2018-10-16 News Feed

Categories Hacker Shit, News Feed Stuff, Random Musings, Security Stuff, Stuff To Learn

New iPhone Bug Gives Anyone Access to Your Private Photos
https://thehackernews.com/2018/10/iphone-lock-passcode-bypass.html
#hackerstuff #HackThePlanet


Chrome, Firefox, Edge and Safari Plans to Disable TLS 1.0 and 1.1 in 2020
https://thehackernews.com/2018/10/web-browser-tls-support.html
#hackerstuff #HackThePlanet


CHIPSEC – Platform Security Assessment Framework For Firmware Hacking

CHIPSEC – Platform Security Assessment Framework For Firmware Hacking


#hackerstuff #HackThePlanet


Hacking Connected Home Alarm Systems – The Cheap [Part 1]
Hacking Connected Home Alarm Systems – The Cheap [Part 1]
#hackerstuff #HackThePlanet


buckets.grayhatwarfare.com – open s3 buckets search engine is updated!
https://buckets.grayhatwarfare.com/
#hackerstuff #HackThePlanet


How I hacked modern Vending Machines
https://hackernoon.com/how-i-hacked-modern-vending-machines-43f4ae8decec
#hackerstuff #HackThePlanet


Vectorized Emulation: Hardware accelerated taint tracking at 2 trillion instructions per second
https://gamozolabs.github.io/fuzzing/2018/10/14/vectorized_emulation.html
#hackerstuff #HackThePlanet


Implementing ledger based Blockchain models in data security.
https://medium.com/@megha_43401/implementing-ledger-based-blockchain-models-in-data-security-272debe8c6f4
#hackerstuff #HackThePlanet


2018-10-15 News Feed

Categories Hacker Shit, News Feed Stuff, Random Musings, Security Stuff, Stuff To Learn

Google to Encrypt Android Cloud Backups With Your Lock Screen Password
https://thehackernews.com/2018/10/android-cloud-backup.html
#hackerstuff #HackThePlanet


ICS / IIoT Market Segmentation Needed So We Can Communicate Effectively
https://pentestmag.com/ics-iiot-market-segmentation-needed-so-we-can-communicate-effectively/
#hackerstuff #HackThePlanet


Fake Adobe updates installing cryptomining malware while updating Flash

Fake Adobe updates installing cryptomining malware while updating Flash


#hackerstuff #HackThePlanet


This is the first in a series of blog posts “on all things Bot.”: Baby Got Bots

Baby Got Bots


#hackerstuff #HackThePlanet


Deobfuscating PowerShell: Putting the Toothpaste Back in the Tube
https://www.endgame.com/blog/technical-blog/deobfuscating-powershell-putting-toothpaste-back-tube
#hackerstuff #HackThePlanet


7 clever ways hackers are stealing keyless cars

7 clever ways hackers are stealing keyless cars


#hackerstuff #HackThePlanet


picoCTF’18 writeups
https://github.com/mzfr/picoCTF-2018-Writeups
#hackerstuff #HackThePlanet


Under the hood: BetterHelp
https://medium.com/@kahunalu/under-the-hood-betterhelp-6e1f35b1dddb
#hackerstuff #HackThePlanet


joincap: Merge multiple pcap files together, gracefully.
https://github.com/assafmo/joincap
#hackerstuff #HackThePlanet


Hack The Box – DevOops Walkthrough
Hack The Box – DevOops Walkthrough
#hackerstuff #HackThePlanet


tcpbin: a simple tcp dumping server for pentesting
https://github.com/ecx86/tcpbin
#hackerstuff #HackThePlanet


2018-10-12 News Feed

Categories Hacker Shit, News Feed Stuff, Random Musings, Security Stuff, Stuff To Learn

Google Adds Control-Flow Integrity to Beef up Android Kernel Security
https://thehackernews.com/2018/10/android-linux-kernel-cfi.html
#hackerstuff #HackThePlanet


Shocking: Hackers using Googlebots in cryptomining malware attacks

Shocking: Hackers using Googlebots in cryptomining malware attacks


#hackerstuff #HackThePlanet


The Illustrated TLS Connection: Every Byte Explained
https://tls.ulfheim.net/
#hackerstuff #HackThePlanet


unauth root RCE in Cisco Prime Infrastructure: how to root a data center with two lame vulns
https://seclists.org/fulldisclosure/2018/Oct/19
#hackerstuff #HackThePlanet


Chaining exploits for RCE on Microsoft Edge (CVE-2018-8495)
https://leucosite.com/Microsoft-Edge-RCE/
#hackerstuff #HackThePlanet


NCSAM/Hacktober Capture the Flag Competition
https://hostile.site/
#hackerstuff #HackThePlanet


DerbyCon 2018 CTF Write Up
https://labs.nettitude.com/blog/derbycon-2018-ctf-write-up/
#hackerstuff #HackThePlanet


2018-10-11 News Feed

Categories Hacker Shit, News Feed Stuff, Random Musings, Security Stuff, Stuff To Learn

French Dark-Web Drug Dealer Sentenced to 20 Years in US Prison
https://thehackernews.com/2018/10/dark-web-drugs-kingpin.html
#hackerstuff #HackThePlanet


Recordings from this year’s Camp++ (0x7e2)
https://camp.hsbp.org/2018/pp7e2/recordings.html
#hackerstuff #HackThePlanet


Multiple Severe Vulnerabilities Reported in Juniper Networks Hardware
https://kb.juniper.net/InfoCenter/index?page=content&channel=SECURITY_ADVISORIES
#hackerstuff #HackThePlanet


Application Security Wiki
https://appsecwiki.com
#hackerstuff #HackThePlanet


Wireless Passwords From Airports And Lounges Around The World
https://www.google.com/maps/d/u/0/viewer?mid=1Z1dI8hoBZSJNWFx2xr_MMxSxSxY&ll=11.848218747907321%2C-80.59578786996627&z=4
#hackerstuff #HackThePlanet


Symantec Messaging Gateway authentication bypass
https://artkond.com/2018/10/10/symantec-authentication-bypass/
#hackerstuff #HackThePlanet


WEAPON SYSTEMS CYBERSECURITY: DOD Just Beginning to Grapple with Scale of Vulnerabilities (pdf)
https://www.gao.gov/assets/700/694913.pdf
#hackerstuff #HackThePlanet


FlareOn 2018 Level 5 – Solving WebAssembly Crackme (Part II – Wasabi)
http://ctfhacker.com/reverse/2018/09/16/flareon-2018-wasabi.html
#hackerstuff #HackThePlanet


How to Recover from a Hacked Website Event
https://www.acunetix.com/blog/articles/how-to-recover-from-a-hacked-website
#hackerstuff #HackThePlanet


Zero-day exploit (CVE-2018-8453) used in targeted attacks

Zero-day exploit (CVE-2018-8453) used in targeted attacks


#hackerstuff #HackThePlanet


Manual reverse engineering of WebAssembly: static code analysis
https://www.forcepoint.com/blog/security-labs/manual-reverse-engineering-webassembly-static-code-analysis
#hackerstuff #HackThePlanet


Top 10 Web Hacking Techniques of 2017
https://portswigger.net/blog/top-10-web-hacking-techniques-of-2017
#hackerstuff #HackThePlanet


SILENTTRINITY: A post-exploitation agent powered by Python, IronPython, C#/.NET
https://github.com/byt3bl33d3r/SILENTTRINITY
#hackerstuff #HackThePlanet


2018-10-10 News Feed

Categories Hacker Shit, News Feed Stuff, Random Musings, Security Stuff, Stuff To Learn

Just Answering A Video Call Could Compromise Your WhatsApp Account
https://thehackernews.com/2018/10/hack-whatsapp-account-chats.html
#hackerstuff #HackThePlanet


New Exploit for MikroTik Router WinBox Vulnerability Gives Full Root Access
https://thehackernews.com/2018/10/router-hacking-exploit.html
#hackerstuff #HackThePlanet


Announcing Kali for Vagrant
https://www.kali.org/news/announcing-kali-for-vagrant/
#hackerstuff #HackThePlanet


HTTrack – Website Downloader Copier & Site Ripper Download

HTTrack – Website Downloader Copier & Site Ripper Download


#hackerstuff #HackThePlanet


Bypassing WAFs and cracking XOR with Hackvertor
https://portswigger.net/blog/bypassing-wafs-and-cracking-xor-with-hackvertor
#hackerstuff #HackThePlanet


MemITM – Tool to make in memory man in the middle
https://github.com/AMOSSYS/MemITM/
#hackerstuff #HackThePlanet


Red Hat’s Flatpak – a security nightmare
http://flatkill.org/
#hackerstuff #HackThePlanet


Bruteforcing United Club’s WiFi password
https://web.archive.org/web/20181010030152/https://blog.jonlu.ca/posts/brute-forcing-united
https://blog.jonlu.ca/posts/brute-forcing-united
#hackerstuff #HackThePlanet


ADAPE-Script – Active Directory Assessment and Privilege Escalation Script
https://github.com/hausec/ADAPE-Script/
#hackerstuff #HackThePlanet


BloodHound – Six Degrees of Domain Admin
https://github.com/BloodHoundAD/BloodHound
#hackerstuff #HackThePlanet


HASSH – a Profiling Method for SSH Clients and Servers.
https://github.com/salesforce/hassh

#hackerstuff #HackThePlanet


Introducing Metasploit’s First Evasion Modules
https://blog.rapid7.com/2018/10/09/introducing-metasploits-first-evasion-module/
#hackerstuff #HackThePlanet


serviceFu – Harvesting Service Account Credentials Remotely
https://www.securifera.com/blog/2018/10/07/servicefu/
#hackerstuff #HackThePlanet