Hunting for bugs in Telegram's animated stickers remote attack surface https://www.shielder.it/blog/2021/02/hunting-for-bugs-in-telegrams-animated-stickers-remote-attack-surface/
Shielder
Shielder - Hunting for bugs in Telegram's animated stickers remote attack surface
polict's 2020 journey in researching the lottie animation format, its integration in mobile apps and the vulnerabilities triggerable by a remote attacker against any Telegram user.
Auditd CVE 2021-3156 https://www.archcloudlabs.com/projects/auditd-cve-2021-3156/
Arch Cloud Labs
Auditd CVE 2021-3156
About The Project CVE-2021-3156 is a 10-year-old sudo vulnerability that allows for privilege escalation in Linux environments. If you’re responsible for a Linux server, this definitely caught your attention due to the severity. Some rough PoCs wound up Github…
Another variant to compromise frontend developers by malicious packages https://csal.medium.com/another-variant-to-compromise-frontend-developers-by-malicious-packages-b724dd4fef9
Medium
Another variant to compromise frontend developers by malicious packages
Some days ago I was watching 10 Things I Regret About Node.js and the introduction to Deno started with this slide about security.
Nice reverse engineering research on Apple GPU! » Apple G13 GPU architecture docs and tools https://github.com/dougallj/applegpu
GitHub
GitHub - dougallj/applegpu: Apple G13 GPU architecture docs and tools
Apple G13 GPU architecture docs and tools. Contribute to dougallj/applegpu development by creating an account on GitHub.
SerenityOS - Writing a full chain exploit https://devcraft.io/2021/02/11/serenityos-writing-a-full-chain-exploit.html
devcraft.io
SerenityOS - Writing a full chain exploit
I recently came across SerenityOS when it was featured in hxp CTF and then on LiveOverflow’s YouTube channel. SerenityOS is an open source operating system written from scratch by Andreas Kling and now has a strong and active community behind it. If you’d…
Stealthy Process Communication Between Threads on Windows 10 https://blog.syscall.party/post/windows-10-stealthy-threads/
blog.syscall.party
Stealthy Process Communication Between Threads on Windows 10
A small blog of my findings and research.
Swarm of Palo Alto PAN-OS vulnerabilities https://swarm.ptsecurity.com/swarm-of-palo-alto-pan-os-vulnerabilities/
A Practical Approach To Attacking IoT Embedded Designs (I) https://labs.ioactive.com/2021/02/a-practical-approach-to-attacking-iot.html
Ioactive
A Practical Approach To Attacking IoT Embedded Designs (I)
by Ruben Santamarta The booming IoT ecosystem has meant massive growth in the embedded systems market due to the high demand for connect...
Discovering an Undisclosed Stack Overflow Vulnerability in Microsoft SQL Server (CVE-2019-1068) https://0xsaiyajin.github.io/vulnerability-research/2021/02/06/discovering-an-undisclosed-stack-overflow-vulnerability-in-mssql-server-cve-2019-1068.html
Nice analysis » Analysis and exploitation of the iOS kernel vulnerability CVE-2021-1782 https://www.synacktiv.com/publications/analysis-and-exploitation-of-the-ios-kernel-vulnerability-cve-2021-1782
Synacktiv
Analysis and exploitation of the iOS kernel vulnerability CVE-2021-1782
Two weeks ago, CVE-2021-1782 was fixed by Apple.
Detecting Manual Syscalls from User Mode https://winternl.com/detecting-manual-syscalls-from-user-mode/
winternl
Detecting Manual Syscalls from User Mode
By now direct system calls are ubiquitous in offensive tooling. Manual system calls remain effective for evading userland based EDRs. From within userland, there has been little answer to this…
DNS exfiltration of data: step-by-step simple guide https://hinty.io/devforth/dns-exfiltration-of-data-step-by-step-simple-guide/
hinty.io
DNS exfiltration of data: step-by-step simple guide
Complete Guide to Windows File System Auditing https://www.varonis.com/blog/windows-file-system-auditing/
Varonis
Complete Guide to Windows File System Auditing - Varonis
Windows file auditing is key in a cybersecurity plan. Learn about file system auditing and why you'll need an alternate method to get usable file audit data
Security of the Intel Graphics Stack https://igor-blue.github.io/2021/02/10/graphics-part1.html
Igor's Blog
Security of the Intel Graphics Stack - Part 1 - Introduction
General Architecture Core Graphics 2D Graphics Pipeline 3D Graphics Pipeline The Execution Units (EUs) The GuC Boot ROM and GuC firmware The μOS kernel Communication with the OS Host Graphics…
Windows kernel zero-day exploit (CVE-2021-1732) is used by BITTER APT in targeted attack https://ti.dbappsecurity.com.cn/blog/index.php/2021/02/10/windows-kernel-zero-day-exploit-is-used-by-bitter-apt-in-targeted-attack/
Last update needed for Zerologon, finally available » CVE-2020-1472: Microsoft Finalizes Patch for Zerologon to Enable Enforcement Mode by Default https://www.tenable.com/blog/cve-2020-1472-microsoft-finalizes-patch-for-zerologon-to-enable-enforcement-mode-by-default
Tenable®
CVE-2020-1472: Microsoft Finalizes Patch for Zerologon to Enable Enforcement Mode by Default
Zerologon has quickly become valuable to nation-state threat actors and ransomware gangs, making it imperative for organizations to apply these patches immediately if they have not yet done so. Background On February 9, as part of its February 2021 Patch…
Malware Analysis Report (AR21-039A) https://us-cert.cisa.gov/ncas/analysis-reports/ar21-039a
Domestic Kitten – An Inside Look at the Iranian Surveillance Operations https://research.checkpoint.com/2021/domestic-kitten-an-inside-look-at-the-iranian-surveillance-operations/
Check Point Research
Domestic Kitten – An Inside Look at the Iranian Surveillance Operations - Check Point Research
Overview Despite the reveal of “Domestic Kitten” by Check Point in 2018, APT-C-50 has not stopped conducting extensive surveillance operations against Iranian citizens that could pose a threat to the stability of the Iranian regime, including internal dissidents…