Damn vulnerable docker vm
http://ift.tt/2wlE6NG
Submitted August 29, 2017 at 10:39PM by pm_me_your_findings
via reddit http://ift.tt/2vpbsh6
http://ift.tt/2wlE6NG
Submitted August 29, 2017 at 10:39PM by pm_me_your_findings
via reddit http://ift.tt/2vpbsh6
NotSoSecure
Vulnerable Docker VM - NotSoSecure
Ever fantasized about playing with docker misconfigurations, privilege escalation, etc. within a container? Download this VM, pull out your pentest hats and get started 🙂 We have 2 Modes: HARD: This would require you to combine your docker skills as well…
Inside the Massive 711 Million Record Onliner Spambot Dump
http://ift.tt/2vHebhu
Submitted August 30, 2017 at 03:05AM by FereSignum
via reddit http://ift.tt/2x1ZERD
http://ift.tt/2vHebhu
Submitted August 30, 2017 at 03:05AM by FereSignum
via reddit http://ift.tt/2x1ZERD
Troy Hunt
Inside the Massive 711 Million Record Onliner Spambot Dump
Last week I was contacted by someone alerting me to the presence of a spam list. A big one. That's a bit of a relative term though because whilst I've loaded "big" spam lists into Have I been pwned (HIBP) before, the largest to date has been a
Restic Cryptography
http://ift.tt/2x28xdX
Submitted August 30, 2017 at 04:04AM by werrett
via reddit http://ift.tt/2x2onoZ
http://ift.tt/2x28xdX
Submitted August 30, 2017 at 04:04AM by werrett
via reddit http://ift.tt/2x2onoZ
Filippo.io
restic cryptography
tl;dr: this is not an audit nor an endorsement and I take no responsibility, but I had a quick look at the crypto and I think I'm going to use restic for my personal backups. I keep hearing good things about restic. I am redoing my storage solution, and
Extension Breakdown: Security Analysis of Browsers Extension Resources Control Policies
http://ift.tt/2vCkTVW
Submitted August 30, 2017 at 04:56AM by stevewatson301
via reddit http://ift.tt/2xwbJfG
http://ift.tt/2vCkTVW
Submitted August 30, 2017 at 04:56AM by stevewatson301
via reddit http://ift.tt/2xwbJfG
Multiple vulnerabilities in RubyGems
http://ift.tt/2x0yUBd
Submitted August 30, 2017 at 11:33AM by reddit_read_today
via reddit http://ift.tt/2xLT3YI
http://ift.tt/2x0yUBd
Submitted August 30, 2017 at 11:33AM by reddit_read_today
via reddit http://ift.tt/2xLT3YI
reddit
Multiple vulnerabilities in RubyGems • r/netsec
2 points and 0 comments so far on reddit
Discovering a Session Hijacking Vulnerability in GitLab
http://ift.tt/2wnxRsI
Submitted August 30, 2017 at 04:48PM by xtantin
via reddit http://ift.tt/2xwXwiy
http://ift.tt/2wnxRsI
Submitted August 30, 2017 at 04:48PM by xtantin
via reddit http://ift.tt/2xwXwiy
reddit
Discovering a Session Hijacking Vulnerability in GitLab • r/netsec
2 points and 1 comments so far on reddit
a technical whitepaper on #ROPEMAKER Email attacks (PDF)
http://ift.tt/2vIZb2z
Submitted August 30, 2017 at 06:25PM by franciscogtr
via reddit http://ift.tt/2xxz1BJ
http://ift.tt/2vIZb2z
Submitted August 30, 2017 at 06:25PM by franciscogtr
via reddit http://ift.tt/2xxz1BJ
DOM Based Angular Sandbox Escapes (presentation video BSides Manchester)
https://www.youtube.com/watch?v=jlSI5aVTEIg
Submitted August 30, 2017 at 07:00PM by nibblesec
via reddit http://ift.tt/2wIEJDf
https://www.youtube.com/watch?v=jlSI5aVTEIg
Submitted August 30, 2017 at 07:00PM by nibblesec
via reddit http://ift.tt/2wIEJDf
YouTube
2017 - DOM Based Angular Sandbox Escapes by Gareth Heyes
Enjoy the videos and music you love, upload original content, and share it all with friends, family, and the world on YouTube.
Analysis of 320 million password hashes
http://ift.tt/2xMFjgn
Submitted August 30, 2017 at 08:20AM by tieluohan
via reddit http://ift.tt/2wia6DW
http://ift.tt/2xMFjgn
Submitted August 30, 2017 at 08:20AM by tieluohan
via reddit http://ift.tt/2wia6DW
Cynosureprime
320 Million Hashes Exposed
Earlier this month (August 2017) Troy Hunt founder of the website Have I been pwned? [0] released over 319 million plaintext passwords [1...
BSides Manchester 2017 Recordings
https://www.youtube.com/playlist?list=PLcgqQkap1lNrOBNCXqpPqpPAqckxv0XhP
Submitted August 30, 2017 at 07:01PM by albinowax
via reddit http://ift.tt/2vJUyVI
https://www.youtube.com/playlist?list=PLcgqQkap1lNrOBNCXqpPqpPAqckxv0XhP
Submitted August 30, 2017 at 07:01PM by albinowax
via reddit http://ift.tt/2vJUyVI
YouTube
BSides Manchester 2017 - YouTube
Presentations from BSides Manchester 2017 - 17/08/2017
(SFW) To Kill The Mocking Porn - Fsociety Crypto Miner
http://ift.tt/2vV6upw
Submitted August 30, 2017 at 07:46PM by majorllama
via reddit http://ift.tt/2wJqz4Y
http://ift.tt/2vV6upw
Submitted August 30, 2017 at 07:46PM by majorllama
via reddit http://ift.tt/2wJqz4Y
Ringzerolabs
To Kill The Mocking Porn - Fsociety Crypto Miner
Malware Analysis - Fsociety crypto miner to mine bitcoins.
Password Compliance (PCI, HIPAA, FDA, SOC2, NIST)
http://ift.tt/2xy7IY4
Submitted August 30, 2017 at 10:41PM by kstra
via reddit http://ift.tt/2vFF4mw
http://ift.tt/2xy7IY4
Submitted August 30, 2017 at 10:41PM by kstra
via reddit http://ift.tt/2vFF4mw
Inversoft
Password Security Compliance Checklist | Inversoft
Use this Password Security Compliance Checklist as a tool to strengthen your existing password policy and ensure compliance.
Learn ROP through a short series of practical challenges
http://ift.tt/2x5KdYI
Submitted August 31, 2017 at 12:42AM by CptGibbon
via reddit http://ift.tt/2xNeVD4
http://ift.tt/2x5KdYI
Submitted August 31, 2017 at 12:42AM by CptGibbon
via reddit http://ift.tt/2xNeVD4
Ropemporium
ROP Emporium
Learn ROP
New IoT Device Vulnerability "ConnManDo"
http://ift.tt/2vCTowj
Submitted August 31, 2017 at 03:39AM by cybersecurityGS
via reddit http://ift.tt/2wTEcPz
http://ift.tt/2vCTowj
Submitted August 31, 2017 at 03:39AM by cybersecurityGS
via reddit http://ift.tt/2wTEcPz
Nri-Secure
New IoT Device Vulnerability "ConnManDo"
We found a stack buffer overflow vulnerability which can cause crash in the DNS-proxy feature of ConnMan. In some cases, this vulnerability can cause arbitrary code execution as exec user privilege of ConnMan. We have confirmed the reproducibility of this…
Critical Pacemaker Vulnerability Revealed - Millions of Lives at Risk
http://ift.tt/2vLcM9A
Submitted August 31, 2017 at 05:50AM by greenterminal
via reddit http://ift.tt/2xzkWUE
http://ift.tt/2vLcM9A
Submitted August 31, 2017 at 05:50AM by greenterminal
via reddit http://ift.tt/2xzkWUE
Hackers Grid
Critical Pacemaker Vulnerability Revealed - Millions of Lives at Risk - Hackers Grid
Critical pacemaker vulnerability allows hackers to hack into Abbott's pacemakers using RF waves and fully take control over the running device.
Hacking things by touching them: A guide to physical security
http://ift.tt/2vtGHDF
Submitted August 31, 2017 at 06:16AM by knoy
via reddit http://ift.tt/2wprbdC
http://ift.tt/2vtGHDF
Submitted August 31, 2017 at 06:16AM by knoy
via reddit http://ift.tt/2wprbdC
EXCLUSIVE: The FCC.gov Website Lets You Upload Malware Using Its Own API Key
http://ift.tt/2gqJOK2
Submitted August 31, 2017 at 08:01AM by Smokebits
via reddit http://ift.tt/2x74gWT
http://ift.tt/2gqJOK2
Submitted August 31, 2017 at 08:01AM by Smokebits
via reddit http://ift.tt/2x74gWT
Medium
The FCC.gov Website Lets You Upload Malware Using Its Own Public API Key
Somewhat incredibly I am the first tech writer on the planet to break this story, but even more incredibly the FCC lets you upload any file…
SharknAT&To - vulnerabilities in Arris routers
http://ift.tt/2wpIfQl
Submitted August 31, 2017 at 01:07PM by campuscodi
via reddit http://ift.tt/2vHv38l
http://ift.tt/2wpIfQl
Submitted August 31, 2017 at 01:07PM by campuscodi
via reddit http://ift.tt/2vHv38l
Nomotion Blog
SharknAT&To - Nomotion Blog
Introduction When evidence of the problems described in this report were first noticed, it almost seemed hard to believe. However, for those familiar with the technical history of Arris and their careless lingering of hardcoded accounts on their products…
Exploiting CVE-2016-10277 for untethered root on Moto devices (USENIX WOOT '17)
http://ift.tt/2x7GgTx
Submitted August 31, 2017 at 01:53PM by dv80
via reddit http://ift.tt/2wUX7t8
http://ift.tt/2x7GgTx
Submitted August 31, 2017 at 01:53PM by dv80
via reddit http://ift.tt/2wUX7t8
alephsecurity.github.io
Untethered initroot (USENIX WOOT '17)
Exploiting CVE-2016-10277 for untethered jailbreak on Moto devices (and more!)
Spambot : 711 million targeted by Ursnif, a really vicious malware mails
http://ift.tt/2wpTbhe
Submitted August 31, 2017 at 03:02PM by vibedzer
via reddit http://ift.tt/2vusGty
http://ift.tt/2wpTbhe
Submitted August 31, 2017 at 03:02PM by vibedzer
via reddit http://ift.tt/2vusGty
Xtreme TechTips
Spambot : 711 million targeted by Ursnif, a really vicious malware mails
A major threat on the web, since it would have already hacked nearly 711 million of email addresses and probably infected at least a hund...
Instagram Suffered Data Breach Of High Profiles Verified Users Contact Information
http://ift.tt/2glj6yT
Submitted August 31, 2017 at 03:40PM by abhihpes
via reddit http://ift.tt/2xOWnlK
http://ift.tt/2glj6yT
Submitted August 31, 2017 at 03:40PM by abhihpes
via reddit http://ift.tt/2xOWnlK
www.techposts.net
Instagram Suffered Data Breach, Hacker Gained High-Profiles Contact Information |
Instagram has revealed that it has suffered from serious data breach and the hacker has gained access to the contact information of the verified users