2019-01-18 News Feed

Categories Hacker Shit, News Feed Stuff, Random Musings, Security Stuff, Stuff To Learn

Today’s Principle to Follow:
Principle #16: You Have Complete Responsibility Over Yourself.
   There will not always be someone else to guide you along. You need to learn to acquire and maintain your basic necessities, even if no one else is there to help. As children, we learn early on to rely on our guardians for help with everything. They shelter us, feed us, and watch after us in every way. As we get older we need to realize that we have full responsibility over ourselves. Fortunately, we do live in societies where everyone takes a small piece of the responsibility for all of us. This allows many of us to have peace of mind most of the time. We expect stores to carry food, the police to catch criminals, and generally for things to be orderly and predictable in society.
   
   The reality is that anything can happen. The future is unforeseeable. Everyone is responsibly for themselves first before others (the exception being if you have young children), an that means if a truly unpredictable situation happens, people will watch out for themselves first. Because of this, you will need to take care of your own needs too, since everyone else would be too busy taking care of themselves. A few situations that can happen are a need for you to defend yourself, a need to find your own food, or a need to survive in extreme weather. Our ancestors had instincts that we are losing because of our comfortable lives in modern society. It is dangerous to become too comfortable. Part of being truly intelligent is preparing for the unpredictable and unexpected.



New Android Malware Apps Use Motion Sensor to Evade Detection
https://thehackernews.com/2019/01/android-malware-play-store.html
#hackerstuff #HackThePlanet


DEF CON 27 Call for Villages!
https://defcon.org/html/defcon-27/dc-27-cfv.html
#hackerstuff #HackThePlanet


BYOB (Build Your Own Botnet) in action

BYOB (Build Your Own Botnet) in action


#hackerstuff #HackThePlanet


Automatic string formatting deobfuscation
https://maxkersten.nl/binary-analysis-course/malware-analysis/automatic-string-formatting-deobfuscation/
#hackerstuff #HackThePlanet


2019-01-17 News Feed

Categories Hacker Shit, News Feed Stuff, Random Musings, Security Stuff, Stuff To Learn

Today’s Principle to Follow:
Principle #15: Consider Opposing Perspectives to the Ones you Normally Hold.
   Try to mentally take the place of someone who holds another perspective, or who lives life in the opposing camp to your own. Just thinking more deeply about their daily lives and why they believe what they believe can be mind opening. Another important way to expand your horizons is to read up on how people in the opposing camp think about the issue. What kind of books, sites, and television stations to they get their information from? You can start there to get closer to understanding how they think. Make the effort to understand more deeply, rather than dismiss their beliefs and concerns offhand. Realize that you cannot truly disagree with someone’s viewpoint until you completely understand what it is that they believe and why they believe it. Also realize that if you always get your information from the people who hole your won views, then you are missing out on getting a bigger picture understanding.



Ukrainian Police Arrest 6 Hackers Linked to DDoS and Financial Attacks
https://thehackernews.com/2019/01/ukrainian-cybercriminals.html
#hackerstuff #HackThePlanet


Unprotected Government Server Exposes Years of FBI Investigations
https://thehackernews.com/2019/01/oklahoma-fbi-data-leak.html
#hackerstuff #HackThePlanet


Hackers infect e-commerce sites by compromising their advertising partner
https://thehackernews.com/2019/01/magecart-hacking-credit-cards.html
#hackerstuff #HackThePlanet


Flight Booking System Flaw Affected Customers of 141 Airlines Worldwide
https://thehackernews.com/2019/01/airlines-flight-hacking.html
#hackerstuff #HackThePlanet


Del Rio, Texas is using paper after suffering ransomware attack

A city in Texas is using paper after suffering ransomware attack


#hackerstuff #HackThePlanet


The curious case of the Raspberry Pi in the network closet
https://blog.haschek.at/2018/the-curious-case-of-the-RasPi-in-our-network.html
#hackerstuff #HackThePlanet


Introduction to WebAuthn API
https://medium.com/@herrjemand/introduction-to-webauthn-api-5fd1fb46c285
#hackerstuff #HackThePlanet


What We Found in the SANS Holiday Hack: Command Execution Vulnerability in rssh with allowscp
https://esnet-security.github.io/vulnerabilities/20190115_rssh
#hackerstuff #HackThePlanet


How to write a rootkit without really trying
How to write a rootkit without really trying
#hackerstuff #HackThePlanet


MiTM Attack Between Target Windows Machines and a DNS Server

MiTM Attack Between Target Windows Machines and a DNS Server


#hackerstuff #HackThePlanet


Exposed JIRA server leaks NASA staff and project data!
https://medium.com/@logicbomb_1/bugbounty-nasa-internal-user-and-project-details-are-out-2f2e3580421b
#hackerstuff #HackThePlanet


MESG Online Hackathon 2019
https://medium.com/mesg/mesg-online-hackathon-2019-2131c668c37f
#hackerstuff #HackThePlanet


Arduino Wireless RF Transceiver Module Intro

#hackerstuff #HackThePlanet


Trend Micro Researchers Prove How Easy it is Hackers to Hack a Construction Crane and Cause Destruction.

Watch as hackers take over a construction crane


#hackerstuff #HackThePlanet


Buffer Overflow Practical Examples, Shellcode Injection and Local Privilege Escalation – protostar stack5
https://0xrick.github.io/binary-exploitation/bof5/
#hackerstuff #HackThePlanet


A tale of private key reuse – By Koen Rouwhorst
A tale of private key reuse
#hackerstuff #HackThePlanet


A Deeper Look into XSS Payloads
https://research.digitalinterruption.com/2018/12/18/a-deeper-look-into-xss-payloads/
#hackerstuff #HackThePlanet


2019-01-11 News Feed

Categories Hacker Shit, News Feed Stuff, Random Musings, Security Stuff, Stuff To Learn

Today’s Principle to Follow:
Principle #14: We Almost Always Have Imperfect Information on Hand with Which to Make Decisions.
   Pretty much every real life decision that comes up can of an infinite amount of directions. You simply can’t calculate or know for sure what will happen based on your actions. There are way too many variables. Just to name a few, there are reactions of anyone involved, unexpected setbacks (bad weather, a car accident), and your level of training may not have prepared you to make a good decision in the first place. How people deal with this inability to know what will happen is super important to their life success. We can start by looking at how to tackle the few examples I mentioned above. We need to learn how to read people better ,. and know if they can help us to take the right actions. We need to avoid setbacks as much as possible, perhaps by driving extra carefully in bad weather. We also need to be aware of our own training and background, and gauge if we are prepared for any given challenge. If we are under-prepared, we need to make it known or seek out help in making decisions.
   
   Something important to realize is that instinctual or intuitive processes may carry more weight than trying to think logically through every problem that comes up. We often see intuitive people as less logical and less accurate in their approach, byt the reality may be different. People who make quick intuitive decisions often realize that there is a lot of imperfect information they have to deal with. This means they don’t have the complete information to know what to do. To have the complete information would literally mean to see the future and know what the outcome of any action would be. None of us can do this. Often times experts can make intuitive decisions well, but novices need more time to try to evaluate the scenario. We have to learn to deal with the fact that we can never know for sure what the results of our actions will be. Get used to making decisions with imperfect information on hand. It is a valuable skill to have.



PyLocky Ransomware Decryption Tool Released — Unlock Files For Free
https://thehackernews.com/2019/01/pylocky-free-ransomware-decryption.html
#hackerstuff #HackThePlanet


Over 202 Million Chinese Job Seekers’ Details Exposed On the Internet
https://thehackernews.com/2019/01/mongodb-chinese-database.html
#hackerstuff #HackThePlanet


COM XSL Transformation: Bypassing Microsoft Application Control Solutions (CVE-2018-8492)
COM XSL Transformation: Bypassing Microsoft Application Control Solutions (CVE-2018-8492)
#hackerstuff #HackThePlanet


New WhatsApp bug may have been discovered, exposes message history in plain text

New WhatsApp bug may have been discovered, exposes message history in plain text


#hackerstuff #HackThePlanet


2018-01-10 News Feed

Categories Hacker Shit, News Feed Stuff, Random Musings, Security Stuff, Stuff To Learn

Today’s Principle to Follow:
Principle #13: Practice Questioning the Things in Life That we Tend to Take for Granted as Being Normal and Sensible.
   Seek answers for yourself or from those around you. For example, consider your cultural traditions and practices, your religion, the layout of your towns, etc. When you question deeply, yo sometimes find that there are many possible ways to approach any given topic or field. For example, some cultures have gotten along fine without technology even in modern times. There are so many ways a town or city could be built, that way do they all pretty much have the same setup? Sometimes when we question enough, we can find a better way to do things. Perhaps we can even think up an invention or a whole new way of doing things that most people missed.



New Systemd Privilege Escalation Flaws Affect Most Linux Distributions
https://thehackernews.com/2019/01/linux-systemd-exploit.html
#hackerstuff #HackThePlanet


Hackers Using Zero-Width Spaces to Bypass MS Office 365 Protection
https://thehackernews.com/2019/01/phishing-zero-width-spaces.html
#hackerstuff #HackThePlanet


Google DNS Service (8.8.8.8) Now Supports DNS-over-TLS Security
https://thehackernews.com/2019/01/google-dns-over-tls-security.html
#hackerstuff #HackThePlanet


Top 10 GDPR Violations and Incidents of 2018
https://www.htbridge.com/blog/top-10-gdpr-violations-and-incidents-of-2018.html
#hackerstuff #HackThePlanet


How Chinese hackers pulled off the Italian con job, a Rs 130-crore heist
https://economictimes.indiatimes.com/tech/internet/how-chinese-hackers-pulled-off-the-italian-con-job-a-rs-130-crore-heist/articleshow/67464588.cms
#hackerstuff #HackThePlanet


Detecting All the Things with Limited Data
https://www.redcanary.com/blog/detecting-all-the-things-with-limited-data/
#hackerstuff #HackThePlanet


Modchips of the State – Technical Feasibility of the Bloomberg/Supermicro Hardware Implants
https://trmm.net/Modchips
#hackerstuff #HackThePlanet


#Metasploit Framework 5.0 Released!
https://blog.rapid7.com/2019/01/10/metasploit-framework-5-0-released/
#hackerstuff #HackThePlanet


2019-01-09 News Feed

Categories Hacker Shit, News Feed Stuff, Random Musings, Security Stuff, Stuff To Learn

Today’s Principle to Follow:
Principle #12: Value Knowledge and Practices That Have Stood the Test of Time.
   Humans are constantly learning and teaching each other the new things that we learn. But we have to keep in mind our track record. At one time we thought the Earth was flat. At one time we didn’t realize germs were spread through contact and that we should wash our hands. At another time many people believed the same creatures had always lived on the planet (rather than evolution). Of course, often newer findings may be accurate, but it can be a mistake to assume that all newer findings are accurate. In science, often one study appears to confirm something radical. A problem happens when further studies try to confirm those findings and fail – and we are forced to realize that the original experiment had an error. Also, you keep in mind that the media often reports on new findings either with wrong facts and interpretations, or they may exaggerate the implications of a minor finding to try to gain readers. If you stay up to date with the latest findings, maintain your skepticism.



Microsoft Patch Tuesday — January 2019 Security Updates Released
https://thehackernews.com/2019/01/windows-security-updates.html
#hackerstuff #HackThePlanet


20-Year-Old Man Arrested For Carrying Out Germany’s Biggest Data Leak
https://thehackernews.com/2019/01/germany-data-leak-arrested.html
#hackerstuff #HackThePlanet


Zerodium is paying $2 million for Apple iOS remote jailbreak

Zerodium is paying $2 million for Apple iOS remote jailbreak


#hackerstuff #HackThePlanet


Page Cache Attacks
https://arxiv.org/pdf/1901.01161.pdf
#hackerstuff #HackThePlanet


‘Spoofing’ Google Search results
https://wietzebeukema.nl/blog/spoofing-google-search-results
#hackerstuff #HackThePlanet


LeakLooker: Find Open Databases in Seconds
https://hackernoon.com/leaklooker-find-open-databases-in-a-second-9da4249c8472
#hackerstuff #HackThePlanet


Gradle Plugin Portal: Clickjacking & Cross-Site Request Forgery enabling Account Takeover
https://medium.com/@jonathan.leitschuh/gradle-plugin-portal-clickjacking-cross-site-request-forgery-enabling-account-takeover-d65c2e43082b
#hackerstuff #HackThePlanet


HackerOne – XSS in steam react chat client
https://hackerone.com/reports/409850
#hackerstuff #HackThePlanet


polkit: temporary auth hijacking via PID reuse and non-atomic fork
https://bugs.chromium.org/p/project-zero/issues/detail?id=1692
#hackerstuff #HackThePlanet