Chinese Bitcoin investor loses $45 million to a SIM-Swapping attack.
π£nilehighclub
SIM Swapping is stupid easy too, thatβs why this is a rampant issue - all it takes is someone inside the carrier (and not even a high ranking person)
π€mc2memes
These sort of attacks are just stunning.
I still have not really worked out how they manage to steal a persons phone number.
I guess they gain a lot of information about a person so they can answer any question an ISP may ask. Or is it simply the fact that ISP's have basically no security built into their processes?
π€VestigialHead
You keep 45 million on something protected by an sms on a phone.... youβre an idiot
π€EAP007
π@malwr
π£nilehighclub
SIM Swapping is stupid easy too, thatβs why this is a rampant issue - all it takes is someone inside the carrier (and not even a high ranking person)
π€mc2memes
These sort of attacks are just stunning.
I still have not really worked out how they manage to steal a persons phone number.
I guess they gain a lot of information about a person so they can answer any question an ISP may ask. Or is it simply the fact that ISP's have basically no security built into their processes?
π€VestigialHead
You keep 45 million on something protected by an sms on a phone.... youβre an idiot
π€EAP007
π@malwr
X (formerly Twitter)
X
Cacti v1.2.8 authenticated Remote Code Execution (CVE-2020-8813) - Shells.Systems
π£cyberg0100
π@malwr
π£cyberg0100
π@malwr
Shells.Systems
Cacti v1.2.8 authenticated Remote Code Execution (CVE-2020-8813) - Shells.Systems
Estimated Reading Time: 8 minutesSummary about Cacti Cacti is a complete network graphing solution designed to harness the power of RRDToolβs data storage and graphing functionality, Cacti provides a fast poller, advanced graph templating, multiple dataβ¦
Binwalk
I've figured out how and when exactly to use Binwalk on files (JPG files for example, steganography).
But what is exactly Binwalk? How does it show me more files inside a file?
How does it work?
π£blue8ird
It looks for file format signatures and for file headers/footers of different formats.
Btw a more common use case than steganography is extracting files from a firmware image.
π€Tompazi
π@malwr
I've figured out how and when exactly to use Binwalk on files (JPG files for example, steganography).
But what is exactly Binwalk? How does it show me more files inside a file?
How does it work?
π£blue8ird
It looks for file format signatures and for file headers/footers of different formats.
Btw a more common use case than steganography is extracting files from a firmware image.
π€Tompazi
π@malwr
reddit
Binwalk
I've figured out how and when exactly to use Binwalk on files (JPG files for example, steganography). But what is exactly Binwalk? How does it...
Writing a #GHIDRA Loader: STM32 Edition
https://wrongbaud.github.io/writing-a-ghidra-loader/
π@malwr
https://wrongbaud.github.io/writing-a-ghidra-loader/
π@malwr
Announcing GA of O365 ATP Campaign Views and Compromised User Detection and Response
π£TeamsMe
π@malwr
π£TeamsMe
π@malwr
TECHCOMMUNITY.MICROSOFT.COM
Announcing GA of O365 ATP Campaign Views and Compromised User Detection and Response
Office 365 Advanced Threat Protection just got even better. Together, the two features we're announcing the GA of today: Campaign Views and Advanced..
I just open-sourced sweetie data, a repo of multiple honeypot logs.
π£0xsha
Nice thanks for sharing. I've shut down the majority of my honeypots and just use threat feeds and other intelligence streams.
π€intoxicatednoob
π@malwr
π£0xsha
Nice thanks for sharing. I've shut down the majority of my honeypots and just use threat feeds and other intelligence streams.
π€intoxicatednoob
π@malwr
GitHub
GitHub - 0xsha/sweetie-data: This repo contains logstash of various honeypots
This repo contains logstash of various honeypots. Contribute to 0xsha/sweetie-data development by creating an account on GitHub.
[PDF] OSS Supply Chain Security by the Linux Foundation
https://www.linuxfoundation.org/wp-content/uploads/2020/02/oss\_supply\_chain\_security.pdf
π£digicat
π@malwr
https://www.linuxfoundation.org/wp-content/uploads/2020/02/oss\_supply\_chain\_security.pdf
π£digicat
π@malwr
Workshop on Binary Analysis Research (BAR) 2020 at NDSS
π£mttd
It would be nice to have the slides of the invited talks as well.
π€XVilka
π@malwr
π£mttd
It would be nice to have the slides of the invited talks as well.
π€XVilka
π@malwr
ObliqueRAT, a new malware employed in attacks on government targets in Southeast Asia
π£quellaman
π@malwr
π£quellaman
π@malwr
Security Affairs
ObliqueRAT, a new malware employed in attacks on government targets
Cisco Talos researchers discovered a new malware, tracked as ObliqueRAT, that was employed targeted attacks against organizations in Southeast Asia.