0% Privacy
6.8K subscribers
1.57K photos
53 videos
542 files
703 links
канал про анонимность, ИБ и бред автора в конвульсиях шизофрении.

The channel is about anonymity, information security and the author's delirium in the convulsions of schizophrenia.
Download Telegram
Forwarded from Private Shizo
Forwarded from Private Shizo
Mobile Exploitation, the past, present, and future.pdf
8 MB
🔥🔥🔥Mobile Exploitation - The past, present, and the future
👍2
📕APT28 exploits known vulnerability to carry out reconnaissance and deploy malware on Cisco routers.
Here came a small joint report from the NSA in partnership with the NCSC, the FBI and CISA on
TTPs related to the exploitation of CVE-2017-6742 (vulns in the Cisco SNMP subsystem, an authenticated attacker could achieve RCE or DoS) by APT28. To be more precise, the attacking "Bears" masqueraded as SNMP to exploit CVE-2017-6742. As indicated in the report, the targets were located all over the world: US government agencies, about 250 Ukrainian victims and some (rather small) number of people in Europe.
The report also provides mitigation measures.

#GCHQ #NCSC #CISA #FBI #NSA #APT28 #expoitation #Cisco #TTPs
👍5
CSA_APT28_EXPLOITS_KNOWN_VULNERABILITY.PDF
606.5 KB
📕APT28 exploits known vulnerability to carry out reconnaissance and deploy malware on Cisco routers.
Тут вышел небольшой совместный отчет от АНБ в партнерстве с НЦКВ(NCSC), ФБР и CISA о
TTPs, связанных с эксплуатацией CVE-2017-6742(уязвимости в подсистеме SNMP Cisco, можно было аутентифицированному злоумышленнику добиться RCE или DoS) силами APT28. Если быть более точным, то атакующие "Медведи" маскировались под SNMP для эксплуатации CVE-2017-6742. Как указано в отчете, таргеты располагались по всему миру: правительственные учреждения США, около 250 украинских жертв и некоторое(довольно не большое) количество людей в Европе.
В отчете также приводятся меры смягчения.

#GCHQ #NCSC #CISA #FBI #NSA #APT28 #expoitation #Cisco #TTPs
3
HITB2023AMS.zip
232.2 MB
🗃Ваш покорный слуга скачал все доступные на данный момент презентации с Hack In The Box 2023 Amsterdam и укомплектовал в архив.

🗃Your humble servant downloaded all currently available presentations from
Hack In The Box 2023 Amsterdam and archived them.

#HITB2023 #security #API #AV #Fingerprinting #Honeypots #PostExploitation #hacking #shellcode #iOS #windows #malware #bugs #WAN #LAN #AntiCensorship #obfuscation #virtuallization #XRP
14🔥5👍2🤡1👾1
|AppSec Ezine|

📰479rd Edition
Release Date: 21/04/2023
pathonproject
github

#ezine #appsec #infosec
1👍1
0% Privacy
HITB2023AMS.zip
D2T1_A_Security_Analysis_of_Computer_Numerical_Control_Machines.pdf
6 MB
📕A Security Analysis of Computer Numerical Control Machines in Industry 4.0
D2T1_A_Deep_Dive_into_GarminOS_and_its_MonkeyC_Virtual_Machine_Tao.pdf
3.8 MB
📕Compromising Garmin's Sport Watches: A Deep Dive into GarminOS and its MonkeyC Virtual Machine
D2T1_ChatGPT_Please_Write_Me_a_Piece_of_Polymorphic_Malware_Omer.pdf
4.5 MB
📕ChatGPT: Please write me a polymorphic malware

ChattyCaty is an open-source project which demonstrates an infrastructure to create a polymorphic program using GPT models.
2👍2👏1