Sys-Admin InfoSec – Telegram
Sys-Admin InfoSec
12.7K subscribers
235 photos
2 videos
103 files
4.54K links
News of cybersecurity / information security, information technology, data leaks / breaches, cve, hacks, tools, trainings
* Multilingual (En, Ru).
* Forum - forum.sys-adm.in
* Chat - @sysadm_in
* Job - @sysadm_in_job
* ? - @sysadminkz
Download Telegram
Windows NTFS Denial of Service Vulnerability (update available)

https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2021-28312
socta2021_3.pdf
37.9 MB
ОЦЕНКА УГРОЗЫ ОРГАНИЗОВАННОЙ ПРЕСТУПНОСТИ В ЕВРОПЕЙСКОМ СОЮЗЕ (отчет Европола)
Hard Drive And SSD Shortages May Occur In The Near Future If New Cryptocurrency Succeeds

Сначала возник дефицит видеокарт, теперь возможно грядет дефицит SSD/HDD..

https://wccftech.com/hard-drive-and-ssd-shortages-may-occur-in-the-near-future-if-new-cryptocurrency-succeeds/
Когда BMP изображение может быть угрозой

Все начинается, как обычно с doc документа, заканчивается установкой вредоносного RAT ( Remote Access Trojan )

PoC

https://blog.malwarebytes.com/malwarebytes-news/2021/04/lazarus-apt-conceals-malicious-code-within-bmp-file-to-drop-its-rat/amp/
nginx-1.20.0 stable version has been released

http://nginx.org/#2021-04-20
The OpenVPN community project team is proud to release OpenVPN 2.5.2. It fixes two related security vulnerabilities (CVE-2020-15078) which under very specific circumstances allow tricking a server using delayed authentication (plugin or management) into returning a PUSH_REPLY before the AUTH_FAILED message, which can possibly be used to gather information about a VPN setup. In combination with “–auth-gen-token” or a user-specific token auth solution it can be possible to get access to a VPN with an otherwise-invalid account. OpenVPN 2.5.2 also includes other bug fixes and improvements. Updated OpenSSL and OpenVPN GUI are included in Windows installers

https://openvpn.net/community-downloads/
sec21fall-heinrich.pdf
562.4 KB
PrivateDrop: Practical Privacy-Preserving Authentication for Apple AirDrop