Web app having XSS? You could pawn a server; becoming root..
https://web-in-security.blogspot.com/2018/08/save-your-cloud-gain-root-access-to-vms.html
https://web-in-security.blogspot.com/2018/08/save-your-cloud-gain-root-access-to-vms.html
Blogspot
Save Your Cloud: Gain Root Access to VMs in OpenNebula 4.6.1
In this post, we show a proof-of-concept attack that gives us root access to a victim's VM in the Cloud Management Platform OpenNebula ,...
#Book: Windows Forensic Analysis Toolkit, Fourth Edition: Advanced Analysis Techniques for Windows 8
http://www.tobem.com/cyberwar/windows-forensic-analysis-toolkit-fourth-edition-advanced-analysis-techniques-for-windows-8/
http://www.tobem.com/cyberwar/windows-forensic-analysis-toolkit-fourth-edition-advanced-analysis-techniques-for-windows-8/
Perfectdomain
Tobem.com may be for sale - PerfectDomain.com
Checkout the full domain details of Tobem.com. Click Buy Now to instantly start the transaction or Make an offer to the seller!
#News: #Israel cyber attacks #UN / #Amnesty (via #Pegasus spyware)
https://www.amnesty.org/en/latest/news/2018/08/staff-targeted-with-malicious-spyware
https://www.amnesty.org/en/latest/news/2018/08/staff-targeted-with-malicious-spyware
Amnesty International
Amnesty International staff targeted with malicious spyware
An Amnesty International staff member has been targeted by a sophisticated surveillance campaign, in what the organization suspects was a deliberate attempt to spy on its staff by a government hostile to its work.
Full admin access of a voting machine used in US (in 18 states) in under two minutes, without any software or hardware tools.
#DefCon #misconfiguration
https://twitter.com/i/status/1028437783050776576
#DefCon #misconfiguration
https://twitter.com/i/status/1028437783050776576