GobRAT malware written in Go language targeting Linux routers https://blogs.jpcert.or.jp/en/2023/05/gobrat.html
JPCERT/CC Eyes
GobRAT malware written in Go language targeting Linux routers - JPCERT/CC Eyes
JPCERT/CC has confirmed attacks that infected routers in Japan with malware around February 2023. This blog article explains the details of the attack confirmed by JPCERT/CC and GobRAT malware, which was used in the attack. ### Attack flow up to...
WinDiff: open-source web-based tool to browse and compare symbol and type information of Microsoft Windows binaries across different versions of the OS https://windiff.vercel.app/ GitHub: https://github.com/ergrelet/windiff
GitHub
GitHub - ergrelet/windiff: Tool that allows comparing symbol, type and syscall information of Microsoft Windows binaries across…
Tool that allows comparing symbol, type and syscall information of Microsoft Windows binaries across different versions of the OS, using a Web UI and/or LLMs. - ergrelet/windiff
Meterpreter vs Modern EDR(s) https://redops.at/en/blog/meterpreter-vs-modern-edrs-in-2023
RedOps - English
Meterpreter vs Modern EDR(s) - RedOps
👍1
Don't Click That ZIP File! Phishers Weaponizing .ZIP Domains to Trick Victims https://thehackernews.com/2023/05/dont-click-that-zip-file-phishers.html
Fortinet Series 1 — Analysis of CVE-2022–40684 https://medium.com/@INTfinity/fortinet-series-1-analysis-of-cve-2022-40684-88870994e6e0
Medium
Fortinet Series 1 — Analysis of CVE-2022–40684
Introduction
FortiOS, FortiProxy, and FortiSwitchManager Authentication Bypass Technical Deep Dive (CVE-2022-40684) https://www.horizon3.ai/fortios-fortiproxy-and-fortiswitchmanager-authentication-bypass-technical-deep-dive-cve-2022-40684/
Horizon3.ai
FortiOS, FortiProxy, and FortiSwitchManager Authentication Bypass Technical Deep Dive (CVE-2022-40684)
Fortinet recently patched a critical authentication bypass vulnerability that gives an attacker the ability to login as an administrator,
Fortigate - Authentication Bypass Lead to Full Device Takeover https://labs.hakaioffsec.com/fortigate-authentication-bypass/
Hakai Offensive Security
Fortigate - Authentication Bypass Lead to Full Device Takeover
1Day vulnerability research by Hakai - Research Team
This post is about the journey to create a Proof-of-concept about CVE-2022-40684, this vulnerability has been assigned by Fortinet as an authentication bypass using an alternate path or channel vulnerability…
This post is about the journey to create a Proof-of-concept about CVE-2022-40684, this vulnerability has been assigned by Fortinet as an authentication bypass using an alternate path or channel vulnerability…
COMPSCI 390R
Reverse Engineering & Vulnerability Analysis (lectures and other material) https://pwn.umasscybersec.org/
Reverse Engineering & Vulnerability Analysis (lectures and other material) https://pwn.umasscybersec.org/
PentestGPT - A GPT-empowered Penetration Testing Tool https://www.kitploit.com/2023/05/pentestgpt-gpt-empowered-penetration.html
KitPloit - PenTest & Hacking Tools
PentestGPT - A GPT-empowered Penetration Testing Tool
Analysis of Attack Cases: From Korean VPN Installations to MeshAgent Infections https://asec.ahnlab.com/en/53267/
ASEC
Analysis of Attack Cases: From Korean VPN Installations to MeshAgent Infections - ASEC
Analysis of Attack Cases: From Korean VPN Installations to MeshAgent Infections ASEC
Shedding light on AceCryptor and its operation https://www.welivesecurity.com/2023/05/25/shedding-light-acecryptor-operation/
WeLiveSecurity
Shedding light on AceCryptor and its operation
ESET researchers reveal details about a prevalent cryptor that operates as a cryptor-as-a-service and is used by tens of malware families.
New macOS vulnerability, Migraine, could bypass System Integrity Protection https://www.microsoft.com/en-us/security/blog/2023/05/30/new-macos-vulnerability-migraine-could-bypass-system-integrity-protection/
Microsoft News
New macOS vulnerability, Migraine, could bypass System Integrity Protection
A new vulnerability could allow an attacker with root access to bypass SIP in macOS and perform arbitrary operations on a device.
STARFACE: Authentication with Password Hash Possible https://www.redteam-pentesting.de/en/advisories/rt-sa-2022-004/-starface-authentication-with-password-hash-possible
www.redteam-pentesting.de
RedTeam Pentesting - STARFACE: Authentication with Password Hash Possible
RedTeam Pentesting discovered that the web interface of STARFACE as well as its REST API allows authentication using the SHA512 hash of the password instead of the cleartext password. While storing password hashes instead of cleartext passwords in an application’s…
Printerlogic multiple vulnerabilities https://seclists.org/fulldisclosure/2023/May/16
seclists.org
Full Disclosure: Printerlogic multiple vulnerabilities
Operation Triangulation: iOS devices targeted with previously unknown malware https://securelist.com/operation-triangulation/109842/
Supply Chain Risk from Gigabyte App Center Backdoor https://eclypsium.com/blog/supply-chain-risk-from-gigabyte-app-center-backdoor/
Eclypsium | Supply Chain Security for the Modern Enterprise
Supply Chain Risk from Gigabyte App Center Backdoor
Eclypsium Research discovers that Gigabyte motherboards have an embedded backdoor in their firmware, which drops a Windows executable that can download and execute additional payloads insecurely. The backdoor affects gaming PCs and high-end computers.
NoirGate provides on-demand ephemeral anonymous shells secured by TOTP https://github.com/Shell-Company/Noirgate
GitHub
GitHub - Shell-Company/Noirgate: NoirGate provides on-demand ephemeral anonymous shells secured by TOTP
NoirGate provides on-demand ephemeral anonymous shells secured by TOTP - GitHub - Shell-Company/Noirgate: NoirGate provides on-demand ephemeral anonymous shells secured by TOTP
Restoring Dyld Memory Loading https://blog.xpnsec.com/restoring-dyld-memory-loading/
XPN Infosec Blog
@_xpn_ - Restoring Dyld Memory Loading
Up until recently, we've enjoyed in-memory loading of Mach-O bundles courtesy of dyld and its NSCreateObjectFileImageFromMemory/NSLinkModule API methods. And while these methods still exist today, there is a key difference.. memory modules are now persisted…
🔥2
Old Wine in the New Bottle: Mirai Variant Targets Multiple IoT Devices https://unit42.paloaltonetworks.com/mirai-variant-iz1h9/
Unit 42
Old Wine in the New Bottle: Mirai Variant Targets Multiple IoT Devices
We analyze Mirai variant IZ1H9, which targets IoT devices. Our overview includes campaigns observed, botnet configuration and vulnerabilities exploited.