Firefox turns out the lights on two privacy-sucking features
http://ift.tt/2p8ViCI
Submitted March 13, 2018 at 10:19PM by volci
via reddit http://ift.tt/2GmKpW1
http://ift.tt/2p8ViCI
Submitted March 13, 2018 at 10:19PM by volci
via reddit http://ift.tt/2GmKpW1
Naked Security
Firefox turns out the lights on two privacy-sucking features
Thanks to some illuminating privacy research, it’s “lights out” for another pair of esoteric APIs.
Warning! Spreading crypto mining malware!
http://ift.tt/2p89xIQ
Submitted March 13, 2018 at 10:12PM by tomasstatkus
via reddit http://ift.tt/2DmZdkv
http://ift.tt/2p89xIQ
Submitted March 13, 2018 at 10:12PM by tomasstatkus
via reddit http://ift.tt/2DmZdkv
Reviewedbypro
Rapidly spreading crypto-mining malware infected 500,000 machines
A rapidly spreading cryptocurrency mining malware infected nearly 500,000 Microsoft Windows PCs in just 12 hours time period. The cryptocurrency mining malware also known as
Bypassing Payments Using Webhooks
http://ift.tt/2tOSGQ4
Submitted March 13, 2018 at 10:32PM by cablej
via reddit http://ift.tt/2FBanYH
http://ift.tt/2tOSGQ4
Submitted March 13, 2018 at 10:32PM by cablej
via reddit http://ift.tt/2FBanYH
lightningsecurity.io
Bypassing Payments Using Webhooks
Metta: Uber’s Open Source Tool for Adversarial Simulation
http://ift.tt/2FFM87N
Submitted March 13, 2018 at 10:07PM by mubix
via reddit http://ift.tt/2paMeOk
http://ift.tt/2FFM87N
Submitted March 13, 2018 at 10:07PM by mubix
via reddit http://ift.tt/2paMeOk
Medium
Introducing Metta: Uber’s Open Source Tool for Adversarial Simulation
Chris Gates, Senior Security Engineer
Reverse Engineering a Self-Modifying Binary with radare2
http://ift.tt/2tO9Ux4
Submitted March 13, 2018 at 10:06PM by Megabeets
via reddit http://ift.tt/2FRDIO0
http://ift.tt/2tO9Ux4
Submitted March 13, 2018 at 10:06PM by Megabeets
via reddit http://ift.tt/2FRDIO0
Megabeets
Reversing a Self-Modifying Binary with radare2
This is how I used radare2 to solve a self-modifying binary challenge from r2con 2017. This is a radare2 tutorial for advanced users. Don't miss my series of articles for beginners.
March's Patch Tuesday update will fix a critical vulnerability in Microsoft Remote Desktop Protocol
http://ift.tt/2HwKPsv
Submitted March 13, 2018 at 10:42PM by BengaliKyd
via reddit http://ift.tt/2tOwd5o
http://ift.tt/2HwKPsv
Submitted March 13, 2018 at 10:42PM by BengaliKyd
via reddit http://ift.tt/2tOwd5o
On MSFT
March’s Patch Tuesday update will fix a critical vulnerability in Microsoft Remote Desktop Protocol
This month's Patch Tuesday update will fix a critical vulnerability in Microsoft's Remote Desktop Protocol affecting all PCs running Windows Vista and newer. The vulnerability allows attackers to exploit remote desktop and Windows remote management to run…
The Java Soothsayer: A practical application for insecure randomness (With free 0day).
http://ift.tt/2In4j3R
Submitted March 13, 2018 at 10:23PM by alex91ar
via reddit http://ift.tt/2IqnslA
http://ift.tt/2In4j3R
Submitted March 13, 2018 at 10:23PM by alex91ar
via reddit http://ift.tt/2IqnslA
Medium
The Java Soothsayer: A practical application for insecure randomness. (Includes free 0day)
As a pentester is quite usual that for several reasons one might not find as many shiny beautiful critical bugs as one might want to. Some…
Diamorphine + Hideusage fork. Kernel rootkit to spoof system load and load averages.
http://ift.tt/2HxJVMd
Submitted March 13, 2018 at 10:33PM by alex91ar
via reddit http://ift.tt/2p8j8PQ
http://ift.tt/2HxJVMd
Submitted March 13, 2018 at 10:33PM by alex91ar
via reddit http://ift.tt/2p8j8PQ
GitHub
alex91ar/Diamorphine
Diamorphine - LKM rootkit for Linux Kernels 2.6.x/3.x/4.x
Reversing a Self-Modifying Binary with radare2
http://ift.tt/2p9dxsF
Submitted March 13, 2018 at 11:37PM by TechLord2
via reddit http://ift.tt/2tLNaO4
http://ift.tt/2p9dxsF
Submitted March 13, 2018 at 11:37PM by TechLord2
via reddit http://ift.tt/2tLNaO4
Megabeets
Reversing a Self-Modifying Binary with radare2
This is how I used radare2 to solve a self-modifying binary challenge from r2con 2017. This is a radare2 tutorial for advanced users. Don't miss my series of articles for beginners.
We're Making 12 Million Sensitive URLs Available for Download
http://ift.tt/2pck6tr
Submitted March 13, 2018 at 11:33PM by cwings
via reddit http://ift.tt/2FvHLA2
http://ift.tt/2pck6tr
Submitted March 13, 2018 at 11:33PM by cwings
via reddit http://ift.tt/2FvHLA2
6 digit PINs and the usefulness of password restrictions
http://ift.tt/2tIX2YR
Submitted March 14, 2018 at 12:46AM by OrdisLux
via reddit http://ift.tt/2Gpsvlo
http://ift.tt/2tIX2YR
Submitted March 14, 2018 at 12:46AM by OrdisLux
via reddit http://ift.tt/2Gpsvlo
Medium
Response to
Last month Troy Hunt released Pwned Passwords V2, a list of 500 million hashed passwords together with how often these are used¹. I then…
Reverse engineering of Mikrotik exploit from Vault 7 CIA Leaks [Working PoC (Full Sources) and PDF Article - See Comment]
http://ift.tt/2mhlUjz
Submitted March 13, 2018 at 11:46PM by TechLord2
via reddit http://ift.tt/2DoPytM
http://ift.tt/2mhlUjz
Submitted March 13, 2018 at 11:46PM by TechLord2
via reddit http://ift.tt/2DoPytM
GitHub
BigNerd95/Chimay-Red
Chimay-Red - Working POC of Mikrotik exploit from Vault 7 CIA Leaks
Analysis of a Kubernetes hack -- Backdooring through kubelet
http://ift.tt/2GoAmzO
Submitted March 14, 2018 at 01:35AM by jc_sec
via reddit http://ift.tt/2GoP9dD
http://ift.tt/2GoAmzO
Submitted March 14, 2018 at 01:35AM by jc_sec
via reddit http://ift.tt/2GoP9dD
Medium
Analysis of a Kubernetes hack — Backdooring through kubelet
Unless you’ve been living under a rock for the past three years, you’ve probably heard about Kubernetes. At Handy, our infrastructure is…
CVE 2018-1057: Authenticated [Samba] users can change other users' password
http://ift.tt/2In1pvO
Submitted March 14, 2018 at 01:27AM by FUS_ROH_yay
via reddit http://ift.tt/2Dpkx8T
http://ift.tt/2In1pvO
Submitted March 14, 2018 at 01:27AM by FUS_ROH_yay
via reddit http://ift.tt/2Dpkx8T
OCEANLOTUS: OLD TECHNIQUES, NEW BACKDOOR [PDF]
http://ift.tt/2FDYAoA
Submitted March 13, 2018 at 11:54PM by TechLord2
via reddit http://ift.tt/2FxD74w
http://ift.tt/2FDYAoA
Submitted March 13, 2018 at 11:54PM by TechLord2
via reddit http://ift.tt/2FxD74w
Researchers Say AMD Processors Have Serious Vulnerabilities and Backdoors
http://ift.tt/2FT8mGO
Submitted March 14, 2018 at 01:36AM by TaviRider
via reddit http://ift.tt/2Hwhcr4
http://ift.tt/2FT8mGO
Submitted March 14, 2018 at 01:36AM by TaviRider
via reddit http://ift.tt/2Hwhcr4
Motherboard
Researchers Say AMD Processors Have Serious Vulnerabilities and Backdoors
Security researchers announced a series of 13 vulnerabilities within AMD’s RYZEN and EPYC processors that could make some data breaches even worse.
Let's Encrypt ACME v2 and Wildcard Certificate Support is Live!
http://ift.tt/2GoXBtF
Submitted March 13, 2018 at 10:47PM by gvarisco
via reddit http://ift.tt/2HwPE4M
http://ift.tt/2GoXBtF
Submitted March 13, 2018 at 10:47PM by gvarisco
via reddit http://ift.tt/2HwPE4M
Let's Encrypt Community Support
ACME v2 and Wildcard Certificate Support is Live
We’re pleased to announce that ACMEv2 and wildcard certificate support is live! With today’s new features we’re continuing to break down barriers for HTTPS adoption across the Web by making it even easier for every website to get and manage certificates.…
Frida 10.7 is out with full support for the Electra jailbreak on iOS 11
http://ift.tt/2InLq0T
Submitted March 14, 2018 at 02:22AM by oleavr
via reddit http://ift.tt/2pfyUYy
http://ift.tt/2InLq0T
Submitted March 14, 2018 at 02:22AM by oleavr
via reddit http://ift.tt/2pfyUYy
Visual Basic GUI: A Tool to Inject Keystrokes on a SSH Client via an X11 Forwarded Session
http://ift.tt/2pfDB4C
Submitted March 14, 2018 at 03:12AM by pergnib
via reddit http://ift.tt/2DqoEBr
http://ift.tt/2pfDB4C
Submitted March 14, 2018 at 03:12AM by pergnib
via reddit http://ift.tt/2DqoEBr
GitHub
xfee/vbg
vbg - Visual Basic GUI: A Tool to Inject Keystrokes on a SSH Client via an X11 Forwarded Session
Here's a List of 29 Different Types of USB Attacks
http://ift.tt/2pbb3ZR
Submitted March 14, 2018 at 03:55AM by Iot_Security
via reddit http://ift.tt/2p9Kjtz
http://ift.tt/2pbb3ZR
Submitted March 14, 2018 at 03:55AM by Iot_Security
via reddit http://ift.tt/2p9Kjtz
BleepingComputer
Here's a List of 29 Different Types of USB Attacks
Researchers from the Ben-Gurion University of the Negev in Israel have identified 29 ways in which attackers could use USB devices to compromise users' computers.
MWC2018 – Digital Security Roundup
http://ift.tt/2FoJ5oj
Submitted March 14, 2018 at 03:41AM by Iot_Security
via reddit http://ift.tt/2p9AbAT
http://ift.tt/2FoJ5oj
Submitted March 14, 2018 at 03:41AM by Iot_Security
via reddit http://ift.tt/2p9AbAT
Abiresearch
MWC2018 – Digital Security Roundup
Read more on ABIResearch.com