Trickbot Shows Off New Trick: Password Grabber Module
https://ift.tt/2qmv3K3
Submitted November 01, 2018 at 08:17PM by EvanConover
via reddit https://ift.tt/2OYXnRk
https://ift.tt/2qmv3K3
Submitted November 01, 2018 at 08:17PM by EvanConover
via reddit https://ift.tt/2OYXnRk
Trendmicro
Trickbot Shows Off New Trick: Password Grabber Module - TrendLabs Security Intelligence Blog
Trickbot (detected by Trend Micro as TSPY_TRICKBOT.THOIBEAI) now has a password grabber module that steals access from several applications and browsers.
Cisco Security: Zero-day in SIP inspection engine of ASA 9.4+ and FTD 6.0+ software.
https://ift.tt/2F6EQ1d
Submitted November 01, 2018 at 09:08PM by QuirkySpiceBush
via reddit https://ift.tt/2EWrILU
https://ift.tt/2F6EQ1d
Submitted November 01, 2018 at 09:08PM by QuirkySpiceBush
via reddit https://ift.tt/2EWrILU
Cisco
Cisco Security Threat and Vulnerability Intelligence
The Cisco Security portal provides actionable intelligence for security threats and vulnerabilities in Cisco products and services and third-party products.
On Cross-Site Scripting and Content Security Policy
https://ift.tt/2qj1by8
Submitted November 01, 2018 at 10:12PM by emididam
via reddit https://ift.tt/2SwhMeR
https://ift.tt/2qj1by8
Submitted November 01, 2018 at 10:12PM by emididam
via reddit https://ift.tt/2SwhMeR
Telerik Blogs
On Cross-Site Scripting and Content Security Policy
Been considering your app's security this month? This Halloween, here's some security advice to help keep you safe from hackers and avoid any spooky surprises.
On Cross-Site Scripting and Content Security Policy
https://ift.tt/2qj1by8
Submitted November 01, 2018 at 10:12PM by emididam
via reddit https://ift.tt/2SwhMeR
https://ift.tt/2qj1by8
Submitted November 01, 2018 at 10:12PM by emididam
via reddit https://ift.tt/2SwhMeR
Telerik Blogs
On Cross-Site Scripting and Content Security Policy
Been considering your app's security this month? This Halloween, here's some security advice to help keep you safe from hackers and avoid any spooky surprises.
Why you should be auditing your users passwords
https://ift.tt/2CUpFoW
Submitted November 01, 2018 at 10:27PM by eth0izzle
via reddit https://ift.tt/2P3ELjn
https://ift.tt/2CUpFoW
Submitted November 01, 2018 at 10:27PM by eth0izzle
via reddit https://ift.tt/2P3ELjn
www.darkport.co.uk
darkport | Effortless Password Audits
Why you should be auditing your users passwords.
Semmle Discovers Six Critical Vulnerabilities Affecting Macs, iPhones, and iPads
https://ift.tt/2Q92Y49
Submitted November 02, 2018 at 01:25AM by QuirkySpiceBush
via reddit https://ift.tt/2RuXyRo
https://ift.tt/2Q92Y49
Submitted November 02, 2018 at 01:25AM by QuirkySpiceBush
via reddit https://ift.tt/2RuXyRo
Semmle
Semmle Discovers Six Critical Vulnerabilities Affecting Macs, iPhones, and iPads
Today, Apple announced a series of critical remote code execution vulnerabilities in Apple’s XNU operating system kernel. XNU is the kernel of macOS, iOS, and other Apple operating systems, which run on more than 1.3 billion devices globally. The vulnerabilities…
CVE-2018-5407: new side-channel vulnerability on SMT/Hyper-Threading architectures
https://ift.tt/2DfVlpV
Submitted November 02, 2018 at 05:03AM by midael
via reddit https://ift.tt/2EYNKO2
https://ift.tt/2DfVlpV
Submitted November 02, 2018 at 05:03AM by midael
via reddit https://ift.tt/2EYNKO2
seclists.org
oss-sec: CVE-2018-5407: new side-channel vulnerability on SMT/Hyper-Threading architectures
CVE-2018-11759 – Apache mod_jk access control bypass
https://ift.tt/2qpAhof
Submitted November 02, 2018 at 01:44PM by Nitr4x
via reddit https://ift.tt/2EYpsno
https://ift.tt/2qpAhof
Submitted November 02, 2018 at 01:44PM by Nitr4x
via reddit https://ift.tt/2EYpsno
U.S. ISBN registry ran "unauthorized code" on its checkout page for nearly 6 months
https://ift.tt/ST3Kzo
Submitted November 02, 2018 at 05:46PM by ilamont
via reddit https://ift.tt/2qoPfuP
https://ift.tt/ST3Kzo
Submitted November 02, 2018 at 05:46PM by ilamont
via reddit https://ift.tt/2qoPfuP
reddit
r/netsec - U.S. ISBN registry ran "unauthorized code" on its checkout page for nearly 6 months
5 votes and 0 comments so far on Reddit
Pentesting in restricted VDI environments (Keyboard emulation + OCR)
https://ift.tt/2RuJdnR
Submitted November 02, 2018 at 06:50PM by gid0rah
via reddit https://ift.tt/2PzLqRv
https://ift.tt/2RuJdnR
Submitted November 02, 2018 at 06:50PM by gid0rah
via reddit https://ift.tt/2PzLqRv
Tarlogic Security - Cyber Security and Ethical hacking
Pentests in restricted VDI environments
A common scenario during an assessment or pentest is starting it from a VDI environment, focused towards "what could an insider or an attacker who has stolen a worker's credentials do". This type of environments usually have certain restrictions (major or…
New "Bleedingbit" Vulnerability could allow an attacker to run arbitrary code on Enterprise Access Points.
https://ift.tt/2EWFLkw
Submitted November 02, 2018 at 07:28PM by alnarra_1
via reddit https://ift.tt/2RwCk5E
https://ift.tt/2EWFLkw
Submitted November 02, 2018 at 07:28PM by alnarra_1
via reddit https://ift.tt/2RwCk5E
Cisco
Cisco Security Threat and Vulnerability Intelligence
The Cisco Security portal provides actionable intelligence for security threats and vulnerabilities in Cisco products and services and third-party products.
Finding 0days in Embedded Systems - HackInTheBox 2018
https://ift.tt/2Pa7bby
Submitted November 02, 2018 at 11:33PM by kamilton88
via reddit https://ift.tt/2Dj4y0n
https://ift.tt/2Pa7bby
Submitted November 02, 2018 at 11:33PM by kamilton88
via reddit https://ift.tt/2Dj4y0n
Old School Pwning with New School Tricks :: Vanilla Forums domGetImages getimagesize Unserialize Remote Code Execution Vulnerability
https://ift.tt/2JBbYN9
Submitted November 03, 2018 at 03:20AM by jvoisin
via reddit https://ift.tt/2D07jmF
https://ift.tt/2JBbYN9
Submitted November 03, 2018 at 03:20AM by jvoisin
via reddit https://ift.tt/2D07jmF
srcincite.io
Old School Pwning with New School Tricks :: Vanilla Forums domGetImages getimagesize Unserialize Remote Code Execution Vulnerability
Since I have been working on bug bounties for a while, I decided to finally take the dive into some vendor specific bounties recently. Some of these are on H...
Stealing Chrome cookies without a password
https://ift.tt/2EXj288
Submitted November 03, 2018 at 05:55AM by defaultnamehere
via reddit https://ift.tt/2SIcH2V
https://ift.tt/2EXj288
Submitted November 03, 2018 at 05:55AM by defaultnamehere
via reddit https://ift.tt/2SIcH2V
mango.pdf.zone
Stealing Chrome cookies without a password
Stealing Chrome Cookies without root or password on OSX, Linux, and Windows via Remote Debugging Protocol.
What is a Virtual Machine?A virtual machine (VM) is an operating system (OS) or application environment that emulates a computer system. An example could be a programmer who needs to have a UNIX-based OS when using a Windows System. A Virtual Machine enables the programmer to create an environment t
https://ift.tt/2PdWzrm
Submitted November 03, 2018 at 04:51PM by DBXChain
via reddit https://ift.tt/2P6yq6E
https://ift.tt/2PdWzrm
Submitted November 03, 2018 at 04:51PM by DBXChain
via reddit https://ift.tt/2P6yq6E
Medium
DBXChain Completes Its Virtual Machine Utilising WebAssembly For Mass Adoption Of DApps
DBX Foundation is happy to announce we have reached an important milestone in the DBXChain development; the completion of DBXChain Virtual…
How To Painlessly Remember Your Passwords
https://ift.tt/2QhBFVx
Submitted November 03, 2018 at 06:35PM by khaledur01
via reddit https://ift.tt/2Qh2TLT
https://ift.tt/2QhBFVx
Submitted November 03, 2018 at 06:35PM by khaledur01
via reddit https://ift.tt/2Qh2TLT
Medium
How to painlessly remember your passwords
It is known that we as humans struggle with remembering and managing multiple complicated passwords, that are required to access different…
Portsmash Proof-of-Concept Readme.md
https://ift.tt/2PyJ3yH
Submitted November 04, 2018 at 05:47AM by jdrch
via reddit https://ift.tt/2P9DjM6
https://ift.tt/2PyJ3yH
Submitted November 04, 2018 at 05:47AM by jdrch
via reddit https://ift.tt/2P9DjM6
GitHub
bbbrumley/portsmash
Contribute to bbbrumley/portsmash development by creating an account on GitHub.
New "Breached Database Search Engine" on the Radar
https://piileak.com
Submitted November 04, 2018 at 09:13PM by AtheismIsUnstoppable
via reddit https://ift.tt/2OpZeJJ
https://piileak.com
Submitted November 04, 2018 at 09:13PM by AtheismIsUnstoppable
via reddit https://ift.tt/2OpZeJJ
reddit
r/netsec - New "Breached Database Search Engine" on the Radar
0 votes and 0 comments so far on Reddit
Tsurugi Linux: Linux distro intended to DFIR, OSINT investigations, malware analysis and educational purposes.
https://ift.tt/2SLf2KE
Submitted November 04, 2018 at 10:27PM by rhaidiz
via reddit https://ift.tt/2F6biR5
https://ift.tt/2SLf2KE
Submitted November 04, 2018 at 10:27PM by rhaidiz
via reddit https://ift.tt/2F6biR5
tsurugi-linux.org
Tsurugi Linux | Digital Forensics, Osint and malware analysis Linux Distribution
Welcome to TSURUGI Linux world a DFIR open source distribution to perform your digital forensics analysis and for educational purposes
ꓘamerka — Build interactive map of cameras from Shodan
https://ift.tt/2Qjec6h
Submitted November 04, 2018 at 10:45PM by Mysterii8
via reddit https://ift.tt/2RyYVyf
https://ift.tt/2Qjec6h
Submitted November 04, 2018 at 10:45PM by Mysterii8
via reddit https://ift.tt/2RyYVyf
Medium
ꓘamerka — Build interactive map of cameras from Shodan
TL;DR
Development Of Metasploit Module After 0day [Nuuo NVRmini2 RCE]
https://ift.tt/2yRKoae
Submitted November 05, 2018 at 03:25AM by berkdusunurx
via reddit https://ift.tt/2qoWkLY
https://ift.tt/2yRKoae
Submitted November 05, 2018 at 03:25AM by berkdusunurx
via reddit https://ift.tt/2qoWkLY
www.berkdusunur.net
Development Of Metasploit Module After 0day [Nuuo NVRmini2 RCE]
Hello Everyone In this article I will tell you how to develop a 0day's metasploit module. Before writing Thank you to Numan Türle (@num...