tpx Security ⠠⠵
2.41K subscribers
2.32K photos
103 videos
24 files
3.97K links
Hacking, ciberseguridad e Inteligencia.
Download Telegram
Node.fz: fuzzing the server-side event-driven architecture
Node.fz: Fuzzing the server-side event-driven architecture Davis et al., EuroSys’17

This paper provides a fascinating look at common causes of concurrency bugs in server-side event driven architecture (EDA) based applications. By far the most popular framework supporting this style is Node.js of course.

"The Node.js package ecosystem, npm, is the largest ever, with over 400,000 packages and over 1.75 billion package downloads per week. Node.js has been deployed in industry, including at eBay, PayPal, and LinkedIn, and is also being embraced on IoT platforms including Cylon.js and IBM’s Node-Red."


https://blog.acolyer.org/2017/06/09/node-fz-fuzzing-the-server-side-event-driven-architecture/
En el curso en línea de #HackingWindows se hace uso de las herramientas liberadas de la NSA + empire + metasploit !! cursos@tpx.mx
+++ ++++ + + + ++ +++++ ++ ++ + + + + + +
+ Aquí ya somos más de 1006 ! ++
+ Gracias por seguirnos en telegram !! ++
+++ ++++ + + + ++ +++++ ++ ++ + ++++++ +
* * *
*|_*|_*|*_ c[ÏIIÏ]
.-' |* |* |*| '-.
|`-...................-'| c[ÏÏÏ]
| tpx Security |
\ _ .-. .-._.-. _ /
,-|'-' '-' '- ' '-'|-,
/` \._ _./ `\
'._ """""""""" _.'
—— ''--.......--''

Gracias -
^— - Es un pastel !!
|__ Creo...
Jean E. Sammet, the American computer scientist who developed the FORMAC programming language and was the first woman to serve as President of ACM, passed away May 21 at the age of 89.

http://www.i-programmer.info/news/82-heritage/10811-jean-sammet.html
Exploiting CVE-2017-0199 HTA & Scriptlet File Handler Vulnerability using @vFeed_IO with metasploit exploitdb SAINTscan. All in 1 !! B|
31 yrs ago, while there was no #internet, #ARPANet Addresses was published by 2600 MagazineV0103 #networking #DoD #defence There was no DNS too ;)
Microsoft actualiza Windows resolviendo las vulnerabilidades de la NSA


Varias versiones de Windows se han actualizado a través de Windows Update con la intención de evitar que vuelva a producirse algo como lo de WannaCry. Aquella infección venía de unas vulnerabilidades encontradas por la Agencia de Seguridad Nacional de los Estados Unidos, la NSA, que se filtraron y aprovecharon con un ransomware masivo. Ahora se han filtrado más vulnerabilidades siguiendo la misma línea, y Microsoft se ha dado prisa en lanzar los correspondientes parches de seguridad.

https://www.adslzone.net/2017/06/14/microsoft-actualiza-windows-resolviendo-las-vulnerabilidades-de-la-nsa/
Top university under 'ransomware' cyber-attack

University College London, one of the world's leading universities, has been hit by a major cyber-attack.
The university describes it as a "ransomware" attack, such as last month's cyber-attack which threatened NHS computer systems.
The attack was continuing on Thursday, with access to online networks being restricted.

http://www.bbc.com/news/education-40288548
WIN32/INDUSTROYER
A new threat for
industrial control systems

https://www.welivesecurity.com/wp-content/uploads/2017/06/Win32_Industroyer.pdf
Todo tiene sentido.
Reckless Exploit: Mexican Journalists, Lawyers, and a Child Targeted with NSO Spyware

https://citizenlab.org/2017/06/reckless-exploit-mexico-nso/
Hackearon la página web del ejército argentino y subieron imágenes de ISIS