Stepping Insyde System Management Mode https://research.nccgroup.com/2023/04/11/stepping-insyde-system-management-mode/
Nccgroup
Cyber Security Research
Cutting-edge cyber security research from NCC Group. Find public reports, technical advisories, analyses, & other novel insights from our global experts.
x64dbg XFG Marker Plugin: An x64dbg plugin which marks XFG call signatures as data https://github.com/m417z/x64dbg-xfg-marker
GitHub
GitHub - m417z/x64dbg-xfg-marker: An x64dbg plugin which marks XFG call signatures as data
An x64dbg plugin which marks XFG call signatures as data - m417z/x64dbg-xfg-marker
QueueJumper: Critical Unauthenticated RCE Vulnerability in MSMQ Service https://research.checkpoint.com/2023/queuejumper-critical-unauthorized-rce-vulnerability-in-msmq-service/
Check Point Research
QueueJumper: Critical Unauthorized RCE Vulnerability in MSMQ Service
Check Point Research recently discovered three vulnerabilities in the "Microsoft Message Queuing" service, commonly known as MSMQ. These vulnerabilities were disclosed to Microsoft and patched in the April Patch Tuesday update. The most severe of these, dubbed…
Nokoyawa ransomware attacks with Windows zero-day https://securelist.com/nokoyawa-ransomware-attacks-with-windows-zero-day/109483/
Securelist
Nokoyawa ransomware attacks with Windows zero-day
In February 2023, we found a zero-day exploit, supporting different versions and builds of Windows, including Windows 11. This particular zero-day was used by a sophisticated cybercrime group that carries out ransomware attacks.
SecurePwn Part 2: Leaking Remote Memory Contents (CVE-2023-22897) https://www.rcesecurity.com/2023/04/securepwn-part-2-leaking-remote-memory-contents-cve-2023-22897/
Pretalx Vulnerabilities: How to get accepted at every conference https://www.sonarsource.com/blog/pretalx-vulnerabilities-how-to-get-accepted-at-every-conference/
Sonarsource
Pretalx Vulnerabilities: How to get accepted at every conference
We recently discovered two vulnerabilities in pretalx and found a generic technique to gain code execution from a file write.
Finding Something New About CVE-2022-1388 https://vulncheck.com/blog/new-cve-2022-1388
VulnCheck
VulnCheck - Outpace Adversaries
Vulnerability intelligence that predicts avenues of attack with speed and accuracy.
Bypassing Windows Defender (10 Ways) https://www.fo-sec.com/articles/10-defender-bypass-methods
👍1
Remote Code Execution Vulnerability in Google They Are Not Willing To Fix https://giraffesecurity.dev/posts/google-remote-code-execution/
IPFS-tiny: attempting to take IPFS to Space https://libre.space/2023/04/12/ipfs-tiny/
Libre Space Foundation
IPFS-tiny: attempting to take IPFS to Space - Libre Space Foundation
IPFS-tiny attempts to take IPFS to space. It is an attempt made by Libre Space Foundation to make IPFS truly InterPlanetary.
nice repository » Gather and update all available and newest CVEs with their PoC https://github.com/trickest/cve
GitHub
GitHub - trickest/cve: Gather and update all available and newest CVEs with their PoC.
Gather and update all available and newest CVEs with their PoC. - trickest/cve
CVE-2019-8372: Local Privilege Elevation in LG Kernel Driver https://jackson_t.gitlab.io/lg-driver-lpe.html
How to Unpack Protected Android APK with Frida https://www.youtube.com/watch?v=PLX8_z0EmGw
YouTube
How to Unpack Protected Android APK with Frida
#androidpentest #dexdump #frida #apkunpacking #memdump
In this video we unpacked an APK file named AntiSplit-G2. All the classes in this application are protected using some kind of protector and the classes gets extracted into the memory as a de file by…
In this video we unpacked an APK file named AntiSplit-G2. All the classes in this application are protected using some kind of protector and the classes gets extracted into the memory as a de file by…
Windows LAPS - New Group Policy Settings https://www.kaidojarvemets.com/windows-laps-new-group-policy-settings/
Kaido Järvemets - Fuelled By Passion. Driven by Tech.
Windows LAPS – New Group Policy Settings - Kaido Järvemets
Explore the new Group Policy settings for Windows LAPS, providing IT admins with increased control over local administrator account passwords.
[Responsible Disclosure] How we could have deleted any Linkedin post https://www.pingsafe.com/blog/linkedin-vulnerability-delete-any-post
PingSafe
PingSafe
SentinelOne
Cloud
Protecting your cloud workloads from malicious attacks is critical to keep your business up and running. The Singularity Cloud Workload Security is a complete runtime protection solution for multi-cloud workloads that offers comprehensive security controls…
A Practical, AI-Generated Phishing PoC With ChatGPT https://curtbraz.medium.com/a-practical-ai-generated-phishing-poc-f81d3c3da76b
Medium
A Practical, AI-Generated Phishing PoC With ChatGPT
Intro
Memory corruption in JCRE: An unpatchable HSM may swallow your private key https://hardenedvault.net/blog/2023-04-18-java-card-runtime-memory-corruption/
hardenedvault.net
Memory corruption in JCRE: An unpatchable HSM may swallow your private key
Background The key has always been a core target of security protection.