Codecov has introduced a new uploader that relies on NodeJS to replace and remove a Bash script responsible for a …
FalconEye – Real-time detection software for Windows process injections
FalconEye is a windows endpoint detection software for real-time process injections. It is a kernel-mode driver that aims to catch …
SEC settles with First American over massive leak of mortgage data, disclosure
The Securities and Exchange Commission (SEC) has agreed to a settlement with First American over the leak of millions of …
Kconfig-Hardened-Check – A Tool For Checking The Hardening Options In The Linux Kernel Config
Motivation There are plenty of Linux kernel hardening config options. A lot of them are not enabled by the major …
Facebook awards $30,000 bounty for exploit exposing private Instagram content
Facebook has awarded $30,000 to a researcher for reporting vulnerabilities in Instagram’s privacy features. According to a Medium blog post …
PPLdump – Dump The Memory Of A PPL With A Userland Exploit
This tool implements a userland exploit that was initially discussed by James Forshaw (a.k.a. @tiraniddo) – in this blog post …
This strange malware stops you from visiting pirate websites
A strain of malware with odd intentions when it comes to piracy and the moral compass of its victims has …
Aggrokatz – An Aggressor Plugin Extension For Cobalt Strike Which Enables Pypykatz To Interface With The Beacons Remotely
aggrokatz is an Aggressor plugin extension for CobaltStrike which enables pypykatz to interface with the beacons remotely.The current version of …
Over a billion records belonging to CVS Health exposed online
In another example of misconfigured cloud services impacting security, over a billion records belonging to CVS Health have been exposed …
TChopper – Conduct Lateral Movement Attack By Leveraging Unfiltered Services Display Name To Smuggle Binaries As Chunks Into The Target Machine
New technique I have discovered recently and give it a nickname (Chop chop) to perform lateral movement using windows services …