JavaScript Coinhive in Excel
https://ift.tt/2G00gYK
Submitted May 10, 2018 at 06:46PM by speckz
via reddit https://ift.tt/2rDZc8T
https://ift.tt/2G00gYK
Submitted May 10, 2018 at 06:46PM by speckz
via reddit https://ift.tt/2rDZc8T
reddit
JavaScript Coinhive in Excel • r/security
1 points and 0 comments so far on reddit
'Disappearing' Signal Messages Are Stored Indefinitely on Mac Hard Drives
https://ift.tt/2ruxPgz
Submitted May 10, 2018 at 07:28PM by GemmaJ123
via reddit https://ift.tt/2G3FU0X
https://ift.tt/2ruxPgz
Submitted May 10, 2018 at 07:28PM by GemmaJ123
via reddit https://ift.tt/2G3FU0X
Motherboard
'Disappearing' Signal Messages Are Stored Indefinitely on Mac Hard Drives
If you use the Signal desktop app, be careful with your notification settings.
CMSTP - Arbitrary DLL execution locally and remotely and SCT for AppLocker Bypass with PoC Source Code
https://ift.tt/2jMjJU3
Submitted May 10, 2018 at 09:44PM by Prav123
via reddit https://ift.tt/2G412nM
https://ift.tt/2jMjJU3
Submitted May 10, 2018 at 09:44PM by Prav123
via reddit https://ift.tt/2G412nM
Penetration Testing Lab
AppLocker Bypass – CMSTP
CMSTP is a binary which is associated with the Microsoft Connection Manager Profile Installer. It accepts INF files which can be weaponised with malicious commands in order to execute arbitrary cod…
SANS DFIR 2018 - Windows Forensics Cheatsheet - Finding Unknown Malware Step-by-Step
https://ift.tt/2KREWsn
Submitted May 10, 2018 at 09:28PM by TechLord2
via reddit https://ift.tt/2G3NKaL
https://ift.tt/2KREWsn
Submitted May 10, 2018 at 09:28PM by TechLord2
via reddit https://ift.tt/2G3NKaL
Microsoft Word Document Upload to Stored XSS: A Case Study
https://ift.tt/2I8yzPl
Submitted May 10, 2018 at 09:34PM by coalfirelabs
via reddit https://ift.tt/2jKXzS6
https://ift.tt/2I8yzPl
Submitted May 10, 2018 at 09:34PM by coalfirelabs
via reddit https://ift.tt/2jKXzS6
Coalfire.com
Coalfire - Coalfire Labs Blog
Coalfire Labs blog posts with opinions, findings and research from the technical testing of IT perspective.
Throwhammer: Rowhammer Attacks over the Network and Defenses (Rowhammering with 10G and RDMA)
https://ift.tt/2rzmqwA
Submitted May 10, 2018 at 10:25PM by Syonyk
via reddit https://ift.tt/2KRFoa2
https://ift.tt/2rzmqwA
Submitted May 10, 2018 at 10:25PM by Syonyk
via reddit https://ift.tt/2KRFoa2
NYPD tests new tool that detects credit card skimmers
https://ift.tt/2KbeVmr
Submitted May 10, 2018 at 10:26PM by EvanConover
via reddit https://ift.tt/2IxqGGL
https://ift.tt/2KbeVmr
Submitted May 10, 2018 at 10:26PM by EvanConover
via reddit https://ift.tt/2IxqGGL
AP News
NYPD tests new tool that detects credit card skimmers
GAINESVILLE, Fla. (AP) — Patrick Traynor, a cybersecurity expert, was in New York in February working with police to help identify a way to detect credit card skimmers on ATMs whe
An interesting feature in Windows 10 with encrypted ZIP files
https://ift.tt/2K7igmo
Submitted May 10, 2018 at 10:21PM by vah_13
via reddit https://ift.tt/2IulUKe
https://ift.tt/2K7igmo
Submitted May 10, 2018 at 10:21PM by vah_13
via reddit https://ift.tt/2IulUKe
GitHub
vah13/Win_ZIP_password
Python noscript to hook ZIP files passwords in Windows 10 - vah13/Win_ZIP_password
New Facebook-Spread Malware Triggers Credential Theft, Cryptomining | Threatpost
https://ift.tt/2Ke5jqX
Submitted May 10, 2018 at 11:51PM by LindseyOD123
via reddit https://ift.tt/2jL9BLg
https://ift.tt/2Ke5jqX
Submitted May 10, 2018 at 11:51PM by LindseyOD123
via reddit https://ift.tt/2jL9BLg
The first stop for security news | Threatpost
New Facebook-Spread Malware Triggers Credential Theft, Cryptomining
A new malware campaign rapidly spreading via Facebook is infecting victims' systems to steal their social media credentials and download cryptomining code.The malware, dubbed Nigelthorn by the Rad
Supply-Chain Security
https://ift.tt/2Kas9jz
Submitted May 10, 2018 at 11:56PM by volci
via reddit https://ift.tt/2G3u474
https://ift.tt/2Kas9jz
Submitted May 10, 2018 at 11:56PM by volci
via reddit https://ift.tt/2G3u474
reddit
r/security - Supply-Chain Security
1 votes and 0 so far on reddit
BobLobBlob - Hiding data in removed GitHub commits
https://ift.tt/2I9LMHO
Submitted May 11, 2018 at 03:13AM by Ondaje
via reddit https://ift.tt/2rzTZi9
https://ift.tt/2I9LMHO
Submitted May 11, 2018 at 03:13AM by Ondaje
via reddit https://ift.tt/2rzTZi9
Bypassing Mitigations by Attacking JIT Server in Microsoft Edge
https://ift.tt/2rA1ghX
Submitted May 11, 2018 at 02:12AM by SkyLunat1c
via reddit https://ift.tt/2ryf38z
https://ift.tt/2rA1ghX
Submitted May 11, 2018 at 02:12AM by SkyLunat1c
via reddit https://ift.tt/2ryf38z
googleprojectzero.blogspot.co.uk
Bypassing Mitigations by Attacking JIT Server in Microsoft Edge
Posted by Ivan Fratric, Project Zero With Windows 10 Creators Update, Microsoft introduced a new security mitigation in Microsoft Edge: ...
Object Linking and Embedding for Process Control Unified Automation (OPC UA) security analysis
https://ift.tt/2wrTgEL
Submitted May 11, 2018 at 12:58AM by TheUglyStranger
via reddit https://ift.tt/2wxkdqn
https://ift.tt/2wrTgEL
Submitted May 11, 2018 at 12:58AM by TheUglyStranger
via reddit https://ift.tt/2wxkdqn
Securelist - Kaspersky Lab’s cyberthreat research and reports
OPC UA security analysis
This article discusses our project that involved searching for vulnerabilities in implementations of the OPC UA protocol. We hope to draw the attention of vendors that develop software for industrial automation systems and the industrial IoT to problems associated…
Censys.io Guide: Discover SCADA and Phishing Sites
https://ift.tt/2G4puFj
Submitted May 10, 2018 at 08:57PM by patrikhudak
via reddit https://ift.tt/2IwDop7
https://ift.tt/2G4puFj
Submitted May 10, 2018 at 08:57PM by patrikhudak
via reddit https://ift.tt/2IwDop7
reddit
Censys.io Guide: Discover SCADA and Phishing Sites • r/netsec
1 points and 0 comments so far on reddit
Malware Abuses Chrome Extensions to Cryptomine and Steal Data
https://ift.tt/2jNQH6N
Submitted May 11, 2018 at 08:12AM by Prav123
via reddit https://ift.tt/2KQ0K7w
https://ift.tt/2jNQH6N
Submitted May 11, 2018 at 08:12AM by Prav123
via reddit https://ift.tt/2KQ0K7w
Radware Blog
Nigelthorn Malware Abuses Chrome Extensions to Cryptomine and Steal Data | Radware Blog
Individual research contributed by Adi Raff and Yuval Shapira. On May 3, 2018, Radware’s malware protection service detected a zero-day malware threat at one of its customers, a global manufacturing firm, by using machine-learning algorithms. This malware…
Iranian Hackers Expected to React to U.S. Exit of Nuclear Deal
https://ift.tt/2I6G7q5
Submitted May 11, 2018 at 06:30AM by Iot_Security
via reddit https://ift.tt/2IcVNDW
https://ift.tt/2I6G7q5
Submitted May 11, 2018 at 06:30AM by Iot_Security
via reddit https://ift.tt/2IcVNDW
IoT Institute
Iranian Hackers Expected to React to U.S. Exit of Nuclear Deal
The 2010 Stuxnet attack against Iran has become a prime example of an IoT attack. Now that the U.S. has exited the Iranian nuclear deal, retaliation is likely.
Week 19 in Information Security, 2018
https://ift.tt/2ryXpkz
Submitted May 11, 2018 at 11:42AM by undercomm
via reddit https://ift.tt/2KSZ513
https://ift.tt/2ryXpkz
Submitted May 11, 2018 at 11:42AM by undercomm
via reddit https://ift.tt/2KSZ513
Malgregator
InfoSec Week 19, 2018
There is a first ransomware which is taking advantage of a new Process Doppelgänging fileless code injection technique. Working on all...
British spies linked up with CIA WikiLeaks reveals
https://ift.tt/2lXO94z
Submitted May 11, 2018 at 01:41PM by dengorilla1
via reddit https://ift.tt/2I4TuH4
https://ift.tt/2lXO94z
Submitted May 11, 2018 at 01:41PM by dengorilla1
via reddit https://ift.tt/2I4TuH4
Mail Online
British spies linked up with CIA WikiLeaks reveals
MI5 worked with their US counterparts to develop software that convinced people their sets were switched off when in fact they were on and recording every word they say.
Huawei smartphone shipments grow in Europe, says Canalys - Video | ZDNet
https://ift.tt/2IbrCNr
Submitted May 11, 2018 at 02:22PM by wlscr
via reddit https://ift.tt/2I9yzTi
https://ift.tt/2IbrCNr
Submitted May 11, 2018 at 02:22PM by wlscr
via reddit https://ift.tt/2I9yzTi
ZDNet
Huawei smartphone shipments grow in Europe, says Canalys - Video | ZDNet
Huawei and its compatriot Xiaomi further narrowed the gap in smartphone sales over market leaders Samsung and Apple in the region. Read more: https://zd.net/2I9fWe2
UK cell giant EE left a critical code system exposed with a default password
https://ift.tt/2Kc0D52
Submitted May 11, 2018 at 02:20PM by wlscr
via reddit https://ift.tt/2IdyYAa
https://ift.tt/2Kc0D52
Submitted May 11, 2018 at 02:20PM by wlscr
via reddit https://ift.tt/2IdyYAa
ZDNet
UK cell giant EE left a critical code system exposed with a default password
The code repository contained two million lines of code across EE's website and customer portal.
Google has wild new technology that sounds like a real human on the phone
https://ift.tt/2G4bStP
Submitted May 11, 2018 at 02:15PM by wlscr
via reddit https://ift.tt/2I9yAGQ
https://ift.tt/2G4bStP
Submitted May 11, 2018 at 02:15PM by wlscr
via reddit https://ift.tt/2I9yAGQ
Business Insider
Google has wild new technology that sounds like a real human on the phone, and people already have really strong opinions about…
Google Duplex was the talk of Google I/O, the company's annual developer conference that kicked off this week.