Forwarded from Una al día
Ejecución de código remoto y denegación de servicio en Asterisk
http://unaaldia.hispasec.com/2017/11/ejecucion-de-codigo-remoto-y-denegacion.html
http://unaaldia.hispasec.com/2017/11/ejecucion-de-codigo-remoto-y-denegacion.html
Hispasec
Ejecución de código remoto y denegación de servicio en Asterisk
Boletín de noticias de seguridad informática unaaldia, ofrecido por Hispasec
Forwarded from Una al día
Fallo de seguridad en un ‘wallet’ de Ethereum pone en riesgo cerca de 150 millones de dólares de esta criptomoneda
http://unaaldia.hispasec.com/2017/11/fallo-de-seguridad-en-un-wallet-de.html
http://unaaldia.hispasec.com/2017/11/fallo-de-seguridad-en-un-wallet-de.html
Hispasec
Fallo de seguridad en un ‘wallet’ de Ethereum pone en riesgo cerca de 150 millones de dólares de esta criptomoneda
Boletín de noticias de seguridad informática unaaldia, ofrecido por Hispasec
Hacking with Netcat
http://www.hackingtutorials.org/networking/hacking-with-netcat-part-1-the-basics/
http://www.hackingtutorials.org/networking/hacking-netcat-part-2-bind-reverse-shells/
http://www.hackingtutorials.org/networking/hacking-with-netcat-part-3-advanced-techniques/
http://www.hackingtutorials.org/networking/hacking-with-netcat-part-1-the-basics/
http://www.hackingtutorials.org/networking/hacking-netcat-part-2-bind-reverse-shells/
http://www.hackingtutorials.org/networking/hacking-with-netcat-part-3-advanced-techniques/
Hacking Tutorials
Hacking with Netcat part 1: The Basics - Hacking Tutorials
Netcat is a great network utility for reading and writing to network connections. Learn how to use Netcat for hacking in this series of Hacking with Netcat.
Echa un vistazo al Tweet de @Fox0x01: https://twitter.com/Fox0x01/status/929814032118362113?s=09
Twitter
Azeria
Finally, Azeria-Lab-VM v1 is ready for download: https://t.co/vuDtWsXCse VMware image, OS: Ubuntu, QEMU running ARMv6, ready-to-play. Here are some root-me ARM exploitation challenges: https://t.co/gNzmLQMG74 I also included a quick guide on how to get started:
Bienvenida nueva ISO/IEC 27007:2017 #auditoria
http://blog.segu-info.com.ar/2017/11/bienvenida-nueva-isoiec-270072017.html
http://blog.segu-info.com.ar/2017/11/bienvenida-nueva-isoiec-270072017.html
blog.segu-info.com.ar
Bienvenida nueva ISO/IEC 27007:2017
ISO/IEC 27001 es el estándar más conocido en la familia que proporciona los requisitos para un sistema de gestión de la seguridad de la inf...
#Remember_Fwhibbit
Entornos de pruebas: ¿Cómo practico mi hacking?
https://www.fwhibbit.es/entornos-de-pruebas-como-practico-mi-hacking
Entornos de pruebas: ¿Cómo practico mi hacking?
https://www.fwhibbit.es/entornos-de-pruebas-como-practico-mi-hacking
fwhibbit.es
Entornos de pruebas: ¿Cómo practico mi hacking?
Buenas hackers! La intención de la entrada de hoy es daros algunas pautas a la hora de practicar y experimentar en ciberseguridad. Nuestro campo es tan extenso y experimenta una evolución tan constante que es necesario practicar y experimentar lo máximo posible…
Exhaustive guide to sub-domain enumeration #OSINT #pentest #redteam
https://blog.appsecco.com/a-penetration-testers-guide-to-sub-domain-enumeration-7d842d5570f6
https://blog.appsecco.com/a-penetration-testers-guide-to-sub-domain-enumeration-7d842d5570f6
Medium
A penetration tester’s guide to subdomain enumeration
As a penetration tester or a bug bounty hunter, most of the times you are given a single domain or a set of domains when you start a…
Jailbreak para el iPhoneX e iOS 11.1.1
http://www.seguridadapple.com/2017/11/jailbreak-para-el-iphonex-e-ios-1111.html
http://www.seguridadapple.com/2017/11/jailbreak-para-el-iphonex-e-ios-1111.html
Seguridadapple
Jailbreak para el iPhoneX e iOS 11.1.1
En el mundo del Jailbreak no se cesa y hoy traemos nuevas noticias sobre este ámbito. Liang Chen , investigador de Tencent Keen Lab , ha...
LibreOffice 5.4.3 Office Suite Released with over 50 Bug and Regression Fixes
https://mobile.linuxtoday.com/infrastructure/libreoffice-5.4.3-office-suite-released-with-over-50-bug-and-regression-fixes-171109065526.html
https://mobile.linuxtoday.com/infrastructure/libreoffice-5.4.3-office-suite-released-with-over-50-bug-and-regression-fixes-171109065526.html
Linuxtoday
Linux Today - LibreOffice 5.4.3 Office Suite Released with over 50 Bug and Regression Fixes
LibreOffice 5.4.3 comes about five weeks after the 5.4.2 maintenance update and it's a minor point release
docker-onion-nmap o cómo escanear servicios .onion de la red Tor
http://www.hackplayers.com/2017/11/docker-onion-nmap-o-como-escanear-tor.html
http://www.hackplayers.com/2017/11/docker-onion-nmap-o-como-escanear-tor.html
Hackplayers
docker-onion-nmap o cómo escanear servicios .onion de la red Tor
docker-onion-nmap de Miles Richardson es un contenedor docker que permite escanear servicios "onion" de la red Tor. La imagen está basa...
Las apps que abusen de los servicios de accesibilidad serán eliminadas de Google Play.
http://unaaldia.hispasec.com/2017/11/las-apps-que-abusen-de-los-servicios-de.html
http://unaaldia.hispasec.com/2017/11/las-apps-que-abusen-de-los-servicios-de.html
Hispasec
Las apps que abusen de los servicios de accesibilidad serán eliminadas de Google Play.
Boletín de noticias de seguridad informática unaaldia, ofrecido por Hispasec
Review: EU GDPR Documentation Toolkit
https://www.helpnetsecurity.com/2017/11/14/eu-gdpr-documentation-toolkit/
https://www.helpnetsecurity.com/2017/11/14/eu-gdpr-documentation-toolkit/
Help Net Security
Review: EU GDPR Documentation Toolkit - Help Net Security
Advisera's EU GDPR Documentation Toolkit comes with all documents required by EU GDPR, plus commonly used non-mandatory documents.
XZZX Cryptomix Ransomware Variant Released
https://www.bleepingcomputer.com/news/security/xzzx-cryptomix-ransomware-variant-released/
https://www.bleepingcomputer.com/news/security/xzzx-cryptomix-ransomware-variant-released/
BleepingComputer
XZZX Cryptomix Ransomware Variant Released
A new CryptoMix Ransomware variant has been discovered that appends the .XZZX extension to encrypted files. This article will discuss the changes found in this new variant.
Alert (TA17-318A)
HIDDEN COBRA – North Korean Remote Administration Tool: FALLCHILL
https://www.us-cert.gov/ncas/alerts/TA17-318A
HIDDEN COBRA – North Korean Remote Administration Tool: FALLCHILL
https://www.us-cert.gov/ncas/alerts/TA17-318A
Alert (TA17-318B)
HIDDEN COBRA – North Korean Trojan: Volgmer
https://www.us-cert.gov/ncas/alerts/TA17-318B
HIDDEN COBRA – North Korean Trojan: Volgmer
https://www.us-cert.gov/ncas/alerts/TA17-318B
www.us-cert.gov
HIDDEN COBRA – North Korean Trojan: Volgmer | US-CERT
Volgmer is a backdoor Trojan designed to provide covert access to a compromised system. Since at least 2013, HIDDEN COBRA actors have been observed using Volgmer malware in the wild to target the government, financial, automotive, and media industries.
OnePlus accidentally pre-installed an app that acts as a backdoor to root access.
https://www.xda-developers.com/oneplus-root-access-backdoor/amp/
https://www.xda-developers.com/oneplus-root-access-backdoor/amp/
XDA Developers
[Update: OnePlus Responds] OnePlus Accidentally Pre-Installed an App that acts as a Backdoor to Root Access
OnePlus left in place a Qualcomm engineering test app that acts as a backdoor to grant root access on the OnePlus 3, 3T, and 5.
Adobe Patches Security Bugs in Flash Player and Eight Other Products
#adobe #flash #patchtuesday
https://www.bleepingcomputer.com/news/security/adobe-patches-security-bugs-in-flash-player-and-eight-other-products/
#adobe #flash #patchtuesday
https://www.bleepingcomputer.com/news/security/adobe-patches-security-bugs-in-flash-player-and-eight-other-products/