Cross-site Scripting via WHOIS and DNS Records
https://medium.com/tenable-techblog/cross-site-scripting-via-whois-and-dns-records-a25c33667fff
https://medium.com/tenable-techblog/cross-site-scripting-via-whois-and-dns-records-a25c33667fff
Medium
Cross-site Scripting via WHOIS and DNS Records
On a whim, I tossed this into the address field of the registrant data of a domain so it’d appear in whois records…
Lateral movement via MSSQL: a tale of CLR and socket reuse
https://www.blackarrow.net/mssqlproxy-pivoting-clr/
https://www.blackarrow.net/mssqlproxy-pivoting-clr/
Tarlogic Security
Lateral movement via MSSQL: a tale of CLR and socket reuse
Technical details about how to pivot through a Microsoft SQL Server . Using mssql as a proxy for lateral movement
How to run Windows 10 on ARM in Qemu with Hypervisor.framework patches on Apple Silicon Mac
https://gist.github.com/niw/e4313b9c14e968764a52375da41b4278#file-readme-md
https://gist.github.com/niw/e4313b9c14e968764a52375da41b4278#file-readme-md
Gist
How to run Windows 10 on ARM or Ubuntu for ARM64 in QEMU on Apple Silicon Mac
How to run Windows 10 on ARM or Ubuntu for ARM64 in QEMU on Apple Silicon Mac - README.en.md
Forwarded from r0 Crew (Channel)
Big Match: matching open source code in binaries for fun and profit https://rev.ng/blog/big-match/post.html #reverse #dukeBarman
Forwarded from r0 Crew (Channel)
PTM - Page Table Manipulation From Usermode https://back.engineering/01/12/2020/ #exploitation #windows
Announcing the Atheris Python Fuzzer
https://opensource.googleblog.com/2020/12/announcing-atheris-python-fuzzer.html
https://opensource.googleblog.com/2020/12/announcing-atheris-python-fuzzer.html
Google Open Source Blog
Announcing the Atheris Python Fuzzer
Google has found thousands of security vulnerabilities and other bugs using Fuzzing. Now we are introducing the Atheris fuzzing engine.
"Important, Spoofing" - zero-click, wormable, cross-platform remote code execution in Microsoft Teams
https://github.com/oskarsve/ms-teams-rce/blob/main/README.md
https://github.com/oskarsve/ms-teams-rce/blob/main/README.md
GitHub
ms-teams-rce/README.md at main · oskarsve/ms-teams-rce
Contribute to oskarsve/ms-teams-rce development by creating an account on GitHub.
holehe allows you to check if the mail is used on different sites like twitter, instagram and will retrieve information on sites with the forgotten password function.
https://github.com/megadose/holehe
https://github.com/megadose/holehe
GitHub
GitHub - megadose/holehe: holehe allows you to check if the mail is used on different sites like twitter, instagram and will retrieve…
holehe allows you to check if the mail is used on different sites like twitter, instagram and will retrieve information on sites with the forgotten password function. - megadose/holehe
4 Free easy wins that make Red Teams harder
https://www.trustedsec.com/blog/4-free-easy-wins-that-make-red-teams-harder/
https://www.trustedsec.com/blog/4-free-easy-wins-that-make-red-teams-harder/
TrustedSec
4 Free Easy Wins That Make Red Teams Harder
This post assumes you have basic knowledge such as how to create a Group Policy Object(GPO). All you need to do is to create a GPO that disables macros by…
CVE-2020-17049: Kerberos Bronze Bit Attack - Overview
http://blog.netspi.com/cve-2020-17049-kerberos-bronze-bit-overview/
http://blog.netspi.com/cve-2020-17049-kerberos-bronze-bit-overview/
NetSPI
CVE-2020-17049: Kerberos Bronze Bit Attack - Overview
Read a helpful overview of the Bronze Bit attack (CVE-2020-17049) against Kerberos implementations in Windows Active Directory.
CVE-2020-9967 - Apple macOS XNU 6LowPan Kernel RCE Write-up https://alexplaskett.github.io/CVE-2020-9967/
Amit Merchant - Software Engineer
CVE-2020-9967 - Apple macOS 6LowPAN Vulnerability
Inspired by Kevin Backhouse’s great work on finding XNU remote vulnerabilities I decided to spend some time looking at CodeQL and performing some variant analysis. This lead to the discovery of a local root to kernel (although documented by Apple as remote)…
Гиперотладка. Разбираем отладку Microsoft Hyper-V с самого начала
https://xakep.ru/2020/12/25/hyperv-hyperdebug/
https://xakep.ru/2020/12/25/hyperv-hyperdebug/
SUNBURST Additional Technical Details
https://www.fireeye.com/blog/threat-research/2020/12/sunburst-additional-technical-details.html
https://www.fireeye.com/blog/threat-research/2020/12/sunburst-additional-technical-details.html
Google Cloud
Mandiant Cybersecurity Consulting
Transform cyber defense with Mandiant. Engage frontline experts for incident response, threat intelligence services, and cyber risk management.
Visualize the virtual address space of a Windows process on a Hilbert curve.
https://github.com/0vercl0k/clairvoyance
https://github.com/0vercl0k/clairvoyance
GitHub
GitHub - 0vercl0k/clairvoyance: Visualize the virtual address space of a Windows process on a Hilbert curve.
Visualize the virtual address space of a Windows process on a Hilbert curve. - 0vercl0k/clairvoyance