Is Math.random() Safe? from missing rate limit to bypass 2fa and possible sqli https://neroli.medium.com/is-math-random-safe-from-missing-rate-limit-to-bypass-2fa-and-possible-sqli-2a4ea66f82c5
Medium
Is Math.random() Safe? from missing rate limit to bypass 2fa and possible sqli
Hi everyone It’s Yasser Again,
Nice post to start analyzing Android binaries » CrackMe challenges for Android https://persianov.net/crackme-challenges-for-android
Persianov on Security
CrackMe challenges for Android
Some crackme challenges for Android. Sorted in 3 different difficulty levels and easy to run on any Android emulator. Download and try your RE skills!
Tracking Cryptocurrency Malware In The Homelab - Pt 2 https://www.archcloudlabs.com/projects/tracking-crypto-miners-in-the-homelab-2-new-tricks/
Arch Cloud Labs
Tracking Cryptocurrency Malware In The Homelab - Pt 2
About The Project Continuing from the last blog post that discussed malicious Linux Cryptocurrency miners, I have discovered new activity that blends two of my previous Cryptocurrency mining malware (aka Cryptojacking) blog posts.
By taking a deeper look…
By taking a deeper look…
Analysis of CVE-2021-1647 vulnerability exploitation techniques (worth reading, but in Chinese; use Google Translator) » https://www.anquanke.com/post/id/231625
UnhookMe: Dynamically unhooking imports resolver https://securityonline.info/unhookme-dynamically-unhooking-imports-resolver/
Penetration Testing
UnhookMe: Dynamically unhooking imports resolver • Penetration Testing
UnhookMe presents us with the first MessageBoxW that is not subject for hooking. Then we hook MessageBoxW prologue ourselves
Server-Side Template Injection https://portswigger.net/research/server-side-template-injection
PortSwigger Research
Server-Side Template Injection
Template engines are widely used by web applications to present dynamic data via web pages and emails. Unsafely embedding user input in templates enables Server-Side Template Injection, a frequently c
A little bit of crypto engineering » Serving up zero-knowledge proofs https://blog.trailofbits.com/2021/02/19/serving-up-zero-knowledge-proofs/
The Trail of Bits Blog
Serving up zero-knowledge proofs
Zero-knowledge (ZK) proofs are gaining popularity, and exciting new applications for this technology are emerging, particularly in the blockchain space. So we’d like to shine a spotlight on an interesting source of implementation bugs that we’ve seen—the…
Windows kernel zero-day exploit (CVE-2021-1732) is used by BITTER APT in targeted attack https://ti.dbappsecurity.com.cn/blog/index.php/2021/02/10/windows-kernel-zero-day-exploit-is-used-by-bitter-apt-in-targeted-attack/
Misconfigurations in Java XML Parsers http://immunityservices.blogspot.com/2021/02/misconfigurations-in-java-xml-parsers.html
Blogspot
Misconfigurations in Java XML Parsers
Misconfigurations in Java XML Parsers XML is a powerful data format that can elegantly encapsulate any conceivable kind of information. T...
The importance of continuity in fuzzing - CVE-2020-28362 https://adalogics.com/blog/the-importance-of-continuity-in-fuzzing-cve-2020-28362
ApoMacroSploit : Apocalyptical FUD race https://research.checkpoint.com/2021/apomacrosploit-apocalyptical-fud-race/
Check Point Research
ApoMacroSploit : Apocalyptical FUD race - Check Point Research
1.1 Introduction At the end of November, Check Point Research detected a new Office malware builder called APOMacroSploit, which was implicated in multiple malicious emails to more than 80 customers worldwide. In our investigation, we found that this…
Introducing MacHound: A Solution to MacOS Active Directory-Based Attacks https://www.xmcyber.com/introducing-machound-a-solution-to-macos-active-directory-based-attacks/
XM Cyber
Introducing MacHound: A Solution to MacOS Active Directory-Based Attacks
Learn all about MacHound, a plugin for Bloodhound Active Directory, allowing to collect Active Directory relationships from MacOS devices.
Malvertiser “ScamClub” Bypasses Iframe Sandboxing With postMessage() Shenanigans [CVE-2021–1801] https://blog.confiant.com/malvertiser-scamclub-bypasses-iframe-sandboxing-with-postmessage-shenanigans-cve-2021-1801-1c998378bfba
Confiant
Malvertiser “ScamClub” Bypasses Iframe Sandboxing With postMessage() Shenanigans [CVE-2021–1801]
This blog post is about the mechanics of a long tail iframe sandbox bypass found in a payload belonging to the persistent malvertising attacker that we call ScamClub.
PE-Packer: Windows x86 PE file packer written in C & Microsoft Assembly https://securityonline.info/pe-packer-windows-x86-pe-file-packer-written-in-c-microsoft-assembly/
Penetration Testing
PE-Packer: Windows x86 PE file packer written in C & Microsoft Assembly
PE-Packer is a simple packer for Windows PE files. The new PE file after packing can obstruct the process of reverse engineering.
Neurax: A framework for constructing self-spreading binaries https://github.com/redcode-labs/Neurax
GitHub
GitHub - redcode-labs/neurax: A framework for constructing self-spreading binaries
A framework for constructing self-spreading binaries - redcode-labs/neurax
Further Updates in LODEINFO Malware (targeted attack in Japan) https://blogs.jpcert.or.jp/en/2021/02/LODEINFO-3.html
JPCERT/CC Eyes
Further Updates in LODEINFO Malware - JPCERT/CC Eyes
The functions and evolution of malware LODEINFO have been described in our past articles in February 2020 and June 2020. Yet in 2021, JPCERT/CC continues to observe activities related to this malware. Its functions have been expanding with some new...
Sandbox detection and evasion techniques. How malware has evolved over the last 10 years https://www.ptsecurity.com/ww-en/analytics/antisandbox-techniques/
ptsecurity.com
Sandbox detection and evasion techniques. How malware has evolved over the last 10 years
In most cases, hackers
The Story of Jian – How APT31 Stole and Used an Unknown Equation Group 0-Day https://research.checkpoint.com/2021/the-story-of-jian/
Check Point Research
The Story of Jian - How APT31 Stole and Used an Unknown Equation Group 0-Day - Check Point Research
Research by: Eyal Itkin and Itay Cohen There is a theory which states that if anyone will ever manage to steal and use nation-grade cyber tools, any network would become untrusted, and the world would become a very dangerous place to live in. There is another…
ImHex: A Hex Editor for Reverse Engineers, Programmers and people that value their eye sight when working at 3 AM https://github.com/WerWolv/ImHex
GitHub
GitHub - WerWolv/ImHex: 🔍 A Hex Editor for Reverse Engineers, Programmers and people who value their retinas when working at 3…
🔍 A Hex Editor for Reverse Engineers, Programmers and people who value their retinas when working at 3 AM. - WerWolv/ImHex
SrClient DLL Hijacking: a Windows Server 2012 0-day that won't be patched https://blog.vonahi.io/srclient-dll-hijacking/
Vonahi Security's Blog
SrClient DLL Hijacking: a Windows Server 2012 0-day that won't be patched
This blog discusses a DLL hijacking vulnerability affecting all versions of Windows Server 2012 (but not Server 2012 R2). This 0-day vulnerability can be exploited for privilege escalation by any regular user and does not require a system reboot, yet it will…