Hacking a Roku TV to Control Lights https://blog.ammaraskar.com/roku-tv-philips-hues/
Ammar's Blog
Hacking a Roku TV to Control Lights
My blog, mostly about programming
CVE-2021-31166: A Wormable Code Execution Bug in HTTP.sys https://www.zerodayinitiative.com/blog/2021/5/17/cve-2021-31166-a-wormable-code-execution-bug-in-httpsys
Zero Day Initiative
Zero Day Initiative — CVE-2021-31166: A Wormable Code Execution Bug in HTTP.sys
In this excerpt of a Trend Micro Vulnerability Research Service vulnerability report, Kc Udonsi and Yazhi Wang of the Trend Micro Research Team detail a recent code execution vulnerability in the Microsoft Internet Information Services (IIS) for Windows.…
CERT Kaiju: binary analysis framework extension for the Ghidra software reverse engineering suite https://securityonline.info/kaiju-binary-analysis-framework/
Daily CyberSecurity
Stay ahead with Daily CyberSecurity. We deliver rapid zero-hour alerts and expert analysis on critical vulnerabilities, CVEs, and emerging cyber threats.
LNew sophisticated email-based attack from NOBELIUM https://www.microsoft.com/security/blog/2021/05/27/new-sophisticated-email-based-attack-from-nobelium/
Microsoft News
New sophisticated email-based attack from NOBELIUM
Microsoft Threat Intelligence Center (MSTIC) has uncovered a wide-scale malicious email campaign operated by NOBELIUM, the threat actor behind the attacks against SolarWinds, the SUNBURST backdoor, TEARDROP malware, GoldMax malware, and other related components.…
API Management and DevOps: Integrate a flawless API DevOps lifecycle with these tips https://medium.com/devops-dudes/api-management-and-devops-1ffd1b5b88ae
Medium
API Management and DevOps
Integrate a flawless API DevOps lifecycle with these tips
Decompiling Node.js in Ghidra https://swarm.ptsecurity.com/decompiling-node-js-in-ghidra/
Nice tips » Common Security Issues in Financially-Oriented Web Applications: A guideline for penetration testers https://www.nccgroup.com/globalassets/our-research/uk/images/common_security_issues_in_financially-orientated_web.pdf.pdf
Highly recommended! » FAQ: Difference between vulnerability, exploit and CVE https://gynvael.coldwind.pl/?lang=en&id=734
gynvael.coldwind.pl
FAQ: Difference between vulnerability, exploit and CVE
Hacker's guide to deep-learning side-channel attacks: the theory https://elie.net/blog/security/hacker-guide-to-deep-learning-side-channel-attacks-the-theory
elie.net
Hacker's guide to deep-learning side-channel attacks: the theory | blog post
Learn the concepts behind deep-learning side-channels attack, a powerful cryptanalysis technique, by using it to recover AES cryptographic keys from a hardware device.
Linux Internals: How /proc/self/mem writes to unwritable memory https://offlinemark.com/2021/05/12/an-obscure-quirk-of-proc/
offlinemark
Linux Internals: How /proc/self/mem writes to unwritable memory - offlinemark
Introduction An obscure quirk of the /proc/*/mem pseudofile is its “punch through” semantics. Writes performed through this file will succeed even if the destination virtual memory is marked unwritable. In fact, this behavior is intentional and actively used…
Patch Tuesday, June 2021 https://www.trustwave.com/en-us/resources/blogs/spiderlabs-blog/patch-tuesday-june-2021/
Trustwave
Patch Tuesday, June 2021
Summer is officially here and with it June's Patch Tuesday. This is a surprisingly light month with only 49 CVEs being patched and only five of those rated as "Critical". The list of "Critical" includes a Remote Code Execution (RCE) Microsoft's anti-malware…
I/O Rings – When One I/O Operation is Not Enough https://windows-internals.com/i-o-rings-when-one-i-o-operation-is-not-enough/
Exhaust EL1 memory from the app sandbox https://saaramar.github.io/iOS_memory_exhaustion_writeup/
Hunting for Suspicious Usage of Background Intelligent Transfer Service (BITS) https://blog.menasec.net/2021/05/hunting-for-suspicious-usage-of.html
Detecting and Mitigating CVE-2021-25737: EndpointSlice validation enables host network hijack https://sysdig.com/blog/cve-2021-25737-endpointslice/
Sysdig
Detecting and Mitigating CVE-2021-25737: EndpointSlice validation enables host network hijack – Sysdig
CVE-2021-25737 in Kubernetes kube-apiserver enables an authorised user to hijack pod traffic. Discover how it works, and how to mitigate it.
Good post to learn (and remember old times) >> Reversing Microsoft’s Windows95 Product Key Check Mechanism https://infosecwriteups.com/reversing-microsofts-windows95-product-key-check-mechanism-ca7e825014b6
Medium
Reversing Microsoft’s Windows95 Product Key Check Mechanism.
Reversing Microsoft’s Windows95 Product Key Check Mechanism A blast into the past to see what it took to be secure 25 years ago! Disclaimer Microsoft Windows95 is the registered property of …
Introducing Half-Double: New hammering technique for DRAM Rowhammer bug https://security.googleblog.com/2021/05/introducing-half-double-new-hammering.html
Google Online Security Blog
Introducing Half-Double: New hammering technique for DRAM Rowhammer bug
Research Team: Salman Qazi, Yoongu Kim, Nicolas Boichat, Eric Shiu & Mattias Nissler Today, we are sharing details around our discovery of ...
Nice reading » BIAS: Bluetooth Impersonation AttackS https://francozappa.github.io/about-bias/publication/antonioli-20-bias/antonioli-20-bias.pdf