Over 70% of ICS Vulnerabilities Disclosed in First Half of 2020 Remotely Exploitable https://www.securityweek.com/over-70-ics-vulnerabilities-disclosed-first-half-2020-remotely-exploitable
Securityweek
Over 70% of ICS Vulnerabilities Disclosed in First Half of 2020 Remotely Exploitable | SecurityWeek.Com
Over 70% of the ICS vulnerabilities disclosed in the first half of 2020 were remotely exploitable, Claroty reports
Microsoft Joins Open Source Security Foundation https://www.microsoft.com/security/blog/2020/08/03/microsoft-open-source-security-foundation-founding-member-securing-open-source-software/
Microsoft Security Blog
Microsoft Joins Open Source Security Foundation | Microsoft Security Blog
We're excited to announce that that Microsoft is joining industry partners to create the Open Source Security Foundation (OpenSSF), a new cross-industry collaboration hosted at the Linux Foundation.
How to Create Unlimited Rotating IP Addresses with AWS https://medium.com/@devinjaystokes/using-proxycannon-ng-to-create-unlimited-rotating-proxies-fccffa70a728
Medium
How to Create Unlimited Rotating IP Addresses with AWS
We can increase our capabilities to distribute our HTTP requests over a larger and larger pool of networks.
Removing Kernel Callbacks Using Signed Drivers https://br-sn.github.io/Removing-Kernel-Callbacks-Using-Signed-Drivers/
CPR Anti-Debug Encyclopedia: The Check Point Anti-Debug Techniques Repository https://research.checkpoint.com/2020/cpr-anti-debug-encyclopedia-the-check-point-anti-debug-techniques-repository/
Check Point Research
CPR Anti-Debug Encyclopedia: The Check Point Anti-Debug Techniques Repository - Check Point Research
Debugging is the essential part of malware analysis. Every time we need to drill down into malware behavior, restore encryption methods or examine communication protocols – generally, whenever we need to examine memory at a certain moment of time – we use…
A Ghidra framework for iOS kernelcache reverse engineering https://github.com/0x36/ghidra_kernelcache/
GitHub
GitHub - 0x36/ghidra_kernelcache: a Ghidra framework for iOS kernelcache reverse engineering
a Ghidra framework for iOS kernelcache reverse engineering - 0x36/ghidra_kernelcache
Netenum - A Tool To Passively Discover Active Hosts On A Network https://www.kitploit.com/2020/08/netenum-tool-to-passively-discover.html
KitPloit - PenTest & Hacking Tools
Netenum - A Tool To Passively Discover Active Hosts On A Network
Attacks on Implementations of Secure Systems --> handbook of the course taught in 2020 at Ben-Gurion University by Dr. Yossi Oren https://github.com/Yossioren/AttacksonImplementationsCourseBook
GitHub
GitHub - Yossioren/AttacksonImplementationsCourseBook
Contribute to Yossioren/AttacksonImplementationsCourseBook development by creating an account on GitHub.
Exploiting Android Messengers with WebRTC: Part 2 https://googleprojectzero.blogspot.com/2020/08/exploiting-android-messengers-part-2.html
projectzero.google
Exploiting Android Messengers with WebRTC: Part 2
Posted by Natalie Silvanovich, Project ZeroThis is a three-part series on exploiting messenger ap...
The Current State of Exploit Development, Part 1
https://www.crowdstrike.com/blog/state-of-exploit-development-part-1/
https://www.crowdstrike.com/blog/state-of-exploit-development-part-1/
The Art Of Mac Malware https://taomm.org/
taomm.org
The Art of Mac Malware
Books about Mac malware (by Patrick Wardle)
Demystifying Modern Windows Rootkits #BlackHatUSA #2020 https://billdemirkapi.me/slides/Demystifying-Modern-Windows-Rootkits-BH.pdf
So you've decided you want to write a Windows rootkit. Good thing this chap's just demystified it in a talk https://www.theregister.com/2020/08/07/def_con_demirkapi/
The Register
So you've decided you want to write a Windows rootkit. Good thing this chap's just demystified it in a talk
Demirkapi shows how drivers can be misused for deep pwnage
Another interesting talk of #BlackHatUSA #2020 "Reversing the Root: Identifying the Exploited Vulnerability in 0-days Used In-The-Wild" https://github.com/maddiestone/ConPresentations/blob/master/BH2020.ReversingTheRoot.pdf
A Brief History of Recent Advances in IPv6 Security, Part I: Addressing https://www.si6networks.com/2020/08/06/a-brief-history-of-recent-advances-in-ipv6-security-part-i/
Windows Print Spooler Patch Bypass Re-Enables Persistent Backdoor https://www.zerodayinitiative.com/blog/2020/8/11/windows-print-spooler-patch-bypass-re-enables-persistent-backdoor
Zero Day Initiative
Zero Day Initiative — Windows Print Spooler Patch Bypass Re-Enables Persistent Backdoor
In May 2020, Microsoft patched CVE-2020-1048 , a critical privilege escalation bug in Windows. Through this vulnerability, an attacker with the ability to execute low-privileged code on a Windows machine can easily establish a persistent backdoor, allowing…
Robots, Oracles and Protocols; Breaking Cryptography Through Information Leakage https://medium.com/dataseries/robots-oracles-and-protocols-breaking-cryptography-through-information-leakage-3a1e73c9483a
Medium
A Guided Tour of Adaptive Chosen Ciphertext Attacks
The field of Cryptography is amongst the most important in all of academia, while also being the most difficult to get right. Being…
Analyzing a buffer overflow in the DLINK DIR-645 with Qiling framework and Ghidra https://nahueldsanchez.wordpress.com/2020/08/10/analizing-a-buffer-overflow-in-the-dlink-dir-645-with-qiling-framework-and-ghidra/
Naah's blog
Analyzing a buffer overflow in the DLINK DIR-645 with Qiling framework and Ghidra
Over the last couple of weeks I’ve been playing with Qiling framework, a super interesting project that I recommend you to give a try. As I think that the best way to learn is doing, I wanted…
How Malicious Tor Relays are Exploiting Users in 2020 (Part I) https://medium.com/@nusenu/how-malicious-tor-relays-are-exploiting-users-in-2020-part-i-1097575c0cac
Medium
How Malicious Tor Relays are Exploiting Users in 2020 (Part I)
>23% of the Tor network’s exit capacity has been attacking Tor users
Course materials for Advanced Binary Deobfuscation by NTT Secure Platform Laboratories https://github.com/malrev/ABD
GitHub
GitHub - malrev/ABD: Course materials for Advanced Binary Deobfuscation by NTT Secure Platform Laboratories
Course materials for Advanced Binary Deobfuscation by NTT Secure Platform Laboratories - malrev/ABD