Research: Vulnerability analysis using the security news graph. Alternate way to score severity.
π£isox_xx
Sounds similar to the VPR scoring method used by Tenable (Nessus).
π€Tryptic0nUK
π@malwr
π£isox_xx
Sounds similar to the VPR scoring method used by Tenable (Nessus).
π€Tryptic0nUK
π@malwr
Vulners Blog
Hidden Threat β Vulnerability Analysis using the news graph
When you face to face a new vulnerability, what is the thought that comes first? Of course, respond as quickly as possible. However, speed is just one of the conditions for an effective fight againβ¦
Common Ports to Remember (credits: packetlife.net)
π£ATTACKERSA
This very same printout follows me from desk-to-desk. Very good reference point to the not-so-easy-to-remember ports.
π€native_rooted
All u need to know is 20,22,21,25,389,3389,80,53
π€Calvimn
What about WhatsApp?
π€wthinastix
π@malwr
π£ATTACKERSA
This very same printout follows me from desk-to-desk. Very good reference point to the not-so-easy-to-remember ports.
π€native_rooted
All u need to know is 20,22,21,25,389,3389,80,53
π€Calvimn
What about WhatsApp?
π€wthinastix
π@malwr
Starting Fires by Hacking 3D Printers, pt 1
π£FlyingTriangle
And this is why I bought a printer without wifi. Nothing is perfect, but it's one less attack vector.
π€digitaldude87
Iβm not surprised that they companies donβt institute security from the very beginning.
π€macgeek89
π€ihave10felonies
π@malwr
π£FlyingTriangle
And this is why I bought a printer without wifi. Nothing is perfect, but it's one less attack vector.
π€digitaldude87
Iβm not surprised that they companies donβt institute security from the very beginning.
π€macgeek89
lp0 on fire all over again...π€ihave10felonies
π@malwr
Coalfire
Coalfire Blog
Resource covering the most important issues in IT security and compliance as well as insights on IT GRC issues that impact the industries that we serve.
Firefox 74.0.1 has been released
π£danielsuarez369
Seems to be a security update for the most part: https://www.mozilla.org/en-US/security/advisories/mfsa2020-11/
π€danielsuarez369
π@malwr
π£danielsuarez369
Seems to be a security update for the most part: https://www.mozilla.org/en-US/security/advisories/mfsa2020-11/
π€danielsuarez369
π@malwr
Mozilla
Firefox 74.0.1, See All New Features, Updates and Fixes
[PDF Bug Bounties With Bash | @TomNomNom](https://tomnomnom.com/talks/bug-bounties-with-bash-virsec.pdf)
π£_vavkamil_
π@malwr
π£_vavkamil_
π@malwr
NTLM Relay - an estimated 47 minute read (in-depth) which explains NTLM relaying in depth
π£digicat
π@malwr
π£digicat
π@malwr
hackndo
NTLM Relay
NTLM relay is a technique of standing between a client and a server to perform actions on the server while impersonating the client. Protections such as SMB signing or MIC allow to limit the actions of an attacker. This article goes into detail about thisβ¦
China's "New IP" proposal to replace TCP/IP has a built in "shut up command" for censorship
π£Temptunes48
Oh look, more Chinese tools of oppression for American companies like Cisco to implement.
π€ElliotsRebirth
nice
π€lummoxacillin
π@malwr
π£Temptunes48
Oh look, more Chinese tools of oppression for American companies like Cisco to implement.
π€ElliotsRebirth
nice
π€lummoxacillin
π@malwr
PIA
China's "New IP" proposal to replace TCP/IP has a built in "shut up command" for censorship
The Chinese government and the Chinese telecommunications companies such as Huawei under its control are proposing a βNew IPβ addressing system for the
All courses (including DFIR) are free at PluralSight during April 2020
π£greyyit
Here's just some of the malware related courses.
https://www.pluralsight.com/search?q=malware&categories=course
π€greyyit
π@malwr
π£greyyit
Here's just some of the malware related courses.
https://www.pluralsight.com/search?q=malware&categories=course
π€greyyit
π@malwr
An old enemy β Diving into QBot part 1
π£Struppigel
Nice, so this is the packer piece? There's lots of fun algorithms involved in qbot, if you run into problems or have questions feel free to ask.
π€sysopfb
π@malwr
π£Struppigel
Nice, so this is the packer piece? There's lots of fun algorithms involved in qbot, if you run into problems or have questions feel free to ask.
π€sysopfb
π@malwr
Malware and Stuff
An old enemy β Diving into QBot part 1
While checking out the Triage Sandbox[1] I stumbled across upon QBot which Iβve seen already plenty of times at work at GData Cyberdefense AG[2]. This time I wanted to take a closer look at tβ¦