A Trump Sex Video? No, It's a RAT! https://www.trustwave.com/en-us/resources/blogs/spiderlabs-blog/updated-qnode-rat-downloader-distributed-as-trump-video-scandal/
Reversing TL-WR840N: Buying cheap routers to find vulnerabilities in them https://therealunicornsecurity.github.io/TPLink/
therealunicornsecurity.github.io
Reversing TL-WR840N
Buying cheap routers to find vulnerabilities in them
Local Privilege Escalation 0day in PsExec Gets a Micropatch https://blog.0patch.com/2021/01/local-privilege-escalation-0day-in.html
0Patch
Local Privilege Escalation 0day in PsExec Gets a Micropatch
by Mitja Kolsek, the 0patch Team [Update 3/25/2021: Seventy-seven days after we had issued a free micropatch for a local privilege esca...
Purgalicious VBA: Macro Obfuscation With VBA Purging https://www.fireeye.de/blog/threat-research/2020/11/purgalicious-vba-macro-obfuscation-with-vba-purging.html
FireEye
Purgalicious VBA: Macro Obfuscation With VBA Purging
We explain how VBA purging works, share some detection and hunting opportunities, and introduce a new tool: OfficePurge.
Details about CVE-2020-26262, bypass of Coturn's default access control protection https://www.rtcsec.com/post/2021/01/details-about-cve-2020-26262-bypass-of-coturns-default-access-control-protection/
CVE-2020-9971 Abusing XPC Service mechanism to elevate privilege in macOS/iOS https://xlab.tencent.com/en/2021/01/11/cve-2020-9971-abusing-xpc-service-to-elevate-privilege/
Tencent Xuanwu Lab
CVE-2020-9971 Abusing XPC Service mechanism to elevate privilege in macOS/iOS
Author: Zhipeng Huo(@R3dF09) of Tencent Security Xuanwu Lab 0x0 IntroductionIn this blog, I will detail an interesting logic vulnerability I found in launchd process when it is managing the XPC Servic
Microsoft Defender Attack Surface Reduction recommendations https://medium.com/palantir/microsoft-defender-attack-surface-reduction-recommendations-a5c7d41c3cf8
Medium
Microsoft Defender Attack Surface Reduction recommendations
Palantir’s Infosec team shares their tips and best practices
Using Speakeasy Emulation Framework Programmatically to Unpack Malware https://www.fireeye.de/blog/threat-research/2020/12/using-speakeasy-emulation-framework-programmatically-to-unpack-malware.html
FireEye
Using Speakeasy Emulation Framework Programmatically to Unpack Malware
The Speakeasy framework provides an easy-to-use, flexible, and powerful programming interface that enables analysts to solve complex problems such as unpacking malware.
Cracking a Chinese Proxy Tunnel: Real World CTF Personal Proxy Writeup https://blog.cryptohack.org/cracking-chinese-proxy-realworldctf
CryptoHack
Cracking a Chinese Proxy Tunnel: Real World CTF Personal Proxy Writeup
Real World CTF is a Chinese CTF focussing on realistic vulnerabilities. It’s one of the hardest, if not the hardest yearly CTF competition. LiveOverflow has a great video from the 2018 finals showing the impressive prizes, cyberpunk environment, and physical…
Win32k System Call Filtering Deep Dive https://improsec.com/tech-blog/win32k-system-call-filtering-deep-dive
Improsec | improving security
Win32k System Call Filtering Deep Dive — Improsec | improving security
Usage of Windows kernel exploits have been on the rise, and are often used to break out of a browser sandbox. Many of the vulnerabilities found over the years have been in the driver win32k.sys, which handles system calls from gdi32.dll and user32.dll. To…
Going Rogue- a Mastermind behind Android Malware Returns with a New RAT https://research.checkpoint.com/2021/going-rogue-a-mastermind-behind-android-malware-returns-with-a-new-rat/
Check Point Research
Going Rogue- a Mastermind behind Android Malware Returns with a New RAT - Check Point Research
Research by: Aviran Hazum, Alex Shamshur, Raman Ladutska, Ohad Mana, Israel Wernik Introduction Now more than ever, we rely on our smartphones to keep in touch with our work, our families and the world around us. There are over 3.5 billion smartphone users…
Modern PHP Security Part 1: bug classes https://labs.detectify.com/2020/08/13/modern-php-security-part-1-bug-classes/
Labs Detectify
Modern PHP Security Part 1: bug classes - Labs Detectify
Thomas Chauchefoin (@swapgs) and fellow security researcher Lena David (@_lemeda) discuss modern bug classes in PHP.
Major Gaming Companies Hit with Ransomware Linked to APT27 https://threatpost.com/ransomware-major-gaming-companies-apt27/162735
Threat Post
Major Gaming Companies Hit with Ransomware Linked to APT27
Researchers say a recent attack targeting videogaming developers has 'strong links' to the infamous APT27 threat group.
Setting up Frida on Android https://understruction.com/setting-up-frida-on-android
Weblogic Remote Code Execution (Exploiting CVE-2019-2725) https://blog.cybercastle.io/weblogic-remote-code-execution-exploiting-cve-2019-2725/
Detecting Use-After-Free vulnerabilities using REVEN https://blog.tetrane.com/2020/vulnerability-detection-use-after-free.html