Dropping new LOLBin/LOLBAS inspired project today called LOLGlobs, to document some cool ways of commandline evasion using wildcards and some other obfuscation techniques that go beyond B64 encoding: https://t.co/weesvN45Vd
As promised, today we released DumpBrowserSecrets a tool which extracts passwords, tokens, cookies and other data from several browsers.
https://t.co/EaswGdihdU
Found an interesting sample on @anyrun_app and did a quick analysis: https://t.co/UOBFZWrF7s
It's a fake 7-Zip installer that takes advantage of a EoP in Windows to steal ntdis.dit and SYSTEM files and copies them over to a remote share.
MSRC security researchers Andrei @malwrforensics and Jhilakshi @jhilakshi_ talk about how Yara, the pattern-matching Swiss knife, can be used from an AppSec/Red team approach.
Learn more: https://t.co/OAVqmUN5Ui
New update of the list of interesting online malware analysis sandboxes is out at https://t.co/e0f92H5UkL. I especially recommend that you check out @hatching_io Triage, which is now open to public.
[BLOG] A Deep Dive Into Samsung's TrustZone (Part 3)
In which code execution at Exception Level 3 (EL3), the highest privileged, is achieved.
Work by @patateQbool@NeatMonster_@lyte__ presented at BlackHat Las Vegas 2019
* includes a new bug, now fixed.
https://t.co/gdvESyubiS
Wrote the first public exploit of CVE-2020-10665 Docker Desktop Local Privilege Escalation! It was challenging picking up C++ as well as multiple exploit stages (hard link spraying, DLL overwrite, printer API call) but learned a lot :) https://t.co/zMcO3keyfc
As promised, here it is - All the useful data i collected from 1.000.000.000 leaked credentials on the internet.
And yes, it includes a wordlist of most common ones too, and it has a %80 mismatch rate with rockyou.txt.
https://t.co/AoXNSydFS1
#infosec#bugbounty
In a guest blog, the security researcher known as d4rkn3ss details a heap overflow leading to RCE in the #NETGEAR Nighthawk R6700 router inspired by #Pwn2Own Tokyo. His write-up includes root cause and PoC. Read it at https://t.co/TA9HTzpCSl
I have 16 bugs fixed in Microsoft's June security update, some are RCE, some are LPE, but this one is a little bit different, it's a buffer overflow in RPC marshalling for both RCE and LPE:
https://t.co/83VI0nTjnl