Forwarded from UNDERCODE NEWS (Copyright & Fact Checker)
#Amazon Pushes Back Return-to-Office Mandate Due to Space Constraints
https://undercodenews.com/amazon-pushes-back-return-to-office-mandate-due-to-space-constraints/
@Undercode_News
https://undercodenews.com/amazon-pushes-back-return-to-office-mandate-due-to-space-constraints/
@Undercode_News
UNDERCODE NEWS
Amazon Pushes Back Return-to-Office Mandate Due to Space Constraints - UNDERCODE NEWS
Undercode News was founded in order to provide the most useful information in the world of hacking and technology. Staffed 24/24 hours, seven days a week by a dedicated team in undercode around the world, so it can provide an environment of information andโฆ
Forwarded from Exploiting Crew (Pr1vAt3)
๐ฆUnderstanding Modern Cybersecurity Tools: EDR, XDR, SOAR, SIEM, and Integrated Solutions ๐จ
Navigating the world of cybersecurity solutions can be complex. Each tool serves a unique purpose, but understanding their differences is crucial for building an effective security strategy. Here's a quick comparison:
โ EDR (Endpoint Detection and Response): Focuses on endpoint security by detecting/responding to threats on devices like laptops and servers. Great for organizations with endpoint-centric threats.
โ XDR (Extended Detection and Response): Expands visibility across endpoints, networks, and cloud environments, providing unified threat detection across domains.
โ SOAR (Security Orchestration, Automation, and Response): Automates and streamlines incident response processes, saving time and improving efficiency.
โ SIEM (Security Information and Event Management): Offers centralized log management and real-time monitoring for identifying and correlating security events.
โ Integrated Solution (EDR + XDR + SOAR + SIEM): Combines the strengths of all these tools for holistic threat detection, response, and seamless integration.
Ref: Fadi Kazdar
@UndercodeCommunity
โ โ โ U๐๐ปโบ๐ซฤ๐ฌ๐โ โ โ โ
Navigating the world of cybersecurity solutions can be complex. Each tool serves a unique purpose, but understanding their differences is crucial for building an effective security strategy. Here's a quick comparison:
โ EDR (Endpoint Detection and Response): Focuses on endpoint security by detecting/responding to threats on devices like laptops and servers. Great for organizations with endpoint-centric threats.
โ XDR (Extended Detection and Response): Expands visibility across endpoints, networks, and cloud environments, providing unified threat detection across domains.
โ SOAR (Security Orchestration, Automation, and Response): Automates and streamlines incident response processes, saving time and improving efficiency.
โ SIEM (Security Information and Event Management): Offers centralized log management and real-time monitoring for identifying and correlating security events.
โ Integrated Solution (EDR + XDR + SOAR + SIEM): Combines the strengths of all these tools for holistic threat detection, response, and seamless integration.
Ref: Fadi Kazdar
@UndercodeCommunity
โ โ โ U๐๐ปโบ๐ซฤ๐ฌ๐โ โ โ โ
Forwarded from Exploiting Crew (Pr1vAt3)
๐ฆ๐๐๐ ๐๐๐ Testing Method
While "DOM Invader" is not a new feature of Burp, I feel that alot of people don't use it enough (or are not aware of it)
It works by submiting a random string generated by Burp (named "canary") in existing input fields or URL parameters
Then "DOM Invader" will check how your input is processed, providing you with necessary context and sanitization details.
1. Start Burp Browser
2. Turn on the DOM Invader
3. Copy and Paste the canary in the target input field or URL parameter
4. Check the DOM Invader tab for "Interesting sinks"
5. Craft the payload or use the "Exploit" option to automate
Ref: Andrei Agape
@UndercodeCommunity
โ โ โ U๐๐ปโบ๐ซฤ๐ฌ๐โ โ โ โ
While "DOM Invader" is not a new feature of Burp, I feel that alot of people don't use it enough (or are not aware of it)
It works by submiting a random string generated by Burp (named "canary") in existing input fields or URL parameters
Then "DOM Invader" will check how your input is processed, providing you with necessary context and sanitization details.
1. Start Burp Browser
2. Turn on the DOM Invader
3. Copy and Paste the canary in the target input field or URL parameter
4. Check the DOM Invader tab for "Interesting sinks"
5. Craft the payload or use the "Exploit" option to automate
Ref: Andrei Agape
@UndercodeCommunity
โ โ โ U๐๐ปโบ๐ซฤ๐ฌ๐โ โ โ โ
Forwarded from Exploiting Crew (Pr1vAt3)
๐ฆMalwares Detection bypass:
๐ด๐๐๐๐๐๐๐ ๐บ๐๐๐๐๐๐๐๐๐ ๐ฌ๐๐๐๐๐๐๐๐ ๐ฏ๐๐๐ ๐๐๐๐ ๐ก
In malware analysis, one common anti-disassembly technique is ๐๐ญ๐ซ๐ฎ๐๐ญ๐ฎ๐ซ๐๐ ๐๐ฑ๐๐๐ฉ๐ญ๐ข๐จ๐ง ๐๐๐ง๐๐ฅ๐ข๐ง๐ (๐๐๐) manipulation.
SEH is a mechanism in Windows for managing exceptions, but it can also be exploited to confuse disassemblers and debuggers. By injecting fake exception records into the SEH chain, attackers can redirect program flow, making it difficult for static analysis tools to follow the actual execution path. This redirection not only complicates reverse engineering but also disrupts debugging processes, forcing tools to misinterpret or skip over key code sections.
Ref: Ait Ichou Mustapha
@UndercodeCommunity
โ โ โ U๐๐ปโบ๐ซฤ๐ฌ๐โ โ โ โ
๐ด๐๐๐๐๐๐๐ ๐บ๐๐๐๐๐๐๐๐๐ ๐ฌ๐๐๐๐๐๐๐๐ ๐ฏ๐๐๐ ๐๐๐๐ ๐ก
In malware analysis, one common anti-disassembly technique is ๐๐ญ๐ซ๐ฎ๐๐ญ๐ฎ๐ซ๐๐ ๐๐ฑ๐๐๐ฉ๐ญ๐ข๐จ๐ง ๐๐๐ง๐๐ฅ๐ข๐ง๐ (๐๐๐) manipulation.
SEH is a mechanism in Windows for managing exceptions, but it can also be exploited to confuse disassemblers and debuggers. By injecting fake exception records into the SEH chain, attackers can redirect program flow, making it difficult for static analysis tools to follow the actual execution path. This redirection not only complicates reverse engineering but also disrupts debugging processes, forcing tools to misinterpret or skip over key code sections.
Ref: Ait Ichou Mustapha
@UndercodeCommunity
โ โ โ U๐๐ปโบ๐ซฤ๐ฌ๐โ โ โ โ
Forwarded from UNDERCODE NEWS (Copyright & Fact Checker)
Level Up Your Free Fire MAX Experience with Exclusive Redeem Codes
https://undercodenews.com/level-up-your-free-fire-max-experience-with-exclusive-redeem-codes/
@Undercode_News
https://undercodenews.com/level-up-your-free-fire-max-experience-with-exclusive-redeem-codes/
@Undercode_News
UNDERCODE NEWS
Level Up Your Free Fire MAX Experience with Exclusive Redeem Codes! - UNDERCODE NEWS
Undercode News was founded in order to provide the most useful information in the world of hacking and technology. Staffed 24/24 hours, seven days a week by a dedicated team in undercode around the world, so it can provide an environment of information andโฆ
Forwarded from UNDERCODE NEWS (Copyright & Fact Checker)
Pocket: Your Affordable #AI Assistant for Recording, Transcribing, and Organizing Conversations
https://undercodenews.com/pocket-your-affordable-ai-assistant-for-recording-transcribing-and-organizing-conversations/
@Undercode_News
https://undercodenews.com/pocket-your-affordable-ai-assistant-for-recording-transcribing-and-organizing-conversations/
@Undercode_News
UNDERCODE NEWS
Pocket: Your Affordable AI Assistant for Recording, Transcribing, and Organizing Conversations - UNDERCODE NEWS
Undercode News was founded in order to provide the most useful information in the world of hacking and technology. Staffed 24/24 hours, seven days a week by a dedicated team in undercode around the world, so it can provide an environment of information andโฆ
Forwarded from UNDERCODE NEWS (Copyright & Fact Checker)
โ ๏ธ Understanding Cookie Consent Notices: A Breakdown
https://undercodenews.com/understanding-cookie-consent-notices-a-breakdown/
@Undercode_News
https://undercodenews.com/understanding-cookie-consent-notices-a-breakdown/
@Undercode_News
UNDERCODE NEWS
Understanding Cookie Consent Notices: A Breakdown - UNDERCODE NEWS
Undercode News was founded in order to provide the most useful information in the world of hacking and technology. Staffed 24/24 hours, seven days a week by a dedicated team in undercode around the world, so it can provide an environment of information andโฆ
Forwarded from UNDERCODE NEWS (Copyright & Fact Checker)
๐ Interlock #Ransomware Targets City of Noblesville
https://undercodenews.com/interlock-ransomware-targets-city-of-noblesville/
@Undercode_News
https://undercodenews.com/interlock-ransomware-targets-city-of-noblesville/
@Undercode_News
UNDERCODE NEWS
Interlock Ransomware Targets City of Noblesville - UNDERCODE NEWS
Undercode News was founded in order to provide the most useful information in the world of hacking and technology. Staffed 24/24 hours, seven days a week by a dedicated team in undercode around the world, so it can provide an environment of information andโฆ
Forwarded from UNDERCODE NEWS (Copyright & Fact Checker)
โก๏ธ New #Ransomware Attack: Kairos Targets Australian Physiotherapy Clinic
https://undercodenews.com/new-ransomware-attack-kairos-targets-australian-physiotherapy-clinic/
@Undercode_News
https://undercodenews.com/new-ransomware-attack-kairos-targets-australian-physiotherapy-clinic/
@Undercode_News
UNDERCODE NEWS
New Ransomware Attack: Kairos Targets Australian Physiotherapy Clinic - UNDERCODE NEWS
Undercode News was founded in order to provide the most useful information in the world of hacking and technology. Staffed 24/24 hours, seven days a week by a dedicated team in undercode around the world, so it can provide an environment of information andโฆ
Forwarded from UNDERCODE NEWS (Copyright & Fact Checker)
โก๏ธ New #Ransomware Attack: APT73 Targets Federal Bank of India
https://undercodenews.com/new-ransomware-attack-apt73-targets-federal-bank-of-india/
@Undercode_News
https://undercodenews.com/new-ransomware-attack-apt73-targets-federal-bank-of-india/
@Undercode_News
UNDERCODE NEWS
New Ransomware Attack: APT73 Targets Federal Bank of India - UNDERCODE NEWS
Undercode News was founded in order to provide the most useful information in the world of hacking and technology. Staffed 24/24 hours, seven days a week by a dedicated team in undercode around the world, so it can provide an environment of information andโฆ
Forwarded from UNDERCODE NEWS (Copyright & Fact Checker)
Funksec #Ransomware Targets HostingExpresscommx
https://undercodenews.com/funksec-ransomware-targets-hostingexpresscommx/
@Undercode_News
https://undercodenews.com/funksec-ransomware-targets-hostingexpresscommx/
@Undercode_News
UNDERCODE NEWS
Funksec Ransomware Targets HostingExpresscommx - UNDERCODE NEWS
Undercode News was founded in order to provide the most useful information in the world of hacking and technology. Staffed 24/24 hours, seven days a week by a dedicated team in undercode around the world, so it can provide an environment of information andโฆ
Forwarded from UNDERCODE NEWS (Copyright & Fact Checker)
Akira #Ransomware Targets ProCaps Laboratories
https://undercodenews.com/akira-ransomware-targets-procaps-laboratories/
@Undercode_News
https://undercodenews.com/akira-ransomware-targets-procaps-laboratories/
@Undercode_News
UNDERCODE NEWS
Akira Ransomware Targets ProCaps Laboratories - UNDERCODE NEWS
Undercode News was founded in order to provide the most useful information in the world of hacking and technology. Staffed 24/24 hours, seven days a week by a dedicated team in undercode around the world, so it can provide an environment of information andโฆ
Forwarded from UNDERCODE NEWS (Copyright & Fact Checker)
๐จ Critical FortiClient EMS Flaw Exploited for Remote Access
https://undercodenews.com/critical-forticlient-ems-flaw-exploited-for-remote-access/
@Undercode_News
https://undercodenews.com/critical-forticlient-ems-flaw-exploited-for-remote-access/
@Undercode_News
UNDERCODE NEWS
Critical FortiClient EMS Flaw Exploited for Remote Access - UNDERCODE NEWS
Undercode News was founded in order to provide the most useful information in the world of hacking and technology. Staffed 24/24 hours, seven days a week by a dedicated team in undercode around the world, so it can provide an environment of information andโฆ
Forwarded from UNDERCODE NEWS (Copyright & Fact Checker)
India Extends Deadline for KYC Masking to January 20, 2025
https://undercodenews.com/india-extends-deadline-for-kyc-masking-to-january-20-2025/
@Undercode_News
https://undercodenews.com/india-extends-deadline-for-kyc-masking-to-january-20-2025/
@Undercode_News
UNDERCODE NEWS
India Extends Deadline for KYC Masking to January 20, 2025 - UNDERCODE NEWS
Undercode News was founded in order to provide the most useful information in the world of hacking and technology. Staffed 24/24 hours, seven days a week by a dedicated team in undercode around the world, so it can provide an environment of information andโฆ
Forwarded from UNDERCODE NEWS (Copyright & Fact Checker)
#Samsung to Ditch 8GB RAM for #Galaxy S25 Series
https://undercodenews.com/samsung-to-ditch-8gb-ram-for-galaxy-s25-series/
@Undercode_News
https://undercodenews.com/samsung-to-ditch-8gb-ram-for-galaxy-s25-series/
@Undercode_News
UNDERCODE NEWS
Samsung to Ditch 8GB RAM for Galaxy S25 Series - UNDERCODE NEWS
Undercode News was founded in order to provide the most useful information in the world of hacking and technology. Staffed 24/24 hours, seven days a week by a dedicated team in undercode around the world, so it can provide an environment of information andโฆ
Forwarded from UNDERCODE NEWS (Copyright & Fact Checker)
#Android 16 Developer Preview 2: A Closer Look
https://undercodenews.com/android-16-developer-preview-2-a-closer-look/
@Undercode_News
https://undercodenews.com/android-16-developer-preview-2-a-closer-look/
@Undercode_News
UNDERCODE NEWS
Android 16 Developer Preview 2: A Closer Look - UNDERCODE NEWS
Undercode News was founded in order to provide the most useful information in the world of hacking and technology. Staffed 24/24 hours, seven days a week by a dedicated team in undercode around the world, so it can provide an environment of information andโฆ
Forwarded from UNDERCODE NEWS (Copyright & Fact Checker)
โก๏ธ #Samsungโs Display Assistant: A New Level of Display Control
https://undercodenews.com/samsungs-display-assistant-a-new-level-of-display-control/
@Undercode_News
https://undercodenews.com/samsungs-display-assistant-a-new-level-of-display-control/
@Undercode_News
UNDERCODE NEWS
Samsungโs Display Assistant: A New Level of Display Control - UNDERCODE NEWS
Undercode News was founded in order to provide the most useful information in the world of hacking and technology. Staffed 24/24 hours, seven days a week by a dedicated team in undercode around the world, so it can provide an environment of information andโฆ
Forwarded from UNDERCODE NEWS (Copyright & Fact Checker)
Cars24 CEO Sparks Controversy with Anti-Bengaluru Hiring Post
https://undercodenews.com/cars24-ceo-sparks-controversy-with-anti-bengaluru-hiring-post/
@Undercode_News
https://undercodenews.com/cars24-ceo-sparks-controversy-with-anti-bengaluru-hiring-post/
@Undercode_News
UNDERCODE NEWS
Cars24 CEO Sparks Controversy with Anti-Bengaluru Hiring Post - UNDERCODE NEWS
Undercode News was founded in order to provide the most useful information in the world of hacking and technology. Staffed 24/24 hours, seven days a week by a dedicated team in undercode around the world, so it can provide an environment of information andโฆ
Forwarded from UNDERCODE NEWS (Copyright & Fact Checker)
๐ก๏ธ Sophos Patches Critical Vulnerabilities in Firewall Products
https://undercodenews.com/sophos-patches-critical-vulnerabilities-in-firewall-products/
@Undercode_News
https://undercodenews.com/sophos-patches-critical-vulnerabilities-in-firewall-products/
@Undercode_News
UNDERCODE NEWS
Sophos Patches Critical Vulnerabilities in Firewall Products - UNDERCODE NEWS
Undercode News was founded in order to provide the most useful information in the world of hacking and technology. Staffed 24/24 hours, seven days a week by a dedicated team in undercode around the world, so it can provide an environment of information andโฆ