Defense against Common Web Attacks
http://ift.tt/2hqeOH8
Submitted September 23, 2017 at 03:10PM by 392888588
via reddit http://ift.tt/2jT1aAE
http://ift.tt/2hqeOH8
Submitted September 23, 2017 at 03:10PM by 392888588
via reddit http://ift.tt/2jT1aAE
Post a boarding pass on Facebook, get your account stolen
http://ift.tt/2vKOEFF
Submitted September 23, 2017 at 08:43PM by Andome
via reddit http://ift.tt/2xqoWad
http://ift.tt/2vKOEFF
Submitted September 23, 2017 at 08:43PM by Andome
via reddit http://ift.tt/2xqoWad
Michalspacek
Post a boarding pass on Facebook, get your account stolen
Holiday time is in full swing. When you want to brag about your final destination, be careful of what you post on Facebook and Instagram. Leave your boarding passes (and other barcodes) for yourself (and get a shredder).
The (mostly obvious) security pitfalls of pattern unlocking on Android phones
http://ift.tt/2wHXBmZ
Submitted September 23, 2017 at 10:56PM by CapnTrip
via reddit http://ift.tt/2wKa4GN
http://ift.tt/2wHXBmZ
Submitted September 23, 2017 at 10:56PM by CapnTrip
via reddit http://ift.tt/2wKa4GN
Gizmodo
For the Love of All That Is Holy, Stop Using Pattern Unlock
A while back, I woke up to find my Android phone lingering at a pattern unlock screen. Not just to unlock my screen, but a prompt to decrypt all of my phone’s data. I was puzzled. Every other morning, I decrypted my device using a 10-digit, alphanumeric …
Linux heap exploitation intro series: the magicians cape - 1 byte overflow
http://ift.tt/2jRpzGV
Submitted September 24, 2017 at 01:23AM by symeon
via reddit http://ift.tt/2wdGa9v
http://ift.tt/2jRpzGV
Submitted September 24, 2017 at 01:23AM by symeon
via reddit http://ift.tt/2wdGa9v
Sensepost
SensePost | Linux heap exploitation intro series: the magicians cape – 1 byte overflow
Leaders in Information Security
Meaningful Use, Security Risk Assessments, and HIPAA: How Do They Interact?
http://ift.tt/2jTEjoD
Submitted September 24, 2017 at 04:12AM by soot_blue
via reddit http://ift.tt/2xwOBzF
http://ift.tt/2jTEjoD
Submitted September 24, 2017 at 04:12AM by soot_blue
via reddit http://ift.tt/2xwOBzF
Post-healthcare
Meaningful Use, Security Risk Assessments, and HIPAA: How Do They Interact?
Meaningful use of electronic health records (EHRs) has been an important topic in the healthcare world since the federal government…
High School Girl Builds Deauth Sandals
http://ift.tt/2fmDcMQ
Submitted September 24, 2017 at 07:18AM by SexyCyborg
via reddit http://ift.tt/2wIspnA
http://ift.tt/2fmDcMQ
Submitted September 24, 2017 at 07:18AM by SexyCyborg
via reddit http://ift.tt/2wIspnA
Hackster.io
Wi-Fi Deauthing Sandals
A good starting point for learning about information security.
Joomla patches eight-year-old critical CMS bug
http://ift.tt/2xWJjyO
Submitted September 24, 2017 at 05:35PM by brideoflinux
via reddit http://ift.tt/2xpCENf
http://ift.tt/2xWJjyO
Submitted September 24, 2017 at 05:35PM by brideoflinux
via reddit http://ift.tt/2xpCENf
ZDNet
Joomla patches eight-year-old critical CMS bug
The flaw could be exploited to steal administrator account details and hijack websites.
Explaining and exploiting deserialization vulnerability with Python
http://ift.tt/2wen17g
Submitted September 24, 2017 at 02:35AM by TheBlusky
via reddit http://ift.tt/2hnsRk5
http://ift.tt/2wen17g
Submitted September 24, 2017 at 02:35AM by TheBlusky
via reddit http://ift.tt/2hnsRk5
`crossenv` malware on the npm registry
http://ift.tt/2ulw8kM
Submitted September 24, 2017 at 06:22PM by fagnerbrack
via reddit http://ift.tt/2jSw1x8
http://ift.tt/2ulw8kM
Submitted September 24, 2017 at 06:22PM by fagnerbrack
via reddit http://ift.tt/2jSw1x8
The npm Blog
`crossenv` malware on the npm registry
On August 1, a user notified us via Twitter that a package with a name very similar to the popular cross-env package was sending environment variables from its installation context out to...
CLKSCREW: Exposing the Perils of Security-Oblivious Energy Management
http://ift.tt/2hiuRu1
Submitted September 24, 2017 at 07:09PM by 0xdea
via reddit http://ift.tt/2hslwMv
http://ift.tt/2hiuRu1
Submitted September 24, 2017 at 07:09PM by 0xdea
via reddit http://ift.tt/2hslwMv
reddit
CLKSCREW: Exposing the Perils of Security-Oblivious... • r/netsec
1 points and 1 comments so far on reddit
Kernel Driver mmap Handler Exploitation
http://ift.tt/2xvVe5B
Submitted September 24, 2017 at 07:05PM by mttd
via reddit http://ift.tt/2xsqT64
http://ift.tt/2xvVe5B
Submitted September 24, 2017 at 07:05PM by mttd
via reddit http://ift.tt/2xsqT64
Citrix pulls some NetScaler builds after 'issue' found
http://ift.tt/2xtea2Q
Submitted September 24, 2017 at 07:50PM by imr2017
via reddit http://ift.tt/2ymlooG
http://ift.tt/2xtea2Q
Submitted September 24, 2017 at 07:50PM by imr2017
via reddit http://ift.tt/2ymlooG
Itwire
Citrix pulls some NetScaler builds after 'issue' found
An issue in firmware builds for Citrix's NetScaler ADC product has led to the company removing the 10.1, 10.5, 11.0, 11.1 and 12.0 builds from its download area.
China: all your WeChat data belong to us!
http://ift.tt/2xusJos
Submitted September 24, 2017 at 08:26PM by rec0d3
via reddit http://ift.tt/2y0wtQa
http://ift.tt/2xusJos
Submitted September 24, 2017 at 08:26PM by rec0d3
via reddit http://ift.tt/2y0wtQa
The Next Web
China: all your WeChat data are belong to us!
Surprise, surprise: it has been confirmed that WeChat gives your personal data to the Chinese government. The company recently updated its privacy statement declaring: “We may be required to retain, preserve or disclose your Personal Information for a longer…
SniffAir - A framework for wireless pentesting.
http://ift.tt/2wek5Yk
Submitted September 24, 2017 at 10:03PM by mubix
via reddit http://ift.tt/2xyrwgd
http://ift.tt/2wek5Yk
Submitted September 24, 2017 at 10:03PM by mubix
via reddit http://ift.tt/2xyrwgd
GitHub
Tylous/SniffAir
SniffAir - A framework for wireless pentesting.
CSAW CTF Quals - 'pilot' Pwnable Writeup
http://ift.tt/2yz9A3j
Submitted September 25, 2017 at 12:10AM by TheBananaStand113
via reddit http://ift.tt/2xxPUhJ
http://ift.tt/2yz9A3j
Submitted September 25, 2017 at 12:10AM by TheBananaStand113
via reddit http://ift.tt/2xxPUhJ
Bypass AV with DKMC (Don't Kill My Cat) [DEMO]
http://ift.tt/2weJnFI
Submitted September 25, 2017 at 12:41AM by myvrcosplay
via reddit http://ift.tt/2fj5bZX
http://ift.tt/2weJnFI
Submitted September 25, 2017 at 12:41AM by myvrcosplay
via reddit http://ift.tt/2fj5bZX
Cyber Security Guides, Reviews and News
Bypass AV with DKMC (Don't Kill My Cat) - Cyber Security Guides, Reviews and News
Don't kill my cat is a tool that generates obfuscated shellcode that is stored inside of polyglot images. The image is 100% valid and also 100% valid shell
Latest Virus Threats News - Cyware Security Updates
http://ift.tt/2y2Zafx
Submitted September 25, 2017 at 12:27PM by cywarelabs
via reddit http://ift.tt/2fK36qz
http://ift.tt/2y2Zafx
Submitted September 25, 2017 at 12:27PM by cywarelabs
via reddit http://ift.tt/2fK36qz
Cyware
Latest Virus Threats News | Hackers Threats | Cyware
Cyware Present Cyber News on the go. Receive Brief extracts of Latest Virus Threats, Hackers Threats, Actors Threat articles, to keep you informed of the cyber incidents around the world.
RedBoot ransomware also modifies partition table, is it a wiper?
http://ift.tt/2xzMwDn
Submitted September 25, 2017 at 01:55PM by MicheeLengronne
via reddit http://ift.tt/2fKTwDM
http://ift.tt/2xzMwDn
Submitted September 25, 2017 at 01:55PM by MicheeLengronne
via reddit http://ift.tt/2fKTwDM
Security Affairs
RedBoot ransomware also modifies partition table, is it a wiper?
The RedBoot ransomware encrypts files on the infected computer, replaces the Master Boot Record and then modifies the partition table.
Read on the Web: Spammed-out emails threaten websites with DDoS attack on September 30th
http://ift.tt/2wO6Wti
Submitted September 25, 2017 at 04:55PM by MicheeLengronne
via reddit http://ift.tt/2ynpay0
http://ift.tt/2wO6Wti
Submitted September 25, 2017 at 04:55PM by MicheeLengronne
via reddit http://ift.tt/2ynpay0
Limawi
Read on the Web: Spammed-out emails threaten websites with DDoS attack on September 30th
Read on the Web: Websites are being told that they have until September 30th to pay extortionists $720 worth of Bitcoin, or else suffer a distributed denial-of-service (DDoS) attack.
Bridging the gap between Security and DevOps
http://ift.tt/2yCb1y3
Submitted September 25, 2017 at 05:02PM by CrankyBear
via reddit http://ift.tt/2xqDSaY
http://ift.tt/2yCb1y3
Submitted September 25, 2017 at 05:02PM by CrankyBear
via reddit http://ift.tt/2xqDSaY
The Stack
Bridging the gap between Security and DevOps
Richard Morrell writes in the wake of the Equifax breach on the importance of bridging the growing gap between Security and DevOps.
BLEAH: a Bluetooth Low Energy scanner for "smart" devices hacking
http://ift.tt/2xZRQBc
Submitted September 25, 2017 at 05:32PM by 0xdea
via reddit http://ift.tt/2wft7nX
http://ift.tt/2xZRQBc
Submitted September 25, 2017 at 05:32PM by 0xdea
via reddit http://ift.tt/2wft7nX
GitHub
evilsocket/bleah
bleah - A BLE scanner for "smart" devices hacking.