Nebula Security is now backed by Y Combinator.
We’re celebrating by bringing you the world’s first Android 17 root demo — “IonStack”, a url click can let attacker fully control your phone.
This is not only an Android root demo. We’re bringing you a full chain browser-to-kernel exploit with two 0-day vulnerabilities affecting Firefox before v151.0.2 and all Linux distros in 15 years. "IonStack" demonstrates how bad actors can control your phone by sending a malicious URL, but good news, Nebula Security found it before attackers do.
Both 0-day were found by our code scanning agent, VEGA, overshadowing any vulnerabilities found by Mythos or any scanner you name it.
VEGA has demonstrated its extraordinary capability in finding critical bugs in the world’s most complicated software: operating systems and browsers. It can spot the same vulnerabilities in your codebase too.
VEGA support full scan and incremental scan that can integrated into your CI/CD flow. We launched VEGA within YC companies and received overwhelmingly positive feedback. Now it is open to all enterprise customers in private beta.
Book a demo with us: https://t.co/eXHKhnE8gC
We found a Remote Code Execution (RCE) vulnerability in @Ollama - one of the most popular AI inference projects on GitHub. Here is everything you need to know about #Probllama (CVE-2024-37032) 🧵👇
This is beyond ridiculous. This form of Islamophobia and anti-Palestinian racism should not exist in the cybersecurity community, let alone from a vendor. Shame on you @SentinelOne for targeting a respected individual in the Cyber Security community for merely advocating for the human rights of the Palestinian people.
After this, I would never recommend you to a client.
Please share this post for visibility.
After privilege escalation in AWS, the next goal of an adversary could be to create backdoors in their target AWS account to maintain access.
In this post, we explore some methods that can allow persistence in any AWS environment.
https://t.co/2vWzBigNgg
#aws#cloudsecurity
CVE-2022-44721 Privilege escalation in Crowdstrike Falcon Uninstaller.
Exploiting this vulnerability allows an attacker with administrative privileges to bypass the token check on Windows end-devices and to uninstall the sensor from the device...
PoC
https://t.co/2gnwqVu9xX
Thrilled to introduce 𝐕𝐢𝐥𝐥𝐚𝐢𝐧, a Windows & Linux backdoor generator and multi-session handler that allows users to connect with sibling servers (other machines running Villain) and share their backdoor sessions.
https://t.co/KRMDnDdD8z
Ghauri - An Advanced SQL Injection Exploiter.
Product by @SecurityFoster.
Coded By: @r0oth3x49🎩
sqlmap VS ghauri
Download: https://t.co/GxOwv6wT5N
Note: This is only do SQL exploitation. The SQL detection burp plugin is still private.
#bugbountytips#BugBounty
1\ #DFIR: How to detect malicious clipboard use?
TAs abuse clipboards to steal data / paste commands.
Three artefacts you can analyse:
> ActivitiesCache.db
> Memory forensics
> Clipboard history folder
I break down how to do this in my blog👇
https://t.co/pQKEmNTx4k