New Advisory: Find out how a vulnerability in DD-WRT allows an unauthenticated attacker to overflow an internal buffer used by UPNP and trigger a code execution vulnerability
π£SSDisclosure
π@malwr
π£SSDisclosure
π@malwr
SSD Secure Disclosure
SSD Advisory β DD-WRT UPNP Buffer Overflow - SSD Secure Disclosure
TL;DR Find out how a vulnerability in DD-WRT allows an unauthenticated attacker to overflow an internal buffer used by UPNP and trigger a code execution vulnerability. Vulnerability Summary DD-WRT is βis Linux-based firmware for wireless routers and accessβ¦
Old School RuneScape Steam version - Finding all things 3D
π£alcohol_enthusiast_
Awesome series! Regarding part 2, is there any benefit to reimplementing the w2s function rather than calling the function with 3d coordinates directly? Or are you just doing it like this since you're not injected into the game?
Also, are you using Ghidra in the screenshot where you find what references are writing to the text pos arrays?
Thanks for the great content!
π€micaww
Part 3 of my series. It refers back to the older posts a lot so feel free to read them all if you got the time, it's a long series though!
π€alcohol_enthusiast_
π@malwr
π£alcohol_enthusiast_
Awesome series! Regarding part 2, is there any benefit to reimplementing the w2s function rather than calling the function with 3d coordinates directly? Or are you just doing it like this since you're not injected into the game?
Also, are you using Ghidra in the screenshot where you find what references are writing to the text pos arrays?
Thanks for the great content!
π€micaww
Part 3 of my series. It refers back to the older posts a lot so feel free to read them all if you got the time, it's a long series though!
π€alcohol_enthusiast_
π@malwr
Analyzing And Micropatching CVE-2021-26897
π£m2r3t1
would be interesting to know how many users this service has...
π€tansim
π@malwr
π£m2r3t1
would be interesting to know how many users this service has...
π€tansim
π@malwr
0Patch
Analyzing And Micropatching With Tetrane REVEN (Part 1, CVE-2021-26897)
by Mitja Kolsek, the 0patch Team March 2021 Windows Updates included fixes for seven vulnerabilities in Windows DNS Server, two of which w...
Introduction to format string vulnerabilities - Introduction to Binary Exploitation - Hack The Box Leet Test
π£PinkDraconian
π@malwr
π£PinkDraconian
π@malwr
YouTube
Hack The Box - Introduction to Binary Exploitation - Leet Test - Format Strings [Walkthrough]
βΆοΈ YouTube: https://www.youtube.com/c/PinkDraconian
π Patreon: https://www.patreon.com/PinkDraconian
π¦ Twitter: https://twitter.com/PinkDraconian
π΅ TikTok: https://www.tiktok.com/@pinkdraconian
βΉοΈ LinkedIn: https://www.linkedin.com/in/robbe-van-roey-365666195/β¦
π Patreon: https://www.patreon.com/PinkDraconian
π¦ Twitter: https://twitter.com/PinkDraconian
π΅ TikTok: https://www.tiktok.com/@pinkdraconian
βΉοΈ LinkedIn: https://www.linkedin.com/in/robbe-van-roey-365666195/β¦
Attack landscape update: Ransomware 2.0, automated recon, and supply chain attacks - F-Secure Blog
π£c0r3dump3d
π@malwr
π£c0r3dump3d
π@malwr
F-Secure Blog
Attack landscape update: Ransomware 2.0, automated recon, and supply chain attacks - F-Secure Blog
Data-stealing ransomware attacks, information harvesting malware, and supply chain attacks are some of the critical threats facing organizations highlighted in F-Secureβs latest attack landscape update. According to the report, a new type of extortion researchersβ¦
Cheating the cheater: How adversaries are using backdoored video game cheat engines and modding tools
π£malware_bender
π@malwr
π£malware_bender
π@malwr
Cisco Talos
Cheating the cheater: How adversaries are using backdoored video game cheat engines and modding tools
By Nick Lister and Holger Unterbrink, with contributions from Vanja Svajcer. News summary * Cisco Talos recently discovered a new campaign targeting video game players and other PC modders. * Talos detected a new cryptor used in several different malwareβ¦
Exfiltrate files using the DNS
π£w8rbt
In reality, how would this be protected against? I'm still nub when it comes to the net sec side of this business. Would using a limited private recursive server that prevented lookups for any but a whitelist be the most secure? Not all DNS servers will respond with the complete zone file to allow for the recursive server to do the lookup so that doesn't seem like a viable option.
π€notdedicated
For additional information and practical application, you can refer to the TryHackMe Room - DNS Manipulation
For information on a likely hijacked reddit account, you can refer to w8rbt's profile which was registered 6 years ago yet only started posting 2 months ago, and has posted nothing aside from article promotion.
π€Reelix
So as long as enclave rule sets are defined specifically to only allow the DNS port to appropriate upstream DNS, this would fail.
π€Jon2109
π@malwr
π£w8rbt
In reality, how would this be protected against? I'm still nub when it comes to the net sec side of this business. Would using a limited private recursive server that prevented lookups for any but a whitelist be the most secure? Not all DNS servers will respond with the complete zone file to allow for the recursive server to do the lookup so that doesn't seem like a viable option.
π€notdedicated
For additional information and practical application, you can refer to the TryHackMe Room - DNS Manipulation
For information on a likely hijacked reddit account, you can refer to w8rbt's profile which was registered 6 years ago yet only started posting 2 months ago, and has posted nothing aside from article promotion.
π€Reelix
So as long as enclave rule sets are defined specifically to only allow the DNS port to appropriate upstream DNS, this would fail.
π€Jon2109
π@malwr
Go350
Exfiltrate files using the DNS
yes you can
FAST FLUX
https://www.blueliv.com/cyber-security-and-cyber-threat-intelligence-blog-blueliv/fast-flux/
βΉοΈ Sent from one of our members
π@malwr
https://www.blueliv.com/cyber-security-and-cyber-threat-intelligence-blog-blueliv/fast-flux/
βΉοΈ Sent from one of our members
π@malwr
Outpost24
Fast flux | Outpost 24 blog
In this post we want to share details about a study that we have carried out on a Fast Flux network operated by the creators of the Ursnif malware. Our main objective is to shed some light on this type of network and what kind of activities are developedβ¦