Sys-Admin Up – Telegram
Sys-Admin Up
1.06K subscribers
132 photos
4 videos
127 files
2.23K links
InfoSec, Hacks, Perks, Tools, IT/IS Courses, CVE… Contains part of the news that was not included in the Sys-Admin & InfoSec Channel (@sysadm_in_channel)
Download Telegram
Diffrent Cloud Providers IPRanges Lists

List all IP ranges from: Google (Cloud & GoogleBot), Bing (Bingbot), Amazon (AWS), Microsoft (Azure), Oracle (Cloud), DigitalOcean, GitHub, Facebook (Meta), Twitter and Linode with daily updates:

https://github.com/lord-alfred/ipranges
/ After scanned every package on PyPi and found 57 live AWS keys

from organisations like:

- Amazon themselves
- Intel
- Stanford, Portland and Louisiana University
- The Australian Government
- ...

https://tomforb.es/i-scanned-every-package-on-pypi-and-found-57-live-aws-keys/
Let’s to boxing:)
Threema-PST22.pdf
413.9 KB
Three Lessons From Threema: Analysis of a Secure Messenger
On the Security Vulnerabilities of Text-to-SQL Models

attack with AI

https://arxiv.org/pdf/2211.15363.pdf
Detect-ad-ml-algorithm.pdf
398.8 KB
Detecting Adversarial Advertisements in the Wild
MSI's (in)Secure Boot

I decided to setup Secure Boot on my new desktop with a help of sbctl. Unfortunately I have found that my firmware was… accepting every OS image I gave it, no matter if it was trusted or not...

bypass seBoot on msi:

https://dawidpotocki.com/en/2023/01/13/msi-insecure-boot/
Sudoedit allowing a local attacker to append arbitrary entries to the list of files to process

https://ubuntu.com/security/CVE-2023-22809

P.S. thx for the link @clevergod : ✌️
Malware development: persistence - part 21. Recycle Bin, My Documents COM extension handler. Simple C++ example.

https://cocomelonc.github.io/persistence/2023/01/19/malware-pers-21.html