https://b.thumbs.redditmedia.com/Ql-JsUg8MrlOSuiCtgLcEuly4ooRhSLf34MEsi23lrA.jpg Does this look familiar? Yes, it's an ESP8266-based Wifi Deauther. I must say it works like a charm for the last 5 years. However, its range is limited to about 32 feet (10 meters), and it no longer works against WPA2 (correct me if I'm wrong). I want to know whether there is a better version of this device on the market right now that would provide longer range and support WPA2. Please advise. Thank you for your help.
https://preview.redd.it/b3g5pybytly61.jpg?width=1280&format=pjpg&auto=webp&s=3872ef17daac6380e484ca77342d9dd2473c4ed8
submitted by /u/HandsomeHoney
[link] [comments]
https://preview.redd.it/b3g5pybytly61.jpg?width=1280&format=pjpg&auto=webp&s=3872ef17daac6380e484ca77342d9dd2473c4ed8
submitted by /u/HandsomeHoney
[link] [comments]
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
Hackers Say Negotiations With D.C. Over Stolen Police Data At ‘Dead End,’ Threaten Public Release
https://external-preview.redd.it/vb_iYlPL3G9JsD8MK04bYmAESkH1E7tNTAjbWLf_Qv4.jpg?width=640&crop=smart&auto=webp&s=93d297a34882b55874265ac99ebaa94ccc5557ff submitted by /u/radiationkills
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Hackers Say Negotiations With D.C. Over Stolen Police Data At ‘Dead End,’ Threaten Public Release
https://external-preview.redd.it/vb_iYlPL3G9JsD8MK04bYmAESkH1E7tNTAjbWLf_Qv4.jpg?width=640&crop=smart&auto=webp&s=93d297a34882b55874265ac99ebaa94ccc5557ff submitted by /u/radiationkills
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
Hackers Say Negotiations With D.C. Over Stolen Police Data At...
Posted in r/hacking by u/radiationkills • 1 point and 0 comments
hacking: security in practice
YouTube does what it wants
How can you block this video?
"How to install Zenmap ( nmap gui ) on Kali Linux"
https://www.youtube.com/watch?v=QnVYNMlp2Zo
submitted by /u/gebutcher
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
YouTube does what it wants
How can you block this video?
"How to install Zenmap ( nmap gui ) on Kali Linux"
https://www.youtube.com/watch?v=QnVYNMlp2Zo
submitted by /u/gebutcher
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
YouTube does what it wants
**How can you block this video?** >"How to install Zenmap ( nmap gui ) on Kali...
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Trust thieves to tell it like it is
https://cdn-images-1.medium.com/max/2600/1*DnxUL9Kw0moxw3Zpdrp9AA.jpeg
What corporations can learn from a group of professional hackers
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Trust thieves to tell it like it is
https://cdn-images-1.medium.com/max/2600/1*DnxUL9Kw0moxw3Zpdrp9AA.jpeg
What corporations can learn from a group of professional hackers
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Trust thieves to tell it like it is
What corporations can learn from a group of professional hackers
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Advanced Persistent Threats
https://cdn-images-1.medium.com/max/600/0*2lx1xfi7zIhscPfB.jpg
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Advanced Persistent Threats
https://cdn-images-1.medium.com/max/600/0*2lx1xfi7zIhscPfB.jpg
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Advanced Persistent Threats
Nation-states and organized crime syndicates typify these groups because long-lasting operations take lots of resources, including support staff and hardware. Five countries comprise the list of…
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Troll 1: Walkthrough
https://cdn-images-1.medium.com/max/800/0*kjjEbt6fvCxHrqIL.png
Description :Tr0ll was inspired by the constant trolling of the machines within the OSCP labs.
The goal is simple, gain root.
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Troll 1: Walkthrough
https://cdn-images-1.medium.com/max/800/0*kjjEbt6fvCxHrqIL.png
Description :Tr0ll was inspired by the constant trolling of the machines within the OSCP labs.
The goal is simple, gain root.
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Troll 1: Walkthrough
Description :Tr0ll was inspired by the constant trolling of the machines within the OSCP labs. The goal is simple, gain root.
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Podcast privacy: why RSS sub-domains are bad
https://cdn-images-1.medium.com/max/2592/1*fDtkGP5pRtSIyLouKIxmxQ.jpeg
Some podcast hosts give podcasters a sub-domain for their RSS feed. Here’s why that’s a bad thing.
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Podcast privacy: why RSS sub-domains are bad
https://cdn-images-1.medium.com/max/2592/1*fDtkGP5pRtSIyLouKIxmxQ.jpeg
Some podcast hosts give podcasters a sub-domain for their RSS feed. Here’s why that’s a bad thing.
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Podcast privacy: why RSS sub-domains are bad
Some podcast hosts give podcasters a sub-domain for their RSS feed. Here’s why that’s a bad thing.
Hacking Articles Tips Tricks Videos Tutorials
Photo
Black Hat Ethical Hacking
Wormable Windows Bug Opens Door to DoS, RCE
https://www.blackhatethicalhacking.com/wp-content/uploads/2017/11/black-hat-locks-and-electronics.jpg Wormable Windows Bug Opens Door to DoS, RCEPost Views: 89
Reading Time: 2 Minutes
Microsoft’s May 2021 Patch Tuesday updates include fixes for four critical security vulnerabilities, including a patch for a concerning wormable vulnerability found in the Windows OS.
The good news is that none of the vulnerabilities are being actively exploited in the wild, according to Microsoft, though three are listed as publicly known. The fixes address security flaws across Microsoft Windows, .NET Core and Visual Studio, Internet Explorer (IE), Microsoft Office, SharePoint Server, Open-Source Software, Hyper-V, Skype for Business and Microsoft Lync, and Exchange Server. Besides the four critical bugs, 50 are rated “important” and one is moderate in severity. Critical Microsoft Security Patches for May 2021The critical bugs in this month’s Patch Tuesday release are:
* CVE-2021-31166: A wormable HTTP protocol-stack issue in Windows 10 and some versions of Windows Server allowing remote code-execution (RCE)
* CVE-2021-26419: A scripting-engine memory corruption vulnerability in Internet Explorer 11 and 9 allowing RCE
* CVE-2021-31194: An RCE bug in the Microsoft Windows Object Linking and Embedding (OLE) Automation
* CVE-2021-28476: An RCE vulnerability in Microsoft Windows Hyper-V CVE-2021-31166 – WormableThis most concerning critical bug for researchers is an HTTP protocol-stack issue that would allow RCE with kernel privileges or a denial-of-service (DoS) attack. The HTTP protocol stack enables Windows and applications to communicate with other devices; it can be run standalone or in conjunction with Internet Information Services (IIS).
“If exploited, this vulnerability could enable an unauthenticated attacker to send a specially crafted packet to a targeted server utilizing the HTTP protocol stack (http.sys) to process packets and ultimately, execute arbitrary code, and take control of the affected system,” Eric Feldman, cybersecurity researcher with Automox, wrote in an analysis.
See Also: Lemon Duck Cryptojacking Botnet Changes Up Tactics Worse, Microsoft noted that the bug is wormable, so that it could be used to self-replicate across the internal network and affect internal services that may not have been exposed.
“The vulnerability announced has the potential to be both directly impactful and is also exceptionally simple to exploit, leading to a remote and unauthenticated DoS (Blue Screen of Death) for affected products,” Steve Povolny, head of advanced threat research and principle engineer at McAfee, said via email. “While this vulnerability has the potential to lead to code execution in the Windows kernel, this type of weaponization is a much higher bar for exploitation. However, if RCE can be achieved, cybercriminals would likely have the capability to create a worm, leading to self-propagation of the vulnerability across networks and the internet.”
“For ransomware operators, this kind of vulnerability is a prime target for exploitation,” Kevin Breen, director of cyber-threat research at Immersive Labs, told Threatpost. “Wormable exploits should always be a high priority, especially if they are for services that are designed to be public facing. As this specific exploit would not require any form of authentication, it’s even more appealing for attackers, and any organization using HTTP.sys protocol stack should prioritize this patch.”
Dustin Childs, researcher with Trend Micro’s Zero Day Initiative (ZDI), noted in a blog, “Before you pass this aside, Windows 10 can also be configured as a web server, so it [...]
___________________________
@hacking_Attack
@Hacking_Video
Wormable Windows Bug Opens Door to DoS, RCE
https://www.blackhatethicalhacking.com/wp-content/uploads/2017/11/black-hat-locks-and-electronics.jpg Wormable Windows Bug Opens Door to DoS, RCEPost Views: 89
Reading Time: 2 Minutes
Microsoft’s May 2021 Patch Tuesday updates include fixes for four critical security vulnerabilities, including a patch for a concerning wormable vulnerability found in the Windows OS.
The good news is that none of the vulnerabilities are being actively exploited in the wild, according to Microsoft, though three are listed as publicly known. The fixes address security flaws across Microsoft Windows, .NET Core and Visual Studio, Internet Explorer (IE), Microsoft Office, SharePoint Server, Open-Source Software, Hyper-V, Skype for Business and Microsoft Lync, and Exchange Server. Besides the four critical bugs, 50 are rated “important” and one is moderate in severity. Critical Microsoft Security Patches for May 2021The critical bugs in this month’s Patch Tuesday release are:
* CVE-2021-31166: A wormable HTTP protocol-stack issue in Windows 10 and some versions of Windows Server allowing remote code-execution (RCE)
* CVE-2021-26419: A scripting-engine memory corruption vulnerability in Internet Explorer 11 and 9 allowing RCE
* CVE-2021-31194: An RCE bug in the Microsoft Windows Object Linking and Embedding (OLE) Automation
* CVE-2021-28476: An RCE vulnerability in Microsoft Windows Hyper-V CVE-2021-31166 – WormableThis most concerning critical bug for researchers is an HTTP protocol-stack issue that would allow RCE with kernel privileges or a denial-of-service (DoS) attack. The HTTP protocol stack enables Windows and applications to communicate with other devices; it can be run standalone or in conjunction with Internet Information Services (IIS).
“If exploited, this vulnerability could enable an unauthenticated attacker to send a specially crafted packet to a targeted server utilizing the HTTP protocol stack (http.sys) to process packets and ultimately, execute arbitrary code, and take control of the affected system,” Eric Feldman, cybersecurity researcher with Automox, wrote in an analysis.
See Also: Lemon Duck Cryptojacking Botnet Changes Up Tactics Worse, Microsoft noted that the bug is wormable, so that it could be used to self-replicate across the internal network and affect internal services that may not have been exposed.
“The vulnerability announced has the potential to be both directly impactful and is also exceptionally simple to exploit, leading to a remote and unauthenticated DoS (Blue Screen of Death) for affected products,” Steve Povolny, head of advanced threat research and principle engineer at McAfee, said via email. “While this vulnerability has the potential to lead to code execution in the Windows kernel, this type of weaponization is a much higher bar for exploitation. However, if RCE can be achieved, cybercriminals would likely have the capability to create a worm, leading to self-propagation of the vulnerability across networks and the internet.”
“For ransomware operators, this kind of vulnerability is a prime target for exploitation,” Kevin Breen, director of cyber-threat research at Immersive Labs, told Threatpost. “Wormable exploits should always be a high priority, especially if they are for services that are designed to be public facing. As this specific exploit would not require any form of authentication, it’s even more appealing for attackers, and any organization using HTTP.sys protocol stack should prioritize this patch.”
Dustin Childs, researcher with Trend Micro’s Zero Day Initiative (ZDI), noted in a blog, “Before you pass this aside, Windows 10 can also be configured as a web server, so it [...]
___________________________
@hacking_Attack
@Hacking_Video
Hacking Articles Tips Tricks Videos Tutorials
Black Hat Ethical Hacking Wormable Windows Bug Opens Door to DoS, RCE https://www.blackhatethicalhacking.com/wp-content/uploads/2017/11/black-hat-locks-and-electronics.jpg Wormable Windows Bug Opens Door to DoS, RCEPost Views: 89 Reading Time: 2 Minutes…
is impacted as well. Definitely put this on the top of your test-and-deploy list.” CVE-2021-26419This second critical bug affecting Microsoft’s legacy browser allows RCE, and offers several avenues of attack, according to researchers.
“In a web-based attack scenario, an attacker could host a specially crafted website that is designed to exploit the vulnerability through Internet Explorer and then convince a user to view the website,” explained Feldman. “An attacker could also embed an ActiveX control marked ‘safe for initialization’ in an application or Microsoft Office document that hosts the IE rendering engine. The attacker could also take advantage of compromised websites and websites that accept or host user-provided content or advertisements. These websites could contain specially crafted content that could exploit the vulnerability.”
See Also: Offensive Security Tool: EyeWitness The best way to counteract this bug is ditching IE, noted Breen.
“Internet Explorer needs to die – and I’m not the only one that thinks so,” he told Threatpost. “If you are an organization that has to provide IE11 to support legacy applications, consider enforcing a policy on the users that restricts the domains that can be accessed by IE11 to only those legacy applications. All other web browsing should be performed with a supported browser.” CVE-2021-31194The third critical bug exists in the Microsoft Windows OLE Automation, which in and of itself should place it on the priority-patch list, according to researchers.
“To exploit the vulnerability, an attacker could host a specially crafted website designed to invoke OLE automation through a web browser,” explained Justin Knapp, Automox researcher. “However, this approach requires that the attacker bait a user into visiting the maliciously crafted website.”
He pointed out that OLE technology has frequently been used to mask malicious code within documents and for linking to external files that infect systems with malware.
“In 2020, the CISA released an alert detailing the top 10 routinely exploited vulnerabilities, which identified Microsoft’s OLE as the most commonly exploited technology by state-sponsored cyber-actors,” he said. “Considering the prevalent exploitation of OLE vulnerabilities, including those that had been flagged years ago, organizations should immediately prioritize patching all outstanding OLE vulnerabilities.” See Also: Hacking Stories: Xbox UndergroundCVE-2021-28476The last critical bug is found in Windows Hyper-V, which is a native hypervisor that can create and run virtual machines on x86-64 systems running Windows. It can allow an attacker to execute arbitrary code, Knapp said: “To exploit this vulnerability, an attacker could run a specially crafted application on a Hyper-V guest that could cause the Hyper-V host operating system to execute arbitrary code when it fails to properly validate vSMB packet data. Successful exploitation could enable an attacker to run malicious binaries on Hyper-V virtual machines or execute arbitrary code on the host system itself.”
That said, Microsoft noted that an attacker is more likely to abuse the bug for DoS attacks in the form of a system crash rather than RCE, Childs pointed out, which mitigates the vulnerability’s CVSS score of 9.9.
“Because of this, it could be argued that the attack complexity would be high, which changes the CVSS rating to 8.5,” he said. “That still rates as high-severity, but not critical. Still, the bug check [system crash] alone is worth making sure your Hyper-V systems get this update.” Publicly Disclosed VulnerabilitiesChris Goettl, senior director of product management at Ivanti, told Threatpost that the biggest patching priority should be the publicly disclosed bugs – even though there is as yet no known malicious exploitation.
“The top concern from the Microsoft updates this month is the update for Microsoft Exchange that[...]
___________________________
@hacking_Attack
@Hacking_Video
“In a web-based attack scenario, an attacker could host a specially crafted website that is designed to exploit the vulnerability through Internet Explorer and then convince a user to view the website,” explained Feldman. “An attacker could also embed an ActiveX control marked ‘safe for initialization’ in an application or Microsoft Office document that hosts the IE rendering engine. The attacker could also take advantage of compromised websites and websites that accept or host user-provided content or advertisements. These websites could contain specially crafted content that could exploit the vulnerability.”
See Also: Offensive Security Tool: EyeWitness The best way to counteract this bug is ditching IE, noted Breen.
“Internet Explorer needs to die – and I’m not the only one that thinks so,” he told Threatpost. “If you are an organization that has to provide IE11 to support legacy applications, consider enforcing a policy on the users that restricts the domains that can be accessed by IE11 to only those legacy applications. All other web browsing should be performed with a supported browser.” CVE-2021-31194The third critical bug exists in the Microsoft Windows OLE Automation, which in and of itself should place it on the priority-patch list, according to researchers.
“To exploit the vulnerability, an attacker could host a specially crafted website designed to invoke OLE automation through a web browser,” explained Justin Knapp, Automox researcher. “However, this approach requires that the attacker bait a user into visiting the maliciously crafted website.”
He pointed out that OLE technology has frequently been used to mask malicious code within documents and for linking to external files that infect systems with malware.
“In 2020, the CISA released an alert detailing the top 10 routinely exploited vulnerabilities, which identified Microsoft’s OLE as the most commonly exploited technology by state-sponsored cyber-actors,” he said. “Considering the prevalent exploitation of OLE vulnerabilities, including those that had been flagged years ago, organizations should immediately prioritize patching all outstanding OLE vulnerabilities.” See Also: Hacking Stories: Xbox UndergroundCVE-2021-28476The last critical bug is found in Windows Hyper-V, which is a native hypervisor that can create and run virtual machines on x86-64 systems running Windows. It can allow an attacker to execute arbitrary code, Knapp said: “To exploit this vulnerability, an attacker could run a specially crafted application on a Hyper-V guest that could cause the Hyper-V host operating system to execute arbitrary code when it fails to properly validate vSMB packet data. Successful exploitation could enable an attacker to run malicious binaries on Hyper-V virtual machines or execute arbitrary code on the host system itself.”
That said, Microsoft noted that an attacker is more likely to abuse the bug for DoS attacks in the form of a system crash rather than RCE, Childs pointed out, which mitigates the vulnerability’s CVSS score of 9.9.
“Because of this, it could be argued that the attack complexity would be high, which changes the CVSS rating to 8.5,” he said. “That still rates as high-severity, but not critical. Still, the bug check [system crash] alone is worth making sure your Hyper-V systems get this update.” Publicly Disclosed VulnerabilitiesChris Goettl, senior director of product management at Ivanti, told Threatpost that the biggest patching priority should be the publicly disclosed bugs – even though there is as yet no known malicious exploitation.
“The top concern from the Microsoft updates this month is the update for Microsoft Exchange that[...]
___________________________
@hacking_Attack
@Hacking_Video
Hacking Articles Tips Tricks Videos Tutorials
is impacted as well. Definitely put this on the top of your test-and-deploy list.” CVE-2021-26419This second critical bug affecting Microsoft’s legacy browser allows RCE, and offers several avenues of attack, according to researchers. “In a web-based attack…
includes the fix for CVE-2021-31207, which made its debut in the 2021 Pwn2Own competition,” he said.
The bug tracked as CVE-2021-31207 is only rated as “moderate,” but the “security feature-bypass exploit was showcased prominently in the Pwn2Own contest and at some point details of the exploit will be published,” Goettl explained. “At that point threat actors will be able to take advantage of the vulnerability if they have not already begun attempting to reverse engineer an exploit.”
There two other publicly disclosed vulnerabilities resolved by Microsoft this month that exist in Common Utilities, found in the NNI open-source toolkit (CVE-2021-31200), and in .NET and Visual Studio (CVE-2021-31204).
“Common Utilities and .NET and Visual Studio are less likely to be targeted, but due to the public disclosures they should not be ignored for long,” Goettl added. Other Notable Microsoft Security Patches for May 2021As for the other patches in the update that stood out to the research community, ZDI’s Childs highlighted a Windows wireless networking information-disclosure bug, tracked as CVE-2020-24587.
“The ZDI doesn’t normally highlight info disclosure bugs, but this one has the potential to be pretty damaging,” Childs said. “This patch fixes a vulnerability that could allow an attacker to disclose the contents of encrypted wireless packets on an affected system. It’s not clear what the range on such an attack would be, but you should assume some proximity is needed. You’ll also note this CVE is from 2020, which could indicate Microsoft has been working on this fix for some time.” Windows Graphics, SharePoint Server PatchesA trio of local privilege escalation flaws – two in the Windows Graphics Component (CVE-2021-31188, CVE-2021-31170) and one in SharePoint Server (CVE-2021-28474) – caught Breen’s eye.
As for the first two, he noted they could be chained with another bug, such as the wormable bug listed above, to become highly dangerous and allow for WannaCry-style attacks.
“This kind of vulnerability is often used by attackers after they have already gained a foothold through an initial infection vector, like phishing or via another exploit like the RCE in HTTP.sys (CVE-2021-31166),” Breen noted via email. “The attackers are looking to increase their privileges so they can move laterally across a network or gain access to other accounts that may have access to more sensitive information.”
Meanwhile, the SharePoint bug allows an authenticated attacker to run code on remote SharePoint Servers.
“As this is post-authentication, it’s likely to be used as part of post-exploitation and lateral movement phases of an attack, rather than the initial-infection vector,” Breen said. “Attackers could gain access to sensitive documents or even replace real documents with weaponized versions, enabling the compromise of more user devices across the organization’s network.” Microsoft Exchange Server PatchesMicrosoft also patched four vulnerabilities in Microsoft Exchange Server. The flaws (CVE-2021-31198, RCE; CVE-2021-31207, spoofing; CVE-2021-31209, security bypass; and CVE-2021-31195, RCE), are all rated important or moderate.
“CVE-2021-31195 is attributed to Orange Tsai of the DEVCORE research team, who was responsible for disclosing the ProxyLogon Exchange Server vulnerabilities that [were] patched in an out-of-band release back in March,” Satnam Narang, staff research engineer with Tenable, told Threatpost. “While none of these flaws are deemed critical in nature, it is a reminder that researchers and attackers are still looking closely at Exchange Server for additional vulnerabilities, so organizations that have yet to update their systems should do so as soon as possible.”
And finally, Ivanti’s Goettl noted that several Microsoft products have reached end-of-life and won’t be getting support going forward.
“This month marks the final update for several Windows 10 and Server [...]
___________________________
@hacking_Attack
@Hacking_Video
The bug tracked as CVE-2021-31207 is only rated as “moderate,” but the “security feature-bypass exploit was showcased prominently in the Pwn2Own contest and at some point details of the exploit will be published,” Goettl explained. “At that point threat actors will be able to take advantage of the vulnerability if they have not already begun attempting to reverse engineer an exploit.”
There two other publicly disclosed vulnerabilities resolved by Microsoft this month that exist in Common Utilities, found in the NNI open-source toolkit (CVE-2021-31200), and in .NET and Visual Studio (CVE-2021-31204).
“Common Utilities and .NET and Visual Studio are less likely to be targeted, but due to the public disclosures they should not be ignored for long,” Goettl added. Other Notable Microsoft Security Patches for May 2021As for the other patches in the update that stood out to the research community, ZDI’s Childs highlighted a Windows wireless networking information-disclosure bug, tracked as CVE-2020-24587.
“The ZDI doesn’t normally highlight info disclosure bugs, but this one has the potential to be pretty damaging,” Childs said. “This patch fixes a vulnerability that could allow an attacker to disclose the contents of encrypted wireless packets on an affected system. It’s not clear what the range on such an attack would be, but you should assume some proximity is needed. You’ll also note this CVE is from 2020, which could indicate Microsoft has been working on this fix for some time.” Windows Graphics, SharePoint Server PatchesA trio of local privilege escalation flaws – two in the Windows Graphics Component (CVE-2021-31188, CVE-2021-31170) and one in SharePoint Server (CVE-2021-28474) – caught Breen’s eye.
As for the first two, he noted they could be chained with another bug, such as the wormable bug listed above, to become highly dangerous and allow for WannaCry-style attacks.
“This kind of vulnerability is often used by attackers after they have already gained a foothold through an initial infection vector, like phishing or via another exploit like the RCE in HTTP.sys (CVE-2021-31166),” Breen noted via email. “The attackers are looking to increase their privileges so they can move laterally across a network or gain access to other accounts that may have access to more sensitive information.”
Meanwhile, the SharePoint bug allows an authenticated attacker to run code on remote SharePoint Servers.
“As this is post-authentication, it’s likely to be used as part of post-exploitation and lateral movement phases of an attack, rather than the initial-infection vector,” Breen said. “Attackers could gain access to sensitive documents or even replace real documents with weaponized versions, enabling the compromise of more user devices across the organization’s network.” Microsoft Exchange Server PatchesMicrosoft also patched four vulnerabilities in Microsoft Exchange Server. The flaws (CVE-2021-31198, RCE; CVE-2021-31207, spoofing; CVE-2021-31209, security bypass; and CVE-2021-31195, RCE), are all rated important or moderate.
“CVE-2021-31195 is attributed to Orange Tsai of the DEVCORE research team, who was responsible for disclosing the ProxyLogon Exchange Server vulnerabilities that [were] patched in an out-of-band release back in March,” Satnam Narang, staff research engineer with Tenable, told Threatpost. “While none of these flaws are deemed critical in nature, it is a reminder that researchers and attackers are still looking closely at Exchange Server for additional vulnerabilities, so organizations that have yet to update their systems should do so as soon as possible.”
And finally, Ivanti’s Goettl noted that several Microsoft products have reached end-of-life and won’t be getting support going forward.
“This month marks the final update for several Windows 10 and Server [...]
___________________________
@hacking_Attack
@Hacking_Video
Hacking Articles Tips Tricks Videos Tutorials
includes the fix for CVE-2021-31207, which made its debut in the 2021 Pwn2Own competition,” he said. The bug tracked as CVE-2021-31207 is only rated as “moderate,” but the “security feature-bypass exploit was showcased prominently in the Pwn2Own contest and…
editions, so make sure you have updated any systems to newer branches to avoid a disruption in security update coverage come June,” he said. “Windows 10 1803 and 1809 and Server 1909 all received their final update on May Patch Tuesday 2021.”
Source: threatpost.com (Click Link)Recent News* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/05/Yellow-Duck-Malware-90x90.jpg Lemon Duck Cryptojacking Botnet Changes Up Tactics1 day ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/05/iPhone-Jailbreak-90x90.jpg iPhone Hack Allegedly Used to Spy on China’s Uyghurs2 days ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/05/cisco-jabber-90x90.jpg Critical Cisco SD-WAN, HyperFlex Bugs Threaten Corporate Networks5 days ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/05/Untitled-design-1-1-90x90.png New Crypto-Stealer ‘Panda’ Spread via Discord6 days ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/05/Untitled-design-1-90x90.png Hundreds of Millions of Dell Users at Risk from Kernel-Privilege Bugs1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/05/HPE-corp-logo-90x90.jpg Hewlett Packard Enterprise Plugs Critical Bug in Edge Platform Tool1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/05/Untitled-design-90x90.png Chinese hackers targeting Russian nuclear submarine design firm with PortDoor malware1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/F5-Big-IP-e1619725870974-90x90.jpg F5 Big-IP Vulnerable to Security-Bypass Bug2 weeks ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/Google-Chrome-Browser-1-90x90.jpg Google Chrome V8 Bug Allows Remote Code-Execution2 weeks ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/apple_logo_store-90x90.jpg Apple Patches Zero-Day MacOS Bug That Can Bypass Anti-Malware Defenses2 weeks ago
The post Wormable Windows Bug Opens Door to DoS, RCE first appeared on Black Hat Ethical Hacking.
___________________________
@hacking_Attack
@Hacking_Video
Source: threatpost.com (Click Link)Recent News* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/05/Yellow-Duck-Malware-90x90.jpg Lemon Duck Cryptojacking Botnet Changes Up Tactics1 day ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/05/iPhone-Jailbreak-90x90.jpg iPhone Hack Allegedly Used to Spy on China’s Uyghurs2 days ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/05/cisco-jabber-90x90.jpg Critical Cisco SD-WAN, HyperFlex Bugs Threaten Corporate Networks5 days ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/05/Untitled-design-1-1-90x90.png New Crypto-Stealer ‘Panda’ Spread via Discord6 days ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/05/Untitled-design-1-90x90.png Hundreds of Millions of Dell Users at Risk from Kernel-Privilege Bugs1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/05/HPE-corp-logo-90x90.jpg Hewlett Packard Enterprise Plugs Critical Bug in Edge Platform Tool1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/05/Untitled-design-90x90.png Chinese hackers targeting Russian nuclear submarine design firm with PortDoor malware1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/F5-Big-IP-e1619725870974-90x90.jpg F5 Big-IP Vulnerable to Security-Bypass Bug2 weeks ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/Google-Chrome-Browser-1-90x90.jpg Google Chrome V8 Bug Allows Remote Code-Execution2 weeks ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/apple_logo_store-90x90.jpg Apple Patches Zero-Day MacOS Bug That Can Bypass Anti-Malware Defenses2 weeks ago
The post Wormable Windows Bug Opens Door to DoS, RCE first appeared on Black Hat Ethical Hacking.
___________________________
@hacking_Attack
@Hacking_Video
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
A Closer Look at the DarkSide Ransomware Gang
https://external-preview.redd.it/AeFNJAzSMeOHOYMRQjPFuSlfDsZ1nCAB437iT58IW0g.jpg?width=640&crop=smart&auto=webp&s=4135119ac3b8a05175d254bc7194b2b666d77182 submitted by /u/LogicalRiver
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
A Closer Look at the DarkSide Ransomware Gang
https://external-preview.redd.it/AeFNJAzSMeOHOYMRQjPFuSlfDsZ1nCAB437iT58IW0g.jpg?width=640&crop=smart&auto=webp&s=4135119ac3b8a05175d254bc7194b2b666d77182 submitted by /u/LogicalRiver
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
A Closer Look at the DarkSide Ransomware Gang
Posted in r/hacking by u/LogicalRiver • 2 points and 0 comments
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
WiFi devices going back to 1997 vulnerable to new Frag Attacks
https://external-preview.redd.it/wXNvoVvaE-YWDdCDOflkWkIvXK-cwMVf4njg5sjzxcc.jpg?width=640&crop=smart&auto=webp&s=56a2d902717066930662701948c01fe0587d71eb submitted by /u/LogicalRiver
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
WiFi devices going back to 1997 vulnerable to new Frag Attacks
https://external-preview.redd.it/wXNvoVvaE-YWDdCDOflkWkIvXK-cwMVf4njg5sjzxcc.jpg?width=640&crop=smart&auto=webp&s=56a2d902717066930662701948c01fe0587d71eb submitted by /u/LogicalRiver
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
WiFi devices going back to 1997 vulnerable to new Frag Attacks
Posted in r/hacking by u/LogicalRiver • 2 points and 0 comments