Sys-Admin InfoSec – Telegram
Sys-Admin InfoSec
12.7K subscribers
235 photos
2 videos
103 files
4.55K links
News of cybersecurity / information security, information technology, data leaks / breaches, cve, hacks, tools, trainings
* Multilingual (En, Ru).
* Forum - forum.sys-adm.in
* Chat - @sysadm_in
* Job - @sysadm_in_job
* ? - @sysadminkz
Download Telegram
/ VajraSpy: A Patchwork of espionage apps

These apps share the same malicious functionality, being capable of exfiltrating the following:
- contacts,
- SMS messages,
- call logs,
- device location,
- a list of installed apps, and
files with specific extensions (.pdf, .doc, .docx, .txt, .ppt, .pptx, .xls, .xlsx, .jpg, .jpeg, .png, .mp3, .Om4a, .aac, and .opus).

Technical review:

https://www.welivesecurity.com/en/eset-research/vajraspy-patchwork-espionage-apps/
Forwarded from Sys-Admin Up (Yevgeniy Goncharov)
/ runc: CVE-2024-21626: high severity container breakout attack

https://www.openwall.com/lists/oss-security/2024/01/31/6
📢 Открытый практикум Linux by Rebrain: RAID массивы 2

• 12 Февраля (Понедельник) 20:00 МСК

Программа:

• Для чего нужна очистка метаданных mdadm?
• Как перенести данные с обычного диска на RAID1?
• Как понять был ли диск в RAID массиве mdadm?
• Как получить данные с диска из RAID1?
• Увеличение размера RAID массива

Детали

Ведёт:

Андрей Буранов – Системный администратор VK Play. 10+ лет опыта работы с ОС Linux. 8+ лет опыта преподавания.
📢 Открытый практикум DevOps by Rebrain: Работаем с бэклогом команды DevOps

Время:

• 20 Февраля (Вторник) 19:00 МСК

Программа:

• Построение процесса бэклога команды
• Подход к сквозному приоритету задач
• Контроль сроков

Детали

Ведёт:

• Александр Крылов – Опыт работы в DevOps более 7 лет. Спикер конференций: DevOps conf, TeamLead conf, Highload conf. Автор курса по Haproxy на Rebrain.
/ New WiFi Authentication Vulnerabilities Discovered

One vulnerability affects Android, ChromeOS and Linux devices connecting to enterprise WiFi networks, another affects home WiFi using a Linux device as a wireless access point:

https://www.top10vpn.com/research/wifi-vulnerabilities/
/ Serious Vulnerability in the Internet Infrastructure Fundamental design flaw in DNSSEC discovered

https://www.athene-center.de/en/news/press/key-trap
Forwarded from OpenBLD.net (Yevgeniy Goncharov)
😡 OpenBLD.net Preventing: Malicious Campaign Impacting Azure Cloud Environments

New researched malicious campaign from Proofpoint researchers, detected integrating credential phishing and cloud account takeover (ATO) techniques...

This campaign contains multiple endpoints which also included domains used as malicious infrastructure...

So - All malicious infrastructure domains sent to OpenBLD.net ecosystem ✈️

Be safe and be focused my friends 😎
Please open Telegram to view this post
VIEW IN TELEGRAM
📢 VDSina present new hosting project on VDSina.com

With servers based on the latest AMD EPYC processors. Processor frequency 3.55 GHz. Triple redundant NVMe storage. Internet port speed 10 Gbit/sec. Data-center located in Netherlands.

Some of services from lab.sys-adm.in are using this VPS hosting for own needs (like as Chat Prettier, Masha Banhammer or Get Telegram IDs Telegram bots). Price started from 0.16$ in day, it's great for VPN, websites, telegram bots and other needs...

You can see more details on official VDSina.com site
/ Pelmeni Wrapper: New Wrapper of Kazuar (Turla Backdoor)

- Infection Chain
- Technical analysis: Kazuar (DotNET) and Pelmeni Wrapper (Wrapper DLL)
- IoC's

https://lab52.io/blog/pelmeni-wrapper-new-wrapper-of-kazuar-turla-backdoor/