A guy on Reddit had over 20 websites hacked.
https://ift.tt/2H730Jd
Submitted April 17, 2018 at 11:27PM by ded1cated
via reddit https://ift.tt/2qFScqC
https://ift.tt/2H730Jd
Submitted April 17, 2018 at 11:27PM by ded1cated
via reddit https://ift.tt/2qFScqC
WebARX
CASE STUDY: My website got hacked, what to do?
Some website owners have no idea their site is vulnerable or website got hacked until the worst-case scenario has happened - revenue and potential clients are lost. These things happen on a daily basis and there are thousands of such stories.
Magnitude exploit kit switches to GandCrab ransomware
https://ift.tt/2H7gUqP
Submitted April 18, 2018 at 12:12AM by EvanConover
via reddit https://ift.tt/2H6BsUl
https://ift.tt/2H7gUqP
Submitted April 18, 2018 at 12:12AM by EvanConover
via reddit https://ift.tt/2H6BsUl
Malwarebytes Labs
Magnitude exploit kit switches to GandCrab ransomware - Malwarebytes Labs
After being faithful to its own Magniber ransomware for several months, Magnitude EK joins others to adopt GandCrab.
RAT utilizing GroupME REST API - Collaborative Remote Command Execution
https://ift.tt/2ETnwr5
Submitted April 18, 2018 at 01:37AM by brytonh
via reddit https://ift.tt/2JUHgOG
https://ift.tt/2ETnwr5
Submitted April 18, 2018 at 01:37AM by brytonh
via reddit https://ift.tt/2JUHgOG
GitHub
brytonh/rat-groupme
rat-groupme - RAT utilizing GroupME REST API and a PowerShell Implant
34 Tech Firms Sign Accord Not to Assist Government Hacking Operations
https://ift.tt/2ESNTxe
Submitted April 18, 2018 at 01:35AM by DJRWolf
via reddit https://ift.tt/2HbqIQR
https://ift.tt/2ESNTxe
Submitted April 18, 2018 at 01:35AM by DJRWolf
via reddit https://ift.tt/2HbqIQR
BleepingComputer
34 Tech Firms Sign Accord Not to Assist Government Hacking Operations
An industry group of 34 high-tech companies led by Microsoft, have signed today a tech accord, agreeing to defend customers at all costs from cybercriminal and nation-state cyber-attacks, but also not to provide any technical aid to governments looking to…
The IoT Hacker's Toolkit
https://ift.tt/2EQa9rF
Submitted April 18, 2018 at 01:46AM by Setaya69
via reddit https://ift.tt/2JU91a7
https://ift.tt/2EQa9rF
Submitted April 18, 2018 at 01:46AM by Setaya69
via reddit https://ift.tt/2JU91a7
System Overlord
The IoT Hacker's Toolkit - System Overlord
IoT and embedded devices provide new challenges to security engineers hoping to understand and evaluate the attack surface these devices add. From new interfaces to uncommon operating systems and software, the devices require both skills and tools just a…
Abusing CVE-2017-9506 to access internal services and hacking the Department of the Defense in the process
https://ift.tt/2J2iwCK
Submitted April 18, 2018 at 01:41AM by alyssathegryphon
via reddit https://ift.tt/2EURSsU
https://ift.tt/2J2iwCK
Submitted April 18, 2018 at 01:41AM by alyssathegryphon
via reddit https://ift.tt/2EURSsU
Crack the RSA conference F5 t-shirt challenge!
https://ift.tt/2qETvpL
Submitted April 18, 2018 at 02:35AM by KenchikkaKitsune
via reddit https://ift.tt/2H8jJMx
https://ift.tt/2qETvpL
Submitted April 18, 2018 at 02:35AM by KenchikkaKitsune
via reddit https://ift.tt/2H8jJMx
reddit
Crack the RSA conference F5 t-shirt challenge! • r/security
2 points and 0 comments so far on reddit
U.S. official warns of 'unintended consequences' of European data privacy law
https://ift.tt/2qG5TXa
Submitted April 18, 2018 at 02:33AM by wewewawa
via reddit https://ift.tt/2qG5OC1
https://ift.tt/2qG5TXa
Submitted April 18, 2018 at 02:33AM by wewewawa
via reddit https://ift.tt/2qG5OC1
reddit
U.S. official warns of 'unintended consequences' of... • r/security
1 points and 0 comments so far on reddit
Nova Scotia filled its public Freedom of Information Archive with citizens' private data, then arrested the teen who discovered it
https://ift.tt/2qEAbZB
Submitted April 18, 2018 at 06:24AM by BloodyIron
via reddit https://ift.tt/2HaWI7u
https://ift.tt/2qEAbZB
Submitted April 18, 2018 at 06:24AM by BloodyIron
via reddit https://ift.tt/2HaWI7u
Boing Boing
Nova Scotia filled its public Freedom of Information Archive with citizens' private data, then arrested the teen who discovered…
Nova Scotia filled its public Freedom of Information Archive with citizens' private data, then arrested the teen who discovered it
GPG Reaper - Obtain/Steal/Restore GPG Private Keys from gpg-agent cache/memory (See Comment)
https://ift.tt/2qFDfVy
Submitted April 18, 2018 at 09:06AM by TechLord2
via reddit https://ift.tt/2JU3XlT
https://ift.tt/2qFDfVy
Submitted April 18, 2018 at 09:06AM by TechLord2
via reddit https://ift.tt/2JU3XlT
GitHub
kacperszurek/gpg_reaper
gpg_reaper - GPG Reaper - Obtain/Steal/Restore GPG Private Keys from gpg-agent cache/memory
GPG Reaper - Obtain/Steal/Restore GPG Private Keys from gpg-agent cache/memory (See Comment)
https://ift.tt/2qFDfVy
Submitted April 18, 2018 at 09:06AM by TechLord2
via reddit https://ift.tt/2JU3XlT
https://ift.tt/2qFDfVy
Submitted April 18, 2018 at 09:06AM by TechLord2
via reddit https://ift.tt/2JU3XlT
GitHub
kacperszurek/gpg_reaper
gpg_reaper - GPG Reaper - Obtain/Steal/Restore GPG Private Keys from gpg-agent cache/memory
Enumerate usernames on an internal network domain where you have no creds by using SMB Relay with low priv (Github Sources)
https://ift.tt/2qG5zqU
Submitted April 18, 2018 at 08:24AM by TechLord2
via reddit https://ift.tt/2qGz6R9
https://ift.tt/2qG5zqU
Submitted April 18, 2018 at 08:24AM by TechLord2
via reddit https://ift.tt/2qGz6R9
GitHub
skorov/ridrelay
ridrelay - Enumerate usernames on a domain where you have no creds by using SMB Relay with low priv.
Leaking ads
https://ift.tt/2vmzcTL
Submitted April 18, 2018 at 03:24AM by EvanConover
via reddit https://ift.tt/2qF7UlK
https://ift.tt/2vmzcTL
Submitted April 18, 2018 at 03:24AM by EvanConover
via reddit https://ift.tt/2qF7UlK
Securelist - Kaspersky Lab’s cyberthreat research and reports
Leaking ads
When we use popular apps with good ratings from official app stores we assume they are safe. This is partially true – usually these apps have been developed with security in mind and have been revie
Windows 10 Update Will Support More Password-Free Logins
https://ift.tt/2JUbTDG
Submitted April 18, 2018 at 10:56AM by Horus_Sirius
via reddit https://ift.tt/2HcFzKR
https://ift.tt/2JUbTDG
Submitted April 18, 2018 at 10:56AM by Horus_Sirius
via reddit https://ift.tt/2HcFzKR
TSecurity Portal
Windows 10 Update Will Support More Password-Free Logins
#0daytoday #Microsoft Windows - nt!NtQueryInformationProcess (ProcessImageFileName) Kernel 64-bit P [#0day #Exploit]
https://tsecurity.de/de/300398/Reverse-Engineering/Exploits/PoC/%2525230daytoday-%252523Microsoft-Windows-nt!NtQueryInformationProcess-(ProcessImageFileName)-Kernel-64-bit-P-[%2525230day-%252523Exploit]/#.WtbVP34lgyI.reddit
Submitted April 18, 2018 at 10:49AM by Horus_Sirius
via reddit https://ift.tt/2EUblKD
https://tsecurity.de/de/300398/Reverse-Engineering/Exploits/PoC/%2525230daytoday-%252523Microsoft-Windows-nt!NtQueryInformationProcess-(ProcessImageFileName)-Kernel-64-bit-P-[%2525230day-%252523Exploit]/#.WtbVP34lgyI.reddit
Submitted April 18, 2018 at 10:49AM by Horus_Sirius
via reddit https://ift.tt/2EUblKD
TSecurity Portal
#0daytoday #Microsoft Windows - nt!NtQueryInformationProcess (ProcessImageFileName) Kernel 64-bit P [#0day #Exploit]
#0daytoday #Microsoft Windows - nt!NtQueryVirtualMemory (MemoryImageInformation) Kernel 64-bit Stac [#0day #Exploit]
https://tsecurity.de/de/300397/Reverse-Engineering/Exploits/PoC/%2525230daytoday-%252523Microsoft-Windows-nt!NtQueryVirtualMemory-(MemoryImageInformation)-Kernel-64-bit-Stac-[%2525230day-%252523Exploit]/#.WtbVIeX1QTE.reddit
Submitted April 18, 2018 at 10:48AM by Horus_Sirius
via reddit https://ift.tt/2qHAWC0
https://tsecurity.de/de/300397/Reverse-Engineering/Exploits/PoC/%2525230daytoday-%252523Microsoft-Windows-nt!NtQueryVirtualMemory-(MemoryImageInformation)-Kernel-64-bit-Stac-[%2525230day-%252523Exploit]/#.WtbVIeX1QTE.reddit
Submitted April 18, 2018 at 10:48AM by Horus_Sirius
via reddit https://ift.tt/2qHAWC0
TSecurity Portal
#0daytoday #Microsoft Windows - nt!NtQueryVirtualMemory (MemoryImageInformation) Kernel 64-bit Stac [#0day #Exploit]
#0daytoday #Microsoft Window Manager (Windows 7 x86) - Menu Management Component UAF Privilege Elev [#0day #Exploit]
https://tsecurity.de/de/300396/Reverse-Engineering/Exploits/PoC/%2525230daytoday-%252523Microsoft-Window-Manager-(Windows-7-x86)-Menu-Management-Component-UAF-Privilege-Elev-[%2525230day-%252523Exploit]/#.WtbU8ab4ZPQ.reddit
Submitted April 18, 2018 at 10:47AM by Horus_Sirius
via reddit https://ift.tt/2vqOyqa
https://tsecurity.de/de/300396/Reverse-Engineering/Exploits/PoC/%2525230daytoday-%252523Microsoft-Window-Manager-(Windows-7-x86)-Menu-Management-Component-UAF-Privilege-Elev-[%2525230day-%252523Exploit]/#.WtbU8ab4ZPQ.reddit
Submitted April 18, 2018 at 10:47AM by Horus_Sirius
via reddit https://ift.tt/2vqOyqa
TSecurity Portal
#0daytoday #Microsoft Window Manager (Windows 7 x86) - Menu Management Component UAF Privilege Elev [#0day #Exploit]
Raspberry Pi was hacked!
Hi all, I did a bad thing. I ran some code on my headless raspberry pi via ssh that sends a series of web requests over a long period (3+ hrs) a few separate times last week. I did not change the factory password/username combo (I know, I know). This weekend, I noticed I couldn't ssh in because it was claiming my password was incorrect. Tonight, I hooked it up to a monitor/keyboard and as soon as I turn it on, it performs a series of unfamiliar operations that I can't interrupt, some of which seem to be connecting to IP addresses that are not in my network. SO my questions are these: 1. Have I been hacked? 2. My raspberry pi is unplugged. Is it possible they have compromised my router/network security in general?tl;dr I think my raspberry pi was accessed by someone else via ssh. Is it possible they have compromised my router/network security in general?
Submitted April 18, 2018 at 08:43AM by chp_130
via reddit https://ift.tt/2qLw2n1
Hi all, I did a bad thing. I ran some code on my headless raspberry pi via ssh that sends a series of web requests over a long period (3+ hrs) a few separate times last week. I did not change the factory password/username combo (I know, I know). This weekend, I noticed I couldn't ssh in because it was claiming my password was incorrect. Tonight, I hooked it up to a monitor/keyboard and as soon as I turn it on, it performs a series of unfamiliar operations that I can't interrupt, some of which seem to be connecting to IP addresses that are not in my network. SO my questions are these: 1. Have I been hacked? 2. My raspberry pi is unplugged. Is it possible they have compromised my router/network security in general?tl;dr I think my raspberry pi was accessed by someone else via ssh. Is it possible they have compromised my router/network security in general?
Submitted April 18, 2018 at 08:43AM by chp_130
via reddit https://ift.tt/2qLw2n1
reddit
Raspberry Pi was hacked! • r/security
Hi all, I did a bad thing. I ran some code on my headless raspberry pi via ssh that sends a series of web requests over a long period (3+ hrs) a...
Over 20,000,000 of Chrome Users are Victims of Fake Ad Blockers
https://ift.tt/2qApHdQ
Submitted April 18, 2018 at 07:22AM by speckz
via reddit https://ift.tt/2J3m87y
https://ift.tt/2qApHdQ
Submitted April 18, 2018 at 07:22AM by speckz
via reddit https://ift.tt/2J3m87y
AdGuard Blog
Over 20,000,000 of Chrome Users are Victims of Fake Ad Blockers
According to the PageFair 2014 report, Google Chrome is a major driver of adblock growth. 20% of users discovered ad blocking by browsing “available browser extensions”. Given how popular ad blocking is, it is quite a lot. This also explains why "cloning"…
The physical security industry is now cyber-aware and ready to act
https://ift.tt/2HKoCIM
Submitted April 18, 2018 at 11:48AM by Iot_Security
via reddit https://ift.tt/2EXnH4y
https://ift.tt/2HKoCIM
Submitted April 18, 2018 at 11:48AM by Iot_Security
via reddit https://ift.tt/2EXnH4y
Linkedin
ISC West 2018:
The physical security industry is now cyber-aware and ready to act
The physical security industry is now cyber-aware and ready to act
Last week, SecuriThings had the pleasure of exhibiting at ISC West, the largest physical security trade show in the U.S. We presented as part of
A nice tool to scan the security of your OwnCloud/NextCloud installation
https://ift.tt/2mMF9E8
Submitted April 18, 2018 at 01:55PM by DerFette88
via reddit https://ift.tt/2HHcpUT
https://ift.tt/2mMF9E8
Submitted April 18, 2018 at 01:55PM by DerFette88
via reddit https://ift.tt/2HHcpUT
reddit
A nice tool to scan the security of your... • r/security
1 points and 0 comments so far on reddit