWalls or Unstable UDP Environment
http://ift.tt/2wzW9PP
Submitted August 21, 2017 at 04:39AM by wangyu-
via reddit http://ift.tt/2wuTitI
http://ift.tt/2wzW9PP
Submitted August 21, 2017 at 04:39AM by wangyu-
via reddit http://ift.tt/2wuTitI
GitHub
wangyu-/udp2raw-tunnel
A Tunnel which Turns UDP Traffic into Encrypted UDP/FakeTCP/ICMP Traffic by using Raw Socket,helps you Bypass UDP FireWalls(or Unstable UDP Environment) - wangyu-/udp2raw-tunnel
Hoax or Proof-of-Concept? Either way, this is the laziest ransomware...ever.
http://ift.tt/2wjWrxg
Submitted August 21, 2017 at 08:40AM by majorllama
via reddit http://ift.tt/2x4Wf2e
http://ift.tt/2wjWrxg
Submitted August 21, 2017 at 08:40AM by majorllama
via reddit http://ift.tt/2x4Wf2e
Ringzerolabs
Choda Ransomware - The Lazy Malware
Today we analyze a piece of malware that calls itself Choda Ransomware. This is, by far, the laziest piece of ‘malware’ I’ve ever seen.
A tale about Foxit Reader - Safe Reading mode and other vulnerabilities
http://ift.tt/2vR2ojI
Submitted August 20, 2017 at 08:15PM by SecABC
via reddit http://ift.tt/2ij2coP
http://ift.tt/2vR2ojI
Submitted August 20, 2017 at 08:15PM by SecABC
via reddit http://ift.tt/2ij2coP
insert-noscript.blogspot.co.uk
A tale about Foxit Reader - Safe Reading mode and other vulnerabilities
Some days ago someone send me the following link, which describes two vulnerabilities in Foxit Reader: http://thehackernews.com/2017/08/tw...
Revisiting SOHO Router Attacks by Álvaro Folgado Rueda and José Antonio Rodríguez García and Iván Sanz de Castro
http://ift.tt/2xk7rXP
Submitted August 21, 2017 at 05:31PM by 0xKaishakunin
via reddit http://ift.tt/2vRYG9x
http://ift.tt/2xk7rXP
Submitted August 21, 2017 at 05:31PM by 0xKaishakunin
via reddit http://ift.tt/2vRYG9x
SQLMAP-Detecting and Exploiting SQL Injection- A Detailed Explanation
http://ift.tt/2iilNoW
Submitted August 21, 2017 at 06:45PM by balajinm
via reddit http://ift.tt/2fYN0MW
http://ift.tt/2iilNoW
Submitted August 21, 2017 at 06:45PM by balajinm
via reddit http://ift.tt/2fYN0MW
GBHackers On Security
SQLMAP-Detecting and Exploiting SQL Injection- A Detailed Explanation
Sqlmap is an open source penetration testing tool that automates the process of detecting and exploiting SQL injection flaws
How I Accidentally Framed Myself for a Hacking Frenzy
http://ift.tt/2wgZohu
Submitted August 21, 2017 at 06:42PM by albinowax
via reddit http://ift.tt/2iixJqS
http://ift.tt/2wgZohu
Submitted August 21, 2017 at 06:42PM by albinowax
via reddit http://ift.tt/2iixJqS
blog.portswigger.net
How I Accidentally Framed Myself for a Hacking Frenzy
It’s well known that some websites are vulnerable to IP address spoofing because they trust a user-supplied HTTP header like X-Forwarded-For...
CrackMe Solution - [A]dvanced Keygenme by sd333221
http://ift.tt/2fYHDND
Submitted August 21, 2017 at 07:26PM by khasaia
via reddit http://ift.tt/2wh8OJS
http://ift.tt/2fYHDND
Submitted August 21, 2017 at 07:26PM by khasaia
via reddit http://ift.tt/2wh8OJS
secrary[dot]com
[A]dvanced Keygenme by sd333221
Does it matter?
gOSINT - OSINT framework in golang
http://ift.tt/2ikgu8N
Submitted August 21, 2017 at 07:10PM by Nhoya
via reddit http://ift.tt/2wqyvbE
http://ift.tt/2ikgu8N
Submitted August 21, 2017 at 07:10PM by Nhoya
via reddit http://ift.tt/2wqyvbE
GitHub
Nhoya/gOSINT
OSINT Swiss Army Knife. Contribute to Nhoya/gOSINT development by creating an account on GitHub.
Firmware Exploitation with JEB: Part 1 (x-post from /r/reverseengineering)
http://ift.tt/2whaqDy
Submitted August 21, 2017 at 09:35PM by svieg
via reddit http://ift.tt/2vhzVQM
http://ift.tt/2whaqDy
Submitted August 21, 2017 at 09:35PM by svieg
via reddit http://ift.tt/2vhzVQM