SysAdmin 24x7
4.34K subscribers
41 photos
2 videos
8 files
6.03K links
Noticias y alertas de seguridad informática.
Chat y contacto:
t.me/sysadmin24x7chat
Download Telegram
Canadian Centre for Cyber Security Releases #Advisory on #Fileless #Malware

The Canadian Centre for Cyber Security (CCCS) has released an advisory on an #Astaroth fileless malware campaign affecting Microsoft Windows. Astaroth resides solely in memory, and an attacker can use it and other fileless malware to steal information, such as credentials and keystrokes, and obtain other sensitive data.

https://www.us-cert.gov/ncas/current-activity/2019/07/18/canadian-centre-cyber-security-releases-advisory-fileless-malware
Sliver: un #framework para implants muy interesante

Sliver es un sistema de Comando y Control (C2) creado para #pentesters, #redteamers y #APT avanzadas. Genera implants o implantes (slivers) que pueden ejecutarse en prácticamente todas las arquitecturas, y administrar estas conexiones de forma segura a través de un servidor central.

https://www.hackplayers.com/2019/06/sliver-un-framework-para-implants.html
#Skadi v2019.4 releases: Collect, Process, and Hunt with host based data from MacOS, Windows, and Linux

Skadi is a free, open-source collection of tools that enable the collection, processing and advanced analysis of #forensic artifacts and images. It scales to work effectively on laptops, desktops, servers, the cloud and can be installed on top of #hardened / gold disk images.

https://securityonline.info/skadi/
Hackers Exploit #Jira, Exim #Linux Servers to "Keep the Internet Safe'

Hackers are exploiting vulnerable Jira and #Exim servers with the end goal of infecting them with a new #Watchbog Linux Trojan variant and using the resulting botnet as part of a #Monero cryptomining operation.

Watchbog is a malware strain used to infect Linux servers by exploiting vulnerable software such as Jenkins during a campaign from May, as well as Nexus Repository Manager 3, ThinkPHP, and Linux Supervisord as part of an operation from March as discovered by Alibaba Cloud Security researchers.

https://www.bleepingcomputer.com/news/security/hackers-exploit-jira-exim-linux-servers-to-keep-the-internet-safe/
#PuTTY a free #SSH and #Telnet client

New in 0.72 (released 2019-07-20)

https://www.chiark.greenend.org.uk/~sgtatham/putty/changes.html
Forwarded from tpx Security ⠠⠵
¡Cuidado al compartir enlaces de Google Fotos!

Se descubrió un error el cual permite acceder a un enlace compartido de manera privada sin necesidad de estar logueado, basta con acceder desde una ventana de incógnito al enlace.

Mucho cuidado.
CVE-2019–13382: Local Privilege Escalation in #SnagIt

Version: Snagit 2019.1.2 Build 3596 
Operating System tested on: Windows 10 1803 (x64) 
Vulnerability: SnagIt Relay Classic Recorder Local Privilege Escalation through insecure file move

https://posts.specterops.io/cve-2019-13382-local-privilege-escalation-in-snagit-abe5f31c349