Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Intro to x86–64 | TryHackMe Writeup
https://cdn-images-1.medium.com/max/1680/1*rUUgFpw9lH-vlp2qTHmAGw.png
An introduction to reversing simple programs using the radare framework along with some assembly basics like the syntax (AT&T in this…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Intro to x86–64 | TryHackMe Writeup
https://cdn-images-1.medium.com/max/1680/1*rUUgFpw9lH-vlp2qTHmAGw.png
An introduction to reversing simple programs using the radare framework along with some assembly basics like the syntax (AT&T in this…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Intro to x86–64 | TryHackMe Writeup
An introduction to reversing simple programs using the radare framework along with some assembly basics like the syntax (AT&T in this…
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
ToxicEye, la nuova minaccia che sfrutta i bot di Telegram per rubare i nostri dati
https://cdn-images-1.medium.com/max/1600/1*vOvNq_Y8aFBOvt_Eq7UYmA.jpeg
Telegram è una delle piattaforme di messaggistica istantanea più gettonate ed utilizzate in questo momento per attività di chatting e lo…
Continue reading on BV TECH Group »
___________________________
@hacking_Attack
@Hacking_Video
ToxicEye, la nuova minaccia che sfrutta i bot di Telegram per rubare i nostri dati
https://cdn-images-1.medium.com/max/1600/1*vOvNq_Y8aFBOvt_Eq7UYmA.jpeg
Telegram è una delle piattaforme di messaggistica istantanea più gettonate ed utilizzate in questo momento per attività di chatting e lo…
Continue reading on BV TECH Group »
___________________________
@hacking_Attack
@Hacking_Video
Medium
ToxicEye, la nuova minaccia che sfrutta i bot di Telegram per rubare i nostri dati
Telegram è una delle piattaforme di messaggistica istantanea più gettonate ed utilizzate in questo momento per attività di chatting e lo…
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Att skydda sig i en hackad värld
Vi lever i en storhetstid för hackers. Bedrägerierna haglar allt tätare och de ekonomiska förlusterna i samband med att få sina konton…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Att skydda sig i en hackad värld
Vi lever i en storhetstid för hackers. Bedrägerierna haglar allt tätare och de ekonomiska förlusterna i samband med att få sina konton…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Att skydda sig i en hackad värld
Vi lever i en storhetstid för hackers. Bedrägerierna haglar allt tätare och de ekonomiska förlusterna i samband med att få sina konton…
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Hack The Box — Nineveh: Walkthrough (without Metasploit)
https://cdn-images-1.medium.com/max/600/1*lvxg0rK-bj57B0v5RxhNBw.png
Hack The Box — Nineveh: Walkthrough (without Metasploit) | Linux Medium Level | LFI | RCE | knockd | binwalk | chkrootkit local privesc
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Hack The Box — Nineveh: Walkthrough (without Metasploit)
https://cdn-images-1.medium.com/max/600/1*lvxg0rK-bj57B0v5RxhNBw.png
Hack The Box — Nineveh: Walkthrough (without Metasploit) | Linux Medium Level | LFI | RCE | knockd | binwalk | chkrootkit local privesc
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Hack The Box — Nineveh: Walkthrough (without Metasploit)
Hack The Box — Nineveh: Walkthrough (without Metasploit) | Linux Medium Level | LFI | RCE | knockd | binwalk | chkrootkit local privesc
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Iraqi Intelligence Database Hacked and Sold Online
https://cdn-images-1.medium.com/max/1200/1*xcrS5V-R4y-ePyNqLm3f8g.jpeg
In April 21, a threat actor listed the “Iraqi Intelligence Database” for sale at an undisclosed price on a clearnet forum. The payment…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Iraqi Intelligence Database Hacked and Sold Online
https://cdn-images-1.medium.com/max/1200/1*xcrS5V-R4y-ePyNqLm3f8g.jpeg
In April 21, a threat actor listed the “Iraqi Intelligence Database” for sale at an undisclosed price on a clearnet forum. The payment…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Iraqi Intelligence Database Hacked and Sold Online
In April 21, a threat actor listed the “Iraqi Intelligence Database” for sale at an undisclosed price on a clearnet forum. The payment…
Hacking Articles Tips Tricks Videos Tutorials
Photo
Black Hat Ethical Hacking
Nvidia Warns: Severe Security Bugs in GPU Driver, vGPU Software
https://www.blackhatethicalhacking.com/wp-content/uploads/2017/11/black-hat-locks-and-electronics.jpg Nvidia Warns: Severe Security Bugs in GPU Driver, vGPU SoftwarePost Views: 82
Reading Time: 1 Minute
Nvidia has disclosed a group of security vulnerabilities in the Nvidia graphics processing unit (GPU) display driver, which could subject gamers and others to privilege-escalation attacks, arbitrary code execution, denial of service (DoS) and information disclosure.
Meanwhile, the Nvidia virtual GPU (vGPU) software also has a group of bugs that could lead to a range of similar attacks. 5 GPU Display Driver Security BugsThe most severe of the five bugs in the GPU display driver is tracked as CVE-2021-1074, which rates 7.5 out of 10 on the CVSS vulnerability scale, making it high-severity. It exists in the display driver’s installer, and allows an attacker with local system access to replace an application resource with malicious files. Such an attack may lead to code execution, escalation of privileges, denial of service, or information disclosure.
Another high-severity bug, CVE-2021-1075, rates 7.3 on the CVSS scale. NVIDIA Windows GPU Display Driver for Windows, all versions, contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape where the program dereferences a pointer that contains a location for memory that is no longer valid, which may lead to code execution, denial of service, or escalation of privileges.
See Also: Telegram Platform Abused in ‘ToxicEye’ Malware Campaigns
Two medium-severity flaws, CVE-2021-1076 and CVE-2021-1077, both rate 6.6 on the CVSS scale. The former NVIDIA GPU Display Driver for Windows and Linux, all versions, contains a vulnerability in the kernel mode layer (nvlddmkm.sys or nvidia.ko) where improper access control may lead to denial of service, information disclosure, or data corruption. The latter NVIDIA GPU Display Driver for Windows and Linux, R450 and R460 driver branch, contains a vulnerability where the software uses a reference count to manage a resource that is incorrectly updated, which may lead to denial of service.
And finally, the medium-severity CVE-2021-1078 rates 5.5 on the CVSS scale and NVIDIA Windows GPU Display Driver for Windows, all versions, contains a vulnerability in the kernel driver (nvlddmkm.sys) where a NULL pointer dereference may lead to system crash. 8 Nvidia vGPU Software VulnerabilitiesMeanwhile, Nvidia’s vGPU software has eight different security holes. The virtualized GPU allows computing acceleration tailored for resource-intensive workloads like graphics-rich virtual workstations, data science and artificial intelligence.
See Also: Offensive Security Tool: ADFSBrute
The first four bugs are high-severity input-validation bugs that can lead to information disclosure, data tampering or DoS.
These are:
* CVE‑2021‑1080 (7.8 on the CVSS scale): A vulnerability in the vGPU Manager (vGPU plugin), in which certain input data is not validated;
* CVE‑2021‑1081 (7.8): A vulnerability in the guest kernel mode driver and vGPU manager (vGPU plugin), in which an input length is not validated;
* CVE‑2021‑1082 (7.8): A vulnerability in the vGPU Manager (vGPU plugin), stemming from an input length not being validated;
* CVE‑2021‑1083 (7.8): A vulnerability in the guest kernel-mode driver and vGPU Manager (vGPU plugin), also arising from an input length not being validated.
The other four could lead to a variety of outcomes if exploited:
* CVE‑2021‑1084 (7.8): A vulnerability in the guest kernel-mode driver and vGPU Manager (vGPU plugin), in which an input length is[...]
___________________________
@hacking_Attack
@Hacking_Video
Nvidia Warns: Severe Security Bugs in GPU Driver, vGPU Software
https://www.blackhatethicalhacking.com/wp-content/uploads/2017/11/black-hat-locks-and-electronics.jpg Nvidia Warns: Severe Security Bugs in GPU Driver, vGPU SoftwarePost Views: 82
Reading Time: 1 Minute
Nvidia has disclosed a group of security vulnerabilities in the Nvidia graphics processing unit (GPU) display driver, which could subject gamers and others to privilege-escalation attacks, arbitrary code execution, denial of service (DoS) and information disclosure.
Meanwhile, the Nvidia virtual GPU (vGPU) software also has a group of bugs that could lead to a range of similar attacks. 5 GPU Display Driver Security BugsThe most severe of the five bugs in the GPU display driver is tracked as CVE-2021-1074, which rates 7.5 out of 10 on the CVSS vulnerability scale, making it high-severity. It exists in the display driver’s installer, and allows an attacker with local system access to replace an application resource with malicious files. Such an attack may lead to code execution, escalation of privileges, denial of service, or information disclosure.
Another high-severity bug, CVE-2021-1075, rates 7.3 on the CVSS scale. NVIDIA Windows GPU Display Driver for Windows, all versions, contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape where the program dereferences a pointer that contains a location for memory that is no longer valid, which may lead to code execution, denial of service, or escalation of privileges.
See Also: Telegram Platform Abused in ‘ToxicEye’ Malware Campaigns
Two medium-severity flaws, CVE-2021-1076 and CVE-2021-1077, both rate 6.6 on the CVSS scale. The former NVIDIA GPU Display Driver for Windows and Linux, all versions, contains a vulnerability in the kernel mode layer (nvlddmkm.sys or nvidia.ko) where improper access control may lead to denial of service, information disclosure, or data corruption. The latter NVIDIA GPU Display Driver for Windows and Linux, R450 and R460 driver branch, contains a vulnerability where the software uses a reference count to manage a resource that is incorrectly updated, which may lead to denial of service.
And finally, the medium-severity CVE-2021-1078 rates 5.5 on the CVSS scale and NVIDIA Windows GPU Display Driver for Windows, all versions, contains a vulnerability in the kernel driver (nvlddmkm.sys) where a NULL pointer dereference may lead to system crash. 8 Nvidia vGPU Software VulnerabilitiesMeanwhile, Nvidia’s vGPU software has eight different security holes. The virtualized GPU allows computing acceleration tailored for resource-intensive workloads like graphics-rich virtual workstations, data science and artificial intelligence.
See Also: Offensive Security Tool: ADFSBrute
The first four bugs are high-severity input-validation bugs that can lead to information disclosure, data tampering or DoS.
These are:
* CVE‑2021‑1080 (7.8 on the CVSS scale): A vulnerability in the vGPU Manager (vGPU plugin), in which certain input data is not validated;
* CVE‑2021‑1081 (7.8): A vulnerability in the guest kernel mode driver and vGPU manager (vGPU plugin), in which an input length is not validated;
* CVE‑2021‑1082 (7.8): A vulnerability in the vGPU Manager (vGPU plugin), stemming from an input length not being validated;
* CVE‑2021‑1083 (7.8): A vulnerability in the guest kernel-mode driver and vGPU Manager (vGPU plugin), also arising from an input length not being validated.
The other four could lead to a variety of outcomes if exploited:
* CVE‑2021‑1084 (7.8): A vulnerability in the guest kernel-mode driver and vGPU Manager (vGPU plugin), in which an input length is[...]
___________________________
@hacking_Attack
@Hacking_Video
Hacking Articles Tips Tricks Videos Tutorials
Black Hat Ethical Hacking Nvidia Warns: Severe Security Bugs in GPU Driver, vGPU Software https://www.blackhatethicalhacking.com/wp-content/uploads/2017/11/black-hat-locks-and-electronics.jpg Nvidia Warns: Severe Security Bugs in GPU Driver, vGPU SoftwarePost…
not validated, which may lead to data tampering or DoS;
* CVE‑2021‑1085 (7.3): A vulnerability in the vGPU Manager (vGPU plugin) could allow an attacker to write to a shared-memory location and manipulate the data after the data has been validated, which may lead to denial of service and escalation of privileges;
* CVE‑2021‑1086 (7.1): A vulnerability in the vGPU Manager (vGPU plugin) allows guests to control unauthorized resources, which may lead to integrity and confidentiality loss, or information disclosure;
* CVE‑2021‑1087 (5.5): A vulnerability in the vGPU Manager (vGPU plugin), could allow an attacker to retrieve information that could lead to an address space layout randomization (ASLR) bypass, which in turn could crack open the door to memory-corruption bug exploitation. See Also: Hacking Stories: Xbox UndergroundNvidia has released patches to mitigate all of the bugs, which uses can download at through the Nvidia Driver Downloads page or, for the vGPU software update, through the Nvidia Licensing Portal. Affected version tables are available in Nvidia’s advisory, released Friday.
Nvidia continues to address security bugs on a regular basis. In January, it released fixes tied to 16 CVEs across its graphics drivers and vGPU software, in its first security update of 2021. And soon after, it issued patches for its Tesla-based GPUs and its Shield TV lineup.
Source: threatpost.com (Click Link)Recent News* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/Telegram_Messagees-90x90.jpg Telegram Platform Abused in ‘ToxicEye’ Malware Campaigns1 day ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/Untitled-design-1-4-90x90.png Mount Locker Ransomware Aggressively Changes Up Tactics4 days ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/Untitled-design-11-90x90.png Pulse Secure Critical Zero-Day Security Bug Under Active Exploit5 days ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/firefox_patch-90x90.jpg Mozilla Fixes Firefox Flaw That Allowed Spoofing of HTTPS Browser Padlock6 days ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/Discord-Nitro-e1618858537976-90x90.png NitroRansomware Asks for Discord Gift Codes, Steals Access Tokens1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/Untitled-design-10-90x90.png WordPress could treat Google FloC as a security issue1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/Crypto_Mining_Bitcoin-90x90.jpg Attackers Target ProxyLogon Exploit to Install Cryptojacker2 weeks ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/patchtues1-90x90.jpg Microsoft to Patch multiple Zero-Days, 110 vulnerabilities in total2 weeks ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/Google-Chrome-Browser-90x90.jpg Chrome Zero-Day Exploit Posted on Twitter2 weeks ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/Clubhouse2-e1618258606781-90x90.png 1.3M Clubhouse Users’ Data Dumped in Hacker Forum for Free2 weeks ago
The post Nvidia Warns: Severe Security Bugs in GPU Driver, vGPU Software first appeared on Black Hat Ethical Hacking.
___________________________
@hacking_Attack
@Hacking_Video
* CVE‑2021‑1085 (7.3): A vulnerability in the vGPU Manager (vGPU plugin) could allow an attacker to write to a shared-memory location and manipulate the data after the data has been validated, which may lead to denial of service and escalation of privileges;
* CVE‑2021‑1086 (7.1): A vulnerability in the vGPU Manager (vGPU plugin) allows guests to control unauthorized resources, which may lead to integrity and confidentiality loss, or information disclosure;
* CVE‑2021‑1087 (5.5): A vulnerability in the vGPU Manager (vGPU plugin), could allow an attacker to retrieve information that could lead to an address space layout randomization (ASLR) bypass, which in turn could crack open the door to memory-corruption bug exploitation. See Also: Hacking Stories: Xbox UndergroundNvidia has released patches to mitigate all of the bugs, which uses can download at through the Nvidia Driver Downloads page or, for the vGPU software update, through the Nvidia Licensing Portal. Affected version tables are available in Nvidia’s advisory, released Friday.
Nvidia continues to address security bugs on a regular basis. In January, it released fixes tied to 16 CVEs across its graphics drivers and vGPU software, in its first security update of 2021. And soon after, it issued patches for its Tesla-based GPUs and its Shield TV lineup.
Source: threatpost.com (Click Link)Recent News* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/Telegram_Messagees-90x90.jpg Telegram Platform Abused in ‘ToxicEye’ Malware Campaigns1 day ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/Untitled-design-1-4-90x90.png Mount Locker Ransomware Aggressively Changes Up Tactics4 days ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/Untitled-design-11-90x90.png Pulse Secure Critical Zero-Day Security Bug Under Active Exploit5 days ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/firefox_patch-90x90.jpg Mozilla Fixes Firefox Flaw That Allowed Spoofing of HTTPS Browser Padlock6 days ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/Discord-Nitro-e1618858537976-90x90.png NitroRansomware Asks for Discord Gift Codes, Steals Access Tokens1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/Untitled-design-10-90x90.png WordPress could treat Google FloC as a security issue1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/Crypto_Mining_Bitcoin-90x90.jpg Attackers Target ProxyLogon Exploit to Install Cryptojacker2 weeks ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/patchtues1-90x90.jpg Microsoft to Patch multiple Zero-Days, 110 vulnerabilities in total2 weeks ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/Google-Chrome-Browser-90x90.jpg Chrome Zero-Day Exploit Posted on Twitter2 weeks ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/Clubhouse2-e1618258606781-90x90.png 1.3M Clubhouse Users’ Data Dumped in Hacker Forum for Free2 weeks ago
The post Nvidia Warns: Severe Security Bugs in GPU Driver, vGPU Software first appeared on Black Hat Ethical Hacking.
___________________________
@hacking_Attack
@Hacking_Video
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
The Babuk Group
https://external-preview.redd.it/Pq4ze0Zi22XQpa3SmBwy1neIcvCaUxpUqGv7PLE_KIk.jpg?width=216&crop=smart&auto=webp&s=acaf114540f8b7ada43ff2068bec48b4b546e373 submitted by /u/lex_talionis01
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
The Babuk Group
https://external-preview.redd.it/Pq4ze0Zi22XQpa3SmBwy1neIcvCaUxpUqGv7PLE_KIk.jpg?width=216&crop=smart&auto=webp&s=acaf114540f8b7ada43ff2068bec48b4b546e373 submitted by /u/lex_talionis01
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
The Babuk Group
Posted in r/hacking by u/lex_talionis01 • 1 point and 0 comments
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
How to know if your phone has been tapped by hackers or other parties.
https://cdn-images-1.medium.com/max/2600/1*Zz0ztGgICt0z192EqInOWg.jpeg
How can you tell if your phone is hacked? And can you also know who hacked it? Let’s look at the warning signs and what you can do.
Continue reading on Track Media »
___________________________
@hacking_Attack
@Hacking_Video
How to know if your phone has been tapped by hackers or other parties.
https://cdn-images-1.medium.com/max/2600/1*Zz0ztGgICt0z192EqInOWg.jpeg
How can you tell if your phone is hacked? And can you also know who hacked it? Let’s look at the warning signs and what you can do.
Continue reading on Track Media »
___________________________
@hacking_Attack
@Hacking_Video
Medium
How to know if your phone has been tapped by hackers or other parties.
How can you tell if your phone is hacked? And can you also know who hacked it? Let’s look at the warning signs and what you can do.
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Phishing with a malicious macro file
https://cdn-images-1.medium.com/max/1920/1*jjKgQ0aDz-BNe7dF5RaEHw.jpeg
The most difficult aspect of avoiding macro malware infections is correctly detecting phishing emails.
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Phishing with a malicious macro file
https://cdn-images-1.medium.com/max/1920/1*jjKgQ0aDz-BNe7dF5RaEHw.jpeg
The most difficult aspect of avoiding macro malware infections is correctly detecting phishing emails.
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Phishing with a malicious macro file
The most difficult aspect of avoiding macro malware infections is correctly detecting phishing emails.
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
How To Hack A University Database
https://cdn-images-1.medium.com/max/1170/0*6kZaK_CzjPX4rt2e.jpg
AUTOMICHACKERSCREW@GMAIL.COM — -Best Way To Change Your Grades Online.
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
How To Hack A University Database
https://cdn-images-1.medium.com/max/1170/0*6kZaK_CzjPX4rt2e.jpg
AUTOMICHACKERSCREW@GMAIL.COM — -Best Way To Change Your Grades Online.
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
How To Hack A University Database
AUTOMICHACKERSCREW@GMAIL.COM — -Best Way To Change Your Grades Online.