Netsec – Telegram
Netsec
7.42K subscribers
22.4K links
This channel posts the feed from r/netsec.
For any suggestions dm @streaak
Donate to keep the bot running https://www.paypal.me/akhilgv
Download Telegram
CVE-2018-0296 Cisco ASA - Exploited ITW & POC avail
Vulnerability in the web interface of the Cisco Adaptive Security Appliance (ASA) could allow an unauthenticated, remote attacker to cause an affected device to reload unexpectedly, resulting in a denial of service (DoS) condition. It is also possible on certain software releases that the ASA will not reload, but an attacker could view sensitive system information without authentication by using directory traversal techniques.Patched June 6th by cisco: https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180606-asaftdCisco says exploits observed ITW. POC available at https://github.com/yassineaboukir/CVE-2018-0296 and elsewhere.

Submitted June 28, 2018 at 08:35AM by thehoodedidiot
via reddit https://ift.tt/2tNbVGn
RAMPAGE AND GUARDION Vulnerabilities in modern phones enable unauthorized access
https://ift.tt/2lKlzGa

Submitted June 29, 2018 at 02:49PM by thedataking
via reddit https://ift.tt/2yQ6kF3
h1-search: Tool that will request the public disclosures on a specific HackerOne program and show them in a localhost webserver.
https://ift.tt/2NccIJF

Submitted June 29, 2018 at 08:53PM by s0pas
via reddit https://ift.tt/2KmBwkv
Extracting Url's from DOC Macro (trickbot)
https://ift.tt/2IC1D1g

Submitted June 29, 2018 at 09:34PM by ericnyamu
via reddit https://ift.tt/2Ktt7Lj
Breaking LTE on Layer Two
https://ift.tt/2Mvqru9

Submitted June 29, 2018 at 10:03PM by zexterio
via reddit https://ift.tt/2tP4u1h
PSA: Avoid the fake Android App Runtime (ARC Welder) extension (with over 32,000 installs!) on the Chrome Web Store, as it injects ads and trackers into every webpage you visit. It is the only one that shows up in search results and the real one appears to be installable, but delisted/"noindex"-ed
https://ift.tt/2MtHH2I

Submitted June 30, 2018 at 03:45AM by Walter_Bishop_PhD
via reddit https://ift.tt/2yV5LJZ
Windows Search service vulnerability - Bookworm
https://ift.tt/2tGGgY1

Submitted June 30, 2018 at 11:12PM by realitycorp
via reddit https://ift.tt/2tGiHOY
In Memory Powershell Webdav Server
https://ift.tt/2z1GCNO

Submitted July 01, 2018 at 08:48PM by p3nt4
via reddit https://ift.tt/2KCYBf5
UAC Bypassing Using msdt.exe XML/Execution Via Feature in Msdt - & RawLog
https://ift.tt/2tK5Ds1

Submitted July 02, 2018 at 12:14AM by ericnyamu
via reddit https://ift.tt/2tVxbd0
Advice for beginners - feedback and pull requests are appreciated
https://ift.tt/2lKHNYx

Submitted July 02, 2018 at 03:57AM by _Exaybachay_
via reddit https://ift.tt/2lOO3ia
Ticketmaster's UK hack shows consumers are the last to know about data breaches
https://ift.tt/2tY8JHY

Submitted July 02, 2018 at 06:32PM by johnedx
via reddit https://ift.tt/2KCS8DR
Hijacking the control flow of a WebAssembly program
https://ift.tt/2KmJtGn

Submitted July 02, 2018 at 06:45PM by HighPrivsDrifter
via reddit https://ift.tt/2KI7rLw