I just open-sourced sweetie data, a repo of multiple honeypot logs.
https://ift.tt/38TfduX
Submitted February 23, 2020 at 11:15PM by 0xsha
via reddit https://ift.tt/37Ofzlr
https://ift.tt/38TfduX
Submitted February 23, 2020 at 11:15PM by 0xsha
via reddit https://ift.tt/37Ofzlr
GitHub
GitHub - 0xsha/sweetie-data: This repo contains logstash of various honeypots
This repo contains logstash of various honeypots. Contribute to 0xsha/sweetie-data development by creating an account on GitHub.
B350 tomahawk scanned drive, what gives
/r/MSI_Gaming/comments/f8ib0x/b350_tomahawk_scanned_drive_what_gives/
Submitted February 24, 2020 at 05:53AM by 100GHz
via reddit https://ift.tt/37RpZRf
/r/MSI_Gaming/comments/f8ib0x/b350_tomahawk_scanned_drive_what_gives/
Submitted February 24, 2020 at 05:53AM by 100GHz
via reddit https://ift.tt/37RpZRf
reddit
B350 tomahawk scanned drive, what gives
Posted in r/netsec by u/100GHz • 0 points and 0 comments
Arrested on the Job: Penetration Testers Jailed, Charges Actually Brought Forth
https://ift.tt/2SRCQ1y
Submitted February 24, 2020 at 02:16PM by iamtherealmod
via reddit https://ift.tt/38Uo6Vd
https://ift.tt/2SRCQ1y
Submitted February 24, 2020 at 02:16PM by iamtherealmod
via reddit https://ift.tt/38Uo6Vd
Obsecurity
Arrested on the Job: Penetration Testers Jailed, Charges Actually Brought Forth
This week, we’re going to take a look at a story that–after a long and mind-bending road–finally came to a conclusion recently. One where two penetration testers from the security…
MyBB 1.8's vulnerability statistics (PHP forum software)
https://ift.tt/2PgisF0
Submitted February 23, 2020 at 10:02PM by HappyRise
via reddit https://ift.tt/2vWj0t5
https://ift.tt/2PgisF0
Submitted February 23, 2020 at 10:02PM by HappyRise
via reddit https://ift.tt/2vWj0t5
reddit
MyBB 1.8's vulnerability statistics (PHP forum software)
Posted in r/netsec by u/HappyRise • 1 point and 0 comments
Bypassing OkHttp Certificate Pinning
https://ift.tt/2vdsFex
Submitted February 24, 2020 at 04:04PM by CaptMeelo
via reddit https://ift.tt/390IrbC
https://ift.tt/2vdsFex
Submitted February 24, 2020 at 04:04PM by CaptMeelo
via reddit https://ift.tt/390IrbC
Hack.Learn.Share
Bypassing OkHttp Certificate Pinning
This blog contains write-ups of the things that I researched, learned, and wanted to share to others.
Malware and benign windows PE cuckoo reports
/r/datasets/comments/exhy38/malware_and_benign_windows_pe_cuckoo_reports/
Submitted February 24, 2020 at 05:48PM by themrzmaster
via reddit https://ift.tt/38URfQ9
/r/datasets/comments/exhy38/malware_and_benign_windows_pe_cuckoo_reports/
Submitted February 24, 2020 at 05:48PM by themrzmaster
via reddit https://ift.tt/38URfQ9
reddit
Malware and benign windows PE cuckoo reports
Posted in r/netsec by u/themrzmaster • 2 points and 0 comments
Releases 2.9.11 of MONARC
https://ift.tt/2w06Hf8
Submitted February 24, 2020 at 07:35PM by ecbo
via reddit https://ift.tt/2HP1I3s
https://ift.tt/2w06Hf8
Submitted February 24, 2020 at 07:35PM by ecbo
via reddit https://ift.tt/2HP1I3s
MONARC
MONARC 2.9.11 released
Release 2.9.11 of MONARC
We found 6 critical PayPal vulnerabilities, and PayPal punished us for it
https://ift.tt/2vX7GwG
Submitted February 24, 2020 at 09:08PM by pimterry
via reddit https://ift.tt/2SXPfRL
https://ift.tt/2vX7GwG
Submitted February 24, 2020 at 09:08PM by pimterry
via reddit https://ift.tt/2SXPfRL
CyberNews
We found 6 critical PayPal vulnerabilities - and PayPal punished us for it | CyberNews
CyberNews research analysts discovered 6 serious PayPal vulnerabilities and reported them. But instead of a bounty or thanks, we got punished by PayPal.
New Python django postgresql sql injection
https://ift.tt/3a6f33P
Submitted February 24, 2020 at 08:59PM by vulnwatcher
via reddit https://ift.tt/380tC7C
https://ift.tt/3a6f33P
Submitted February 24, 2020 at 08:59PM by vulnwatcher
via reddit https://ift.tt/380tC7C
Firo Solutions
Python django postgresql
Parent PID Spoofing
https://ift.tt/37Tvqiz
Submitted February 24, 2020 at 09:43PM by netbiosX
via reddit https://ift.tt/2umCVke
https://ift.tt/37Tvqiz
Submitted February 24, 2020 at 09:43PM by netbiosX
via reddit https://ift.tt/2umCVke
Penetration Testing Lab
Parent PID Spoofing
Monitoring the relationships between parent and child processes is very common technique for threat hunting teams to detect malicious activities. For example if PowerShell is the child process and …
Pass the Hash
https://ift.tt/350dSzH
Submitted February 24, 2020 at 09:33PM by hackndo
via reddit https://ift.tt/2T8Y89W
https://ift.tt/350dSzH
Submitted February 24, 2020 at 09:33PM by hackndo
via reddit https://ift.tt/2T8Y89W
hackndo
Pass the Hash
Pass the Hash is extremely used in internal pentests to get administrative rights on a set of hosts. We will detail here how this technique works.
OpenSMTPD: An out of bounds read in smtpd allows an attacker to inject arbitrary commands into the envelope file which are then executed as root.
https://ift.tt/37WtmWU
Submitted February 24, 2020 at 10:20PM by VerteFeuille
via reddit https://ift.tt/2TaQqvJ
https://ift.tt/37WtmWU
Submitted February 24, 2020 at 10:20PM by VerteFeuille
via reddit https://ift.tt/2TaQqvJ
GitHub
OpenSMTPD/OpenSMTPD
This is official OpenSMTPD Portable repository. Forks, pull requests and other contributions are welcome! - OpenSMTPD/OpenSMTPD
Analysis of a VBS Malware Dropper - VBS Malware still a threat in 2020
https://ift.tt/2vWgGSJ
Submitted February 24, 2020 at 10:01PM by cyberbutler
via reddit https://ift.tt/2TeVMWQ
https://ift.tt/2vWgGSJ
Submitted February 24, 2020 at 10:01PM by cyberbutler
via reddit https://ift.tt/2TeVMWQ
Medium
Analysis of a VBS Malware Dropper
Recently, I was willingly forwarded a phishing email (for science!) which contained a ZIP attachment, requesting the recipient to update…
Signature Validation Bypass Leading to RCE In Electron-Updater (also used by Trinity Wallet)
https://ift.tt/2uuNvpA
Submitted February 24, 2020 at 11:38PM by nibblesec
via reddit https://ift.tt/2TarBQP
https://ift.tt/2uuNvpA
Submitted February 24, 2020 at 11:38PM by nibblesec
via reddit https://ift.tt/2TarBQP
Doyensec
Signature Validation Bypass Leading to RCE In Electron-Updater · Doyensec's Blog
Doyensec's Blog :: Doyensec is an independent security research and development company focused on vulnerability discovery and remediation.
Windows persistence: Configuring our Machine for Persistence
https://ift.tt/2HTzkNT
Submitted February 25, 2020 at 12:42AM by bad3r_
via reddit https://ift.tt/2Tehque
https://ift.tt/2HTzkNT
Submitted February 25, 2020 at 12:42AM by bad3r_
via reddit https://ift.tt/2Tehque
secbytes.net
Configuring our Machine for Persistence
CLR Hooking for Persistence via Config Files
Cable modem jailbreaks
https://ift.tt/3bXBV78
Submitted February 25, 2020 at 01:40AM by Soulw4xer
via reddit https://ift.tt/390lqW4
https://ift.tt/3bXBV78
Submitted February 25, 2020 at 01:40AM by Soulw4xer
via reddit https://ift.tt/390lqW4
Medium
Cable Modem Jailbreaks
First off all the goal off this blog is not to steal internet or clone modems !!! We are working on a way where cert’s will only be used…
Call For Papers: OWAP's Global AppSec 2020 Dublin
https://ift.tt/37ZHmiB
Submitted February 25, 2020 at 01:25AM by kerberosmansour
via reddit https://ift.tt/3c5je1u
https://ift.tt/37ZHmiB
Submitted February 25, 2020 at 01:25AM by kerberosmansour
via reddit https://ift.tt/3c5je1u
Submittable
OWASP Foundation
OWASP is an open community dedicated to enabling organizations to conceive, develop, acquire, operate, and maintain applications that can be trusted. All of the OWASP tools, documents, forums, and chapters are free and open to anyone interested in improving…
Parent PID Spoofing - Three Process Injection Techniques that implement PPID Spoofing
https://www.youtube.com/watch?v=Fz3d5bFBKJ0
Submitted February 24, 2020 at 10:50PM by netbiosX
via reddit https://ift.tt/3bXUSXk
https://www.youtube.com/watch?v=Fz3d5bFBKJ0
Submitted February 24, 2020 at 10:50PM by netbiosX
via reddit https://ift.tt/3bXUSXk
YouTube
Parent PID Spoofing
Parent PID Spoofing is often used by red teams to evade detection from EDR (Endpoint Detection and Response) solutions that are capable to discover anomalies in the relationship of parent/child processes in order to identify malicious processes.
The video…
The video…
Defeating a Laptop's BIOS Password
https://ift.tt/2vcETEl
Submitted February 25, 2020 at 12:23PM by xxkcd
via reddit https://ift.tt/37Q0mQM
https://ift.tt/2vcETEl
Submitted February 25, 2020 at 12:23PM by xxkcd
via reddit https://ift.tt/37Q0mQM
GitHub
skysafe/reblog
SkySafe Miscellaneous Reverse Engineering Blog. Contribute to skysafe/reblog development by creating an account on GitHub.
Linux Kernel Stack Smashing by Dr Silvio Cesare
https://ift.tt/2VgHvM7
Submitted February 25, 2020 at 11:38AM by Gallus
via reddit https://ift.tt/2PkCs9w
https://ift.tt/2VgHvM7
Submitted February 25, 2020 at 11:38AM by Gallus
via reddit https://ift.tt/2PkCs9w
blog.infosectcbr.com.au
Linux Kernel Stack Smashing
Dr Silvio Cesare @silviocesare Summary In this blog post I’ll discuss how to exploit the Linux kernel via a stack smashin...
[Malware] Lazarus group's Brambul worm of the former Wannacry - 1.md
https://ift.tt/2HSQmvw
Submitted February 25, 2020 at 12:47PM by hanwint
via reddit https://ift.tt/37X3ZnO
https://ift.tt/2HSQmvw
Submitted February 25, 2020 at 12:47PM by hanwint
via reddit https://ift.tt/37X3ZnO
reddit
[Malware] Lazarus group's Brambul worm of the former Wannacry - 1.md
Posted in r/netsec by u/hanwint • 5 points and 0 comments