Mapping Iran's Rana Institute to MITRE Pre-ATT&CK and ATT&CK
http://bit.ly/2JG7IOb
Submitted May 19, 2019 at 10:36PM by digicat
via reddit http://bit.ly/2VD3KIs
http://bit.ly/2JG7IOb
Submitted May 19, 2019 at 10:36PM by digicat
via reddit http://bit.ly/2VD3KIs
Digital Shadows
Mapping Iran's Rana Institute to MITRE Pre-ATT&CK™ and ATT&CK™ | Digital Shadows
The internet has been aflame with discussions around three leaks of internal information from APT groups attributed with the Islamic Republic of Iran. One of these leaks was written up by the security firm ClearSky and details what appears to be an offensive…
Work Diary - Research work & Deployment of Security Policies
http://bit.ly/2JOBfFz
Submitted May 20, 2019 at 03:58AM by Eta-Meson
via reddit http://bit.ly/2JsKr2S
http://bit.ly/2JOBfFz
Submitted May 20, 2019 at 03:58AM by Eta-Meson
via reddit http://bit.ly/2JsKr2S
Medium
Work Diary - Research work & Deployment of Security Policies
I just recently joined a startup and have been a part of their InfoSec team. Recently this thought popped up in my mind that I should…
Damn Vulnerable Crypto Wallet - An extremely insecure Ethereum cryptowallet
http://bit.ly/2HIvB51
Submitted May 20, 2019 at 09:41AM by w0lf_101
via reddit http://bit.ly/2VQ8Lm8
http://bit.ly/2HIvB51
Submitted May 20, 2019 at 09:41AM by w0lf_101
via reddit http://bit.ly/2VQ8Lm8
GitLab
Bad Bounty Repo / dvcw
How I hacked into my college’s database!
http://bit.ly/2Ju2jL5
Submitted May 21, 2019 at 03:58AM by Eta-Meson
via reddit http://bit.ly/2YBaXe4
http://bit.ly/2Ju2jL5
Submitted May 21, 2019 at 03:58AM by Eta-Meson
via reddit http://bit.ly/2YBaXe4
Medium
How I hacked into a college’s database!
This article is being re-published originally written by me one year back.
Creating a covert channel over the Telegram messenger
http://bit.ly/2w8XRIH
Submitted May 21, 2019 at 04:09AM by Labunsky
via reddit http://bit.ly/2wbU25A
http://bit.ly/2w8XRIH
Submitted May 21, 2019 at 04:09AM by Labunsky
via reddit http://bit.ly/2wbU25A
Medium
Even more secret Telegrams
We used to think of Telegram as a reliable and secure transmission medium for messages of any sort. But under the hood, it has a rather…
Sojobo - Yet another binary analysis framework
http://bit.ly/2HsSGtF
Submitted May 21, 2019 at 01:59AM by aparata_s4tan
via reddit http://bit.ly/2YBPemd
http://bit.ly/2HsSGtF
Submitted May 21, 2019 at 01:59AM by aparata_s4tan
via reddit http://bit.ly/2YBPemd
Blogspot
Sojobo - Yet another binary analysis framework
Twitter: @s4tan Sojobo GitHub project: https://github.com/enkomio/Sojobo Sojobo is a new binary analysis framework written in .NET and b...
CVE-2019-3568: WhatsApp 0 day analysis
http://bit.ly/2HpPlLQ
Submitted May 21, 2019 at 10:35AM by digicat
via reddit http://bit.ly/2WQ99NT
http://bit.ly/2HpPlLQ
Submitted May 21, 2019 at 10:35AM by digicat
via reddit http://bit.ly/2WQ99NT
reddit
r/netsec - CVE-2019-3568: WhatsApp 0 day analysis
0 votes and 5 comments so far on Reddit
Incident response at your fingertips with Microsoft Defender ATP live response
http://bit.ly/2HuUrH2
Submitted May 21, 2019 at 12:30PM by digicat
via reddit http://bit.ly/2YGqDgi
http://bit.ly/2HuUrH2
Submitted May 21, 2019 at 12:30PM by digicat
via reddit http://bit.ly/2YGqDgi
TECHCOMMUNITY.MICROSOFT.COM
Incident response at your fingertips with Microsoft Defender ATP live response
Conducting a thorough forensic investigation of compromised machines is integral to incident response. However, it can be a challenging task because it requires the device to be in the corporate network and for additional software to be deployed, or for SecOps…
Linux privilege escalation via LXD & relayed UNIX socket credentials
http://bit.ly/2w7D4FF
Submitted May 21, 2019 at 04:20PM by initstring
via reddit http://bit.ly/2LVqwf8
http://bit.ly/2w7D4FF
Submitted May 21, 2019 at 04:20PM by initstring
via reddit http://bit.ly/2LVqwf8
Shenanigans Labs
Linux Privilege Escalation via LXD & Hijacked UNIX Socket Credentials
Linux systems running LXD are vulnerable to privilege escalation via multiple attack paths, two of which are published in my “lxd_root” GitHub repository. This blog will go into the details of what I think is a very interesting path - abusing relayed UNIX…
Network detection rule for CVE-2019-0708 in RDP tested with #Suricata
http://bit.ly/2M0jK85
Submitted May 21, 2019 at 03:46PM by digicat
via reddit http://bit.ly/2WgaLDy
http://bit.ly/2M0jK85
Submitted May 21, 2019 at 03:46PM by digicat
via reddit http://bit.ly/2WgaLDy
GitHub
nccgroup/Cyber-Defence
Information released publicly by NCC Group's Cyber Defence team - nccgroup/Cyber-Defence
A Curious Case of Malwarebytes - Malware
http://bit.ly/2QblHwG
Submitted May 21, 2019 at 06:02PM by Evil1337
via reddit http://bit.ly/2WbOSFx
http://bit.ly/2QblHwG
Submitted May 21, 2019 at 06:02PM by Evil1337
via reddit http://bit.ly/2WbOSFx
0x00sec - The Home of the Hacker
A Curious Case of Malwarebytes
Introduction Recently, I installed Malwarebytes on my machine. I played around with it for a little and I noticed that something was off with the scanning of files on disk. Naturally, it tempted me into digging further to identify the root cause but I had…
The Most Expensive Lesson Of My Life: Details of SIM port hack
http://bit.ly/2VWUVP2
Submitted May 21, 2019 at 06:15PM by hakluke
via reddit http://bit.ly/2LVoGL9
http://bit.ly/2VWUVP2
Submitted May 21, 2019 at 06:15PM by hakluke
via reddit http://bit.ly/2LVoGL9
Medium
The Most Expensive Lesson Of My Life: Details of SIM port hack
I lost north of $100,000 last Wednesday. It evaporated over a 24 hour timespan in a “SIM port attack” that drained my Coinbase account.
Even more secret Telegrams
http://bit.ly/2WVvaLp
Submitted May 21, 2019 at 08:21PM by atomlib_com
via reddit http://bit.ly/2WUB536
http://bit.ly/2WVvaLp
Submitted May 21, 2019 at 08:21PM by atomlib_com
via reddit http://bit.ly/2WUB536
Habr
Even more secret Telegrams
We used to think of Telegram as a reliable and secure transmission medium for messages of any sort. But under the hood, it has a rather common combination of a-...
DDOSing a firewall for a few dollars a month
http://bit.ly/2WftBup
Submitted May 21, 2019 at 10:09PM by le-quack
via reddit http://bit.ly/2Ma7GAW
http://bit.ly/2WftBup
Submitted May 21, 2019 at 10:09PM by le-quack
via reddit http://bit.ly/2Ma7GAW
Secjuice Infosec Writers Guild
Shooting Rubber Bands At Firewalls
How to defend against this denial of service attack which can be used to deactivate firewalls from a number of vendors, for less than five dollars.
Pymetasploit3: Automate Metasploit with Python3
http://bit.ly/2VQ0YVk
Submitted May 21, 2019 at 09:54PM by coalfirelabs
via reddit http://bit.ly/2M9xIVk
http://bit.ly/2VQ0YVk
Submitted May 21, 2019 at 09:54PM by coalfirelabs
via reddit http://bit.ly/2M9xIVk
Coalfire.com
pymetasploit3 – Metasploit Automation Library
Have a checklist of tasks you perform every penetration test, such as SSH bruteforcing or port mapping? Automate it with Python and Metasploit! Unfortunately, there hasn’t been a working, full-featured Python library for making these tasks easy for many years…
The Tier of Threat Actors - Cheatsheet
http://bit.ly/2Wh7qnK
Submitted May 21, 2019 at 10:58PM by oakeye
via reddit http://bit.ly/2LYUTS3
http://bit.ly/2Wh7qnK
Submitted May 21, 2019 at 10:58PM by oakeye
via reddit http://bit.ly/2LYUTS3
IT BlogR
The Tier of Threat Actors - Cheatsheet | IT BlogR
python-iocextract: Advanced Indicator of Compromise (IOC) extractor
http://bit.ly/2VTozo7
Submitted May 21, 2019 at 09:37PM by amusciano
via reddit http://bit.ly/2VVxNjG
http://bit.ly/2VTozo7
Submitted May 21, 2019 at 09:37PM by amusciano
via reddit http://bit.ly/2VVxNjG
GitHub
InQuest/python-iocextract
Advanced Indicator of Compromise (IOC) extractor. Contribute to InQuest/python-iocextract development by creating an account on GitHub.
On February 1 2020, DNS servers that don’t support DNS both over UDP and TCP may stop working
http://bit.ly/2EqaPq9
Submitted May 22, 2019 at 12:13AM by atomlib_com
via reddit http://bit.ly/2X0cpGG
http://bit.ly/2EqaPq9
Submitted May 22, 2019 at 12:13AM by atomlib_com
via reddit http://bit.ly/2X0cpGG
Habr
What is gonna happen on February 1, 2020?
TL;DR: starting February 2020, DNS servers that don’t support DNS both over UDP and TCP may stop working. Bangkok, in general, is a strange place to stay. Of c...
XSS without parentheses and semi-colons
http://bit.ly/2VCt8Di
Submitted May 20, 2019 at 07:34PM by albinowax
via reddit http://bit.ly/2M1piPz
http://bit.ly/2VCt8Di
Submitted May 20, 2019 at 07:34PM by albinowax
via reddit http://bit.ly/2M1piPz
portswigger.net
XSS without parentheses and semi-colons | Blog
A few years ago I discovered a technique to call functions in JavaScript without parentheses using onerror and the throw statement. It works by setting the onerror handler to the function you want to
AWS Security Incident Response Guide
http://bit.ly/2HOSALQ
Submitted May 22, 2019 at 12:48AM by digicat
via reddit http://bit.ly/2VHGRDY
http://bit.ly/2HOSALQ
Submitted May 22, 2019 at 12:48AM by digicat
via reddit http://bit.ly/2VHGRDY
The U.S. Navy "attacked" the U.S. Air Force with a "Splunk Tool"
http://bit.ly/30wSilD
Submitted May 22, 2019 at 02:01AM by tacobelldog52
via reddit http://bit.ly/2MeM9rd
http://bit.ly/30wSilD
Submitted May 22, 2019 at 02:01AM by tacobelldog52
via reddit http://bit.ly/2MeM9rd
Military Times
Why the Air Force is investigating a cyber attack from the Navy
The Air Force has reportedly seized an attorney's computer and phone as part of an investigation into whether the Navy improperly spied on defense attorneys.