Sys-Admin Up – Telegram
Sys-Admin Up
1.06K subscribers
132 photos
4 videos
127 files
2.23K links
InfoSec, Hacks, Perks, Tools, IT/IS Courses, CVE… Contains part of the news that was not included in the Sys-Admin & InfoSec Channel (@sysadm_in_channel)
Download Telegram
CVE-2023-36460: mastodon: Arbitrary file creation through media attachments

https://www.openwall.com/lists/oss-security/2023/07/06/4
Living Off The Land Applications: Sowing the seeds for application exploitation ease

https://lolapps-project.github.io/#
Phemedrone stealer. New day, new threats

ToC:
— Discovery history
— Disassembling the internals
— Interesting facts
— Indicators of compromise
— Conclusion

https://medium.com/@filexploit/phemedrone-stealer-new-day-new-threats-464fa6f9dbab
Скоро в Алматы, 16 сентября, мы будем проводить пятую открытую конференцию Open SysConf.io

Где может каждый прийти и поделиться/послушать доклады, ресерчи или просто пообщаться, познакомиться со специалистами из разных ИТ областей:

https://news.1rj.ru/str/OpenSysConf/1679
osint_from_zero_to_hero.pdf
73.6 KB
Cert / Cource (free/paid) Links collection
Forwarded from Sys-Admin InfoSec
⚠️ Reminding/Notice. bld.sys-adm.in will migrate to OpenBLD.net

Review and resetup all DoT, DoH, DNS setings to OpenBLD.net please.

Keep in mind - On this IP addresess will only remain DoT, DoH:
- 49.12.234.130
- 135.125.204.230
Secrets Revealed in Container Images:

An Internet-wide Study on Occurrence and Impact

https://arxiv.org/pdf/2307.03958.pdf
TTPs: BadStrings

In this writeup we discuss a mutli-step methodology for beating string detection by Mandiant's FLOSS string deobfuscator:

https://steve-s.gitbook.io/0xtriboulet/ttps/ttps-badstrings