Got really excited during "Protecting the Protector, Hardening Machine Learning Defenses Against Adversarial Attacks" talk at #BH 2018, when I saw familiar stuff...
cc: @nullcookies@James_inthe_box@JRoosen@pollo290987
2003: The Nachi worm began infecting Windows computers to remove the Blaster worm and patch the vulnerability exploited by both. Yes, this happened. Got to love it!
Revised: Intrusive Apple ID phish attempts to fly under the radar with AES 256 and one-time session IDs. Sent via text message. HT @bry_campbell for the URL. hxxp://apple.id.auth-team.com
Finally worked out the last bug in my decoder for this sample that @DidierStevens did the video on here https://t.co/G85ET5AuqE for this "type" of Invoke-DOSfuscation
Evilginx 2 - Next Generation of Phishing 2FA Tokens : https://t.co/eL9uBKMt74 ,evilginx2 : Standalone MITM attack framework used for phishing login credentials along with session cookies, alowing to bypass 2-factor authentication : https://t.co/g5kiJtcpub
Cibercriminosos brasileiros fazem de tudo para roubar sua conta bancária, usam inclusive extensões maliciosas no Google Chrome, hospedadas na loja oficial. Algumas delas são bastante engenhosas https://t.co/DydhwaXZXt
Login panel hidden in fake 404 Not Found. Posting again because these are easy to overlook and becoming commonplace.
Lesson: Hiding in plain sight is sometimes the best camouflage. Consider where you'd hide a login panel.
URL: hxxp://www.jeremoabofm.com.br/promocao/bc0de.php
Notícia: "Livro digital não decola no Brasil"
Especialistas não conseguem entender o motivo. Talvez seja preciso encomendar um estudo caro e demorado para descobrir as razões por trás disso, né?
Lula contribuiu com 21 projetos open source em 57 dias de prisão.
Se cada projeto tem 14259 linhas, seriam mais de 5200 linhas por dia. Ele teria que codar no mínimo 656 linhas/hora em 8hrs.
Todo mundo que ao menos contribuiu com um projeto sabe que isto é irreal. Apenas parem.