A Practical Approach to Attacking IoT Embedded Designs (II) https://labs.ioactive.com/2021/02/a-practical-approach-to-attacking-iot_23.html
Ioactive
A Practical Approach to Attacking IoT Embedded Designs (II)
by Ruben Santamarta In this second and final blog post on this topic, we cover some OTA vulnerabilities we identified in wireless commun...
How to Kerberos? its components and function https://sheerazali.com/how-to-kerberos-its-components-and-function/
Sheeraz ali
How to Kerberos? its components and function - Sheeraz ali
Kerberos is used in windows authentication and the active directory. It is an authentication protocol that is if implemented is more secure ..
Vulnerability Spotlight: Information disclosure vulnerability in macOS SMB server https://blog.talosintelligence.com/2021/05/vuln-spotlight-smb-information-disclosure.html
Cisco Talos Blog
Vulnerability Spotlight: Information disclosure vulnerability in macOS SMB server
Aleksandar Nikolic of Cisco Talos discovered this vulnerability. Blog by Jon Munshaw.
Cisco Talos recently discovered an exploitable integer overflow vulnerability in Apple macOS’ SMB server that could lead to information disclosure.
Server Message Block…
Cisco Talos recently discovered an exploitable integer overflow vulnerability in Apple macOS’ SMB server that could lead to information disclosure.
Server Message Block…
Exploit Development: CVE-2021-21551 - Dell ‘dbutil_2_3.sys’ Kernel Exploit Writeup https://connormcgarr.github.io/cve-2020-21551-sploit/
Connor McGarr’s Blog
Exploit Development: CVE-2021-21551 - Dell ‘dbutil_2_3.sys’ Kernel Exploit Writeup
Analysis and writeup on weaponizing CVE-2021-21551 without a data-only attack and the importance of Virtualization-Based Security, Hypervisor-Protected Code Integrity, Kernel Control-Flow Guard, and other modern mitigations.
Hacking a Roku TV to Control Lights https://blog.ammaraskar.com/roku-tv-philips-hues/
Ammar's Blog
Hacking a Roku TV to Control Lights
My blog, mostly about programming
CVE-2021-31166: A Wormable Code Execution Bug in HTTP.sys https://www.zerodayinitiative.com/blog/2021/5/17/cve-2021-31166-a-wormable-code-execution-bug-in-httpsys
Zero Day Initiative
Zero Day Initiative — CVE-2021-31166: A Wormable Code Execution Bug in HTTP.sys
In this excerpt of a Trend Micro Vulnerability Research Service vulnerability report, Kc Udonsi and Yazhi Wang of the Trend Micro Research Team detail a recent code execution vulnerability in the Microsoft Internet Information Services (IIS) for Windows.…
CERT Kaiju: binary analysis framework extension for the Ghidra software reverse engineering suite https://securityonline.info/kaiju-binary-analysis-framework/
Daily CyberSecurity
Stay ahead with Daily CyberSecurity. We deliver rapid zero-hour alerts and expert analysis on critical vulnerabilities, CVEs, and emerging cyber threats.
LNew sophisticated email-based attack from NOBELIUM https://www.microsoft.com/security/blog/2021/05/27/new-sophisticated-email-based-attack-from-nobelium/
Microsoft News
New sophisticated email-based attack from NOBELIUM
Microsoft Threat Intelligence Center (MSTIC) has uncovered a wide-scale malicious email campaign operated by NOBELIUM, the threat actor behind the attacks against SolarWinds, the SUNBURST backdoor, TEARDROP malware, GoldMax malware, and other related components.…
API Management and DevOps: Integrate a flawless API DevOps lifecycle with these tips https://medium.com/devops-dudes/api-management-and-devops-1ffd1b5b88ae
Medium
API Management and DevOps
Integrate a flawless API DevOps lifecycle with these tips
Decompiling Node.js in Ghidra https://swarm.ptsecurity.com/decompiling-node-js-in-ghidra/
Nice tips » Common Security Issues in Financially-Oriented Web Applications: A guideline for penetration testers https://www.nccgroup.com/globalassets/our-research/uk/images/common_security_issues_in_financially-orientated_web.pdf.pdf
Highly recommended! » FAQ: Difference between vulnerability, exploit and CVE https://gynvael.coldwind.pl/?lang=en&id=734
gynvael.coldwind.pl
FAQ: Difference between vulnerability, exploit and CVE
Hacker's guide to deep-learning side-channel attacks: the theory https://elie.net/blog/security/hacker-guide-to-deep-learning-side-channel-attacks-the-theory
elie.net
Hacker's guide to deep-learning side-channel attacks: the theory | blog post
Learn the concepts behind deep-learning side-channels attack, a powerful cryptanalysis technique, by using it to recover AES cryptographic keys from a hardware device.
Linux Internals: How /proc/self/mem writes to unwritable memory https://offlinemark.com/2021/05/12/an-obscure-quirk-of-proc/
offlinemark
Linux Internals: How /proc/self/mem writes to unwritable memory - offlinemark
Introduction An obscure quirk of the /proc/*/mem pseudofile is its “punch through” semantics. Writes performed through this file will succeed even if the destination virtual memory is marked unwritable. In fact, this behavior is intentional and actively used…
Patch Tuesday, June 2021 https://www.trustwave.com/en-us/resources/blogs/spiderlabs-blog/patch-tuesday-june-2021/
Trustwave
Patch Tuesday, June 2021
Summer is officially here and with it June's Patch Tuesday. This is a surprisingly light month with only 49 CVEs being patched and only five of those rated as "Critical". The list of "Critical" includes a Remote Code Execution (RCE) Microsoft's anti-malware…
I/O Rings – When One I/O Operation is Not Enough https://windows-internals.com/i-o-rings-when-one-i-o-operation-is-not-enough/
Exhaust EL1 memory from the app sandbox https://saaramar.github.io/iOS_memory_exhaustion_writeup/
Hunting for Suspicious Usage of Background Intelligent Transfer Service (BITS) https://blog.menasec.net/2021/05/hunting-for-suspicious-usage-of.html