Speculating as to the value of the recent Facebook bug
https://ift.tt/2NTrwMN
Submitted October 20, 2018 at 09:23PM by operat1ve
via reddit https://ift.tt/2PESgSx
https://ift.tt/2NTrwMN
Submitted October 20, 2018 at 09:23PM by operat1ve
via reddit https://ift.tt/2PESgSx
Zero-day Simulation on a Distributed Cloud Storage Model for Encrypted Health Data
https://ift.tt/2q3c5YT
Submitted October 20, 2018 at 09:41PM by ribozome
via reddit https://ift.tt/2J9om6u
https://ift.tt/2q3c5YT
Submitted October 20, 2018 at 09:41PM by ribozome
via reddit https://ift.tt/2J9om6u
Nukleosome
Nukleosome - Connect with people. Contribute data. Make money
Anonymous health data for research. Nukleosome is the most secure place to keep track of all your health data, sell it anonymously to medical research and connect with people who have health conditions similar to yours.
BYOB (Build Your Own Botnet) v0.3 Released - New Post-Exploitation Modules
https://ift.tt/2o2lJKj
Submitted October 20, 2018 at 10:42PM by PoonSafari
via reddit https://ift.tt/2q0C2rQ
https://ift.tt/2o2lJKj
Submitted October 20, 2018 at 10:42PM by PoonSafari
via reddit https://ift.tt/2q0C2rQ
GitHub
GitHub - malwaredllc/byob: An open-source post-exploitation framework for students, researchers and developers.
An open-source post-exploitation framework for students, researchers and developers. - GitHub - malwaredllc/byob: An open-source post-exploitation framework for students, researchers and developers.
DarkSpiritz - A community fueled penetration testing framework written in python!
https://ift.tt/2NTo4Xb
Submitted October 21, 2018 at 05:51AM by thecoderkiller
via reddit https://ift.tt/2NRtygn
https://ift.tt/2NTo4Xb
Submitted October 21, 2018 at 05:51AM by thecoderkiller
via reddit https://ift.tt/2NRtygn
GitHub
DarkSpiritz/DarkSpiritz
A penetration testing framework for UNIX systems. Contribute to DarkSpiritz/DarkSpiritz development by creating an account on GitHub.
CMS Responding to Suspicious Activity in Agent and Broker Exchanges Portal
https://ift.tt/2ODEQd9
Submitted October 21, 2018 at 06:24AM by jdrch
via reddit https://ift.tt/2CxmrHY
https://ift.tt/2ODEQd9
Submitted October 21, 2018 at 06:24AM by jdrch
via reddit https://ift.tt/2CxmrHY
www.cms.gov
CMS Responding to Suspicious Activity in Agent and Broker Exchanges Portal | CMS
CMS Responding to Suspicious Activity in Agent and Broker Exchanges Portal
Earlier this week, CMS staff detected anomalous activity in the Federally Facilitated Exchanges, or FFE’s Direct Enrollment pathway for agents and brokers. The Direct Enrollment pathway…
Earlier this week, CMS staff detected anomalous activity in the Federally Facilitated Exchanges, or FFE’s Direct Enrollment pathway for agents and brokers. The Direct Enrollment pathway…
Living Off the Land - Windows Scenario Demonstrating LOLBins
https://ift.tt/2AkqntW
Submitted October 21, 2018 at 05:58AM by _creosote
via reddit https://ift.tt/2PaWiW4
https://ift.tt/2AkqntW
Submitted October 21, 2018 at 05:58AM by _creosote
via reddit https://ift.tt/2PaWiW4
ICS Tactical Security Trends: Analysis of the Most Frequent Security Risks Observed in the Field
https://ift.tt/2CcksZr
Submitted October 21, 2018 at 06:30PM by fireh7nter
via reddit https://ift.tt/2EylykI
https://ift.tt/2CcksZr
Submitted October 21, 2018 at 06:30PM by fireh7nter
via reddit https://ift.tt/2EylykI
FireEye
ICS Tactical Security Trends: Analysis of the Most Frequent Security
Risks Observed in the Field « ICS Tactical Security Trends:…
Risks Observed in the Field « ICS Tactical Security Trends:…
FireEye compiled data to identify the most pervasive and highest priority security risks in industrial facilities.
Pico CTF 2018 Web Exploitation Writeup
https://ift.tt/2q5D2Lo
Submitted October 22, 2018 at 02:43AM by s0cketseven
via reddit https://ift.tt/2R8EeJx
https://ift.tt/2q5D2Lo
Submitted October 22, 2018 at 02:43AM by s0cketseven
via reddit https://ift.tt/2R8EeJx
s0cket7
Pico CTF 2018 Web Exploitation Writeup
A writeup of all 18 Web Challenges from PicoCTF
Free HQ SOCKS and HTTP(S) proxies incl. REST API
https://free-socks.in/
Submitted October 22, 2018 at 01:01PM by kether448811
via reddit https://ift.tt/2q6NUbX
https://free-socks.in/
Submitted October 22, 2018 at 01:01PM by kether448811
via reddit https://ift.tt/2q6NUbX
Case Story: Data theft by Average Joe
https://ift.tt/2PcRq2A
Submitted October 22, 2018 at 03:06PM by ellastiller8
via reddit https://ift.tt/2q4w3Ck
https://ift.tt/2PcRq2A
Submitted October 22, 2018 at 03:06PM by ellastiller8
via reddit https://ift.tt/2q4w3Ck
Neutral IT - IT Oversight and Independent Consulting
How Average Joe walked away with all his employer's data after being sacked. - Neutral IT - IT Oversight and Independent Consulting
The true story of Average Joe, who breached his employer's network and stole everything - in a single day, with almost no technical knowledge.
Not Your Ordinary OSCP Review
https://ift.tt/2MR9Gtf
Submitted October 22, 2018 at 09:33PM by m4v3r1ck-
via reddit https://ift.tt/2q3jXt4
https://ift.tt/2MR9Gtf
Submitted October 22, 2018 at 09:33PM by m4v3r1ck-
via reddit https://ift.tt/2q3jXt4
Chromium Asking for Feedback on trivial subdomains: 883038 - Feedback: Eliding www/m subdomains - chromium
https://ift.tt/2MrckFM
Submitted October 23, 2018 at 04:15AM by nightkhaos
via reddit https://ift.tt/2D0eZpK
https://ift.tt/2MrckFM
Submitted October 23, 2018 at 04:15AM by nightkhaos
via reddit https://ift.tt/2D0eZpK
PS4 messenger bug causes crash and boot loop.
https://ift.tt/2ENsHy2
Submitted October 23, 2018 at 11:09AM by steven-mctowelie
via reddit https://ift.tt/2OIJjvh
https://ift.tt/2ENsHy2
Submitted October 23, 2018 at 11:09AM by steven-mctowelie
via reddit https://ift.tt/2OIJjvh
www.kaspersky.co.uk
Killer messages on Sony PlayStation 4 and how to deal with them
One short message is enough to send a Sony PS4 into an infinite restart loop. Here's how to deal with it.
Here is a blog post showing some example uses of the tool I recently wrote, JTB Investigator. I added a lot of functionality since I posted the tool on here thanks to help from the awesome community. Check it out!
https://ift.tt/2Sb3Qqs
Submitted October 23, 2018 at 10:05AM by jbob133
via reddit https://ift.tt/2PeOUc8
https://ift.tt/2Sb3Qqs
Submitted October 23, 2018 at 10:05AM by jbob133
via reddit https://ift.tt/2PeOUc8
Th3J0kr's Ramblings
JTB in Action | Th3J0kr's Ramblings
JTB Investigator Updates So my last post was about a new tool/framework I had written in python to make looking…
RCE Cornucopia - AppSec USA 2018 CTF Writeup and Challenge Download
https://ift.tt/2NYLBRM
Submitted October 23, 2018 at 09:09AM by Dejanz
via reddit https://ift.tt/2OG5QZv
https://ift.tt/2NYLBRM
Submitted October 23, 2018 at 09:09AM by Dejanz
via reddit https://ift.tt/2OG5QZv
Dejandayoff
RCE Cornucopia - AppSec USA 2018 CTF Solution
Official solution for AppSec USA's RCE Cornucopia CTF challenge.
Step by step guide to integrate opensource container security scanner (Anchore engine) with Jenkins
https://ift.tt/2PLRNOM
Submitted October 23, 2018 at 02:16PM by tahmed11
via reddit https://ift.tt/2PNviJ5
https://ift.tt/2PLRNOM
Submitted October 23, 2018 at 02:16PM by tahmed11
via reddit https://ift.tt/2PNviJ5
Medium
Step by step guide to integrate opensource container security scanner (Anchore engine) with CICD tool (Jenkins).
Continuous integration and continuous deployment can become a continuous pain for security folks. But it doesn’t have to be that way…
I wrote a few short blog posts about T-pot, a multi-honeypot platform and the data i got from three honeypots in different parts of the world.
https://ift.tt/2NXpo6t
Submitted October 23, 2018 at 03:22PM by nexxic
via reddit https://ift.tt/2ApRsfr
https://ift.tt/2NXpo6t
Submitted October 23, 2018 at 03:22PM by nexxic
via reddit https://ift.tt/2ApRsfr
Northsec Security Blog
Introduction to T-Pot - The all in one honeypot
Using honeypots to gather information and analyse the state of security on the Internet.we have all probably heard of the internet referred to as the new wild wild west, and you always read about new attacks, and bigger and bigger DDoS attacks flooding our…
The MSRD3X40 patch debacle
https://ift.tt/2Pqfo7b
Submitted October 23, 2018 at 05:10PM by yuhong
via reddit https://ift.tt/2S93v7L
https://ift.tt/2Pqfo7b
Submitted October 23, 2018 at 05:10PM by yuhong
via reddit https://ift.tt/2S93v7L
0Patch
Patching, Re-Patching and Meta-Patching the Jet Database Engine RCE (CVE-2018-8423)
Flawed Patches Will Always Happen, But We Can Change How They Get Fixed by Mitja Kolsek, the 0patch Team TL;DR: Microsoft patched CV...
A Loophole in the Firewall
https://ift.tt/2R7rwul
Submitted October 23, 2018 at 08:13PM by cyberpunkych
via reddit https://ift.tt/2PoKZtz
https://ift.tt/2R7rwul
Submitted October 23, 2018 at 08:13PM by cyberpunkych
via reddit https://ift.tt/2PoKZtz
FBK CyberSecurity
A Loophole in the Firewall
When the Internet access is firewalled, but you badly need to transfer data, DNS tunneling comes to the rescue. Even at the strictest settings, DNS queriescan sometimes be allowed, and we can use this by responding to them from our server on the other side.…
Amazon S3: How an ISP Exposed Administrative System Credentials
https://ift.tt/2CxVEuY
Submitted October 24, 2018 at 01:05AM by 33c3wegwerf
via reddit https://ift.tt/2yqYb7i
https://ift.tt/2CxVEuY
Submitted October 24, 2018 at 01:05AM by 33c3wegwerf
via reddit https://ift.tt/2yqYb7i
Upguard
Out of Pocket: How an ISP Exposed Administrative System Credentials
ISPs do more than provide internet service for individual customers-- they can also act as part of US critical infrastructure. See how one ISP exposed their administrative and root passwords to the public.
DEFCON 26 Talk Recordings are now up!
https://www.youtube.com/playlist?list=PL9fPq3eQfaaD0cf5c7wkzMoj2kifzGO4U
Submitted October 23, 2018 at 08:10PM by thel3l
via reddit https://ift.tt/2PPapND
https://www.youtube.com/playlist?list=PL9fPq3eQfaaD0cf5c7wkzMoj2kifzGO4U
Submitted October 23, 2018 at 08:10PM by thel3l
via reddit https://ift.tt/2PPapND
YouTube
DEF CON 26
Enjoy the videos and music you love, upload original content, and share it all with friends, family, and the world on YouTube.