A Mongolian certification authority (CA) official website was harboring malware and facilitated downloads of a backdoored client to users. Researchers …
Salus – Security Scanner Coordinator
Salus (Security Automation as a Lightweight Universal Scanner), named after the Roman goddess of protection, is a tool for coordinating …
BIOSConnect code execution bugs impact millions of Dell devices
Researchers have discovered a set of vulnerabilities that can be chained together to perform code execution attacks on Dell machines. …
Scour – AWS Exploitation Framework
Scour is a modern module based AWS exploitation framework written in golang, designed for red team testing and blue team …
Ministry of Defence employee charged in child pornography case
A former UK Ministry of Defence (MoD) employee has been jailed for 16 months after being found guilty of storing …
MacHound – An extension to audit Bloodhound collecting and ingesting of Active Directory relationships on MacOS hosts
MacHound is an extension to the Bloodhound audting tool allowing collecting and ingesting of Active Directory relationships on MacOS hosts. …
Robinhood ordered to pay $70 million over ‘harm’ caused to ‘millions’ of traders
The US Financial Industry Regulatory Authority (FINRA) has fined Robinhood close to $70 million for allegedly causing “significant harm” to …
Gorsair – Hacks Its Way Into Remote Docker Containers That Expose Their APIs
Gorsair is a penetration testing tool for discovering and remotely accessing Docker APIs from vulnerable Docker containers. Once it has …
Series: A Journey in EDR-land ~ Vapra Varta
The series will cover building blocks of EDR, various ways to collect data, analysis and detection methods, and how to …
Colombia police collar suspected Gozi Trojan distributor
Law enforcement in Colombia has arrested an alleged cybercriminal who apparently acted as a distributor for the Gozi Trojan. As …