Lemon Duck brings cryptocurrency miners back into the spotlight https://blog.talosintelligence.com/2020/10/lemon-duck-brings-cryptocurrency-miners.html
Cisco Talos Blog
Lemon Duck brings cryptocurrency miners back into the spotlight
By Vanja Svajcer, with contributions from Caitlin Huey.
* We are used to ransomware attacks and big-game hunting making headlines, but there are still methods adversaries use to monetize their efforts in less intrusive ways.
* Cisco Talos recently recorded…
* We are used to ransomware attacks and big-game hunting making headlines, but there are still methods adversaries use to monetize their efforts in less intrusive ways.
* Cisco Talos recently recorded…
How I Hacked Facebook Again! Unauthenticated RCE on MobileIron MDM https://blog.orange.tw/2020/09/how-i-hacked-facebook-again-mobileiron-mdm-rce.html
Orange Tsai
How I Hacked Facebook Again! Unauthenticated RCE on MobileIron MDM
📌 [ 繁體中文 | English ] Hi, it’s a long time since my last article. This new post is about my research this March, which talks about how I found vulnerabilities on a leading Mobile Device Management
iOS Chromium Overlooked and Underappreciated https://microsoftedge.github.io/edgevr/posts/Hacking-Chrome-iOS/
Microsoft Browser Vulnerability Research
iOS Chromium Overlooked and Underappreciated
A Bold New Frontier As part of Microsoft’s Edge’s move to using Chromium as the backbone of our browsers, we are updating all our browser product lines, including the iOS version. As security engineers on the Microsoft Edge team, one of our responsibilities…
Hola! Hemos habilitado las discusiones en el canal, por si alguien quiere dejar algún comentario sobre los post que enviamos
TroubleGrabber: El malware que utiliza Discord como servidor de control https://unaaldia.hispasec.com/2020/11/troublegrabber-el-malware-que-utiliza-discord-como-servidor-de-control.html/amp?__twitter_impression=true
Una al Día
TroubleGrabber: El malware que utiliza Discord como servidor de control — Una al Día
Recientemente se han detectado nuevas muestras de malware que están aprovechando los servicios de Discord como servidor de control, que recibe la información privada robada de las máquinas infectad…
Major Vulnerabilities Discovered in Qualcomm QCMAP https://www.vdoo.com/blog/qualcomm-qcmap-vulnerabilities
Malwoverview is a first response tool used for downloading and screening malware samples, suspicious URLs, IP address, domains https://github.com/alexandreborges/malwoverview
GitHub
GitHub - alexandreborges/malwoverview: Malwoverview is a first response tool for threat hunting across VirusTotal, Hybrid Analysis…
Malwoverview is a first response tool for threat hunting across VirusTotal, Hybrid Analysis, URLHaus, Polyswarm, Malshare, Alien Vault, Malpedia, Malware Bazaar, ThreatFox, Triage, IPInfo, Shodan, ...
Chrome: Use-after-free in XRSystem::FocusedFrameChanged and FocusController::NotifyFocusChangedObservers https://bugs.chromium.org/p/project-zero/issues/detail?id=2069
#Instagram_RCE: Code Execution Vulnerability in Instagram App for Android and iOS https://research.checkpoint.com/2020/instagram_rce-code-execution-vulnerability-in-instagram-app-for-android-and-ios/
Check Point Research
#Instagram_RCE: Code Execution Vulnerability in Instagram App for Android and iOS - Check Point Research
Research by: Gal Elbaz Background Instagram, with over 100+ million photos uploaded every day, is one of the most popular social media platforms. For that reason, we decided to audit the security of the Instagram app for both Android and iOS operating systems.…
Espressif ESP32: Bypassing Encrypted Secure Boot (CVE-2020-13629) https://raelize.com/posts/espressif-esp32-bypassing-encrypted-secure-boot-cve-2020-13629/
Secret fragments: Remote code execution on Symfony based websites https://www.ambionics.io/blog/symfony-secret-fragment
Vulnerabilities in ATM Milano's mobile app https://blog.jacopojannone.com/en/post/atm-app-vulnerability/
MindShaRE: How to “Just Emulate It With QEMU https://www.zerodayinitiative.com/blog/2020/5/27/mindshare-how-to-just-emulate-it-with-qemu
Zero Day Initiative
Zero Day Initiative — MindShaRE: How to “Just Emulate It With QEMU”
MindShaRE is our periodic look at various reverse engineering tips and tricks. The goal is to keep things small and discuss some everyday aspects of reversing. You can view previous entries in this series here .
Researchers Warn of Critical Flaw Affecting Industrial Automation Systems https://thehackernews.com/2020/11/researchers-warn-of-critical-flaws.html
Twitter Investigation Report: Report on Investigation of Twitter’s July 15, 2020 Cybersecurity Incident and the Implications for Election Security
https://www.dfs.ny.gov/Twitter_Report
https://www.dfs.ny.gov/Twitter_Report
CVE-2020-15157 "ContainerDrip" Write-up https://darkbit.io/blog/cve-2020-15157-containerdrip
Finding New Bluetooth Low Energy Exploits via Reverse Engineering Multiple Vendors' Firmwares (BH USA'20 presentation) https://i.blackhat.com/USA-20/Wednesday/us-20-Kovah-Finding-New-Bluetooth-Low-Energy-Exploits-Via-Reverse-Engineering-Multiple-Vendors-Firmwares.pdf