On Ashton Kutcher and Secure Multi-Party Computation https://blog.cryptographyengineering.com/2023/05/11/on-ashton-kutcher-and-secure-multi-party-computation/
A Few Thoughts on Cryptographic Engineering
On Ashton Kutcher and Secure Multi-Party Computation
Back in March I was fortunate to spend several days visiting Brussels, where I had a chance to attend a panel on “chat control”: the new content scanning regime being considered by the …
Pwn2Own Toronto 22: Exploit Netgear Nighthawk RAX30 Routers https://claroty.com/team82/research/chaining-five-vulnerabilities-to-exploit-netgear-nighthawk-rax30-routers-at-pwn2own-toronto-2022
Claroty
Pwn2Own Toronto 22: Exploit Netgear Nighthawk RAX30 Routers
Unveiling IoT Vulnerabilities: A Deep Dive into Netgear RAX30 Router Research from Pwn2Own Competition | Discover the insights gained from our investigation into the security weaknesses of IoT devices, as we analyze the Netgear RAX30 router in the renowned…
Experts Detail New Zero-Click Windows Vulnerability for NTLM Credential Theft https://thehackernews.com/2023/05/experts-detail-new-zero-click-windows.html
RET2ASLR - Leaking ASLR from return instructions https://github.com/google/security-research/tree/master/pocs/cpus/ret2aslr
GitHub
security-research/pocs/cpus/ret2aslr at master · google/security-research
This project hosts security advisories and their accompanying proof-of-concepts related to research conducted at Google which impact non-Google owned code. - google/security-research
SSHD Injection and Password Harvesting
https://jm33.me/sshd-injection-and-password-harvesting.html
https://jm33.me/sshd-injection-and-password-harvesting.html
jm33_ng
SSHD Injection and Password Harvesting
TL;DR The source code of this idea is available on GitHub And the weaponized version is available in emp3r0r Use echo 'print __libc_dlopen_mode("/path/to/library.so", 2)' | gdb -p <PID> for process injection Write a shared library to inject into sshd process…
The printer goes brrrrr, again! https://www.synacktiv.com/publications/the-printer-goes-brrrrr-again
Synacktiv
The printer goes brrrrr, again!
Prompt injection explained, with video, slides, and a transcript https://simonwillison.net/2023/May/2/prompt-injection-explained/
Simon Willison’s Weblog
Prompt injection explained, with video, slides, and a transcript
I participated in a webinar this morning about prompt injection, organized by LangChain and hosted by Harrison Chase, with Willem Pienaar, Kojin Oshiba (Robust Intelligence), and Jonathan Cohen and Christopher …
Linux ptrace introduction AKA injecting into sshd for fun https://blog.xpnsec.com/linux-process-injection-aka-injecting-into-sshd-for-fun/
XPN Infosec Blog
@_xpn_ - Linux ptrace introduction AKA injecting into sshd for fun
If there is one thing I've come to appreciate over this past few weeks, it's just how much support you are provided from the Win32 API. That being said, I wanted to tackle some Linux process injection, with the aim of loading a shared object into another…
Testing a new encrypted messaging app's extraordinary claims https://crnkovic.dev/testing-converso/
crnkovic.dev
Testing a new encrypted messaging app's extraordinary claims
How I breached a nonexistent database and found every private key in a 'state-of-the-art' encrypted messenger.
Fork off: Three ways to deal with forking processes https://www.skullsecurity.org/2023/fork-off-three-ways-to-deal-with-forking-processes
SkullSecurity Blog
Fork off: Three ways to deal with forking processes
Have you ever tested a Linux application that forks into multiple processes? Isn’t it a pain? Whether you’re debugging, trying to see a process crash, or trying to write an exploit, it can be super duper annoying! In a few days, I’m giving a talk at NorthSec…
Snooker Token Hack Analysis https://blog.solidityscan.com/snooker-token-hack-analysis-acd89cce6311
Medium
Snooker Token Hack Analysis
Overview:
New phishing-as-a-service tool “Greatness” already seen in the wild https://blog.talosintelligence.com/new-phishing-as-a-service-tool-greatness-already-seen-in-the-wild/
Cisco Talos
New phishing-as-a-service tool “Greatness” already seen in the wild
Greatness incorporates features seen in some of the most advanced PaaS offerings, such as multi-factor authentication (MFA) bypass, IP filtering and integration with Telegram bots.
47% of all internet traffic came from bots in 2022 https://www.securitymagazine.com/articles/99339-47-of-all-internet-traffic-came-from-bots-in-2022?v=preview
Securitymagazine
47% of all internet traffic came from bots in 2022
A new report reveals that in 2022, 47.4% of all internet traffic came from bots, a 5.1% increase over the previous year. The same report showed that human traffic, at 52.6%, decreased to its lowest level in eight years.
This week, Imperva released its 10th…
This week, Imperva released its 10th…
Kernel Object Names Lifetime https://scorpiosoftware.net/2023/05/15/kernel-object-names-lifetime/
Pavel Yosifovich
Kernel Object Names Lifetime
Much of the Windows kernel functionality is exposed via kernel objects. Processes, threads, events, desktops, semaphores, and many other object types exist. Some object types can have string-based …
CS:GO: From Zero to 0-day https://neodyme.io/blog/csgo_from_zero_to_0day/
neodyme.io
CS:GO: From Zero to 0-day
We identified three independent remote code execution (RCE) vulnerabilities in the popular Counter-Strike: Global Offensive game. Each vulnerability can be triggered when the game client connects to our malicious python CS:GO server. This post details our…
You’ve been kept in the dark (web): exposing Qilin’s RaaS program https://www.group-ib.com/blog/qilin-ransomware/?utm_source=twitter&utm_campaign=qilin-ransomware&utm_medium=social
Group-IB
The Qilin Ransomware: Analysis and Protection Strategies
Discover how Qilin ransomware threatens cybersecurity. Learn prevention tips and stay protected. ✓ Read more now and safeguard your data!
2023 ransomware insights https://assets.barracuda.com/assets/docs/dms/2023-Ransomware-insights-report.pdf
Linux IPv6 "Route of Death" 0day https://www.interruptlabs.co.uk/articles/linux-ipv6-route-of-death
Quasar Rat Analysis - Identification of 64 Quasar Servers Using Shodan and Censys https://embee-research.ghost.io/hunting-quasar-rat-shodan/
Embee Research
How To Track Quasar Rat C2 Infrastructure Using TLS Certificates
Extraction of Quasar C2 configuration via Dnspy, and using this information to pivot to additional servers utilising Shodan and Censys.
rax30 patch diff analysis & nday exploit for zdi-23-496 https://blog.coffinsec.com/nday/2023/05/12/rax30-patchdiff-nday-analysis.html
hyprblog
RAX30 Patch Diff Analysis & Nday Exploit for ZDI-23-496
patch diff analysis of the latest patches for the netgear rax30 and an nday exploit for one of them (ZDI-23-496)