CVE-2021-30481: Source engine remote code execution via game invites
π£hyperreality_monero
1 year to triageπ³
π€i_has_many_cs
π@malwr
π£hyperreality_monero
1 year to triageπ³
π€i_has_many_cs
π@malwr
secret club
CVE-2021-30481: Source engine remote code execution via game invites
Steam is the most popular PC game launcher in the world. It gives millions of people the chance to play their favorite video games with their friends using the built in friend and party system, so itβs safe to assume most users have accepted an invite atβ¦
Check Your Pulse: Suspected APT Actors Leverage Authentication Bypass Techniques and Pulse Secure Zero-Day
π£b1x3r
π@malwr
π£b1x3r
π@malwr
Google Cloud
Mandiant Cybersecurity Consulting
Transform cyber defense with Mandiant. Engage frontline experts for incident response, threat intelligence services, and cyber risk management.
Zero-Day Exploits in SonicWall Email Security Lead to Enterprise Compromise
π£digicat
https://www.sonicwall.comsupport/product-notification/security-notice-sonicwall-email-security-zero-day-vulnerabilities/210416112932360/
π€digicat
π@malwr
π£digicat
https://www.sonicwall.comsupport/product-notification/security-notice-sonicwall-email-security-zero-day-vulnerabilities/210416112932360/
π€digicat
π@malwr
Google Cloud
Mandiant Cybersecurity Consulting
Transform cyber defense with Mandiant. Engage frontline experts for incident response, threat intelligence services, and cyber risk management.
Detect and exploit OS command injection vulnerabilities against #GraphQL applications via commix.
π£Alex4nd3r
https://twitter.com/commixproject/status/1384724380647895041
π€RemyLebau
π@malwr
π£Alex4nd3r
https://twitter.com/commixproject/status/1384724380647895041
π€RemyLebau
π@malwr
GitHub
Minor improvement regarding parsing GraphQL JSON objects. Β· commixproject/commix@a8f1a8a
Automated All-in-One OS Command Injection Exploitation Tool - commixproject/commix
pe - Golang package to parse Windows PE files that is fast, complete and robust against malformed files.
π£Godswitch991
π@malwr
π£Godswitch991
π@malwr
GitHub
GitHub - saferwall/pe: A lightweight Go package to parse, analyze and extract metadata from Portable Executable (PE) binaries.β¦
A :zap: lightweight Go package to parse, analyze and extract metadata from Portable Executable (PE) binaries. Designed for malware analysis tasks and robust against PE malformations. - saferwall/pe
Signal: Exploiting vulnerabilities in Cellebrite UFED and Physical Analyzer from an app's perspective
π£qw1ks1lv3r
Moxie rocking?
π€mepher
I value privacy as much as the next guy, but this post and the previous one the author links to both come off as kind of immature. I get it that Cellebrite is a shady company, but publicly insulting them is quite unprofessional. "Amateur hour" may not look good for Cellebrite, but it sure doesn't look good for Signal either.
π€IndependenceNo7975
that last paragraph...
π€hacksauce
π@malwr
π£qw1ks1lv3r
Moxie rocking?
π€mepher
I value privacy as much as the next guy, but this post and the previous one the author links to both come off as kind of immature. I get it that Cellebrite is a shady company, but publicly insulting them is quite unprofessional. "Amateur hour" may not look good for Cellebrite, but it sure doesn't look good for Signal either.
π€IndependenceNo7975
that last paragraph...
π€hacksauce
π@malwr
Signal
Exploiting vulnerabilities in Cellebrite UFED and Physical Analyzer from an app's perspective
Cellebrite makes software to automate physically extracting and indexing data from mobile devices. They exist within the grey β where enterprise branding joins together with the larcenous to be called βdigital intelligence.β Their customer list has includedβ¦
Taking Action Against Hackers in Palestine - Facebook
π£darronofsky
And hereby a more detailed report on one of the groups they tracked, named Arid Viper: https://about.fb.com/wp-content/uploads/2021/04/Technical-threat-report-Arid-Viper-April-2021.pdf
π€darronofsky
π@malwr
π£darronofsky
And hereby a more detailed report on one of the groups they tracked, named Arid Viper: https://about.fb.com/wp-content/uploads/2021/04/Technical-threat-report-Arid-Viper-April-2021.pdf
π€darronofsky
π@malwr
Meta Newsroom
Taking Action Against Hackers in Palestine
Weβre sharing actions we took against two separate groups of hackers β removing their ability to abuse our platform, distribute malware and hack peopleβs accounts across the internet.
.E01 (bootable) converted to .VMDK with Virtual Box was successful, however the bootup sits on this screen and Im not sure could be keeping it from finishing a boot up of Windows. The VM spec is about 26GB RAM, dynamic sizing, and the E01 was a functioning Win machine. Why wont it finish booting?
π£mattisha
I feel like you are doing too many steps. As others have said, use Arsenal or even FTK Imager. Mount the E01 as a Physical Disk. Then using VMWare or Hyper-V just make a new VM, and the only disk you should add is this new PhysicalDisk. The most important thing is matching BIOS or UEFI of the host, that's really about it. If it's Windows 10 it should fix itself and boot.
Or, just pay for Arsenal and it will boot a VM in one click and bypass the bitlocker and lock screen for ya. Def worth it.
π€FunkeDope
We usually mount the E01 using Arsenal Image Mounter and create a VM with VMware giving the mounted physical drive as VM hdd.
π€walker1993
I've never had success with this method...I always just restore the image to another disk.
π€kstewart0x00
π@malwr
π£mattisha
I feel like you are doing too many steps. As others have said, use Arsenal or even FTK Imager. Mount the E01 as a Physical Disk. Then using VMWare or Hyper-V just make a new VM, and the only disk you should add is this new PhysicalDisk. The most important thing is matching BIOS or UEFI of the host, that's really about it. If it's Windows 10 it should fix itself and boot.
Or, just pay for Arsenal and it will boot a VM in one click and bypass the bitlocker and lock screen for ya. Def worth it.
π€FunkeDope
We usually mount the E01 using Arsenal Image Mounter and create a VM with VMware giving the mounted physical drive as VM hdd.
π€walker1993
I've never had success with this method...I always just restore the image to another disk.
π€kstewart0x00
π@malwr
I built a free tool to assess IT security risks, objectively, unbiased and visually presented. It is specially targeted at SME's who don't have the resources for deep dives but want an overview of their risk landscape. Would love your feedback.
π£ZhongTr0n
What's the outcome you're looking for? Mostly practice creating an app? UI looks good. Could be useful for bootstrapped startups.
Looking to make a profit? Eventually a bootstrapped startup will lose business if they don't have a SOC2, and they'll leverage something like Vanta to make it easier. Long way to go to reach feature parity with Vanta. Check out the book Zero to One by Peter Theil.
π€ericalexander303
I'll be trying this out today.
π€wormhole360
You can check it out for free on https://riskbull.app . I've worked for 10 months on this tool with u/CoolingSoup and incorporated reddit feedback from previous versions. It assesses your IT security risk based on a survey and a rule engine based on ISO2700x.
The idea is to help people without sufficient in-house infosec expertise get an overview of their risk landscape.This is still an early version, as many other features and insights will be added later.
Currently it is not mobile friendly,
Would love your feedback.
π€ZhongTr0n
π@malwr
π£ZhongTr0n
What's the outcome you're looking for? Mostly practice creating an app? UI looks good. Could be useful for bootstrapped startups.
Looking to make a profit? Eventually a bootstrapped startup will lose business if they don't have a SOC2, and they'll leverage something like Vanta to make it easier. Long way to go to reach feature parity with Vanta. Check out the book Zero to One by Peter Theil.
π€ericalexander303
I'll be trying this out today.
π€wormhole360
You can check it out for free on https://riskbull.app . I've worked for 10 months on this tool with u/CoolingSoup and incorporated reddit feedback from previous versions. It assesses your IT security risk based on a survey and a rule engine based on ISO2700x.
The idea is to help people without sufficient in-house infosec expertise get an overview of their risk landscape.This is still an early version, as many other features and insights will be added later.
Currently it is not mobile friendly,
Would love your feedback.
π€ZhongTr0n
π@malwr
CVE-2021-20226: A reference-counting bug in the Linux kernel io_uring subsystem that can be leveraged for local privilege escalation
π£RedmondSecGnome
π@malwr
π£RedmondSecGnome
π@malwr
Zero Day Initiative
Zero Day Initiative β CVE-2021-20226: A Reference-Counting Bug in the Linux Kernel io_uring Subsystem
Conclusion New features mean new attack surfaces, and new attack surfaces often lead to new bugs being discovered. It will be interesting to see if any other vulnerabilities are found in this subsystem. Regardless, it was a great find by Ryota, and we appreciateβ¦
Dutch government release a Windows event logging and collection baseline focused on finding balance between forensic value and optimising retention.
π£digicat
π@malwr
π£digicat
π@malwr
GitHub
GitHub - JSCU-NL/logging-essentials: A Windows event logging and collection baseline focused on finding balance between forensicβ¦
A Windows event logging and collection baseline focused on finding balance between forensic value and optimising retention. - JSCU-NL/logging-essentials