Detecting Kernel Memory Disclosure – Whitepaper
https://ift.tt/2K72XdX
Submitted June 21, 2018 at 10:47PM by mttd
via reddit https://ift.tt/2tvJfBp
https://ift.tt/2K72XdX
Submitted June 21, 2018 at 10:47PM by mttd
via reddit https://ift.tt/2tvJfBp
Blogspot
Detecting Kernel Memory Disclosure – Whitepaper
Posted by Mateusz Jurczyk, Project Zero Since early 2017, we have been working on Bochspwn Reloaded – a piece of dynamic binary instrume...
FileZilla malware
https://ift.tt/2tmCFxZ
Submitted June 23, 2018 at 02:52AM by the-n0bf
via reddit https://ift.tt/2yzGMfn
https://ift.tt/2tmCFxZ
Submitted June 23, 2018 at 02:52AM by the-n0bf
via reddit https://ift.tt/2yzGMfn
reddit
r/netsec - FileZilla malware
8 votes and 3 so far on reddit
DNS Rebind Toolkit - A front-end JavaScript toolkit for creating DNS rebinding attacks
https://ift.tt/2tsbtgo
Submitted June 23, 2018 at 07:35AM by PeterG45
via reddit https://ift.tt/2twMY1R
https://ift.tt/2tsbtgo
Submitted June 23, 2018 at 07:35AM by PeterG45
via reddit https://ift.tt/2twMY1R
GitHub
Kinimiwar/dns-rebind-toolkit
A front-end JavaScript toolkit for creating DNS rebinding attacks. - Kinimiwar/dns-rebind-toolkit
[X-POST from /r/hacking & /r/ReverseEngineering] A step by step binary analysis write-up using Radare2. Due to the positive feedback, I've decided to make a series of these posts!
https://ift.tt/2tv1iI2
Submitted June 23, 2018 at 05:22PM by ThisIsLibra
via reddit https://ift.tt/2K4KjY6
https://ift.tt/2tv1iI2
Submitted June 23, 2018 at 05:22PM by ThisIsLibra
via reddit https://ift.tt/2K4KjY6
reddit
r/netsec - [X-POST from /r/hacking & /r/ReverseEngineering] A step by step binary analysis write-up using Radare2. Due to the positive…
1 votes and 1 so far on reddit
Simple hack bypasses iOS passcode entry limit, opens door to brute force hacks
https://ift.tt/2MerTku
Submitted June 23, 2018 at 07:27PM by polar
via reddit https://ift.tt/2MdUZjV
https://ift.tt/2MerTku
Submitted June 23, 2018 at 07:27PM by polar
via reddit https://ift.tt/2MdUZjV
AppleInsider
Simple hack bypasses iOS passcode entry limit, opens door to brute force hacks [u] | Appleinsider
A security researcher recently discovered a flaw in Apple's iOS that allows anyone with a Lightning cable the ability to bypass an iPhone or iPad's passcode attempt limit, opening the door to brute force attacks.
Zeratool: Automatic Exploit Generation (AEG) and remote flag capture for exploitable CTF problems
https://ift.tt/2ltmACk
Submitted June 23, 2018 at 10:30PM by Arrilius
via reddit https://ift.tt/2txoVjk
https://ift.tt/2ltmACk
Submitted June 23, 2018 at 10:30PM by Arrilius
via reddit https://ift.tt/2txoVjk
GitHub
GitHub - ChrisTheCoolHut/Zeratool: Automatic Exploit Generation (AEG) and remote flag capture for exploitable CTF problems
Automatic Exploit Generation (AEG) and remote flag capture for exploitable CTF problems - GitHub - ChrisTheCoolHut/Zeratool: Automatic Exploit Generation (AEG) and remote flag capture for exploitab...
Documenting and Attacking a Windows Defender Application Control Feature the Hard Way — A Case Study in Security Research Methodology
https://ift.tt/2tmUAEZ
Submitted June 24, 2018 at 07:08AM by Scene_News
via reddit https://ift.tt/2KgZd9V
https://ift.tt/2tmUAEZ
Submitted June 24, 2018 at 07:08AM by Scene_News
via reddit https://ift.tt/2KgZd9V
Posts By SpecterOps Team Members
Documenting and Attacking a Windows Defender Application Control Feature the Hard Way — A Case…
Introduction and Motivations
Shelling Apache Felix With Java Bundles
https://ift.tt/2JUQ4Yk
Submitted June 24, 2018 at 03:50PM by glumaproasta
via reddit https://ift.tt/2IltUZT
https://ift.tt/2JUQ4Yk
Submitted June 24, 2018 at 03:50PM by glumaproasta
via reddit https://ift.tt/2IltUZT
Posts By SpecterOps Team Members
Shelling Apache Felix With Java Bundles – Posts By SpecterOps Team Members
Administrative portals remain one of the top “low hanging fruit” categories to be on the lookout for when performing bug bounties…
Collaboration of Infosec tweets
https://ift.tt/2liPXH6
Submitted June 24, 2018 at 05:00PM by fireh7nter
via reddit https://ift.tt/2tsPTsi
https://ift.tt/2liPXH6
Submitted June 24, 2018 at 05:00PM by fireh7nter
via reddit https://ift.tt/2tsPTsi
Infosec Tweets
Tweets are of others
Exfiltrating data from the browser using battery discharge information
https://ift.tt/2IozFpm
Submitted June 25, 2018 at 01:18PM by ericnyamu
via reddit https://ift.tt/2luN5Hz
https://ift.tt/2IozFpm
Submitted June 25, 2018 at 01:18PM by ericnyamu
via reddit https://ift.tt/2luN5Hz
Inference Attacks by Malicious Batteries on Mobile Devices [PDF Paper]
https://ift.tt/2Ip486S
Submitted June 25, 2018 at 03:05PM by Scene_News
via reddit https://ift.tt/2K5qrnL
https://ift.tt/2Ip486S
Submitted June 25, 2018 at 03:05PM by Scene_News
via reddit https://ift.tt/2K5qrnL
FreeStyling with SharpShooter v1.0
https://ift.tt/2tC61HY
Submitted June 25, 2018 at 03:59PM by dmchell
via reddit https://ift.tt/2tsyJM4
https://ift.tt/2tC61HY
Submitted June 25, 2018 at 03:59PM by dmchell
via reddit https://ift.tt/2tsyJM4
SSL/TLS for dummies part 2 - Understanding key exchange algorithm
https://ift.tt/2KnbKMf
Submitted June 25, 2018 at 08:49PM by silentsniffer
via reddit https://ift.tt/2tyCcIo
https://ift.tt/2KnbKMf
Submitted June 25, 2018 at 08:49PM by silentsniffer
via reddit https://ift.tt/2tyCcIo
WST
SSL/TLS for dummies part 2 - Understanding key exchange algorithm |
SSL TLS handshake.Asymmetric encryption.What is session key?What is PKI?what is Diffie-Hellman key exchange?Need for Certificate Authority.Data integrity.
[Red Team Tip] Getting SYSTEM via ftp.exe
https://ift.tt/2KhFruN
Submitted June 25, 2018 at 09:03PM by ericnyamu
via reddit https://ift.tt/2tAxZE0
https://ift.tt/2KhFruN
Submitted June 25, 2018 at 09:03PM by ericnyamu
via reddit https://ift.tt/2tAxZE0
reddit
r/netsec - [Red Team Tip] Getting SYSTEM via ftp.exe
1 votes and 0 so far on reddit
Demonstrating Reflected versus DOM Based XSS
https://ift.tt/2MlL8sb
Submitted June 25, 2018 at 01:29AM by ScottContini
via reddit https://ift.tt/2tGJPN8
https://ift.tt/2MlL8sb
Submitted June 25, 2018 at 01:29AM by ScottContini
via reddit https://ift.tt/2tGJPN8
Wordpress
Demonstrating Reflected versus DOM Based XSS
In my employment, I am responsible for making sure developers produce secure code, and security education is a key part of reaching this goal. There are many ways that one can approach security ed…
PoC||GTFO 18 is out! [pdf]
https://ift.tt/2lCUMvz
Submitted June 26, 2018 at 01:50AM by opticaliqlusion
via reddit https://ift.tt/2yHoPLT
https://ift.tt/2lCUMvz
Submitted June 26, 2018 at 01:50AM by opticaliqlusion
via reddit https://ift.tt/2yHoPLT
Dissecting and exploiting ELF files
https://ift.tt/2MXfPFo
Submitted June 26, 2018 at 05:19PM by Evil1337
via reddit https://ift.tt/2yKIj1X
https://ift.tt/2MXfPFo
Submitted June 26, 2018 at 05:19PM by Evil1337
via reddit https://ift.tt/2yKIj1X
Network Security - The Complete Nmap Ethical Hacking Course
http://sumo.ly/VNj9
Submitted June 26, 2018 at 05:52PM by frstnm
via reddit https://ift.tt/2yJJcbh
http://sumo.ly/VNj9
Submitted June 26, 2018 at 05:52PM by frstnm
via reddit https://ift.tt/2yJJcbh
Gain From Here
Ethical Hacking and Cyber Security Courses Online
If you are interested in learning Ethical Hacking and Cyber Security Courses online then you can consider some best courses here
HTTP Security Headers - How to improve your web application overall security with just a few steps
https://ift.tt/2tFvfoX
Submitted June 26, 2018 at 06:50PM by KeyDutch
via reddit https://ift.tt/2ItV80b
https://ift.tt/2tFvfoX
Submitted June 26, 2018 at 06:50PM by KeyDutch
via reddit https://ift.tt/2ItV80b
Htbridge
HTTP Security Headers - How to improve your web application overall security with just a few steps
HTTP Security Headers were created to protect applications from frequent and common attacks without the need to add or change the code of your applications.
CVE-2018-6851 to CVE-2018-6857: Sophos Privilege Escalation Vulnerabilities
https://ift.tt/2InOrgl
Submitted June 26, 2018 at 07:24PM by eth_
via reddit https://ift.tt/2KcoJ4b
https://ift.tt/2InOrgl
Submitted June 26, 2018 at 07:24PM by eth_
via reddit https://ift.tt/2KcoJ4b
Nettitude Labs
CVE-2018-6851 to CVE-2018-6857: Sophos Privilege Escalation Vulnerabilities
We have recently disclosed a list of vulnerabilities to Sophos that allow local attackers to elevate their privileges and execute code in the security context of the SYSTEM user account. Affected P…
SMB version detection in masscan
https://ift.tt/2Kfyydn
Submitted June 26, 2018 at 08:57PM by EvanConover
via reddit https://ift.tt/2N1dycs
https://ift.tt/2Kfyydn
Submitted June 26, 2018 at 08:57PM by EvanConover
via reddit https://ift.tt/2N1dycs
Erratasec
SMB version detection in masscan
My Internet-scale port scanner, masscan , supports "banner checking", grabbing basic information from a service after it connects to a port....