IPv6 unmasking via UPnP
https://ift.tt/2FblCEh
Submitted March 20, 2019 at 01:28AM by gquere
via reddit https://ift.tt/2ukEsnb
https://ift.tt/2FblCEh
Submitted March 20, 2019 at 01:28AM by gquere
via reddit https://ift.tt/2ukEsnb
Cisco Talos Blog
IPv6 unmasking via UPnP
Talos intelligence and world-class threat research team better protects you and your organization against known and emerging cybersecurity threats.
Transform your Hak5 Packet Squirrel into an automatic TOR annonymizer
https://ift.tt/2F92jv6
Submitted March 20, 2019 at 01:21AM by dukeofmola
via reddit https://ift.tt/2udmWS3
https://ift.tt/2F92jv6
Submitted March 20, 2019 at 01:21AM by dukeofmola
via reddit https://ift.tt/2udmWS3
disbauxes.upc.es
Transform your Hak5 Packet Squirrel into an automatic TOR annonymizer
Preamble I’ve been testing some Hak5 devices recently. I have to admit that they are all incredible, easy to use and well-designed. The Packet Squirrel is an incredible small MIPS device, bas…
Cross-Site Content and Status Types Leakage
https://ift.tt/2UL3TKn
Submitted March 20, 2019 at 05:36AM by terjanq
via reddit https://ift.tt/2Css2hU
https://ift.tt/2UL3TKn
Submitted March 20, 2019 at 05:36AM by terjanq
via reddit https://ift.tt/2Css2hU
Medium
Cross-Site Content and Status Types Leakage
A brand new technique for detecting the content-type and the HTTP status of the cross-origin response via object typemustmatch attribute.
Using HTTP Pipelining to hide requests
https://ift.tt/2ULlRg0
Submitted March 20, 2019 at 05:16AM by IUsedToBeACave
via reddit https://ift.tt/2UL3Y0D
https://ift.tt/2ULlRg0
Submitted March 20, 2019 at 05:16AM by IUsedToBeACave
via reddit https://ift.tt/2UL3Y0D
digi.ninja
Using HTTP Pipelining to hide requests - DigiNinja
Using HTTP pipelining to hide HTTP requests.
SpamTitan Email Security Now Includes Sandboxing and DMARC Authentication
https://ift.tt/2TY9L5H
Submitted March 20, 2019 at 02:32PM by samiullah962645
via reddit https://ift.tt/2UKtoLN
https://ift.tt/2TY9L5H
Submitted March 20, 2019 at 02:32PM by samiullah962645
via reddit https://ift.tt/2UKtoLN
WebTitan
SpamTitan Email Security Now Includes Sandboxing and DMARC Authentication - WebTitan
TitanHQ has announced its award-winning email security solution is now even better. Sandboxing and DMARC email authentication have now been added to better protect users from email threats.
alexfrancow/A-Detector - An anomaly-based intrusion detection system.
https://ift.tt/2Fp9Nvi
Submitted March 20, 2019 at 04:41PM by ThrowAway823434-234
via reddit https://ift.tt/2HvtrrR
https://ift.tt/2Fp9Nvi
Submitted March 20, 2019 at 04:41PM by ThrowAway823434-234
via reddit https://ift.tt/2HvtrrR
GitHub
alexfrancow/A-Detector
:star: An anomaly-based intrusion detection system. - alexfrancow/A-Detector
Introduction to kerberos & kerberos-related attacks
https://ift.tt/2HuoEad
Submitted March 20, 2019 at 05:26PM by gid0rah
via reddit https://ift.tt/2OhLliC
https://ift.tt/2HuoEad
Submitted March 20, 2019 at 05:26PM by gid0rah
via reddit https://ift.tt/2OhLliC
Tarlogic Security - Cyber Security and Ethical hacking
Kerberos (I): How does Kerberos work? - Theory
The objective of this series of posts is to clarify how Kerberos works, more than just introduce the attacks. This due to the fact that in many occasions it is not clear why some techniques works or not. Having this knowledge allows to know when to use any…
Now-Patched Google Photos Vulnerability Let Hackers Track Your Friends and Location History | Imperva
https://ift.tt/2HvUKSV
Submitted March 20, 2019 at 09:04PM by yaworsk
via reddit https://ift.tt/2CtLScx
https://ift.tt/2HvUKSV
Submitted March 20, 2019 at 09:04PM by yaworsk
via reddit https://ift.tt/2CtLScx
Blog
Now-Patched Google Photos Vulnerability Let Hackers Track Your Friends and Location History | Imperva
A now-patched vulnerability in the web version of Google Photos allowed malicious websites to expose where, when, and with whom your photos were taken. Background One trillion photos were taken in 2018. With image quality and file size increasing, it’s obvious…
Slack announcement-only channel post restriction bypass
https://ift.tt/2HuNFC9
Submitted March 20, 2019 at 09:00PM by user23474327234
via reddit https://ift.tt/2UMmCoT
https://ift.tt/2HuNFC9
Submitted March 20, 2019 at 09:00PM by user23474327234
via reddit https://ift.tt/2UMmCoT
reddit
r/netsec - Slack announcement-only channel post restriction bypass
0 votes and 0 comments so far on Reddit
SigintOS: A Wireless Pentest Distro Review
https://ift.tt/2UKPH4f
Submitted March 20, 2019 at 08:28PM by dukeofmola
via reddit https://ift.tt/2TgMKXu
https://ift.tt/2UKPH4f
Submitted March 20, 2019 at 08:28PM by dukeofmola
via reddit https://ift.tt/2TgMKXu
Medium
SigintOS: A Wireless Pentest Distro Review
Good news! There’s new security distro called SigintOS becoming available for download. SigintOS is an Ubuntu based distribution with a…
SecHub.io - Educational Platform for Web Sec - Beta, MVP, Early Stages - Feedback/Support
SecHub.io is an educational platform to learn about web-security and get an idea of what vulnerabilities have existed in the public domain. Students and those in industry learn with curated lessons on defense and attack associated with common web vulnerabilities. SecHub also maintains graphical illustrations on the distribution of real issues.Please have a look. Get in touch if you have any suggestions. Get in touch if you know of great content. Get in touch for anything I really like a good chat. Thanks ya'll
Submitted March 19, 2019 at 02:29PM by wezham
via reddit https://ift.tt/2Ofu8WR
SecHub.io is an educational platform to learn about web-security and get an idea of what vulnerabilities have existed in the public domain. Students and those in industry learn with curated lessons on defense and attack associated with common web vulnerabilities. SecHub also maintains graphical illustrations on the distribution of real issues.Please have a look. Get in touch if you have any suggestions. Get in touch if you know of great content. Get in touch for anything I really like a good chat. Thanks ya'll
Submitted March 19, 2019 at 02:29PM by wezham
via reddit https://ift.tt/2Ofu8WR
reddit
r/netsec - SecHub.io - Educational Platform for Web Sec - Beta, MVP, Early Stages - Feedback/Support
1 vote and 0 comments so far on Reddit
Russian Internet Segment Architecture
https://ift.tt/2Fo72dH
Submitted March 20, 2019 at 10:31PM by atomlib_com
via reddit https://ift.tt/2TkbkXB
https://ift.tt/2Fo72dH
Submitted March 20, 2019 at 10:31PM by atomlib_com
via reddit https://ift.tt/2TkbkXB
Habr
Russian Internet Segment Architecture
As many of our readers know, Qrator.Radar is constantly researching global BGP connectivity, as well as regional. Since the Internet stands for “Interconnected N...
Looking for a secure team messaging service that is secure, works well on various OS’s, and affordable cost
https://ift.tt/2JqL9Pi
Submitted March 20, 2019 at 11:27PM by allidoispk
via reddit https://ift.tt/2uidb51
https://ift.tt/2JqL9Pi
Submitted March 20, 2019 at 11:27PM by allidoispk
via reddit https://ift.tt/2uidb51
reddit
r/sysadmin - Looking for a secure team messaging service that is secure, works well on various OS’s, and affordable cost
0 votes and 1 comment so far on Reddit
Bypassing AV (Windows Defender) ... the tedious way.
https://ift.tt/2JifCPc
Submitted March 21, 2019 at 12:25AM by unru1yboss
via reddit https://ift.tt/2Ogclil
https://ift.tt/2JifCPc
Submitted March 21, 2019 at 12:25AM by unru1yboss
via reddit https://ift.tt/2Ogclil
CyberGuider Information Technology Services Inc.
Bypassing AV (Windows Defender) ... the tedious way. - CyberGuider Information Technology Services Inc.
Dont rely on AntiVirus (AV) as your security conrnerstone. Bypassing AV is still as trivial as ever.
The Norsk Hydro ransomware attack: An in-depth look
https://ift.tt/2YjVtfk
Submitted March 20, 2019 at 11:51PM by vesche
via reddit https://ift.tt/2TkVFHa
https://ift.tt/2YjVtfk
Submitted March 20, 2019 at 11:51PM by vesche
via reddit https://ift.tt/2TkVFHa
Swimlane
The Norsk Hydro ransomware attack: An in-depth look | Swimlane
LockerGoga is the ransomware that infected Norsk Hydro. Let's discuss the potential damages this ransomware could have on critical infrastructure.
Buffer Overflow Practical Examples - ret2libc
https://ift.tt/2OiQKWG
Submitted March 21, 2019 at 03:31AM by Ahm3d_H3sham
via reddit https://ift.tt/2USlfVX
https://ift.tt/2OiQKWG
Submitted March 21, 2019 at 03:31AM by Ahm3d_H3sham
via reddit https://ift.tt/2USlfVX
0xRick Owned Root !
Buffer Overflow Practical Examples , ret2libc - protostar stack6
Introduction Hey guys , In the last post about buffer overflow we exploited a buffer overflow vulnerability where we were able to inject a shellcode and escalate privileges to root. But that was possible because we were able to overwrite the return address…
An introduction to privileged file operation abuse on Windows
https://ift.tt/2FrcnBk
Submitted March 21, 2019 at 02:51AM by ProvadysOffsec
via reddit https://ift.tt/2W7SHaQ
https://ift.tt/2FrcnBk
Submitted March 21, 2019 at 02:51AM by ProvadysOffsec
via reddit https://ift.tt/2W7SHaQ
reddit
r/netsec - An introduction to privileged file operation abuse on Windows
0 votes and 0 comments so far on Reddit
WinPwn / internal Penetrationtest Powershell Script
https://github.com/SecureThisShit/WinPwn
Submitted March 20, 2019 at 09:34PM by SecureThisShit
via reddit https://ift.tt/2Cx3Iew
https://github.com/SecureThisShit/WinPwn
Submitted March 20, 2019 at 09:34PM by SecureThisShit
via reddit https://ift.tt/2Cx3Iew
GitHub
GitHub - S3cur3Th1sSh1t/WinPwn: Automation for internal Windows Penetrationtest / AD-Security
Automation for internal Windows Penetrationtest / AD-Security - S3cur3Th1sSh1t/WinPwn
Authenticated Arbitrary Command Execution on PostgreSQL 9.3 > Latest
https://ift.tt/2ULgQE4
Submitted March 21, 2019 at 04:55AM by IUsedToBeACave
via reddit https://ift.tt/2WcnJyn
https://ift.tt/2ULgQE4
Submitted March 21, 2019 at 04:55AM by IUsedToBeACave
via reddit https://ift.tt/2WcnJyn
Medium
Authenticated Arbitrary Command Execution on PostgreSQL 9.3 > Latest
PostgreSQL from 9.3 to latest has functionality allowing the database superuser & users in the ‘pg_read_server_files’ to execute OS…
Credit Karma's Android App Uses Insecure HTTP (Phishing Risk)
https://ift.tt/2Fq3Ezi
Submitted March 21, 2019 at 11:10AM by Soatok
via reddit https://ift.tt/2HE8oDR
https://ift.tt/2Fq3Ezi
Submitted March 21, 2019 at 11:10AM by Soatok
via reddit https://ift.tt/2HE8oDR
Gist
Credit Karma App Uses Insecure HTTP
Credit Karma App Uses Insecure HTTP. GitHub Gist: instantly share code, notes, and snippets.
Ironing Out Docker: Docker security overview
https://ift.tt/2ukslXl
Submitted March 21, 2019 at 03:55PM by nindustries
via reddit https://ift.tt/2FjWonj
https://ift.tt/2ukslXl
Submitted March 21, 2019 at 03:55PM by nindustries
via reddit https://ift.tt/2FjWonj
reddit
r/netsec - Ironing Out Docker: Docker security overview
0 votes and 0 comments so far on Reddit