uTorrent apps vulnerable to remote code execution, information disclosure
http://ift.tt/2FvAOM0
Submitted February 25, 2018 at 07:42PM by Pearlescen7
via reddit http://ift.tt/2oxhiGZ
http://ift.tt/2FvAOM0
Submitted February 25, 2018 at 07:42PM by Pearlescen7
via reddit http://ift.tt/2oxhiGZ
SC Media UK
uTorrent apps vulnerable to remote code execution, information disclosure
The developer of uTorrent Windows and uTorrent Web has been scrambling to issue patched versions of the BitTorrent-based peer-to-peer fire-sharing apps.
Attackers turn to masquerading icons to boost phishing attack’s success
http://ift.tt/2EU6GZL
Submitted February 25, 2018 at 08:28PM by whitehattracker
via reddit http://ift.tt/2FsNTpv
http://ift.tt/2EU6GZL
Submitted February 25, 2018 at 08:28PM by whitehattracker
via reddit http://ift.tt/2FsNTpv
Cybereason
Attackers turn to masquerading icons to boost phishing attack’s success
Cybereason has observed thousands of malicious file executions masquerading as a popular programs such as Adobe PDF Reader, MS Word and Chrome.
Apple moves to store iCloud keys in China, raising human rights fears
http://ift.tt/2BNnAdQ
Submitted February 25, 2018 at 08:28PM by whitehattracker
via reddit http://ift.tt/2HHdD25
http://ift.tt/2BNnAdQ
Submitted February 25, 2018 at 08:28PM by whitehattracker
via reddit http://ift.tt/2HHdD25
reddit
Apple moves to store iCloud keys in China, raising... • r/security
1 points and 0 comments so far on reddit
How secure is my password? How to create a genuinely strong password
http://ift.tt/2CcqfP9
Submitted February 25, 2018 at 09:35PM by yourbasicgeek
via reddit http://ift.tt/2GJhNVS
http://ift.tt/2CcqfP9
Submitted February 25, 2018 at 09:35PM by yourbasicgeek
via reddit http://ift.tt/2GJhNVS
WIRED UK
How to create a genuinely strong password for your digital life
What sort of password ensures optimal security? There are a few ways to change and reset your password to make it stronger
Parasiting web server process with webshells in permissive environments
http://ift.tt/2FvRAuz
Submitted February 25, 2018 at 11:54PM by gid0rah
via reddit http://ift.tt/2HNkRSq
http://ift.tt/2FvRAuz
Submitted February 25, 2018 at 11:54PM by gid0rah
via reddit http://ift.tt/2HNkRSq
x-c3ll.github.io
Parasiting web server process with webshells in permissive environments ::
DoomsDay Vault
DoomsDay Vault
Example of how to abuse permissive environments to infect processes with custom code using ptrace
12 best practices for user account, authorization and password management
http://ift.tt/2DL2ECF
Submitted February 26, 2018 at 12:32AM by speckz
via reddit http://ift.tt/2HMsN6r
http://ift.tt/2DL2ECF
Submitted February 26, 2018 at 12:32AM by speckz
via reddit http://ift.tt/2HMsN6r
Google Cloud Platform Blog
12 best practices for user account, authorization and password management
By Ian Maddox, GCP Solutions Architect Account management, authorization and password management can be tricky. For many developers, accou...
Re-dressing Instagram – Leaking Application Tokens via Instagram ClickJacking Vulnerability!
http://ift.tt/2GJjWRw
Submitted February 25, 2018 at 11:19PM by SymbianSyMoh
via reddit http://ift.tt/2HLCXE7
http://ift.tt/2GJjWRw
Submitted February 25, 2018 at 11:19PM by SymbianSyMoh
via reddit http://ift.tt/2HLCXE7
reddit
Re-dressing Instagram – Leaking Application Tokens... • r/security
1 points and 0 comments so far on reddit
Hackazon Setup
http://ift.tt/2F6WLTU
Submitted February 26, 2018 at 12:51AM by ma77i3
via reddit http://ift.tt/2FwLbQ3
http://ift.tt/2F6WLTU
Submitted February 26, 2018 at 12:51AM by ma77i3
via reddit http://ift.tt/2FwLbQ3
My Cyberlab
Hackazon – Setup
Hackazon is an open-source project from Rapid7 that is intended to be an e-commerce website. This realistic web application gives developers and security professionals an idea on the impact of expl…
Fun with self-decryption · x64dbg
http://ift.tt/2CihnHR
Submitted February 26, 2018 at 02:23AM by mrexodia
via reddit http://ift.tt/2HKDgiA
http://ift.tt/2CihnHR
Submitted February 26, 2018 at 02:23AM by mrexodia
via reddit http://ift.tt/2HKDgiA
X64Dbg
Fun with self-decryption · x64dbg
Official x64dbg blog!
Malware Analysis and Forensic : Challenges and Exercises [And Many More]
http://ift.tt/1DphtZz
Submitted February 26, 2018 at 05:57AM by TechLord2
via reddit http://ift.tt/2CI2RVO
http://ift.tt/1DphtZz
Submitted February 26, 2018 at 05:57AM by TechLord2
via reddit http://ift.tt/2CI2RVO
reddit
Malware Analysis and Forensic : Challenges and... • r/netsec
1 points and 0 comments so far on reddit
Automated reconnaissance wrapper — TomNomNom's meg on steroids [With Video Presentation]
http://ift.tt/2ESkXub
Submitted February 26, 2018 at 05:24AM by TechLord2
via reddit http://ift.tt/2HLktUs
http://ift.tt/2ESkXub
Submitted February 26, 2018 at 05:24AM by TechLord2
via reddit http://ift.tt/2HLktUs
GitHub
EdOverflow/megplus
megplus - Automated reconnaissance wrapper — TomNomNom's meg on steroids.
[FREE] Windows / Linux Local Privilege Escalation Workshop [Labs (VMs), Videos and Slides]
http://ift.tt/2BPT3vW
Submitted February 26, 2018 at 05:18AM by TechLord2
via reddit http://ift.tt/2CIkjtl
http://ift.tt/2BPT3vW
Submitted February 26, 2018 at 05:18AM by TechLord2
via reddit http://ift.tt/2CIkjtl
GitHub
sagishahar/lpeworkshop
Windows / Linux Local Privilege Escalation Workshop - sagishahar/lpeworkshop
Chase ‘Glitch’ Exposed Customer Accounts
http://ift.tt/2sQk4MO
Submitted February 26, 2018 at 06:20AM by volci
via reddit http://ift.tt/2EQuWzT
http://ift.tt/2sQk4MO
Submitted February 26, 2018 at 06:20AM by volci
via reddit http://ift.tt/2EQuWzT
Adrian Crenshaw's YT is being targeted for copyright and takedowns. Many otherwise good bleeding edge tech and security videos from conventions and talks have been removed.
Tried submitting in r/technology, but it was not classified as "worthy of news".Here is a link to his channel so you can see the number of removed and striked videos: https://www.youtube.com/user/irongeek
Submitted February 26, 2018 at 07:28AM by PseudoSecuritay
via reddit http://ift.tt/2FzWkj7
Tried submitting in r/technology, but it was not classified as "worthy of news".Here is a link to his channel so you can see the number of removed and striked videos: https://www.youtube.com/user/irongeek
Submitted February 26, 2018 at 07:28AM by PseudoSecuritay
via reddit http://ift.tt/2FzWkj7
Looking remotely change the time/time zone on someone else's cell phone. Possible?
Not sure if this is the right place for this but I wanted to see if it was possible to set something up that when someone came into my house, the time and/or timezone on their phone would change without them realizing. Is this something I can do maybe through the router or is this essentially not possible without access to the phone?
Submitted February 26, 2018 at 06:59AM by fanoftheshow
via reddit http://ift.tt/2BOuUWK
Not sure if this is the right place for this but I wanted to see if it was possible to set something up that when someone came into my house, the time and/or timezone on their phone would change without them realizing. Is this something I can do maybe through the router or is this essentially not possible without access to the phone?
Submitted February 26, 2018 at 06:59AM by fanoftheshow
via reddit http://ift.tt/2BOuUWK
reddit
Looking remotely change the time/time zone on someone... • r/security
Not sure if this is the right place for this but I wanted to see if it was possible to set something up that when someone came into my house, the...
How likely am I compromised ? And is there anyway to find out who is the receiver ?
http://ift.tt/2CIPyUM
Submitted February 26, 2018 at 08:09AM by tamtong
via reddit http://ift.tt/2F1ZCxD
http://ift.tt/2CIPyUM
Submitted February 26, 2018 at 08:09AM by tamtong
via reddit http://ift.tt/2F1ZCxD
Pure Python Implementation of in Memory Shared Object Loading.
http://ift.tt/2F73duf
Submitted February 26, 2018 at 10:09AM by xor_al_al
via reddit http://ift.tt/2EQJ2Bl
http://ift.tt/2F73duf
Submitted February 26, 2018 at 10:09AM by xor_al_al
via reddit http://ift.tt/2EQJ2Bl
GitHub
nullbites/SnakeEater
SnakeEater - Python implementation of the reflective SO injection technique
How to restrict Certificate Authorities (CA) to issue SSL certs. Enable CAA record in DNS
http://ift.tt/2ETrQLT
Submitted February 26, 2018 at 10:07AM by xrna
via reddit http://ift.tt/2GKef5K
http://ift.tt/2ETrQLT
Submitted February 26, 2018 at 10:07AM by xrna
via reddit http://ift.tt/2GKef5K
Cyber Sins
Restrict Certificate Authorities (CA) to issue SSL certs. Enable CAA record in DNS
It's been a long time since I audited someone's DNS file but recently while checking a client's DNS configuration I was surprised that the CAA records were set randomly "so to speak". I discussed with the administrator and was surprised to see that he has…
Canada to Devote $1 Billion of Federal Budget to Fighting Cybercrime
http://ift.tt/2Fuh3EK
Submitted February 26, 2018 at 01:01PM by Iot_Security
via reddit http://ift.tt/2EQmXCY
http://ift.tt/2Fuh3EK
Submitted February 26, 2018 at 01:01PM by Iot_Security
via reddit http://ift.tt/2EQmXCY
Futurism
Canada to Devote $1 Billion of Federal Budget to Fighting Cybercrime
Sources told Canadian news outlets that the bolstered budget may be to help protect the country's 2019 elections from interference.
Cyber Attack Targets Connecticut State Agencies
http://ift.tt/2CHq0rp
Submitted February 26, 2018 at 01:00PM by Iot_Security
via reddit http://ift.tt/2F7EgPp
http://ift.tt/2CHq0rp
Submitted February 26, 2018 at 01:00PM by Iot_Security
via reddit http://ift.tt/2F7EgPp
NBC Connecticut
Cyber Attack Targets State Agencies
Some of Connecticut's state agencies experienced a cyber attack late Friday afternoon, according to the Department of Administrative Services.
I figured out a way to hack any of Facebook’s 2 billion accounts, and they paid me a $15,000 bounty…
http://ift.tt/2CLRL28
Submitted February 26, 2018 at 02:05PM by Saltones
via reddit http://ift.tt/2sV7mfQ
http://ift.tt/2CLRL28
Submitted February 26, 2018 at 02:05PM by Saltones
via reddit http://ift.tt/2sV7mfQ
freeCodeCamp
I figured out a way to hack any of Facebook’s 2 billion accounts, and they paid me a $15,000 bounty for it
I am publishing this with the permission of Facebook under the responsible disclosure policy. They have fixed this vulnerability.