2019-04-15 Random Interesting Shit

Categories Hacker Shit, News Feed Stuff, Random Musings, Security Stuff, Stuff To Learn

Apache Tomcat Patches Important Remote Code Execution Flaw
https://thehackernews.com/2019/04/apache-tomcat-security-flaw.html
#hackerstuff #HackThePlanet


Hackers Compromise Microsoft Support Agent to Access Outlook Email Accounts
https://thehackernews.com/2019/04/microsoft-outlook-email-hack.html
#hackerstuff #HackThePlanet


IoT Security- it’s complicated

IoT Security- it’s complicated


#hackerstuff #HackThePlanet


PartyLoud – A simple tool to do several HTTP / HTTPS requests and simulate navigation
https://github.com/realtho/PartyLoud
#hackerstuff #HackThePlanet


Quantum Cryptography
https://arxiv.org/pdf/quant-ph/9504002.pdf
#hackerstuff #HackThePlanet


Timing Attacks using Machine Learning
https://parzelsec.de/timing-attacks-with-machine-learning/
#hackerstuff #HackThePlanet


Google Helps Police Identify Devices Close to Crime Scenes Using Location Data
https://thehackernews.com/2019/04/google-location-tracking.html
#hackerstuff #HackThePlanet


CVE-2019-9730: Local Privilege Elevation in Synaptics Sound Device Driver (Write-Up + Exploit)
http://jackson-t.ca/synaptics-cxutilsvc-lpe.html
#hackerstuff #HackThePlanet


2019-04-12 Random Interesting Shit

Categories Hacker Shit, News Feed Stuff, Random Musings, Security Stuff, Stuff To Learn

Fucking Homepage – Words of Wisdom of the Fucking Day:
Today Think About All That You Are, Not All That You Are Not.


Popular Video Editing Software Website Hacked to Spread Banking Trojan
https://thehackernews.com/2019/04/free-video-editing-malware.html
#hackerstuff #HackThePlanet


$177.5 M Settlement Proposal: The Second Possible Big Dent In Yahoo’s Treasury For 2013-16 Data Breach Incident

$177.5 M Settlement Proposal: The Second Possible Big Dent In Yahoo’s Treasury For 2013-16 Data Breach Incident


#hackerstuff #HackThePlanet


The Danger of Exposing Docker.sock
https://dejandayoff.com/the-danger-of-exposing-docker.sock/
#hackerstuff #HackThePlanet


New hijack attack in the wild
https://habr.com/en/company/qrator/blog/447776/
#hackerstuff #HackThePlanet


Security Enhanced Linux (SELinux): From Concepts to Code Flow by J.C. Scaly
https://drive.google.com/file/d/1WNcPYUL3Zf2y7BYXH2z_1LMqzzAZdmc8/view
#hackerstuff #HackThePlanet


New research: we discover how to avoid SmartScreen via COM Hijacking and with no privileges
https://blog.en.elevenpaths.com/2019/04/hijacking-research-smartscreen.html
#hackerstuff #HackThePlanet


2019-04-11 Random Interesting Shit

Categories Hacker Shit, News Feed Stuff, Random Musings, Security Stuff, Stuff To Learn

WikiLeaks Founder Julian Assange Arrested After Ecuador Withdraws Asylum
https://thehackernews.com/2019/04/wikileaks-julian-assange-arrested.html
#hackerstuff #HackThePlanet


Security Flaws in WPA3 Protocol Let Attackers Hack WiFi Password
https://thehackernews.com/2019/04/wpa3-hack-wifi-password.html
#hackerstuff #HackThePlanet


Nasty Android & iOS malware found using govt surveillance tech

Nasty Android & iOS malware found using govt surveillance tech


#hackerstuff #HackThePlanet


Better Exfiltration via HTML Injection
https://medium.com/@d0nut/better-exfiltration-via-html-injection-31c72a2dae8b
#hackerstuff #HackThePlanet


A Pentester’s Guide – Part 3 (OSINT, Breach Dumps, & Password Spraying)
https://delta.navisec.io/osint-for-pentesters-part-3-password-spraying-methodology/
#hackerstuff #HackThePlanet


2019-04-10 Random Interesting Shit

Categories Hacker Shit, News Feed Stuff, Random Musings, Security Stuff, Stuff To Learn

Sophisticated ‘TajMahal APT Framework’ Remained Undetected for 5 Years
https://thehackernews.com/2019/04/apt-malware-framework.html
#hackerstuff #HackThePlanet


Azure Security Logging – part I: defining your logging strategy
Azure Security Logging – part I: defining your logging strategy
#hackerstuff #HackThePlanet


Cloak and Dagger – Mobile Malware Techniques Demystified
https://medium.com/@targetpractice/cloak-and-dagger-malware-techniques-demystified-c4d8a035b94e
#hackerstuff #HackThePlanet


Leveraging Expression Language injection (EL Injection) for RCE
https://blog.zsec.uk/el-injection-rce/
#hackerstuff #HackThePlanet


Phrack – Everything A Hacker Needs to Know About Getting Busted by the Feds (1997)
http://phrack.org/issues/52/5.html#article
#hackerstuff #HackThePlanet


DACL Permissions Overwrite Privilege Escalation (CVE-2019-0841)
https://krbtgt.pw/dacl-permissions-overwrite-privilege-escalation-cve-2019-0841/
#hackerstuff #HackThePlanet


2019-04-09 Random Interesting Shit

Categories Hacker Shit, News Feed Stuff, Random Musings, Security Stuff, Stuff To Learn

An intro into abusing and identifying WMI Event Subscriptions for persistence
https://in.security/an-intro-into-abusing-and-identifying-wmi-event-subscriptions-for-persistence/
#hackerstuff #HackThePlanet


Researcher Reveals Multiple Flaws in Verizon Fios Routers – PoC Released
https://thehackernews.com/2019/04/verizon-wifi-router-security.html
#hackerstuff #HackThePlanet


‘Exodus’ Surveillance Malware Found Targeting Apple iOS Users
https://thehackernews.com/2019/04/exodus-ios-malware.html
#hackerstuff #HackThePlanet


StackOverflow 2019 Developer Survey Results
https://insights.stackoverflow.com/survey/2019