Hacking Articles Tips Tricks Videos Tutorials
Photo
Black Hat Ethical Hacking
Critical Linux Kernel Flaw – Unprivileged Users Gain Root Control
Critical Linux Kernel Flaw – Unprivileged Users Gain Root ControlPost Views: 171 Premium Contenthttps://www.blackhatethicalhacking.com/wp-content/uploads/2022/12/Patreon.png Subscribe to Patreon to watch this episode.
Reading Time: 3 Minutes Linux Flaw Grants Root Control – Local Users Exploit Privilege Escalation VulnerabilityA critical flaw has been discovered in the Linux NetFilter kernel, exposing a vulnerability that enables unprivileged local users to escalate their privileges to root level, granting them complete control over a system. The flaw, identified as CVE-2023-32233, is yet to be assigned a severity level. The security issue arises from Netfilter nf_tables, which accepts invalid updates to its configuration, leading to the corruption of the subsystem’s internal state in specific scenarios.
Netfilter serves as a packet filtering and network address translation (NAT) framework integrated into the Linux kernel, managed through front-end utilities like IPtables and UFW. A recent advisory highlights that corrupting the internal state triggers a use-after-free vulnerability, allowing arbitrary reads and writes in the kernel memory.
Security researchers shared a proof-of-concept (PoC) exploit on the Openwall mailing list, demonstrating the exploitation of CVE-2023-32233. The impact of this vulnerability extends to multiple Linux kernel releases, including the current stable version 6.3.1. However, local access to a Linux device is required to exploit the flaw.
See Also: So you want to be a hacker? Offensive Security, Bug Bounty Courses Linux Kernel Patch Addresses Critical Flaw as Researchers Prepare to Release Privilege Escalation ExploitIn response to the issue, engineer Pablo Neira Ayuso submitted a Linux kernel source code commit to address the problem. This commit introduces two functions that manage the lifecycle of anonymous sets in the Netfilter nf_tables subsystem. By appropriately managing the activation and deactivation of anonymous sets and preventing further updates, the fix prevents memory corruption and the possibility of attackers leveraging the use-after-free issue to escalate privileges to root level.
Security researchers Patryk Sondej and Piotr Krysiuk, who discovered the flaw, reported it to the Linux kernel team and developed a PoC exploit that allows unprivileged local users to initiate a root shell on affected systems. The researchers shared the exploit privately with the Linux kernel team, aiding in the development of a fix and providing a detailed description of the employed exploitation techniques and the PoC’s source code.
The researchers plan to make the exploit public on Monday, May 15th, 2023, along with comprehensive details about the exploitation techniques. Following the linux-distros list policy, the exploit must be published within seven days from the advisory. This forthcoming publication aims to increase awareness and facilitate timely remediation efforts.
Trending: How to Exploit “improper error handling” in Web Applications Trending: Malware Analysis Tool: retoolkit Linux Kernel Vulnerability Highlights the Value of Root-Level Privileges for Threat ActorsWhile CVE-2023-32233 requires remote attackers to establish local access to a target system before exploitation, the significance lies in the fact that gaining root-level privileges on Linux servers is a coveted asset for threat actors. These actors often monitor platforms like Openwall for new security information to exploit in their attacks.
Trending: APT hacking group uses double DLL sideloading to bypass security Are u a security researcher? Or a company that writes articles or write ups about Cyb[...]
Critical Linux Kernel Flaw – Unprivileged Users Gain Root Control
Critical Linux Kernel Flaw – Unprivileged Users Gain Root ControlPost Views: 171 Premium Contenthttps://www.blackhatethicalhacking.com/wp-content/uploads/2022/12/Patreon.png Subscribe to Patreon to watch this episode.
Reading Time: 3 Minutes Linux Flaw Grants Root Control – Local Users Exploit Privilege Escalation VulnerabilityA critical flaw has been discovered in the Linux NetFilter kernel, exposing a vulnerability that enables unprivileged local users to escalate their privileges to root level, granting them complete control over a system. The flaw, identified as CVE-2023-32233, is yet to be assigned a severity level. The security issue arises from Netfilter nf_tables, which accepts invalid updates to its configuration, leading to the corruption of the subsystem’s internal state in specific scenarios.
Netfilter serves as a packet filtering and network address translation (NAT) framework integrated into the Linux kernel, managed through front-end utilities like IPtables and UFW. A recent advisory highlights that corrupting the internal state triggers a use-after-free vulnerability, allowing arbitrary reads and writes in the kernel memory.
Security researchers shared a proof-of-concept (PoC) exploit on the Openwall mailing list, demonstrating the exploitation of CVE-2023-32233. The impact of this vulnerability extends to multiple Linux kernel releases, including the current stable version 6.3.1. However, local access to a Linux device is required to exploit the flaw.
See Also: So you want to be a hacker? Offensive Security, Bug Bounty Courses Linux Kernel Patch Addresses Critical Flaw as Researchers Prepare to Release Privilege Escalation ExploitIn response to the issue, engineer Pablo Neira Ayuso submitted a Linux kernel source code commit to address the problem. This commit introduces two functions that manage the lifecycle of anonymous sets in the Netfilter nf_tables subsystem. By appropriately managing the activation and deactivation of anonymous sets and preventing further updates, the fix prevents memory corruption and the possibility of attackers leveraging the use-after-free issue to escalate privileges to root level.
Security researchers Patryk Sondej and Piotr Krysiuk, who discovered the flaw, reported it to the Linux kernel team and developed a PoC exploit that allows unprivileged local users to initiate a root shell on affected systems. The researchers shared the exploit privately with the Linux kernel team, aiding in the development of a fix and providing a detailed description of the employed exploitation techniques and the PoC’s source code.
The researchers plan to make the exploit public on Monday, May 15th, 2023, along with comprehensive details about the exploitation techniques. Following the linux-distros list policy, the exploit must be published within seven days from the advisory. This forthcoming publication aims to increase awareness and facilitate timely remediation efforts.
Trending: How to Exploit “improper error handling” in Web Applications Trending: Malware Analysis Tool: retoolkit Linux Kernel Vulnerability Highlights the Value of Root-Level Privileges for Threat ActorsWhile CVE-2023-32233 requires remote attackers to establish local access to a target system before exploitation, the significance lies in the fact that gaining root-level privileges on Linux servers is a coveted asset for threat actors. These actors often monitor platforms like Openwall for new security information to exploit in their attacks.
Trending: APT hacking group uses double DLL sideloading to bypass security Are u a security researcher? Or a company that writes articles or write ups about Cyb[...]
Hacking Articles Tips Tricks Videos Tutorials
Black Hat Ethical Hacking Critical Linux Kernel Flaw – Unprivileged Users Gain Root Control Critical Linux Kernel Flaw – Unprivileged Users Gain Root ControlPost Views: 171 Premium Contenthttps://www.blackhatethicalhacking.com/wp-content/uploads/2022/12/Patreon.png…
er Security, Offensive Security (related to information security in general) that match with our specific audience and is worth sharing?
If you want to express your idea in an article contact us here for a quote: info@blackhatethicalhacking.com
Source: bleepingcomputer.com Source Link https://www.blackhatethicalhacking.com/wp-content/uploads/2023/03/Store.png Recent News* https://www.blackhatethicalhacking.com/wp-content/uploads/2023/05/Images-for-the-News-posts-2-300x150.png CACTUS Ransomware Exploits VPN Flaws to Infiltrate Corporate NetworksMay 9, 2023
* https://www.blackhatethicalhacking.com/wp-content/uploads/2023/05/Images-for-the-News-posts-1-300x150.png New Akira Ransomware Operation Hits Corporate NetworksMay 8, 2023
* https://www.blackhatethicalhacking.com/wp-content/uploads/2023/05/Images-for-the-News-posts-13-300x150.png North Korean Kimsuky Hacking Group Ups Their Game with New ‘ReconShark’ MalwareMay 5, 2023
* https://www.blackhatethicalhacking.com/wp-content/uploads/2023/05/Images-for-the-News-posts-12-300x150.png APT hacking group uses double DLL sideloading to bypass securityMay 4, 2023 https://www.blackhatethicalhacking.com/wp-content/uploads/2022/06/OffSec-Course.png Offensive Security & Ethical Hacking CourseBegin the learning curve of hacking now! https://www.blackhatethicalhacking.com/wp-content/uploads/2023/03/Solutions.png Information Security SolutionsFind out how Pentesting Services can help you.
The post Critical Linux Kernel Flaw – Unprivileged Users Gain Root Control first appeared on Black Hat Ethical Hacking.
If you want to express your idea in an article contact us here for a quote: info@blackhatethicalhacking.com
Source: bleepingcomputer.com Source Link https://www.blackhatethicalhacking.com/wp-content/uploads/2023/03/Store.png Recent News* https://www.blackhatethicalhacking.com/wp-content/uploads/2023/05/Images-for-the-News-posts-2-300x150.png CACTUS Ransomware Exploits VPN Flaws to Infiltrate Corporate NetworksMay 9, 2023
* https://www.blackhatethicalhacking.com/wp-content/uploads/2023/05/Images-for-the-News-posts-1-300x150.png New Akira Ransomware Operation Hits Corporate NetworksMay 8, 2023
* https://www.blackhatethicalhacking.com/wp-content/uploads/2023/05/Images-for-the-News-posts-13-300x150.png North Korean Kimsuky Hacking Group Ups Their Game with New ‘ReconShark’ MalwareMay 5, 2023
* https://www.blackhatethicalhacking.com/wp-content/uploads/2023/05/Images-for-the-News-posts-12-300x150.png APT hacking group uses double DLL sideloading to bypass securityMay 4, 2023 https://www.blackhatethicalhacking.com/wp-content/uploads/2022/06/OffSec-Course.png Offensive Security & Ethical Hacking CourseBegin the learning curve of hacking now! https://www.blackhatethicalhacking.com/wp-content/uploads/2023/03/Solutions.png Information Security SolutionsFind out how Pentesting Services can help you.
The post Critical Linux Kernel Flaw – Unprivileged Users Gain Root Control first appeared on Black Hat Ethical Hacking.
SpiderSuite - Advance Web Spider/Crawler For Cyber Security Professionals
http://www.kitploit.com/2023/05/spidersuite-advance-web-spidercrawler.html
http://www.kitploit.com/2023/05/spidersuite-advance-web-spidercrawler.html
An advance cross-platform and multi-feature GUI web spider/crawler for cyber (https://www.kitploit.com/search/label/Cyber) security proffesionals. Spider (https://www.kitploit.com/search/label/Spider) Suite can be used for attack surface mapping and analysis. For more information visit SpiderSuite's website (https://spidersuite.github.io/).
Installation and Usage Spider Suite is designed for easy installation and usage even for first timers. First, download (https://github.com/3nock/SpiderSuite/releases) the package of your choice. Then install (https://github.com/3nock/SpiderSuite/wiki/Installation) the downloaded SpiderSuite package. See First time (https://spidersuite.github.io/tutorial/2023/04/22/beginner-guide/)crawling (https://www.kitploit.com/search/label/Crawling) with SpiderSuite article for tutorial on how to get started. For complete documentation of Spider Suite see wiki (https://github.com/3nock/SpiderSuite/wiki). Contributing Can you translate? Visit SpiderSuite's translation project (https://crowdin.com/project/spidersuite) to make translations to your native language. Not a developer? You can help by reporting (https://www.kitploit.com/search/label/Reporting) bugs (https://github.com/3nock/SpiderSuite/issues), requesting new features (https://github.com/3nock/SpiderSuite/issues), improving the documentation (https://github.com/3nock/SpiderSuite/wiki), sponsoring (https://github.com/3nock/SpiderSuite/blob/main/SPONSOR.md) the project & writing articles. For More information see contribution guide (https://github.com/3nock/SpiderSuite/blob/main/CONTRIBUTING.md). Contributers 3nock (https://github.com/3nock) (main developer) Credits This product includes software developed by the following open source projects: Google's Gumbo HTML Parser (http://github.com/google/gumbo-parser) Google's Protocal bufffers (https://github.com/protocolbuffers/protobuf) SQLite database library (https://sqlite.org/) Graphviz library (https://graphviz.org/)
Download SpiderSuite (https://github.com/3nock/SpiderSuite)
Download SpiderSuite (https://github.com/3nock/SpiderSuite)
Hunting on memcached servers: Dumping data
What is a Memcached server?Continue reading on Medium »
Read more...
What is a Memcached server?Continue reading on Medium »
Read more...
KitPloit - PenTest Tools!
SpiderSuite - Advance Web Spider/Crawler For Cyber Security Professionals
https://blogger.googleusercontent.com/img/a/AVvXsEjIvHGyN3zj3rLeHLXgAvMPiryFmc0zR8koct30g5-pJirqKZLEc9XVoSQ0NLJQeBKgOQB29WYlJibzQPlLFsyxD4-a6-tJrNJq82LCIWF99pK8uHO4qSUHFo9GOpznlg4LDhOxGaBvlP9K_GPsIOoq7AhmyFG6lQx-om52A3DExvh9GDnAED2Jak9EaA=s320
An advance cross-platform and multi-feature GUI web spider/crawler for cyber security proffesionals. Spider Suite can be used for attack surface mapping and analysis. For more information visit SpiderSuite's website.
https://blogger.googleusercontent.com/img/a/AVvXsEjdanLLc7N5MzXg6kx5g_xHAO_rA9G9HlA50gtPbvP-h7eqLeKKK4TBobvZkjyn3dt8km2Ajo3wOSe7lI_N82YtpVlgjzsXmICELYF_u2mT0ay3oeOQnaYj3ZMsCJxizSnToQHw4yTl0OQOEzrS1cjG9ZBDOUAfhKeXHzsws5wGjbmvVQ1Y112l6IJHTA=w640-h352
Installation and Usage
Spider Suite is designed for easy installation and usage even for first timers.
*
First, download the package of your choice.
*
Then install the downloaded SpiderSuite package.
*
See First time crawling with SpiderSuite article for tutorial on how to get started.
For complete documentation of Spider Suite see wiki.
Contributing
Can you translate?
Visit SpiderSuite's translation project to make translations to your native language.
Not a developer?
You can help by reporting bugs, requesting new features, improving the documentation, sponsoring the project & writing articles.
For More information see contribution guide.
Contributers
* 3nock (main developer)
Credits
This product includes software developed by the following open source projects:
* Google's Gumbo HTML Parser
* Google's Protocal bufffers
* SQLite database library
* Graphviz library
Download SpiderSuite
SpiderSuite - Advance Web Spider/Crawler For Cyber Security Professionals
https://blogger.googleusercontent.com/img/a/AVvXsEjIvHGyN3zj3rLeHLXgAvMPiryFmc0zR8koct30g5-pJirqKZLEc9XVoSQ0NLJQeBKgOQB29WYlJibzQPlLFsyxD4-a6-tJrNJq82LCIWF99pK8uHO4qSUHFo9GOpznlg4LDhOxGaBvlP9K_GPsIOoq7AhmyFG6lQx-om52A3DExvh9GDnAED2Jak9EaA=s320
An advance cross-platform and multi-feature GUI web spider/crawler for cyber security proffesionals. Spider Suite can be used for attack surface mapping and analysis. For more information visit SpiderSuite's website.
https://blogger.googleusercontent.com/img/a/AVvXsEjdanLLc7N5MzXg6kx5g_xHAO_rA9G9HlA50gtPbvP-h7eqLeKKK4TBobvZkjyn3dt8km2Ajo3wOSe7lI_N82YtpVlgjzsXmICELYF_u2mT0ay3oeOQnaYj3ZMsCJxizSnToQHw4yTl0OQOEzrS1cjG9ZBDOUAfhKeXHzsws5wGjbmvVQ1Y112l6IJHTA=w640-h352
Installation and Usage
Spider Suite is designed for easy installation and usage even for first timers.
*
First, download the package of your choice.
*
Then install the downloaded SpiderSuite package.
*
See First time crawling with SpiderSuite article for tutorial on how to get started.
For complete documentation of Spider Suite see wiki.
Contributing
Can you translate?
Visit SpiderSuite's translation project to make translations to your native language.
Not a developer?
You can help by reporting bugs, requesting new features, improving the documentation, sponsoring the project & writing articles.
For More information see contribution guide.
Contributers
* 3nock (main developer)
Credits
This product includes software developed by the following open source projects:
* Google's Gumbo HTML Parser
* Google's Protocal bufffers
* SQLite database library
* Graphviz library
Download SpiderSuite
KitPloit - PenTest & Hacking Tools
SpiderSuite - Advance Web Spider/Crawler For Cyber Security Professionals
Red Team Guide
https://www.reddit.com/r/redteamsec/comments/13dpxj1/red_team_guide/
<!-- SC_OFF -->Hi everyone, In the last couple months I've been working on a Guide for Red Team that I hope it can teach and help some people trying to get into the field or learn stuff about Red Team, I myself a few years back was a little lost with learning and that's why I created Red Team Notes and now this guide to help anyone that is trying to jump into this area of Cybersecurity. Well to not make this any longer, I've uploaded the files for the guide on Red Team Notes. thanks and I hope it helps!! https://dmcxblue.gitbook.io/red-team-notes-2-0/files/red-team-guide <!-- SC_ON --> submitted by /u/Dmcxblue (https://www.reddit.com/user/Dmcxblue)
[link] (https://www.reddit.com/r/redteamsec/comments/13dpxj1/red_team_guide/) [comments] (https://www.reddit.com/r/redteamsec/comments/13dpxj1/red_team_guide/)
https://www.reddit.com/r/redteamsec/comments/13dpxj1/red_team_guide/
<!-- SC_OFF -->Hi everyone, In the last couple months I've been working on a Guide for Red Team that I hope it can teach and help some people trying to get into the field or learn stuff about Red Team, I myself a few years back was a little lost with learning and that's why I created Red Team Notes and now this guide to help anyone that is trying to jump into this area of Cybersecurity. Well to not make this any longer, I've uploaded the files for the guide on Red Team Notes. thanks and I hope it helps!! https://dmcxblue.gitbook.io/red-team-notes-2-0/files/red-team-guide <!-- SC_ON --> submitted by /u/Dmcxblue (https://www.reddit.com/user/Dmcxblue)
[link] (https://www.reddit.com/r/redteamsec/comments/13dpxj1/red_team_guide/) [comments] (https://www.reddit.com/r/redteamsec/comments/13dpxj1/red_team_guide/)
Is there any checklist for performing a pen-test on web portal which is compliant to PCI DSS.?? (Newbie)
https://www.reddit.com/r/Pentesting/comments/13dqpq7/is_there_any_checklist_for_performing_a_pentest/
submitted by /u/FortuneFit705 (https://www.reddit.com/user/FortuneFit705)
[link] (https://www.reddit.com/r/Pentesting/comments/13dqpq7/is_there_any_checklist_for_performing_a_pentest/) [comments] (https://www.reddit.com/r/Pentesting/comments/13dqpq7/is_there_any_checklist_for_performing_a_pentest/)
https://www.reddit.com/r/Pentesting/comments/13dqpq7/is_there_any_checklist_for_performing_a_pentest/
submitted by /u/FortuneFit705 (https://www.reddit.com/user/FortuneFit705)
[link] (https://www.reddit.com/r/Pentesting/comments/13dqpq7/is_there_any_checklist_for_performing_a_pentest/) [comments] (https://www.reddit.com/r/Pentesting/comments/13dqpq7/is_there_any_checklist_for_performing_a_pentest/)
Pentest reporting mistakes & tips on how to get them to pro level (from 10 experienced ethical hackers)
https://www.reddit.com/r/Pentesting/comments/13dr4n7/pentest_reporting_mistakes_tips_on_how_to_get/
https://www.reddit.com/r/Pentesting/comments/13dr4n7/pentest_reporting_mistakes_tips_on_how_to_get/
submitted by /u/pentest-tools (https://www.reddit.com/user/pentest-tools)
[link] (https://pentest-tools.com/blog/pentest-reports-tips-ethical-hackers) [comments] (https://www.reddit.com/r/Pentesting/comments/13dr4n7/pentest_reporting_mistakes_tips_on_how_to_get/)
[link] (https://pentest-tools.com/blog/pentest-reports-tips-ethical-hackers) [comments] (https://www.reddit.com/r/Pentesting/comments/13dr4n7/pentest_reporting_mistakes_tips_on_how_to_get/)
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
Best spoofing fingerprint browser technique?
I'm trying to enter a gambling site for personal purposes, but I need a browser that changes fingerprints everytime I open it. (Tried everything from adspower, gologin, multilogin, incognito) neither of these seem to work. The only one that worked was Opera GX with a jason file that changes fingerprints everytime I open it. Also I use proxies (iproyal was working fine until 1 week ago). Now I don't seem to understand what is the problem. Opera GX? The proxies I use? I tried everything 🥲
submitted by /u/gjenaro123
[link] [comments]
Best spoofing fingerprint browser technique?
I'm trying to enter a gambling site for personal purposes, but I need a browser that changes fingerprints everytime I open it. (Tried everything from adspower, gologin, multilogin, incognito) neither of these seem to work. The only one that worked was Opera GX with a jason file that changes fingerprints everytime I open it. Also I use proxies (iproyal was working fine until 1 week ago). Now I don't seem to understand what is the problem. Opera GX? The proxies I use? I tried everything 🥲
submitted by /u/gjenaro123
[link] [comments]
Bypass Rate Limit Request (fuzzing/etc…) With TOR
https://medium.com/@abbasheybati1/bypass-rate-limit-request-fuzzing-etc-with-tor-3a285f3980d2?source=rss------bug_bounty-5
https://medium.com/@abbasheybati1/bypass-rate-limit-request-fuzzing-etc-with-tor-3a285f3980d2?source=rss------bug_bounty-5