The Securities and Exchange Commission (SEC) has agreed to a settlement with First American over the leak of millions of …
Kconfig-Hardened-Check – A Tool For Checking The Hardening Options In The Linux Kernel Config
Motivation There are plenty of Linux kernel hardening config options. A lot of them are not enabled by the major …
Facebook awards $30,000 bounty for exploit exposing private Instagram content
Facebook has awarded $30,000 to a researcher for reporting vulnerabilities in Instagram’s privacy features. According to a Medium blog post …
PPLdump – Dump The Memory Of A PPL With A Userland Exploit
This tool implements a userland exploit that was initially discussed by James Forshaw (a.k.a. @tiraniddo) – in this blog post …
This strange malware stops you from visiting pirate websites
A strain of malware with odd intentions when it comes to piracy and the moral compass of its victims has …
Aggrokatz – An Aggressor Plugin Extension For Cobalt Strike Which Enables Pypykatz To Interface With The Beacons Remotely
aggrokatz is an Aggressor plugin extension for CobaltStrike which enables pypykatz to interface with the beacons remotely.The current version of …
Over a billion records belonging to CVS Health exposed online
In another example of misconfigured cloud services impacting security, over a billion records belonging to CVS Health have been exposed …
TChopper – Conduct Lateral Movement Attack By Leveraging Unfiltered Services Display Name To Smuggle Binaries As Chunks Into The Target Machine
New technique I have discovered recently and give it a nickname (Chop chop) to perform lateral movement using windows services …
Critical remote code execution flaw in thousands of VMWare vCenter servers remains unpatched
Researchers have warned that thousands of internet-facing VMWare vCenter servers still harbor critical vulnerabilities weeks after patches were released. The …
defenselessV1 – Just Another Vulnerable Web Application
Defenseless is a vulnerable web application written in PHP/MySQL. This is the first version of this application. The purpose of …