How we broke PHP, hacked Pornhub and earned $20,000 https://www.evonide.com/how-we-broke-php-hacked-pornhub-and-earned-20000-dollar/
Evonide
How we broke PHP, hacked Pornhub and earned $20,000 | Bug Bounties - Evonide
We audited Pornhub, then PHP and broke both. In particular, we have gained remote code execution on pornhub.com and have earned a $20,000 bug bounty.
How scammers employ IPFS for email phishing https://securelist.com/ipfs-phishing/109158/
Securelist
Use of IPFS in mass and targeted phishing campaigns
Attackers put phishing HTML files in IPFS thus cutting back on web hosting costs. IPFS is used in both mass phishing and targeted (spearphishing) campaigns.
Breaking Pedersen Hashes in Practice https://research.nccgroup.com/2023/03/22/breaking-pedersen-hashes-in-practice/
Nccgroup
Cyber Security Research
Cutting-edge cyber security research from NCC Group. Find public reports, technical advisories, analyses, & other novel insights from our global experts.
👍1
Exploiting: Buffer overflow in Xiongmai DVRs https://blog.ret2.me/post/2022-01-26-exploiting-xiongmai-dvrs/
ret2.me
Exploiting: Buffer overflow in Xiongmai DVRs | ret2.me
As part of my work at FortNet I’ve had the chance to research some embedded devices. This provided a good chance to learn more about the ARM architecture and the differences between ARM and x86 exploitation.
Often, IoT is overlooked in threat assessments…
Often, IoT is overlooked in threat assessments…
OneNote Embedded URL Abuse https://blog.nviso.eu/2023/03/27/onenote-embedded-url-abuse/
NVISO Labs
OneNote Embedded URL Abuse
Whilst Microsoft is fixing the embedded files feature in OneNote I decided to abuse a whole other feature. Embedded URLs. Turns out this is something they may also have to fix.
Malware AV/VM evasion - part 14: encrypt/decrypt payload via A5/1. Bypass Kaspersky AV. Simple C++ example https://cocomelonc.github.io/malware/2023/03/24/malware-av-evasion-14.html
cocomelonc
Malware AV/VM evasion - part 14: encrypt/decrypt payload via A5/1. Bypass Kaspersky AV. Simple C++ example.
﷽
👍1
BlackGuard stealer extends its capabilities in new variant https://cybersecurity.att.com/blogs/labs-research/blackguard-stealer-extends-its-capabilities-in-new-variant
LevelBlue
BlackGuard stealer extends its capabilities in new variant
Explore the extended capabilities of the new BlackGuard Stealer variant, a growing threat in cybersecurity.
Malicious Actors Use Unicode Support in Python to Evade Detection https://blog.phylum.io/malicious-actors-use-unicode-support-in-python-to-evade-detection
Phylum Research | Software Supply Chain Security
Malicious Actors Use Unicode Support in Python to Evade Detection
Phylum uncovers a threat actor taking advantage of how the Python interpreter handles Unicode to obfuscate their malware.
Guidance for investigating attacks using CVE-2023-23397 https://www.microsoft.com/en-us/security/blog/2023/03/24/guidance-for-investigating-attacks-using-cve-2023-23397/
Microsoft News
Guidance for investigating attacks using CVE-2023-23397
This guide provides steps to assess whether users have been targeted or compromised by threat actors exploiting CVE-2023-23397.
Bypassing Email Filter which leads to SQL Injection https://dimazarno.medium.com/bypassing-email-filter-which-leads-to-sql-injection-e57bcbfc6b17
Medium
Bypassing Email Filter which leads to SQL Injection
Akhirnya nulis lagi, soalnya temuan ini menurut saya lumayan menarique jadi pengen sharing, maaf yang pakai google translate, artikel ini…
The Case For Improving Crypto Wallet Security https://blog.doyensec.com/2023/03/28/wallet-info.html
Doyensec
The Case For Improving Crypto Wallet Security
A large number of today’s crypto scams involve some sort of phishing attack, where the user is tricked into visiting a shady/malicious web site and connecting their wallet to it. The main goal is to trick the user into signing a transaction which will ultimately…
Investigate malicious Windows logon by visualizing and analyzing Windows event log https://github.com/JPCERTCC/LogonTracer
GitHub
GitHub - JPCERTCC/LogonTracer: Investigate malicious Windows logon by visualizing and analyzing Windows event log
Investigate malicious Windows logon by visualizing and analyzing Windows event log - JPCERTCC/LogonTracer
❤1
How LNK Files Are Abused by Threat Actors https://www.intezer.com/blog/malware-analysis/how-threat-actors-abuse-lnk-files/
Intezer
How LNK Files Are Abused by Threat Actors
LNK files (aka Windows shortcuts) may seem simple, but threat actors can use them to execute other binaries and inflict great harm.
Exploiting Race conditions with Nuclei https://blog.projectdiscovery.io/exploiting-race-conditons/ (demo here: https://github.com/projectdiscovery/php-app-race-condition)
ProjectDiscovery
Exploiting Race conditions with Nuclei — ProjectDiscovery Blog
What Is a Race Condition Vulnerability?
A race condition attack happens when a computing system that’s designed to
handle tasks in a specific sequence is forced to perform two or more operations
simultaneously. This technique takes advantage of a time gap…
A race condition attack happens when a computing system that’s designed to
handle tasks in a specific sequence is forced to perform two or more operations
simultaneously. This technique takes advantage of a time gap…
Copy-paste heist or clipboard-injector attacks on cryptousers https://securelist.com/copy-paste-heist-clipboard-injector-targeting-cryptowallets/109186/
Rhadamanthys: The “Everything Bagel” Infostealer https://research.checkpoint.com/2023/rhadamanthys-the-everything-bagel-infostealer/
Check Point Research
Rhadamanthys: The “Everything Bagel” Infostealer - Check Point Research
Key Takeaways Background What causes a man to wake up one day and say, “I’m going to build my own malware and go sell it to cybercriminals on the dark web”? After all, the market is saturated with competitors, and the product is judged on the one sole metric…
pipe_buffer arbitrary read write https://www.interruptlabs.co.uk/articles/pipe-buffer
DEF CON 30 - Mickey Shkatov, Jesse Michael - One Bootloader to Load Them All https://www.youtube.com/watch?v=99t7wEYs8h0
YouTube
DEF CON 30 - Mickey Shkatov, Jesse Michael - One Bootloader to Load Them All
Introduced in 2012, Secure Boot - the OG trust in boot - has become a foundational rock in modern computing and is used by millions of UEFI-enabled computers around the world due to its integration in their BIOS.
The way Secure Boot works is simple and…
The way Secure Boot works is simple and…
3CX Supply Chain Compromise Leads to ICONIC Incident https://www.volexity.com/blog/2023/03/30/3cx-supply-chain-compromise-leads-to-iconic-incident/
Volexity
3CX Supply Chain Compromise Leads to ICONIC Incident
[Update: Following additional analysis of shellcode used in ICONIC, in conjunction with other observations from the wider security community, Volexity now attributes the activity described in this post to the […]
Mélofée: a new alien malware in the Panda's toolset targeting Linux hosts https://blog.exatrack.com/melofee/