The Best Information Security Newsletters to Stay Updated
https://medium.com/heck-the-packet/the-best-information-security-newsletters-to-stay-updated-7e2036d6d8f0?source=rss------bug_bounty-5
Are you constantly struggling to keep up with the information security cyber security, bug bounties…the list goes on 🙄Continue reading on Heck the Packet » (https://medium.com/heck-the-packet/the-best-information-security-newsletters-to-stay-updated-7e2036d6d8f0?source=rss------bug_bounty-5)
https://medium.com/heck-the-packet/the-best-information-security-newsletters-to-stay-updated-7e2036d6d8f0?source=rss------bug_bounty-5
Are you constantly struggling to keep up with the information security cyber security, bug bounties…the list goes on 🙄Continue reading on Heck the Packet » (https://medium.com/heck-the-packet/the-best-information-security-newsletters-to-stay-updated-7e2036d6d8f0?source=rss------bug_bounty-5)
[GraphQL IDOR]Leaking credit card information of 1000s of users
https://infosecwriteups.com/graphql-idor-leaking-credit-card-information-of-1000s-of-users-d07eec732979?source=rss------bug_bounty-5
https://infosecwriteups.com/graphql-idor-leaking-credit-card-information-of-1000s-of-users-d07eec732979?source=rss------bug_bounty-5
Hey everyoneContinue reading on InfoSec Write-ups » (https://infosecwriteups.com/graphql-idor-leaking-credit-card-information-of-1000s-of-users-d07eec732979?source=rss------bug_bounty-5)
The Best Information Security Newsletters to Stay Updated
Are you constantly struggling to keep up with the information security cyber security, bug bounties…the list goes on 🙄Continue reading on Heck the Packet »
Read more...
Are you constantly struggling to keep up with the information security cyber security, bug bounties…the list goes on 🙄Continue reading on Heck the Packet »
Read more...
[GraphQL IDOR]Leaking credit card information of 1000s of users
Hey everyoneContinue reading on InfoSec Write-ups »
Read more...
Hey everyoneContinue reading on InfoSec Write-ups »
Read more...
Penetration Testing Report
https://www.reddit.com/r/Pentesting/comments/zqk8hc/penetration_testing_report/
https://www.reddit.com/r/Pentesting/comments/zqk8hc/penetration_testing_report/
submitted by /u/Neat-Assistance-7805 (https://www.reddit.com/user/Neat-Assistance-7805)
[link] (https://www.reddit.com/gallery/zqk8hc) [comments] (https://www.reddit.com/r/Pentesting/comments/zqk8hc/penetration_testing_report/)
[link] (https://www.reddit.com/gallery/zqk8hc) [comments] (https://www.reddit.com/r/Pentesting/comments/zqk8hc/penetration_testing_report/)
Hacking Articles Tips Tricks Videos Tutorials
Photo
Black Hat Ethical Hacking
Microsoft finds macOS bug that lets malware bypass security checks
Microsoft finds macOS bug that lets malware bypass security checksPost Views: 17 Premium Contenthttps://www.blackhatethicalhacking.com/wp-content/uploads/2022/12/Patreon.png Subscribe to Patreon to watch this episode.
Reading Time: 3 Minutes Apple has fixed a vulnerability attackers could leverage to deploy malware on vulnerable macOS devices via untrusted applications capable of bypassing Gatekeeper application execution restrictions.Found and reported by Microsoft principal security researcher Jonathan Bar Or, the security flaw (dubbed Achilles) is now tracked as CVE-2022-42821.
Apple addressed the bug in macOS 13 (Ventura), macOS 12.6.2 (Monterey), and macOS 1.7.2 (Big Sur) one week ago, on December 13.
See Also: So you want to be a hacker? Complete Offensive Security and Ethical Hacking Course Gatekeeper bypass via restrictive ACLsGatekeeper is a macOS security feature that automatically checks all apps downloaded from the Internet if they are notarized and developer-signed (approved by Apple), asking the user to confirm before launching or issuing an alert that the app cannot be trusted.
This is achieved by checking an extended attribute named com.apple.quarantine which is assigned by web browsers to all downloaded files, similar to Mark of the Web in Windows.
The Achilles flaw allows specially-crafted payloads to abuse a logic issue to set restrictive Access Control List (ACL) permissions that block web browsers and Internet downloaders from setting the com.apple.quarantine attribute for downloaded the payload archived as ZIP files.
As a result, the malicious app contained within the archived malicious payload launches on the target’s system instead of getting blocked by Gatekeeper, allowing attackers to download and deploy malware.
Microsoft said on Monday that “Apple’s Lockdown Mode, introduced in macOS Ventura as an optional protection feature for high-risk users that might be personally targeted by a sophisticated cyberattack, is aimed to stop zero-click remote code execution exploits, and therefore does not defend against Achilles.”
“End-users should apply the fix regardless of their Lockdown Mode status,” the Microsoft Security Threat Intelligence team added. https://www.microsoft.com/en-us/videoplayer/embed/RE5dQo5
Trending: A primer on OS Command Injection Attacks
Trending: Digital Forensics Tool: Email Analyzer More macOS security bypasses and malwareThis is just one of multiple Gatekeeper bypasses found in the last several years, with many of them abused in the wild by attackers to circumvent macOS security mechanisms like Gatekeeper, File Quarantine, and System Integrity Protection (SIP) on fully patched Macs.
For instance, Bar Or reported a security flaw dubbed Shrootless in 2021 that can let threat actors bypass System Integrity Protection (SIP) to perform arbitrary operations on the compromised Mac, elevate privileges to root, and even install rootkits on vulnerable devices.
The researcher also discovered powerdir, a bug that allows attackers to bypass Transparency, Consent, and Control (TCC) technology to access users’ protected data.
He also released exploit code for a macOS vulnerability (CVE-2022-26706) that could help attackers bypass sandbox restrictions to run code on the system.
Last but not least, Apple fixed a zero-day macOS vulnerability in April 2021 that enabled threat actors behind the notorious Shlayer malware to circumvent Apple’s File Quarantine, Gatekeeper, and Notarization security checks and download more malware on infected Macs.
Shlayer’s creators had also managed to get their payloads through Apple’s automated notarizing process[...]
Microsoft finds macOS bug that lets malware bypass security checks
Microsoft finds macOS bug that lets malware bypass security checksPost Views: 17 Premium Contenthttps://www.blackhatethicalhacking.com/wp-content/uploads/2022/12/Patreon.png Subscribe to Patreon to watch this episode.
Reading Time: 3 Minutes Apple has fixed a vulnerability attackers could leverage to deploy malware on vulnerable macOS devices via untrusted applications capable of bypassing Gatekeeper application execution restrictions.Found and reported by Microsoft principal security researcher Jonathan Bar Or, the security flaw (dubbed Achilles) is now tracked as CVE-2022-42821.
Apple addressed the bug in macOS 13 (Ventura), macOS 12.6.2 (Monterey), and macOS 1.7.2 (Big Sur) one week ago, on December 13.
See Also: So you want to be a hacker? Complete Offensive Security and Ethical Hacking Course Gatekeeper bypass via restrictive ACLsGatekeeper is a macOS security feature that automatically checks all apps downloaded from the Internet if they are notarized and developer-signed (approved by Apple), asking the user to confirm before launching or issuing an alert that the app cannot be trusted.
This is achieved by checking an extended attribute named com.apple.quarantine which is assigned by web browsers to all downloaded files, similar to Mark of the Web in Windows.
The Achilles flaw allows specially-crafted payloads to abuse a logic issue to set restrictive Access Control List (ACL) permissions that block web browsers and Internet downloaders from setting the com.apple.quarantine attribute for downloaded the payload archived as ZIP files.
As a result, the malicious app contained within the archived malicious payload launches on the target’s system instead of getting blocked by Gatekeeper, allowing attackers to download and deploy malware.
Microsoft said on Monday that “Apple’s Lockdown Mode, introduced in macOS Ventura as an optional protection feature for high-risk users that might be personally targeted by a sophisticated cyberattack, is aimed to stop zero-click remote code execution exploits, and therefore does not defend against Achilles.”
“End-users should apply the fix regardless of their Lockdown Mode status,” the Microsoft Security Threat Intelligence team added. https://www.microsoft.com/en-us/videoplayer/embed/RE5dQo5
Trending: A primer on OS Command Injection Attacks
Trending: Digital Forensics Tool: Email Analyzer More macOS security bypasses and malwareThis is just one of multiple Gatekeeper bypasses found in the last several years, with many of them abused in the wild by attackers to circumvent macOS security mechanisms like Gatekeeper, File Quarantine, and System Integrity Protection (SIP) on fully patched Macs.
For instance, Bar Or reported a security flaw dubbed Shrootless in 2021 that can let threat actors bypass System Integrity Protection (SIP) to perform arbitrary operations on the compromised Mac, elevate privileges to root, and even install rootkits on vulnerable devices.
The researcher also discovered powerdir, a bug that allows attackers to bypass Transparency, Consent, and Control (TCC) technology to access users’ protected data.
He also released exploit code for a macOS vulnerability (CVE-2022-26706) that could help attackers bypass sandbox restrictions to run code on the system.
Last but not least, Apple fixed a zero-day macOS vulnerability in April 2021 that enabled threat actors behind the notorious Shlayer malware to circumvent Apple’s File Quarantine, Gatekeeper, and Notarization security checks and download more malware on infected Macs.
Shlayer’s creators had also managed to get their payloads through Apple’s automated notarizing process[...]
Hacking Articles Tips Tricks Videos Tutorials
Black Hat Ethical Hacking Microsoft finds macOS bug that lets malware bypass security checks Microsoft finds macOS bug that lets malware bypass security checksPost Views: 17 Premium Contenthttps://www.blackhatethicalhacking.com/wp-content/uploads/2022/12/Patreon.png…
and used a years-old technique to escalate privileges and disable macOS’ Gatekeeper to run unsigned payloads.
Trending: New Python malware backdoors VMware ESXi servers for remote access Are u a security researcher? Or a company that writes articles or write ups about Cyber Security, Offensive Security (related to information security in general) that match with our specific audience and is worth sharing?
If you want to express your idea in an article contact us here for a quote: info@blackhatethicalhacking.com
Source: bleepingcomputer.com Source Link https://www.blackhatethicalhacking.com/wp-content/uploads/2022/03/Merch.png Recent News* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/12/Images-for-the-News-posts-5-300x150.png Glupteba malware is back in action after Google disruptionDecember 19, 2022
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/12/Images-for-the-News-posts-4-300x150.png Hackers leak personal info allegedly stolen from 5.7M Gemini usersDecember 16, 2022
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/12/Images-for-the-News-posts-2-300x150.png Microsoft patches Windows zero-day used to drop ransomwareDecember 15, 2022
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/12/Images-for-the-News-posts-1-300x150.png Apple security update fixes new iOS zero-day used to hack iPhonesDecember 14, 2022
https://www.blackhatethicalhacking.com/wp-content/uploads/2022/06/OffSec-Course.png Offensive Security & Ethical Hacking CourseBegin the learning curve of hacking now!
The post Microsoft finds macOS bug that lets malware bypass security checks first appeared on Black Hat Ethical Hacking.
Trending: New Python malware backdoors VMware ESXi servers for remote access Are u a security researcher? Or a company that writes articles or write ups about Cyber Security, Offensive Security (related to information security in general) that match with our specific audience and is worth sharing?
If you want to express your idea in an article contact us here for a quote: info@blackhatethicalhacking.com
Source: bleepingcomputer.com Source Link https://www.blackhatethicalhacking.com/wp-content/uploads/2022/03/Merch.png Recent News* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/12/Images-for-the-News-posts-5-300x150.png Glupteba malware is back in action after Google disruptionDecember 19, 2022
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/12/Images-for-the-News-posts-4-300x150.png Hackers leak personal info allegedly stolen from 5.7M Gemini usersDecember 16, 2022
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/12/Images-for-the-News-posts-2-300x150.png Microsoft patches Windows zero-day used to drop ransomwareDecember 15, 2022
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/12/Images-for-the-News-posts-1-300x150.png Apple security update fixes new iOS zero-day used to hack iPhonesDecember 14, 2022
https://www.blackhatethicalhacking.com/wp-content/uploads/2022/06/OffSec-Course.png Offensive Security & Ethical Hacking CourseBegin the learning curve of hacking now!
The post Microsoft finds macOS bug that lets malware bypass security checks first appeared on Black Hat Ethical Hacking.
Everything about Cookie and Its Security
What is a cookie and why is it used?Continue reading on InfoSec Write-ups »
Read more...
What is a cookie and why is it used?Continue reading on InfoSec Write-ups »
Read more...
Everything about Cookie and Its Security
https://infosecwriteups.com/everything-about-cookie-and-its-security-f5742381d6e7?source=rss------bug_bounty-5
https://infosecwriteups.com/everything-about-cookie-and-its-security-f5742381d6e7?source=rss------bug_bounty-5
What is a cookie and why is it used?Continue reading on InfoSec Write-ups » (https://infosecwriteups.com/everything-about-cookie-and-its-security-f5742381d6e7?source=rss------bug_bounty-5)
Everything about Cookie and Its Security
What is a cookie and why is it used?Continue reading on InfoSec Write-ups »
Read more...
What is a cookie and why is it used?Continue reading on InfoSec Write-ups »
Read more...
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
An Rubber-Ducky alternative
I heard both the Raspberry Pi Pico and Arduino UNO are both good cheaper versions of the rubber ducky, which one would more efficient to run payloads and easier to configure? (I am just starting out in this field so preferably, which one would be easier to get started with?)
Thanks for your time and effort (if i get replies)!
submitted by /u/AllegedlyRay
[link] [comments]
An Rubber-Ducky alternative
I heard both the Raspberry Pi Pico and Arduino UNO are both good cheaper versions of the rubber ducky, which one would more efficient to run payloads and easier to configure? (I am just starting out in this field so preferably, which one would be easier to get started with?)
Thanks for your time and effort (if i get replies)!
submitted by /u/AllegedlyRay
[link] [comments]