Sys-Admin Up – Telegram
Sys-Admin Up
1.06K subscribers
132 photos
4 videos
127 files
2.23K links
InfoSec, Hacks, Perks, Tools, IT/IS Courses, CVE… Contains part of the news that was not included in the Sys-Admin & InfoSec Channel (@sysadm_in_channel)
Download Telegram
New Outlook app is far more tightly integrated with the cloud than a user might expect, opening up the scope of potential Microsoft data collection. This represents a significant privacy issue..:

https://www.xda-developers.com/privacy-implications-new-microsoft-outlook/
Critical Exploit in MediaTek Wi-Fi Chipsets: Zero-Click Vulnerability (CVE-2024-20017) Threatens Routers and Smartphones:

https://blog.sonicwall.com/en-us/2024/09/critical-exploit-in-mediatek-wi-fi-chipsets-zero-click-vulnerability-cve-2024-20017-threatens-routers-and-smartphones/

Detailed analysis for - 4 exploits, 1 bug: exploiting cve-2024-20017 4 different ways

Affected chipsets:
- MT6890, MT7915, MT7916, MT7981, MT7986, MT7622
Affected software:
- SDK version 7.4.0.1 and before (for MT7915) / SDK version 7.6.7.0 and before (for MT7916, MT7981 and MT7986) / OpenWrt 19.07, 21.02

http://0.0.0.0:4000/0day/2024/08/30/exploiting-CVE-2024-20017-four-different-ways.html

PoC:
https://github.com/mellow-hype/cve-2024-20017
IT_Security_Management_Checklist_9_Key_Recommendations_to_Keep_Your.pdf
835.5 KB
IT Security Management
Checklist

9 Key Recommendations to Keep Network Safe
Reverse Engineering for Noobs

https://x86re.com/
MMSF - Mobile framework that combines functionalities from frida, objection, drozer, and many more.

Massive Mobile Security Framework:

- https://github.com/St3v3nsS/MMSF
TOP 5 ANOMALY DETECTION LIBRARIES.pdf
6.8 MB
TOP 5 - Anomaly Detection Libraries
An attacker was able to achieve code execution in the content process by exploiting a use-after-free in Animation timelines.

Firefox

https://www.mozilla.org/en-US/security/advisories/mfsa2024-51/