Sys-Admin InfoSec – Telegram
Sys-Admin InfoSec
12.7K subscribers
235 photos
2 videos
103 files
4.55K links
News of cybersecurity / information security, information technology, data leaks / breaches, cve, hacks, tools, trainings
* Multilingual (En, Ru).
* Forum - forum.sys-adm.in
* Chat - @sysadm_in
* Job - @sysadm_in_job
* ? - @sysadminkz
Download Telegram
Agent 007: Pre-Auth Takeover of Build Pipelines in GoCD

In this blog post, we detail a vulnerability that lets unauthenticated attackers leak highly sensitive information from a vulnerable GoCD Server instance, including all encrypted secrets stored on the server

https://blog.sonarsource.com/gocd-pre-auth-pipeline-takeover
Trojan Source: Invisible Vulnerabilities

paper describing cool new tricks for crafting targeted vulnerabilities that are invisible to human code reviewers

https://www.lightbluetouchpaper.org/2021/11/01/trojan-source-invisible-vulnerabilities/

up

https://trojansource.codes
https://github.com/nickboucher/trojan-source#trojan-source
warn_about_of_ramsomaware_from_fbi.pdf
1.4 MB
Tactics, Techniques, and Indicators of Compromise Associated
with Hello Kitty/FiveHands Ransomware
Android Security Bulletin—November 2021

https://source.android.com/security/bulletin/2021-11-01
Forwarded from Sys-Admin Up (Yevgeniy Goncharov)
Cybersecurity Awareness training

Free from AWS

https://learnsecurity.amazon.com/

P.S. Прикольно, есть на разных языках включая русский