Hyper Focused iPhone Hacking Campaign Using MDM Software Is Broader Than Previously Known
https://ift.tt/2AclQf3
Submitted July 26, 2018 at 09:52PM by jeremiyteki
via reddit https://ift.tt/2LGOU2P
https://ift.tt/2AclQf3
Submitted July 26, 2018 at 09:52PM by jeremiyteki
via reddit https://ift.tt/2LGOU2P
The Philosophy of MITRE's ATT&CK
https://ift.tt/2OibRI4
Submitted July 26, 2018 at 10:32PM by m8urn
via reddit https://ift.tt/2LL2kuV
https://ift.tt/2OibRI4
Submitted July 26, 2018 at 10:32PM by m8urn
via reddit https://ift.tt/2LL2kuV
The MITRE Corporation
The Philosophy of ATT&CK
About ATT&CK™
Offensive Security Online Exam Proctoring
https://ift.tt/2AajsFN
Submitted July 26, 2018 at 10:54PM by FireFart
via reddit https://ift.tt/2LOUZXH
https://ift.tt/2AajsFN
Submitted July 26, 2018 at 10:54PM by FireFart
via reddit https://ift.tt/2LOUZXH
Offensive-Security
Offensive Security Online Exam Proctoring
When we started out with our online training courses over 12 years ago, we made hard choices about the nature of our courses and certifications. We went against the grain, against the common certification standards, and came up with a unique certification…
Drawing Outside the Box: Precision Issues in Graphic Libraries
https://ift.tt/2uPWXRi
Submitted July 26, 2018 at 11:04PM by tunnelshade
via reddit https://ift.tt/2LVpYRS
https://ift.tt/2uPWXRi
Submitted July 26, 2018 at 11:04PM by tunnelshade
via reddit https://ift.tt/2LVpYRS
Blogspot
Drawing Outside the Box: Precision Issues in Graphic Libraries
By Mark Brand and Ivan Fratric, Google Project Zero In this blog post, we are going to write about a seldom seen vulnerability class tha...
NetSpectre: Read Arbitrary Memory over Network
https://ift.tt/2LsRdXQ
Submitted July 27, 2018 at 04:28AM by dabbler33
via reddit https://ift.tt/2Lqhgiw
https://ift.tt/2LsRdXQ
Submitted July 27, 2018 at 04:28AM by dabbler33
via reddit https://ift.tt/2Lqhgiw
YSK: Reddit's data response collecting company had its data breached - exposing the phone # and email tied to your username. Consider anything on your account you wouldn't want associated publicly.
https://ift.tt/2JYQw30
Submitted July 27, 2018 at 03:32AM by Draesith_42
via reddit https://ift.tt/2v5BL9l
https://ift.tt/2JYQw30
Submitted July 27, 2018 at 03:32AM by Draesith_42
via reddit https://ift.tt/2v5BL9l
reddit
r/YouShouldKnow - YSK: Reddit's data response collecting company had its data breached - exposing the phone # and email tied to…
496 votes and 39 comments so far on Reddit
Screaming Channels: When Electromagnetic Side Channels Meet Radio Transceivers (including appendix alluding to US intelligence agency knowledge of this vulnerability since 1982)
https://ift.tt/2LnFnhQ
Submitted July 27, 2018 at 01:48AM by Sephr
via reddit https://ift.tt/2OiJoSt
https://ift.tt/2LnFnhQ
Submitted July 27, 2018 at 01:48AM by Sephr
via reddit https://ift.tt/2OiJoSt
Here is an article by Roger Grimes, Data-Driven Defense Evangelist at KnowBe4 Ever since Google told the world that none of its 85,000 employees had been successfully hacked since they started implementing Security Keys, like Yubico’s YubiKey
https://ift.tt/2AfpTYa
Submitted July 27, 2018 at 05:56AM by longevitytech
via reddit https://ift.tt/2LoMLcE
https://ift.tt/2AfpTYa
Submitted July 27, 2018 at 05:56AM by longevitytech
via reddit https://ift.tt/2LoMLcE
Longevity Technology
Yes, Google’s Security Key Is Hackable by Roger Grimes
Here is an article by Roger Grimes, Data-Driven Defense Evangelist at KnowBe4
Ever since Google told the world that none of its 85,000 employees had been succe
Ever since Google told the world that none of its 85,000 employees had been succe
Web auditing: Jump on the bandwagon! (or not) - Security Art Work
https://ift.tt/2LisdCH
Submitted July 27, 2018 at 04:16PM by danicuestasuarez
via reddit https://ift.tt/2K5AlRK
https://ift.tt/2LisdCH
Submitted July 27, 2018 at 04:16PM by danicuestasuarez
via reddit https://ift.tt/2K5AlRK
Security Art Work
Web auditing: Jump on the bandwagon! (or not) - Security Art Work
Usually, whenever we are auditing a web application with a poorly programmed backend, we might find SQL Injection vulnerabilities. We will mainly encounter Blind, Error-based or -if we get lucky- Union-based injections. However, it is not quite usual to…
Shortcomings of blacklisting in Adobe Reader and what you can do about it | NVISO LABS
https://ift.tt/2JWHi7B
Submitted July 27, 2018 at 05:40PM by daanraman
via reddit https://ift.tt/2mMb8SP
https://ift.tt/2JWHi7B
Submitted July 27, 2018 at 05:40PM by daanraman
via reddit https://ift.tt/2mMb8SP
NVISO LABS - blog
Shortcomings of blacklisting in Adobe Reader and what you can do about it
A variation of a class of malicious PDFs appeared in the wild. In this blog post, we will show you how to protect your systems and how to analyze these PDFs. The PDFs embed a file type with extensi…
Major websites still fail to steer users towards better passwords - Help Net Security
https://ift.tt/2Li1zd4
Submitted July 27, 2018 at 07:03PM by iHatePasswordz
via reddit https://ift.tt/2Lpyb4R
https://ift.tt/2Li1zd4
Submitted July 27, 2018 at 07:03PM by iHatePasswordz
via reddit https://ift.tt/2Lpyb4R
Help Net Security
Major websites still fail to steer users towards better passwords - Help Net Security
Until the death of passwords happens, it would be helpful if popular online services would steer users towards choosing better passwords.
New Underminer Exploit Kit Delivers Bootkit and Cryptocurrency-mining Malware with Encrypted TCP Tunnel
https://ift.tt/2uTNU1A
Submitted July 27, 2018 at 09:45PM by EvanConover
via reddit https://ift.tt/2LUQGKF
https://ift.tt/2uTNU1A
Submitted July 27, 2018 at 09:45PM by EvanConover
via reddit https://ift.tt/2LUQGKF
Trendmicro
New Underminer Exploit Kit Delivers Bootkit and Cryptocurrency-mining Malware with Encrypted TCP Tunnel - TrendLabs Security Intelligence…
We discovered an exploit kit we named Underminer that uses capabilities to deter researchers from tracking its activity or reverse engineering the payloads
SQL Injection and A silly WAF
https://ift.tt/2K0PYJX
Submitted July 27, 2018 at 04:31AM by Bitsplz
via reddit https://ift.tt/2Lq01hn
https://ift.tt/2K0PYJX
Submitted July 27, 2018 at 04:31AM by Bitsplz
via reddit https://ift.tt/2Lq01hn
Blogspot
SQL Injection and A silly WAF
Hi Folks, Today I'll be writing about some interesting SQL injection vulnerabilities I recently found. This is a private program so ...
A tcpdump Tutorial and Primer with Examples
https://ift.tt/1IwtXLs
Submitted July 27, 2018 at 11:30PM by danielrm26
via reddit https://ift.tt/2AhMljg
https://ift.tt/1IwtXLs
Submitted July 27, 2018 at 11:30PM by danielrm26
via reddit https://ift.tt/2AhMljg
Daniel Miessler
Practical tcpdump Examples - Daniel Miessler
Practical tcpdump examples that gives you maximum packet carving in the minimum amount of time. Includes numerous examples and explanations ranging from basic to advanced—including how to isolate hosts, networks, and specific protocols.
Better slow than sorry – VirtualBox 3D acceleration considered harmful
https://ift.tt/2uTz0sr
Submitted July 28, 2018 at 03:54AM by bkth_
via reddit https://ift.tt/2LGSvxW
https://ift.tt/2uTz0sr
Submitted July 28, 2018 at 03:54AM by bkth_
via reddit https://ift.tt/2LGSvxW
reddit
Better slow than sorry – VirtualBox 3D acceleration... • r/netsec
2 points and 1 comments so far on reddit
Raccoon: A new offensive security tool for reconnaissance and vulnerability scanning
https://ift.tt/2JUuUoi
Submitted July 28, 2018 at 06:35AM by GoatInABoat
via reddit https://ift.tt/2mNdPUn
https://ift.tt/2JUuUoi
Submitted July 28, 2018 at 06:35AM by GoatInABoat
via reddit https://ift.tt/2mNdPUn
GitHub
evyatarmeged/Raccoon
A high performance offensive security tool for reconnaissance and vulnerability scanning - evyatarmeged/Raccoon
Azure Security Center Documentation - Tutorials, API Reference
https://ift.tt/2mNEP5Z
Submitted July 28, 2018 at 07:12AM by shehackspurple
via reddit https://ift.tt/2AhGc6D
https://ift.tt/2mNEP5Z
Submitted July 28, 2018 at 07:12AM by shehackspurple
via reddit https://ift.tt/2AhGc6D
Docs
Azure Security Center Documentation - Tutorials, API Reference
potentially new evidence in the SingHealth breach
https://ift.tt/2OiGL3b
Submitted July 28, 2018 at 09:23AM by ksigler
via reddit https://ift.tt/2LUG4eM
https://ift.tt/2OiGL3b
Submitted July 28, 2018 at 09:23AM by ksigler
via reddit https://ift.tt/2LUG4eM
Trustwave
New Indicators Suggest Penetration Vectors and Earlier Dates for the SingHealth Breach
The Trustwave SpiderLabs team has found additional information that we believe may be associated with the recent SingHealth breach. You can read a summary of the breach in a previous post, but as a quick summary, Singaporean authorities announced on...
BYOB (Build Your Own Botnet)
https://ift.tt/2OfqsnE
Submitted July 29, 2018 at 01:29AM by PoonSafari
via reddit https://ift.tt/2LJjKId
https://ift.tt/2OfqsnE
Submitted July 29, 2018 at 01:29AM by PoonSafari
via reddit https://ift.tt/2LJjKId
GitHub
malwaredllc/byob
BYOB (Build Your Own Botnet). Contribute to malwaredllc/byob development by creating an account on GitHub.
NetShell's Little Helper: Maintain Persistence by Importing Evil Helper DLL's
https://ift.tt/2K3zNf5
Submitted July 29, 2018 at 07:56AM by _creosote
via reddit https://ift.tt/2OoK4Wx
https://ift.tt/2K3zNf5
Submitted July 29, 2018 at 07:56AM by _creosote
via reddit https://ift.tt/2OoK4Wx
Liberty
Hack the Helpers | Liberty
Bug bounty write-ups
https://ift.tt/2MoteGk
Submitted July 29, 2018 at 09:53PM by vitalysim
via reddit https://ift.tt/2vfJRMC
https://ift.tt/2MoteGk
Submitted July 29, 2018 at 09:53PM by vitalysim
via reddit https://ift.tt/2vfJRMC