Analysis of a Win32K Null Pointer Dereference by Matching the May Patch
https://ift.tt/2KuIyPK
Submitted May 18, 2018 at 02:14AM by TheUglyStranger
via reddit https://ift.tt/2Gu4o3o
https://ift.tt/2KuIyPK
Submitted May 18, 2018 at 02:14AM by TheUglyStranger
via reddit https://ift.tt/2Gu4o3o
LocationSmart Leaked Location Data for Customers of All Major U.S. Mobile Carriers Without Consent in Real Time
https://ift.tt/2rPz8Yf
Submitted May 18, 2018 at 03:22AM by Sephr
via reddit https://ift.tt/2IrkMUo
https://ift.tt/2rPz8Yf
Submitted May 18, 2018 at 03:22AM by Sephr
via reddit https://ift.tt/2IrkMUo
Robert Xiao
LocationSmart API Vulnerability
On May 16th, I found a vulnerability in the LocationSmart website which allowed anyone, with no prior authentication or consent, to obtain the realtime location of any cellphone in the US to within…
IT Security industry groups in the Los Angeles / Orange County area.
Hi all-I am moving into systems Admin and Security for my company and need to find some industry groups to attend to get “my head into the game”.Anyone know of any good ones in the Los Angeles or Orange County area?
Submitted May 18, 2018 at 02:32AM by Nimmerzz_IT
via reddit https://ift.tt/2rMpmp0
Hi all-I am moving into systems Admin and Security for my company and need to find some industry groups to attend to get “my head into the game”.Anyone know of any good ones in the Los Angeles or Orange County area?
Submitted May 18, 2018 at 02:32AM by Nimmerzz_IT
via reddit https://ift.tt/2rMpmp0
reddit
IT Security industry groups in the Los Angeles /... • r/security
Hi all- I am moving into systems Admin and Security for my company and need to find some industry groups to attend to get “my head into the...
Tracking Firm LocationSmart Leaked Location Data for Customers of All Major U.S. Mobile Carriers Without Consent in Real Time Via Its Web Site
https://ift.tt/2k5j68h
Submitted May 18, 2018 at 02:32AM by Rodeopants
via reddit https://ift.tt/2rMpqVM
https://ift.tt/2k5j68h
Submitted May 18, 2018 at 02:32AM by Rodeopants
via reddit https://ift.tt/2rMpqVM
reddit
r/security - Tracking Firm LocationSmart Leaked Location Data for Customers of All Major U.S. Mobile Carriers Without Consent in…
4 votes and 1 so far on reddit
PDF sample malicious and very powerful when vulnerabilities combined
https://ift.tt/2Inojmw
Submitted May 18, 2018 at 09:52AM by PeterG45
via reddit https://ift.tt/2k8tEDU
https://ift.tt/2Inojmw
Submitted May 18, 2018 at 09:52AM by PeterG45
via reddit https://ift.tt/2k8tEDU
WeLiveSecurity
PDF sample malicious and very powerful when vulnerabilities combined
ESET researchers identified a malicious PDF sample that revealed that the sample exploited two unknown vulnerabilities, a remote-code execution vulnerability in Adobe Reader and a privilege escalation vulnerability in Microsoft Windows, that when combined…
Malicious PDF Analysis Booklet by Didier Stevens (Free)
https://ift.tt/2Iu48TW
Submitted May 18, 2018 at 11:10AM by TechLord2
via reddit https://ift.tt/2rPhKmj
https://ift.tt/2Iu48TW
Submitted May 18, 2018 at 11:10AM by TechLord2
via reddit https://ift.tt/2rPhKmj
Fool Linux utils search by changing the path.
https://ift.tt/2IvhCyX
Submitted May 18, 2018 at 11:56AM by r0hi7
via reddit https://ift.tt/2rQOcFf
https://ift.tt/2IvhCyX
Submitted May 18, 2018 at 11:56AM by r0hi7
via reddit https://ift.tt/2rQOcFf
GitHub
r0hi7/BinExp
BinExp - Linux Binary Exploitation
Shellcode injection with ASLR enabled
https://ift.tt/2GtktGA
Submitted May 18, 2018 at 11:55AM by r0hi7
via reddit https://ift.tt/2IRPPvO
https://ift.tt/2GtktGA
Submitted May 18, 2018 at 11:55AM by r0hi7
via reddit https://ift.tt/2IRPPvO
GitHub
r0hi7/BinExp
BinExp - Linux Binary Exploitation
Hardcoded Password Found in Cisco Enterprise Software, Again
https://ift.tt/2L6aiLC
Submitted May 18, 2018 at 11:55AM by Tony49UK
via reddit https://ift.tt/2Iy2EIf
https://ift.tt/2L6aiLC
Submitted May 18, 2018 at 11:55AM by Tony49UK
via reddit https://ift.tt/2Iy2EIf
BleepingComputer
Hardcoded Password Found in Cisco Enterprise Software, Again
Cisco released 16 security advisories yesterday, including alerts for three vulnerabilities rated "Critical" and which received a maximum of 10 out of 10 on the CVSSv3 severity score.
A crash course on securing Serverless APIs with JSON web tokens
https://ift.tt/2JOGrWA
Submitted May 18, 2018 at 11:37AM by worldwide__master
via reddit https://ift.tt/2rXLsVR
https://ift.tt/2JOGrWA
Submitted May 18, 2018 at 11:37AM by worldwide__master
via reddit https://ift.tt/2rXLsVR
freeCodeCamp
A crash course on securing Serverless APIs with JSON web tokens
What a mouthful of a noscript. Wouldn’t you agree? In this walkthrough you’ll learn about securing your Serverless endpoints with JSON web…
Draytek router hacked
https://ift.tt/2rPqBEK
Submitted May 18, 2018 at 04:04PM by leegee333
via reddit https://ift.tt/2Gv9GMa
https://ift.tt/2rPqBEK
Submitted May 18, 2018 at 04:04PM by leegee333
via reddit https://ift.tt/2Gv9GMa
reddit
Draytek router hacked • r/networking
Where would be the best place to post about a possible flaw in the security of Draytek Routers so fellow Redditors are aware ?
Week 20 in Information Security, 2018
https://ift.tt/2Iu1f9S
Submitted May 18, 2018 at 03:58PM by undercomm
via reddit https://ift.tt/2LdZrzA
https://ift.tt/2Iu1f9S
Submitted May 18, 2018 at 03:58PM by undercomm
via reddit https://ift.tt/2LdZrzA
Malgregator
InfoSec Week 20, 2018
Major (probably not only) US cell carriers are selling access to the real-time phone location data. Because, you know the Electronic...
Latin American “Bineros” Ramping Up Fraudulent Activity
https://ift.tt/2k3k3y6
Submitted May 18, 2018 at 05:02PM by iliketechnews
via reddit https://ift.tt/2rSUhAa
https://ift.tt/2k3k3y6
Submitted May 18, 2018 at 05:02PM by iliketechnews
via reddit https://ift.tt/2rSUhAa
Flashpoint
Flashpoint - Latin American “Bineros” Ramping Up Fraudulent Activity
Fraudulent activity among Latin American cybercriminals, known as bineros, continues to plague online streaming services and retailers operating in the region.
Security In 5: Episode 241 - Maltego CE
https://ift.tt/2KzYVKR
Submitted May 18, 2018 at 06:38PM by BinaryBlog
via reddit https://ift.tt/2IrawiV
https://ift.tt/2KzYVKR
Submitted May 18, 2018 at 06:38PM by BinaryBlog
via reddit https://ift.tt/2IrawiV
Libsyn
Security In Five Podcast: Episode 241 - Maltego CE
This week's Tools, Tips and Tricks episode goes over a social engineering recon tool. Maltego CE, Community Edition, is the tool of choice for information gathering on websites, companies, people and more. The first step to a penetration test is recon, information…
Misconfigured Reverse Proxy Servers Spill Credentials | Threatpost
https://ift.tt/2wSd1pf
Submitted May 18, 2018 at 06:25PM by LindseyOD123
via reddit https://ift.tt/2IvmaJP
https://ift.tt/2wSd1pf
Submitted May 18, 2018 at 06:25PM by LindseyOD123
via reddit https://ift.tt/2IvmaJP
Threatpost | The first stop for security news
Misconfigured Reverse Proxy Servers Spill Credentials
Researchers have created a proof-of-concept attack that allows unauthenticated adversaries to extract user credentials from misconfigured reverse proxy servers in order to delete, manipulate or extrac
Is DBAN safe ?
Thanks :)
Submitted May 18, 2018 at 07:41PM by aymanbt
via reddit https://ift.tt/2rTiXbA
Thanks :)
Submitted May 18, 2018 at 07:41PM by aymanbt
via reddit https://ift.tt/2rTiXbA
reddit
r/security - Is DBAN safe ?
1 votes and 0 so far on reddit
Your smartphone apps are 'secretly colluding' to spy on you in terrifying detail, researchers warn
https://ift.tt/2pVihTz
Submitted May 18, 2018 at 08:12PM by dengorilla1
via reddit https://ift.tt/2rSxHs1
https://ift.tt/2pVihTz
Submitted May 18, 2018 at 08:12PM by dengorilla1
via reddit https://ift.tt/2rSxHs1
The Sun
Your smartphone apps are 'secretly colluding' to spy on you in terrifying detail, researchers warn
THE apps on your phone are secretly working together to spy on your life in minute detail, researchers have warned. Experts from Virginia Tech University analysed more than 100,000 pieces of Androi…
Maliciously Changing Someone's Address
https://ift.tt/2KzdcYh
Submitted May 18, 2018 at 08:10PM by volci
via reddit https://ift.tt/2GtVxPw
https://ift.tt/2KzdcYh
Submitted May 18, 2018 at 08:10PM by volci
via reddit https://ift.tt/2GtVxPw
reddit
r/security - Maliciously Changing Someone's Address
1 votes and 0 so far on reddit
Google’s creepy data video describes how your data may be used to engineer your decisions
https://ift.tt/2KwUUak
Submitted May 18, 2018 at 10:17PM by javoss88
via reddit https://ift.tt/2Lab3Dw
https://ift.tt/2KwUUak
Submitted May 18, 2018 at 10:17PM by javoss88
via reddit https://ift.tt/2Lab3Dw
Business Insider
A leaked internal Google video shows a creepy vision of how data could be used to direct human decision-making
The 'Selfish Ledger' video was made in 2016 by Nick Foster, the head of design at Google's ambitious research-and-development division, X. Google said it was designed to be provocative and does not relate to any products in development.
Dell SupportAssist Driver - Local Privilege Escalation Reversing and Analysis
https://ift.tt/2rTZ306
Submitted May 18, 2018 at 11:05PM by overflowingInt
via reddit https://ift.tt/2KxIpLx
https://ift.tt/2rTZ306
Submitted May 18, 2018 at 11:05PM by overflowingInt
via reddit https://ift.tt/2KxIpLx
[How-To/Release] CobaltSplunk - Splunk application to collect Attack Infrastructure logs and perform analysis
https://ift.tt/2k6QjQQ
Submitted May 18, 2018 at 10:58PM by vysec
via reddit https://ift.tt/2k6IUkv
https://ift.tt/2k6QjQQ
Submitted May 18, 2018 at 10:58PM by vysec
via reddit https://ift.tt/2k6IUkv
Vincent Yiu
CobaltSplunk
TLDR; use Splunk as a central log database and analysis system for offensive infrastructure logs. In many engagements, you will want accurate logging across multiple RAT systems, phishing web servers, mail systems, and more. Currently only supports Cobalt…