Evaluating Cookies to Hide Backdoors https://securityboulevard.com/2021/01/evaluating-cookies-to-hide-backdoors
A journey into IoT Forensics - Episode 5 - Analysis of the Apple HomePod and the Apple Home Kit Environment (aka thanks RN Team!) https://blog.digital-forensics.it/2021/01/a-journey-into-iot-forensics-episode-5.html
blog.digital-forensics.it
A journey into IoT Forensics - Episode 5 - Analysis of the Apple HomePod and the Apple Home Kit Environment (aka thanks RN Team!)
DFIR research
Research Paper: Understanding and Exploiting Zerologon https://sidb.in/2021/01/06/Zerologon-Paper.html
sidb.in
Research Paper: Understanding and Exploiting Zerologon - computer insecurities
Zerologon? What’s that? Zerologon is the cool new vulnerability in town with a CVSS score of 10. It has intrigued me ever since it came out. I have read Secu...
Mitigations and Best Practices for ExAllocatePoolZero Security Vulnerabilities https://www.osr.com/blog/2021/01/07/mitigations-exallocatepoolzero-security-vulnerability/
OSR
Mitigations and Best Practices for ExAllocatePoolZero Security Vulnerabilities
tl;dr The Windows V2004 WDK/EWDK had a serious security vulnerability. It has been updated to mitigate that vulnerability, and you should update all of your machines that have the WDK/EWDK installe…
Steam's login method is kinda interesting https://owlspace.xyz/cybersec/steam-login/
Course on Machine Learning and security » https://security.kiwi/docs/introduction/
Security Kiwi
Introduction to the Course
A Machine Learning Course Focused on Security
The malware analyst’s guide to aPLib decompression https://0xc0decafe.com/malware-analysts-guide-to-aplib-decompression/
0Xc0Decafe
The malware analyst’s guide to aPLib decompression
From l0w to h1gh level - full stack cyber!
A Trump Sex Video? No, It's a RAT! https://www.trustwave.com/en-us/resources/blogs/spiderlabs-blog/updated-qnode-rat-downloader-distributed-as-trump-video-scandal/
Reversing TL-WR840N: Buying cheap routers to find vulnerabilities in them https://therealunicornsecurity.github.io/TPLink/
therealunicornsecurity.github.io
Reversing TL-WR840N
Buying cheap routers to find vulnerabilities in them
Local Privilege Escalation 0day in PsExec Gets a Micropatch https://blog.0patch.com/2021/01/local-privilege-escalation-0day-in.html
0Patch
Local Privilege Escalation 0day in PsExec Gets a Micropatch
by Mitja Kolsek, the 0patch Team [Update 3/25/2021: Seventy-seven days after we had issued a free micropatch for a local privilege esca...
Purgalicious VBA: Macro Obfuscation With VBA Purging https://www.fireeye.de/blog/threat-research/2020/11/purgalicious-vba-macro-obfuscation-with-vba-purging.html
FireEye
Purgalicious VBA: Macro Obfuscation With VBA Purging
We explain how VBA purging works, share some detection and hunting opportunities, and introduce a new tool: OfficePurge.
Details about CVE-2020-26262, bypass of Coturn's default access control protection https://www.rtcsec.com/post/2021/01/details-about-cve-2020-26262-bypass-of-coturns-default-access-control-protection/
CVE-2020-9971 Abusing XPC Service mechanism to elevate privilege in macOS/iOS https://xlab.tencent.com/en/2021/01/11/cve-2020-9971-abusing-xpc-service-to-elevate-privilege/
Tencent Xuanwu Lab
CVE-2020-9971 Abusing XPC Service mechanism to elevate privilege in macOS/iOS
Author: Zhipeng Huo(@R3dF09) of Tencent Security Xuanwu Lab 0x0 IntroductionIn this blog, I will detail an interesting logic vulnerability I found in launchd process when it is managing the XPC Servic
Microsoft Defender Attack Surface Reduction recommendations https://medium.com/palantir/microsoft-defender-attack-surface-reduction-recommendations-a5c7d41c3cf8
Medium
Microsoft Defender Attack Surface Reduction recommendations
Palantir’s Infosec team shares their tips and best practices
Using Speakeasy Emulation Framework Programmatically to Unpack Malware https://www.fireeye.de/blog/threat-research/2020/12/using-speakeasy-emulation-framework-programmatically-to-unpack-malware.html
FireEye
Using Speakeasy Emulation Framework Programmatically to Unpack Malware
The Speakeasy framework provides an easy-to-use, flexible, and powerful programming interface that enables analysts to solve complex problems such as unpacking malware.
Cracking a Chinese Proxy Tunnel: Real World CTF Personal Proxy Writeup https://blog.cryptohack.org/cracking-chinese-proxy-realworldctf
CryptoHack
Cracking a Chinese Proxy Tunnel: Real World CTF Personal Proxy Writeup
Real World CTF is a Chinese CTF focussing on realistic vulnerabilities. It’s one of the hardest, if not the hardest yearly CTF competition. LiveOverflow has a great video from the 2018 finals showing the impressive prizes, cyberpunk environment, and physical…
Win32k System Call Filtering Deep Dive https://improsec.com/tech-blog/win32k-system-call-filtering-deep-dive
Improsec | improving security
Win32k System Call Filtering Deep Dive — Improsec | improving security
Usage of Windows kernel exploits have been on the rise, and are often used to break out of a browser sandbox. Many of the vulnerabilities found over the years have been in the driver win32k.sys, which handles system calls from gdi32.dll and user32.dll. To…