Hiding in plain sights with rogue/fake computer accounts:
1/2) https://t.co/qmoAW70RFz
2/2) https://t.co/E57cqSzKom
1/2) https://t.co/qmoAW70RFz
2/2) https://t.co/E57cqSzKom
blog.menasec.net
Threat Hunting #6 - Hiding in plain sights with real or rogue computer accounts - Part 1/2
Every Windows computer that joins a domain has a computer account. Similar to user accounts, computer accounts provide a means for authentic...
Quick Tip: While you are trying to find more subdomains and you use the Google Dork: site:*.example.com, NEVER forget to check
site:*.*.example.com and
site:*.*.*.example.com
site:*.*.example.com and
site:*.*.*.example.com
CVE-2019-12527: Code Execution on Squid Proxy Through a Heap Buffer Overflow - the Trend Micro Research team provides details about this recently patched vuln. https://t.co/9G2nBaU4kx
Zero Day Initiative
Zero Day Initiative — CVE-2019-12527: Code Execution on Squid Proxy Through a Buffer Overflow
In this excerpt of a Trend Micro Vulnerability Research Service report, Saran Neti and Sivathmican Sivakumaran of the Trend Micro Research Team detail a recent buffer overflow vulnerability in the Squid web proxy. A remote, unauthenticated attacker could…
Open Source C++ Crypter. AES-256 Bit Encryption, Virtual Machine Detection and Almost FUD https://t.co/Fp5ogdSja9
GitHub
Include-sys/hCrypt
Open Source C++ Crypter. AES-256 Bit Encryption, Virtual Machine Detection and Almost FUD - Include-sys/hCrypt
Common docker image for building software reverse engineering (SRE) framework #Ghidra from Github's source.
https://t.co/YPkDGpjURI
https://t.co/YPkDGpjURI
GitHub
dukebarman/ghidra-builder
Docker image for building ghidra RE framework from source - dukebarman/ghidra-builder