Flipper Zero: Under Development Multi-tool Device for Pen-Testers
https://ift.tt/2SaPsAT
Submitted December 20, 2019 at 03:12PM by dukeofmola
via reddit https://ift.tt/2Smhcmn
https://ift.tt/2SaPsAT
Submitted December 20, 2019 at 03:12PM by dukeofmola
via reddit https://ift.tt/2Smhcmn
flipperzero.one
Flipper Zero — Multi-tool Device for Hackers. Lite version based on STM32
Based on ultra low power STM32 MCU for daily hacking of access control systems, radio protocols. Compatible with Arduino IDE and PlatformIO.
The Hacker Who Took Down a Country
https://ift.tt/2sPujkU
Submitted December 20, 2019 at 05:50PM by Fugitif
via reddit https://ift.tt/35HiH2h
https://ift.tt/2sPujkU
Submitted December 20, 2019 at 05:50PM by Fugitif
via reddit https://ift.tt/35HiH2h
Bloomberg.com
The Hacker Who Took Down a Country
Daniel Kaye, also known as Spdrman, found regular jobs tough but corporate espionage easy. He’s about to get out of prison.
On Linux's Random Number Generation
https://ift.tt/34HRsDj
Submitted December 20, 2019 at 07:26PM by digicat
via reddit https://ift.tt/38SA8il
https://ift.tt/34HRsDj
Submitted December 20, 2019 at 07:26PM by digicat
via reddit https://ift.tt/38SA8il
NCC Group Research
On Linux's Random Number Generation
I have been asked about the usefulness of security monitoring of entropy levels in the Linux kernel. This calls for some explanation of how random generation works in Linux systems. So, randomness …
How to use your Ledger crypto wallet to secure Gmail, Facebook accounts
https://ift.tt/2EG4YNk
Submitted December 20, 2019 at 08:19PM by Tennis3765
via reddit https://ift.tt/34KrDT4
https://ift.tt/2EG4YNk
Submitted December 20, 2019 at 08:19PM by Tennis3765
via reddit https://ift.tt/34KrDT4
Decrypt
How to use your Ledger crypto wallet to secure Gmail, Facebook accounts - Decrypt
Crypto security and hardware developer Ledger has a new 2FA system that, while designed for crypto, can now protect your Google, Facebook or GitHub accounts
Using WebRTC ICE Servers for Port Scanning in Chrome
https://ift.tt/35Dx4EF
Submitted December 20, 2019 at 08:57PM by chicksdigthelongrun
via reddit https://ift.tt/2sMjMHl
https://ift.tt/35Dx4EF
Submitted December 20, 2019 at 08:57PM by chicksdigthelongrun
via reddit https://ift.tt/2sMjMHl
Medium
Using WebRTC ICE Servers for Port Scanning in Chrome
To everything (TURN! TURN! TURN!)
Keyless CryptoTrading - a use case for open source tech that automates cryptography without having access to the private key
https://ift.tt/36Yo5yi
Submitted December 20, 2019 at 10:20PM by tidefoundation
via reddit https://ift.tt/35OHtO4
https://ift.tt/36Yo5yi
Submitted December 20, 2019 at 10:20PM by tidefoundation
via reddit https://ift.tt/35OHtO4
Tide Keyless Trading explainer
Learn how Tide groundbreaking technology allows others to access your crypto-funds and trade on your behalf without giving away your keys.
Hacking live on twitch | Solving pwn, rev
https://ift.tt/35vRnnu
Submitted December 20, 2019 at 11:00PM by ISeeFacesInClouds
via reddit https://ift.tt/34JgamN
https://ift.tt/35vRnnu
Submitted December 20, 2019 at 11:00PM by ISeeFacesInClouds
via reddit https://ift.tt/34JgamN
Twitch
lionaneesh - Twitch
Hacking Live Stream | Playing CTFs for fun!
WordPress: tale of the 4-month old zero-day
https://ift.tt/391uyKk
Submitted December 20, 2019 at 11:19PM by Alabatross
via reddit https://ift.tt/2Q5AvgP
https://ift.tt/391uyKk
Submitted December 20, 2019 at 11:19PM by Alabatross
via reddit https://ift.tt/2Q5AvgP
reddit
WordPress: tale of the 4-month old zero-day
Posted in r/netsec by u/Alabatross • 3 points and 0 comments
Massive leak leaves 267 million Facebook users' data exposed
https://ift.tt/2sOwtBj
Submitted December 21, 2019 at 12:44AM by MayonaiseRemover
via reddit https://ift.tt/2sMYgSP
https://ift.tt/2sOwtBj
Submitted December 21, 2019 at 12:44AM by MayonaiseRemover
via reddit https://ift.tt/2sMYgSP
Android Central
Massive leak leaves 267 million Facebook users' data exposed
Security researchers found an online database containing the private information of over 267 million Facebook users exposed on the internet. It contained the Facebook IDs, phone numbers, and real names of the users.
Source Code Analysis - SQL Injection
https://ift.tt/2sE5Te8
Submitted December 21, 2019 at 07:36AM by ghostlulz
via reddit https://ift.tt/36ZWcWC
https://ift.tt/2sE5Te8
Submitted December 21, 2019 at 07:36AM by ghostlulz
via reddit https://ift.tt/36ZWcWC
Ghostlulz Hacks
Source Code Analysis SQL Injection - Ghostlulz Hacks
Learn how to find SQL injection while doing source code analysis .
Privilege Escalation in AWS
https://ift.tt/2s6U5RU
Submitted December 21, 2019 at 04:34PM by digicat
via reddit https://ift.tt/2PL1aAy
https://ift.tt/2s6U5RU
Submitted December 21, 2019 at 04:34PM by digicat
via reddit https://ift.tt/2PL1aAy
Bishopfox
Well, That Escalated Quickly
Guide for security professionals performing AWS cloud security reviews or pen tests. These methods can be used in practice and explained clearly to clients.
Drupal 8 File Upload Vulnerability
https://ift.tt/2Q7fdiL
Submitted December 21, 2019 at 04:33PM by digicat
via reddit https://ift.tt/2EI3v9a
https://ift.tt/2Q7fdiL
Submitted December 21, 2019 at 04:33PM by digicat
via reddit https://ift.tt/2EI3v9a
Aon
Drupal 8 File Upload Vulnerability | Aon's Cyber Labs
Aon’s Cyber Solutions recently discovered a security vulnerability in all versions of Drupal 8 below 8.7.11 / 8.8.1.
Safe travels for the road warrior
https://ift.tt/38WZXOl
Submitted December 21, 2019 at 03:59PM by Diddern
via reddit https://ift.tt/2Q47Dpc
https://ift.tt/38WZXOl
Submitted December 21, 2019 at 03:59PM by Diddern
via reddit https://ift.tt/2Q47Dpc
Live stream - Hacking Android application using Frida (hooking, bypassing integrity checks and tcp pinning)
https://ift.tt/35vRnnu
Submitted December 22, 2019 at 02:17AM by ISeeFacesInClouds
via reddit https://ift.tt/2Mjk1AN
https://ift.tt/35vRnnu
Submitted December 22, 2019 at 02:17AM by ISeeFacesInClouds
via reddit https://ift.tt/2Mjk1AN
Twitch
lionaneesh - Twitch
Hacking Live Stream | Playing CTFs for fun!
Exploiting Null Byte Buffer Overflow for a $40,000 bounty
https://ift.tt/35A74dh
Submitted December 22, 2019 at 01:43AM by albinowax
via reddit https://ift.tt/36VICmW
https://ift.tt/35A74dh
Submitted December 22, 2019 at 01:43AM by albinowax
via reddit https://ift.tt/36VICmW
samcurry.net
Exploiting Null Byte Buffer Overflow for a $40,000 bounty | Sam Curry
As a preface, when I originally found this bug I was unfamiliar the class of "null byte buffer overflow" even existed. I was simply fuzzing a standard web application's input field and ran into a very interesting behavior that turned out to be a cool bug.
Out-of-band Attacks
https://ift.tt/2ZdSUfp
Submitted December 22, 2019 at 06:17AM by om3rcitak
via reddit https://ift.tt/2EKpP22
https://ift.tt/2ZdSUfp
Submitted December 22, 2019 at 06:17AM by om3rcitak
via reddit https://ift.tt/2EKpP22
Out-of-band Attacks [EN] | Omer Citak's Blog | Om3rCitak
ömer çıtak, omer citak, om3rcitak, security, development, php, vulnerability, ethical hacking
Why npm lockfiles can be a security blindspot for injecting malicious modules
https://ift.tt/2oS4BdP
Submitted December 23, 2019 at 05:27AM by lirantal
via reddit https://ift.tt/2MlcotE
https://ift.tt/2oS4BdP
Submitted December 23, 2019 at 05:27AM by lirantal
via reddit https://ift.tt/2MlcotE
Snyk
Why npm lockfiles can be a security blindspot for injecting malicious modules | Snyk
I recently started playing around with the idea of threat modeling packages on the npm ecosystem. Can an event-stream incident happen again? How about other
Resources about network security, including: Proxy/GFW/ReverseProxy/Tunnel/VPN/Tor/I2P, and MiTM/PortKnocking/NetworkSniff/NetworkAnalysis/etc。More than 1700 open source tools for now. Post incoming.
https://ift.tt/2PPhS1I
Submitted December 23, 2019 at 10:10AM by lucashello
via reddit https://ift.tt/2MgqKLJ
https://ift.tt/2PPhS1I
Submitted December 23, 2019 at 10:10AM by lucashello
via reddit https://ift.tt/2MgqKLJ
GitHub
alphaSeclab/awesome-network-stuff
Resources about network security, including: Proxy/GFW/ReverseProxy/Tunnel/VPN/Tor/I2P, and MiTM/PortKnocking/NetworkSniff/NetworkAnalysis/etc。More than 1700 open source tools for now. Post incomin...
Catalog of Supply Chain Compromises
/r/blueteamsec/comments/eeffw5/catalog_of_supply_chain_compromises/
Submitted December 23, 2019 at 12:59PM by digicat
via reddit https://ift.tt/2sYlcOV
/r/blueteamsec/comments/eeffw5/catalog_of_supply_chain_compromises/
Submitted December 23, 2019 at 12:59PM by digicat
via reddit https://ift.tt/2sYlcOV
reddit
Catalog of Supply Chain Compromises
Posted in r/netsec by u/digicat • 19 points and 0 comments
Full release of Empire 3.0! BC-Security's fork will be the Kali supported fork going forward. Plus details on what's in the update.
https://ift.tt/2EKUVqj
Submitted December 23, 2019 at 06:51PM by Hubble_BC_Security
via reddit https://ift.tt/2SmzKCO
https://ift.tt/2EKUVqj
Submitted December 23, 2019 at 06:51PM by Hubble_BC_Security
via reddit https://ift.tt/2SmzKCO
reddit
Full release of Empire 3.0! BC-Security's fork will be the Kali...
Posted in r/netsec by u/Hubble_BC_Security • 178 points and 0 comments
App Analysis: Plenty of Fish; Locating users and revealing information via the API
https://ift.tt/2EO95Xr
Submitted December 23, 2019 at 06:43PM by theappanalyst
via reddit https://ift.tt/392wQZL
https://ift.tt/2EO95Xr
Submitted December 23, 2019 at 06:43PM by theappanalyst
via reddit https://ift.tt/392wQZL
reddit
App Analysis: Plenty of Fish; Locating users and revealing...
Posted in r/netsec by u/theappanalyst • 268 points and 23 comments