MGM Resorts Says Data Breach Exposed Some Guests’ Personal Information
https://ift.tt/2vRic8t
Submitted February 20, 2020 at 09:35AM by 0xb800
via reddit https://ift.tt/2SZ9nBB
https://ift.tt/2vRic8t
Submitted February 20, 2020 at 09:35AM by 0xb800
via reddit https://ift.tt/2SZ9nBB
NY Times
MGM Resorts Says Data Breach Exposed Some Guests’ Personal Information
The casino and hotel giant said “it was confident that no financial, payment card or password data was involved in this matter.”
Stop Using Encrypted Email
https://ift.tt/2HJniX3
Submitted February 20, 2020 at 03:08PM by ajsharp
via reddit https://ift.tt/39QkhAt
https://ift.tt/2HJniX3
Submitted February 20, 2020 at 03:08PM by ajsharp
via reddit https://ift.tt/39QkhAt
latacora.micro.blog
Latacora - Stop Using Encrypted Email
Email is unsafe and cannot be made safe. The tools we have today to encrypt email are badly flawed. Even if those flaws were fixed, email would remain unsafe. Its problems cannot plausibly be mitigated. Avoid encrypted email.
Technologists hate this argument.…
Technologists hate this argument.…
SentinelOne Announces $200M Series E
https://ift.tt/2v26o3d
Submitted February 20, 2020 at 03:47PM by Cyberthere
via reddit https://ift.tt/2uZe2eI
https://ift.tt/2v26o3d
Submitted February 20, 2020 at 03:47PM by Cyberthere
via reddit https://ift.tt/2uZe2eI
SentinelOne
SentinelOne Announces $200M Series E
Cybersecurity’s Fastest Growing Platform Now Valued at Over $1 Billion
Exploiting Jira for Host Discovery
https://ift.tt/38Ih45W
Submitted February 20, 2020 at 08:06PM by chicksdigthelongrun
via reddit https://ift.tt/2vQYb1Q
https://ift.tt/38Ih45W
Submitted February 20, 2020 at 08:06PM by chicksdigthelongrun
via reddit https://ift.tt/2vQYb1Q
Medium
Exploiting Jira for Host Discovery
Last October I dived into the world of Jira Software (version 8.4.1) in the hope of discovering new vulnerabilities. Initially, I came…
Introduction To Modern Routing For Red Team Infrastructure - using Traefik, Metasploit, Covenant and Docker
https://ift.tt/3bPEo3H
Submitted February 20, 2020 at 09:12PM by khast3x
via reddit https://ift.tt/2vR8T8y
https://ift.tt/3bPEo3H
Submitted February 20, 2020 at 09:12PM by khast3x
via reddit https://ift.tt/2vR8T8y
A-Z guide on setting up Graylog Part 1
/r/sysadmin/comments/f6u5gp/az_guide_on_setting_up_graylog_part_1/
Submitted February 20, 2020 at 09:08PM by HanSolo71
via reddit https://ift.tt/2V6U0d5
/r/sysadmin/comments/f6u5gp/az_guide_on_setting_up_graylog_part_1/
Submitted February 20, 2020 at 09:08PM by HanSolo71
via reddit https://ift.tt/2V6U0d5
reddit
A-Z guide on setting up Graylog Part 1
Posted in r/netsec by u/HanSolo71 • 4 points and 0 comments
BEC Group Exaggerated Lion Targets 3,000 People at 2,100 companies, Successfully Laundering Hundreds of Thousands of Dollars in Checks by Using Romance Victims
https://ift.tt/2SZDAQV
Submitted February 21, 2020 at 12:21AM by iHeartMalware
via reddit https://ift.tt/3bWZGfs
https://ift.tt/2SZDAQV
Submitted February 21, 2020 at 12:21AM by iHeartMalware
via reddit https://ift.tt/3bWZGfs
Rule-Based Highlighter Plugin for BurpSuite
https://ift.tt/2SJWrRg
Submitted February 21, 2020 at 04:04AM by Sweaty_Butterscotch
via reddit https://ift.tt/2wv8ZDb
https://ift.tt/2SJWrRg
Submitted February 21, 2020 at 04:04AM by Sweaty_Butterscotch
via reddit https://ift.tt/2wv8ZDb
Reddit
From the netsec community on Reddit: Rule-Based Highlighter Plugin for BurpSuite
Posted by Sweaty_Butterscotch - 11 votes and no comments
Making Cheap Hacking tools with Arduino | Security Tools Podcast
https://ift.tt/2SzdfKF
Submitted February 21, 2020 at 06:29PM by varonisofficial
via reddit https://ift.tt/2HHqZfU
https://ift.tt/2SzdfKF
Submitted February 21, 2020 at 06:29PM by varonisofficial
via reddit https://ift.tt/2HHqZfU
Security Tools Podcast
Seytonic is a YouTube creator who makes security content and Arduino-based hacking tools. We talk about what it's like to create content for hackers, his experience making hacker hardware, and why he chose to make low-cost hacking tools using Arduino IDE.
CVE-2020-1938 - AJP RCE
/r/sysadmin/comments/f7algz/cve20201938_ajp_rce/
Submitted February 21, 2020 at 06:21PM by arcticnixadm
via reddit https://ift.tt/2T9CTVw
/r/sysadmin/comments/f7algz/cve20201938_ajp_rce/
Submitted February 21, 2020 at 06:21PM by arcticnixadm
via reddit https://ift.tt/2T9CTVw
reddit
CVE-2020-1938 - AJP RCE
Posted in r/netsec by u/arcticnixadm • 3 points and 1 comment
Flask Debug Mode RCE
https://ift.tt/3bIqCQg
Submitted February 21, 2020 at 06:58PM by ghostlulz
via reddit https://ift.tt/38MJoUN
https://ift.tt/3bIqCQg
Submitted February 21, 2020 at 06:58PM by ghostlulz
via reddit https://ift.tt/38MJoUN
Ghostlulz Hacks
Flask RCE Debug Mode - Ghostlulz Hacks
Django, Flask remote code execution (RCE) via enabling debug mode. Werkzeug debug mode enables anonymous command shell execution via the web.
CVE-2018-8611 – Diving into the Windows Kernel Transaction Manager (KTM) for fun and exploitation
https://ift.tt/2SMk4IV
Submitted February 21, 2020 at 07:29PM by digicat
via reddit https://ift.tt/32fA5dg
https://ift.tt/2SMk4IV
Submitted February 21, 2020 at 07:29PM by digicat
via reddit https://ift.tt/32fA5dg
NCC Group Research
CVE-2018-8611 – Diving into the Windows Kernel Transaction Manager (KTM) for fun and exploitation
Written by Cedric Halbronn On Saturday 15th February, I gave a talk titled “How CVE-2018-8611 Can be Exploited to Achieve Privilege Escalation on Windows 10 1809 (RS5) and Earlier”. Thi…
Starting Sept. 1, SSL Certificate Validity Will Be Limited to One Year by Apple’s Safari Browser
https://ift.tt/39KF2gO
Submitted February 21, 2020 at 07:52PM by apkorol
via reddit https://ift.tt/2T4BOOE
https://ift.tt/39KF2gO
Submitted February 21, 2020 at 07:52PM by apkorol
via reddit https://ift.tt/2T4BOOE
Hashed Out by The SSL Store™
SSL Certificate Validity Will Be Limited to One Year by Apple’s Safari Browser - Hashed Out by The SSL Store™
Starting Sept. 1, Safari will no longer trust SSL/TLS certificates with validity periods longer than 398 days Starting Sept. 1, Apple’s Safari browser will no longer trust SSL/TLS leaf certificates...
Sudo Killer
https://ift.tt/3bR3ZsZ
Submitted February 21, 2020 at 09:25PM by brainborg
via reddit https://ift.tt/2HJqwdl
https://ift.tt/3bR3ZsZ
Submitted February 21, 2020 at 09:25PM by brainborg
via reddit https://ift.tt/2HJqwdl
KitPloit - PenTest & Hacking Tools
SUDO_KILLER - A Tool To Identify And Exploit Sudo Rules' Misconfigurations And Vulnerabilities Within Sudo
A-Z guide on setting up Graylog Part 2
/r/sysadmin/comments/f7flc0/az_guide_on_setting_up_graylog_part_2/
Submitted February 22, 2020 at 12:16AM by HanSolo71
via reddit https://ift.tt/2SMOD0T
/r/sysadmin/comments/f7flc0/az_guide_on_setting_up_graylog_part_2/
Submitted February 22, 2020 at 12:16AM by HanSolo71
via reddit https://ift.tt/2SMOD0T
reddit
A-Z guide on setting up Graylog Part 2
Posted in r/netsec by u/HanSolo71 • 2 points and 0 comments
Testing Your Red Team Infrastructure
https://ift.tt/38tKRPv
Submitted February 22, 2020 at 12:45AM by dmchell
via reddit https://ift.tt/2PecAwe
https://ift.tt/38tKRPv
Submitted February 22, 2020 at 12:45AM by dmchell
via reddit https://ift.tt/2PecAwe
MDSec
Testing your RedTeam Infrastructure - MDSec
As RedTeaming has grown with the industry, so has our need to build dependable environments. In keeping with the cat-and-mouse game we find ourselves in, it’s essential to possess the...
IIS Raid – Backdooring IIS Using Native Modules
https://ift.tt/38IjEZp
Submitted February 22, 2020 at 12:45AM by dmchell
via reddit https://ift.tt/3c1lo2i
https://ift.tt/38IjEZp
Submitted February 22, 2020 at 12:45AM by dmchell
via reddit https://ift.tt/3c1lo2i
MDSec
IIS Raid – Backdooring IIS Using Native Modules - MDSec
Introduction Back in 2018, PaloAlto Unit42 publicly documented RGDoor, an IIS backdoor used by the APT34. The article highlighted some details which sparked my interest and inspired me to write...
Getting What You’re Entitled To: A Journey Into MacOS Stored Credentials
https://ift.tt/32eEz3R
Submitted February 22, 2020 at 12:45AM by dmchell
via reddit https://ift.tt/39XrXRB
https://ift.tt/32eEz3R
Submitted February 22, 2020 at 12:45AM by dmchell
via reddit https://ift.tt/39XrXRB
Open source Malboxes now deploys Windows desktop OS to AWS ready for malware detonation and analysis with many tools preinstalled
https://ift.tt/2Vd6vUk
Submitted February 22, 2020 at 01:33AM by obilodeau
via reddit https://ift.tt/2SOtwvg
https://ift.tt/2Vd6vUk
Submitted February 22, 2020 at 01:33AM by obilodeau
via reddit https://ift.tt/2SOtwvg
GoSecure
Cloudy With a Chance of Malware: Malboxes Now Deploys to AWS - GoSecure
The open-source tool Malboxes now makes malware analysis safer by deploying directly into the Amazon AWS cloud removing the requirement of operating a local dirty network.
How Microsoft 365 uses machine learning to stop data leaks & insider attacks
https://ift.tt/2SNXDTC
Submitted February 22, 2020 at 01:28AM by myinnerbanjo
via reddit https://ift.tt/32ei1QS
https://ift.tt/2SNXDTC
Submitted February 22, 2020 at 01:28AM by myinnerbanjo
via reddit https://ift.tt/32ei1QS
The AI Blog
How Microsoft 365 uses AI to stop data leaks & insider attacks
A new Insider Risk Management solution within Microsoft 365 uses machine learning to intelligently detect potentially risky behavior within a company.
Another Subdomain ENumeration Tool
https://ift.tt/2V70Pvc
Submitted February 22, 2020 at 01:26AM by cinerieus
via reddit https://ift.tt/2SNi17r
https://ift.tt/2V70Pvc
Submitted February 22, 2020 at 01:26AM by cinerieus
via reddit https://ift.tt/2SNi17r
GitHub
cinerieus/as3nt
Another Subdomain ENumeration Tool. Contribute to cinerieus/as3nt development by creating an account on GitHub.