Vulnerabilities and tools for the PAX Payment Devices, including D200, S80, S300, S800, S900, S920 https://git.lsd.cat/g/pax-pwn
Gitea: Git with a cup of tea
pax-pwn
Vulnerabilities and tools for the PAX Payment Devices, including D200, S80, S300, S800, S900, S920
Malware analysis report: Abaddon RAT using Discord as a C2 https://github.com/MalPhobic/MalwareReports/blob/main/AbbadonRAT/Abbadon_RAT.pdf
GitHub
MalwareReports/AbbadonRAT/Abbadon_RAT.pdf at main · MalPhobic/MalwareReports
Contribute to MalPhobic/MalwareReports development by creating an account on GitHub.
paradoxiaRAT: Native Windows Remote Access Tool https://securityonline.info/paradoxiarat-native-windows-remote-access-tool/
Exploiting SIGRed (CVE-2020–1350) on Windows Server 2012/2016/2019 https://datafarm-cybersecurity.medium.com/exploiting-sigred-cve-2020-1350-on-windows-server-2012-2016-2019-80dd88594228
Medium
Exploiting SIGRed (CVE-2020–1350) on Windows Server 2012/2016/2019
by Worawit Wangwarunyoo , DATAFARM Research Team, Datafarm Company Limited
NAT Slipstreaming allows an attacker to remotely access any TCP/UDP service bound to a victim machine, bypassing the victim's NAT/firewall, just by the victim visiting a website https://samy.pl/slipstream/
samy.pl
samy kamkar - NAT Slipstreaming v2.0
exploit NAT/firewalls to access TCP/UDP services bound to any system behind victim's NAT
Exploiting HTTP Request Smuggling (with a real-world example) https://gupta-bless.medium.com/exploiting-http-request-smuggling-71a629e68dfe
Medium
Exploiting HTTP Request Smuggling
With a real-world example:
We have published a new blog post regarding how the heap works » "Digging into malloc" https://reversea.me/index.php/digging-into-malloc/ ; enjoy the (_not so light_) reading! :)
Debugging Bootloader and Application with one Debug Session https://mcuoneclipse.com/2020/11/03/debugging-bootloader-and-application-with-one-debug-session/
MCU on Eclipse
Debugging Bootloader and Application with one Debug Session
If having a boot loader running on a micro-controller, it is very useful if both the boot loader and the loaded application can be debugged together:
GDA Vulnerability Scanner https://github.com/charles2gan/GDA-android-reversing-Tool/wiki/GDA-Vulnerability-Scanner
GitHub
GDA Vulnerability Scanner
GDA is a new fast and powerful decompiler for the APK, DEX, ODEX, OAT, JAR, AAR and CLASS file. which supports malicious behavior detection, privacy leaking detection, vulnerability detection, path...
Leaked .git folder leads to RCE https://james-clee.com/2020/11/01/leaked-git-folder-leads-to-rce/
James Clee
Leaked .git folder leads to RCE
Today I wanted to share my first big success story from my bug bounty attempts. Although the issue has been fixed, the report has not been officially disclosed yet. Therefore, the target today will…
Life and Death of a Linux Process https://natanyellin.com/posts/life-and-death-of-a-linux-process/
Natanyellin
Life and Death of a Linux Process
This post contains a rough sketch of the life and death of a process on Linux. It is a first-order approximation only. A later post will refine this further and provide a more precise description, adding details about pid namespaces, obscure syscalls, and…
Zerologon is now detected by Microsoft Defender for Identity https://www.microsoft.com/security/blog/2020/11/30/zerologon-is-now-detected-by-microsoft-defender-for-identity/
Microsoft Security Blog
Zerologon is now detected by Microsoft Defender for Identity | Microsoft Security Blog
A new detection allows Microsoft Defender for Identity to detect adversaries as they try to exploit the Zerologon vulnerability (CVE-2020-1472) against your domain controllers.
How I found a Tor vulnerability in Brave Browser, reported it, watched it get patched, got a CVE (CVE-2020-8276) and a small bounty, all in one working day https://community.disclose.io/t/how-i-found-a-tor-vulnerability-in-brave-browser-reported-it-watched-it-get-patched-got-a-cve-cve-2020-8276-and-a-small-bounty-all-in-one-working-day/65
@disclose_io Community Forum
How I found a TOR vulnerability in Brave Browser, reported it, watched it get patched, got a CVE (CVE-2020-8276), and a small bounty…
Recently, I discovered a small but potentially devastating vulnerability in the new Tor feature of the Brave browser. As of November 2nd 2020, Brave monthly users have massively increased their browser market share to 20 Million Monthly Active Users + 7…
grap: Automating QakBot strings decryption https://blog.quosec.net/posts/grap_qakbot_strings/
blog.quosec.net
grap: Automating QakBot strings decryption
Our last grap post demonstrated on how to use grap to create and find patterns within QakBot samples.
This post focuses on QakBot’s documented strings decryption feature:
Create patterns to find the function where it is implemented Extract relevant variables…
This post focuses on QakBot’s documented strings decryption feature:
Create patterns to find the function where it is implemented Extract relevant variables…
Bitdefender: UPX Unpacking Featuring Ten Memory Corruptions https://landave.io/2020/11/bitdefender-upx-unpacking-featuring-ten-memory-corruptions/
landave's blog
Bitdefender: UPX Unpacking Featuring Ten Memory Corruptions
Blog about anti-virus software vulnerabilities.
nice talk of 34C3 (attacks on modern C++ software) >> Type confusion: discovery, abuse, and protection https://media.ccc.de/v/34c3-8848-type_confusion_discovery_abuse_and_protection
media.ccc.de
Type confusion: discovery, abuse, and protection
Type confusion, often combined with use-after-free, is the main attack vector to compromise modern C++ software like browsers or virtual ...
WOW64!Hooks: WOW64 Subsystem Internals and Hooking Techniques https://www.fireeye.com/blog/threat-research/2020/11/wow64-subsystem-internals-and-hooking-techniques.html
Google Cloud Blog
WOW64!Hooks: WOW64 Subsystem Internals and Hooking Techniques | Mandiant | Google Cloud Blog
Our member @ricardojrodriguez will be today at noon in #XIVJornadasCCNCERT, organized by @CCNCERT, to talk about patch diffing with Ghidra and BinDiff, analyzing the Zerologon vulnerability. Don’t miss it!! https://www.ccn-cert.cni.es/xivjornadas.html
www.ccn-cert.cni.es
Inicio
Bienvenido al portal de CCN-CERT
Official report from Amazon » Summary of the Amazon Kinesis Event in the Northern Virginia (US-EAST-1) Region https://aws.amazon.com/message/11201/