Escaping misconfigured VSCode extensions https://blog.trailofbits.com/2023/02/21/vscode-extension-escape-vulnerability/
The Trail of Bits Blog
Escaping misconfigured VSCode extensions
TL;DR: This two-part blog series will cover how I found and disclosed three vulnerabilities in VSCode extensions and one vulnerability in VSCode itself (a security mitigation bypass assigned CVE-2022-41042 and awarded a $7,500 bounty). We will identify the…
HTML Smuggling: Recent observations of threat actor techniques https://blog.delivr.to/html-smuggling-recent-observations-of-threat-actor-techniques-74501d5c8a06
Medium
HTML Smuggling: Recent observations of threat actor techniques
HTML smuggling isn’t a new technique by any means, but its utility and flexibility make it a potent technique that still proves effective…
The blog post on our latest research is now live! We have developed a tool to improve the extraction of Windows modules using a single or multiple memory dumps https://reversea.me/index.php/module-extraction-dll-hijacking-detection-single-multiple-memory-dumps/ (short summary in the tweet: https://twitter.com/reverseame/status/1638516729310597124)
ICS and OT Vulnerabilities Analysis for 2022 https://claroty.com/resources/reports/state-of-xiot-security-2h-2022
Claroty
Report: State of XIoT Security: 2H 2022
Uncover the latest trends in the State of XIoT Security Report for 2H 2022. Discover the changing landscape of vulnerabilities in OT, IoT, and IoMT.
Raspberry Robin’s Roshtyak: A Little Lesson in Trickery https://decoded.avast.io/janvojtesek/raspberry-robins-roshtyak-a-little-lesson-in-trickery/?s=09
Avast Threat Labs
Raspberry Robin’s Roshtyak: A Little Lesson in Trickery - Avast Threat Labs
We take a deep dive into Roshtyak, the DLL backdoor payload associated with Raspberry Robin. Roshtyak is full of anti-analysis tricks. Some are well-known, and some we have never seen before. From a technical perspective, the lengths Roshtyak takes to protect…
Cyber Challenges for Students! (intended for middle school students, high school students, and anybody else interested in learning technical skills in cybersecurity) https://316ctf.com/
316ctf
Cyber Challenges for Students! | 316ctf
316ctf - Cybersecurity CTF Challenges for High School and Middle School Students
Reverse Engineering The Apple Lightning Connector https://hackaday.com/2023/02/22/reverse-engineering-the-apple-lightning-connector/
Hackaday
Reverse Engineering The Apple Lightning Connector
A frequent contributor to the hacker community, [stacksmashing] has prepared an excellent instructional video on reverse engineering Apple’s Lighting connector proprietary protocol. The video…
A Primer On Slowable Encoders https://research.nccgroup.com/2023/02/20/a-primer-on-slowable-encoders/
Hardening Firmware Across the Android Ecosystem https://security.googleblog.com/2023/02/hardening-firmware-across-android.html
Google Online Security Blog
Hardening Firmware Across the Android Ecosystem
Posted by Roger Piqueras Jover, Ivan Lozano, Sudhi Herle, and Stephan Somogyi, Android Team A modern Android powered smartphone is a comp...
OWASP Kubernetes Top 10 https://sysdig.com/blog/top-owasp-kubernetes/
Verify first-party Microsoft applications in sign-in reports https://learn.microsoft.com/en-us/troubleshoot/azure/active-directory/verify-first-party-apps-sign-in
Docs
Verify first-party Microsoft applications in sign-in reports
Describes how to verify first-party Microsoft applications in sign-in reports.
CVE-2023-24998: Apache Commons FileUpload and Tomcat DoS Flaw https://securityonline.info/cve-2023-24998-apache-commons-fileupload-and-tomcat-dos-flaw/
Cybersecurity News
CVE-2023-24998: Apache Commons FileUpload and Tomcat DoS Flaw
Apache Tomcat was vulnerable to Apache Commons FileUpload flaw CVE-2023-24998 as there was no limit to the number of request parts processed
👍1
Security Code Review With ChatGPT https://research.nccgroup.com/2023/02/09/security-code-review-with-chatgpt/
Vulnerability write-up - "Dangerous assumptions" https://www.codean.io/blog/vulnerability-write-up---%22dangerous-assumptions%22
Introduction to SSRF Exploitation: A Practical Tutorial for Ethical Hackers — StackZero https://infosecwriteups.com/introduction-to-ssrf-exploitation-a-practical-tutorial-for-ethical-hackers-stackzero-385c02bd28f2
Medium
Introduction to SSRF Exploitation: A Practical Tutorial for Ethical Hackers — StackZero
Introduction to SSRF covering its mechanics, techniques, and effective countermeasures to defend against such attacks.
The Stack Series: The X64 Stack https://offensivecraft.wordpress.com/2023/02/11/the-stack-series-the-x64-stack/
offensivecraft
The Stack Series: The X64 Stack
Overview of x64 stack static RSP On x64 CPU, RSP register serves as both frame pointer and stack pointer, all the stack references are performed based on RSP as a result both local variables and pa…
NtQueueApcThreadEx NTDLL Gadget Injection https://github.com/LloydLabs/ntqueueapcthreadex-ntdll-gadget-injection
GitHub
GitHub - LloydLabs/ntqueueapcthreadex-ntdll-gadget-injection: This novel way of using NtQueueApcThreadEx by abusing the ApcRoutine…
This novel way of using NtQueueApcThreadEx by abusing the ApcRoutine and SystemArgument[0-3] parameters by passing a random pop r32; ret gadget can be used for stealthy code injection. - LloydLabs...
👍1
Cybercriminals stung as HIVE infrastructure shut down https://www.europol.europa.eu/media-press/newsroom/news/cybercriminals-stung-hive-infrastructure-shut-down
Europol
Cybercriminals stung as HIVE infrastructure shut down – Europol supported German, Dutch and US authorities to shut down the servers…
In the last year, HIVE ransomware has been identified as a major threat as it has been used to compromise and encrypt the data and computer systems of large IT and oil multinationals in the EU and the USA. Since June 2021, over 1 500 companies from over 80…