Forwarded from Una al día
Inclusión de fichero local en Sophos UTM 9
http://unaaldia.hispasec.com/2017/10/inclusion-de-fichero-local-en-sophos.html
http://unaaldia.hispasec.com/2017/10/inclusion-de-fichero-local-en-sophos.html
Hispasec
Inclusión de fichero local en Sophos UTM 9
Boletín de noticias de seguridad informática unaaldia, ofrecido por Hispasec
Executing Windows malware in Windows Subsystem for Linux (Bashware)
#malware #security
https://ibreak.software/2017/10/executing-windows-malware-in-windows-subsystem-for-linux-bashware/
#malware #security
https://ibreak.software/2017/10/executing-windows-malware-in-windows-subsystem-for-linux-bashware/
SysAdmin 24x7
Executing Windows malware in Windows Subsystem for Linux (Bashware) #malware #security https://ibreak.software/2017/10/executing-windows-malware-in-windows-subsystem-for-linux-bashware/
Ya se avisó hace tiempo:
https://t.me/sysadmin24x7/192
https://t.me/sysadmin24x7/192
Telegram
SysAdmin 24x7
Bashware Attack Undetectable by All Anti-Virus & Security Solutions
According to CheckPoint researchers, the Bashware attack technique could be abused even by a known Linux malware family, because security solutions for Windows are not designed to detect…
According to CheckPoint researchers, the Bashware attack technique could be abused even by a known Linux malware family, because security solutions for Windows are not designed to detect…
Forwarded from tpx Security ⠠⠵
Empire v2.3 is out. Please see the changelog for details https://github.com/EmpireProject/Empire/blob/master/changelog
GitHub
EmpireProject/Empire
Empire is a PowerShell and Python post-exploitation agent.
SQL Injection Tutorial
https://myhacker.net/2017/10/sql-injection-tutorial-sql-injection-cheat-sheet/
https://myhacker.net/2017/10/sql-injection-tutorial-sql-injection-cheat-sheet/
We Take Security Seriously, Do You?
SQL Injection Tutorial - Sql Injection cheat sheet - We Take Security Seriously, Do You?
SQL Injection Tutorial – Sql Injection cheat sheet . SQL injection allows us to remotely pull down all the tables, login usernames and admin accounts for a website. The most powerful tool for SQL injection is SQLMAP, which we can use on Windows and Kali…
Scripts to generate Office documents with DDE payloads
#redteam #pentesting
https://github.com/0xdeadbeefJERKY/Office-DDE-Payloads
#redteam #pentesting
https://github.com/0xdeadbeefJERKY/Office-DDE-Payloads
GitHub
GitHub - 0xdeadbeefJERKY/Office-DDE-Payloads: Collection of scripts and templates to generate Office documents embedded with the…
Collection of scripts and templates to generate Office documents embedded with the DDE, macro-less command execution technique. - 0xdeadbeefJERKY/Office-DDE-Payloads
Backdoor account found in #Oracle "Identity Manager". Severity score: 10/10
http://www.oracle.com/technetwork/security-advisory/alert-cve-2017-10151-4016513.html&elqTrackId=aa04438ad8784f0095c9f18737e5f459&elqTrack=true?elq_mid=92218&sh=0807181713171213162209290407151726&cmid=SPPT160711P00036C0001
http://www.oracle.com/technetwork/security-advisory/alert-cve-2017-10151-4016513.html&elqTrackId=aa04438ad8784f0095c9f18737e5f459&elqTrack=true?elq_mid=92218&sh=0807181713171213162209290407151726&cmid=SPPT160711P00036C0001
Some Powershell Malicious Code, (Tue, Oct 31st)
https://isc.sans.edu/diary/rss/22988
https://isc.sans.edu/diary/rss/22988
SANS Internet Storm Center
InfoSec Handlers Diary Blog - Internet Storm Center Diary 2017-10-31
SANS Internet Storm Center - A global cooperative cyber threat / internet security monitor and alert system. Featuring daily handler diaries with summarizing and analyzing new threats to networks and internet security events.
Win10 + PowerShell v5 remembers 4096 commands history stored in a plain text file in the profile of each user
https://t.co/kLADMKF3Gm
https://t.co/kLADMKF3Gm
Woshub
PowerShell Commands History | Windows OS Hub
One of the main drawbacks of Powershell command prompt compared to bash was the inability to keep a history of executed commands. The command history could be
Lista de Threat Intelligence dominios maliciosos en formato DNS y SNORT para sinkhole dns o para tu ids. Disfruta
https://t.co/zZSkdr5cVz
https://t.co/zZSkdr5cVz
GitHub
kinomakino/Threat-Intelligence-Data
Threat-Intelligence-Data - Snort_rules detection bad actors.
Ejecución remota de código en Hewlett Packard Enterprise Intelligent Management Center #HPE
https://t.co/K4hAf7ktRH
https://t.co/K4hAf7ktRH
CERTSI
Ejecución remota de código en Hewlett Packard Enterprise Intelligent Management Center
Se ha identificado una vulnerabilidad de ejecución remota de código en Hewlett Packard Enterprise Intelligent Management Center (iMC).
PowerShell: How to automatically backup the netlogon debug log
https://social.technet.microsoft.com/wiki/contents/articles/11937.powershell-how-to-automatically-backup-the-netlogon-debug-log.aspx
https://social.technet.microsoft.com/wiki/contents/articles/11937.powershell-how-to-automatically-backup-the-netlogon-debug-log.aspx
Microsoft
PowerShell: How to automatically backup the netlogon debug log - TechNet Articles - United States (English) - TechNet Wiki
Technical articles, content and resources for IT Professionals working in Microsoft technologies
Forwarded from Una al día
unCAPTCHA rompe hasta 450 captchas en cerca de 5 segundos y medio.
http://unaaldia.hispasec.com/2017/10/uncaptcha-rompe-hasta-450-captchas-en.html
http://unaaldia.hispasec.com/2017/10/uncaptcha-rompe-hasta-450-captchas-en.html
Hispasec
unCAPTCHA rompe hasta 450 captchas en cerca de 5 segundos y medio.
Boletín de noticias de seguridad informática unaaldia, ofrecido por Hispasec
#BadRabbit lo ha vuelto a hacer. Descubra cómo reaccionar ante la NUEVA CAMPAÑA DE RANSOMWARE DE GRAN ESCALA
https://t.co/IfAF0MvHEn
https://t.co/IfAF0MvHEn
Talosintelligence
Threat Spotlight: Follow the Bad Rabbit
A blog from the world class Intelligence Group, Talos, Cisco's Intelligence Group
#Oracle
username: OIMINTERNAL
pwd: (single space character)
https://docs.oracle.com/cd/E40329_01/admin.1112/e27149/appdefaultusr.htm#OMADM5326
username: OIMINTERNAL
pwd: (single space character)
https://docs.oracle.com/cd/E40329_01/admin.1112/e27149/appdefaultusr.htm#OMADM5326
APPLE PATCHES KRACK VULNERABILITY IN IOS 11.1
https://threatpost.com/apple-patches-krack-vulnerability-in-ios-11-1/128707/
https://threatpost.com/apple-patches-krack-vulnerability-in-ios-11-1/128707/
Threatpost | The first stop for security news
Apple Patches KRACK Vulnerability in iOS 11.1
Apple has patched the KRACK vulnerability in iOS and elsewhere in its product line, closing a key re-installation vulnerability in the WPA2 protocol implemented used by its software.
Python-based backdoor trojan controlled through
pastebin[.]com,
https://t.co/jQ6tOVGNV9[.]com and
notes[.]io
https://news.drweb.com/show/?i=11528&lng=en
https://vms.drweb.com/virus/?i=15822968&lng=en
pastebin[.]com,
https://t.co/jQ6tOVGNV9[.]com and
notes[.]io
https://news.drweb.com/show/?i=11528&lng=en
https://vms.drweb.com/virus/?i=15822968&lng=en