IM
IronMonkey Threat Research
LIVE
|
Articles 25,458
|
CVEs 337,950
|
APT Groups 800
|
Tools 2,196
|
Updated recently
Today Yesterday All 25,426 articles — Page 822 of 848
Maxwell Dulin's Resources ·

Code signing applications is an essential part of the macOS security model. Being able to bypass signing and verification steps would be a major flaw in the system, leading to users being at risk....

Maxwell Dulin's Resources ·

The authors of this post come from Star Labs - a usual team at Pwn2Own. They detail several cool vulnerabilities that were patched a little bit before the event. They targeted a Netgear router, in...

Information Technology
Maxwell Dulin's Resources ·

wolfSSL is a TLS implementation written in C. The author of this post had previously written a protocol fuzzer called tlspuffin, which they decided to target wolfSSL with since several bugs had...

Government Facilities Communications
Maxwell Dulin's Resources ·

Zora has a module for allowing users to list any NFT for sale at a fixed price and currency. This is referred to as AsksV1 or Buy Now in the ecosystem. A potential buyer is able to fill that...

Transportation Systems
Maxwell Dulin's Resources ·

Sherlock is a blockchain auditing platform in the form of contests. They had a staking pool setup with Euler. The function balanceOf on the EulerStrategy.sol is used to determine the current value...

Commercial Facilities
Maxwell Dulin's Resources ·

Gearbox is a composable leverage protocol. It allows a user to take leverage on collateral asset and use the borrowed funds through CreditAccount across DeFi. A common functionality for every...

Financial Services
Maxwell Dulin's Resources ·

Superfluid.sol allows for composable Superfluid agreements in a single transaction. I have no idea what this means (lolz). The important thing to note is that the main contract and the agreements...

Commercial Facilities
maxwelldulin ·

The bug report CVE-2022-42703 by Jann Horn is a use after free on struct anon_vma in the memory management (MM) subsystem of the Linux kernel. The vulnerability is extremely complex and particular...

Communications
Maxwell Dulin's Resources ·

Django is an open source Python framework used for web applications. It is used by many organizations as the backend web server for a website. Django is an MVC (model view controller) framework....

Commercial Facilities Transportation Systems
Maxwell Dulin's Resources ·

Pwn2Own is a competition focused on finding vulnerabilities in high value targets. In this rendition of Pwn2Own for IoT devices, they choose the Netgear Router RAX30. Pwn2Own has many tough...

Communications
maxwelldulin ·

Cacti is an open source monitoring solution used by many different companies. They found this initially by scanning for bugs with their tool. The application is written in PHP. At the very...

maxwelldulin ·

Spring Boot has a pretty famous issue: when data is reflected within an error message, the Exception message uses Spring Expression Language (SpEL). For instance, $(7*7) will render 49. The...

Maxwell Dulin's Resources ·

The author had an old cable modem sitting in their closet. While browsing some forums, they learned that the device had a built in spectrum analyzer for diagnostics. So, they wondered, if a cable...

Communications Commercial Facilities
Maxwell Dulin's Resources ·

One Key has recently created an automated scanner for scripting languages and compiled binaries. To start with, they support Python and PHP scripting languages with various bug classes, such as...

Critical Manufacturing Financial Services
maxwelldulin ·

This is the final part of the series. In the first two posts, an SSRF, LQL query injection leads to an arbitrary file deletion. This leads to a complete authentication bypass by racing a file for...

maxwelldulin ·

This post is part 2 of a chain of bugs that lead to getting code execution. In part 1, a SSRF and line feed injection bug in a query language were found. However, the LQL injection is blind. In...

maxwelldulin ·

Google Nest Hub is an always on smart home display. It runs a device based upon the Amlogic S905D3G SoC. The device has a hidden USB port, making it prime-time for attackers. By holding a...

Critical Manufacturing
maxwelldulin ·

Sam Curry decided to hit the auto industry. This ranges from BMW to Ferrari. First, they were looking at a platform with a custom SSO. They started with OSINT tools like gau and ffuf, to find a...

Transportation Systems Critical Manufacturing
Wiz Blog | RSS feed ·

Learn how to detect malicious persistence techniques in AWS, GCP & Azure after potential initial compromise, like with the CircleCI incident

Stone Panda Cozy Bear Information Technology
Wiz Blog | RSS feed ·

Wiz announces availability of new regional data center and adds support for Essential Eight controls.

Information Technology Financial Services
Wiz Blog | RSS feed ·

Hear from security leaders about their plans, strategies, and priorities for the new year.

Financial Services Transportation Systems
Wiz Blog | RSS feed ·

In this second blog post, we will discuss lateral movement risks from Kubernetes to the cloud. We will explain attacker TTPs, and outline best practices for security practitioners and cloud...

Information Technology
Cloud Threat Landscape ·

On December 29, 2022, CircleCI's security team were alerted to suspicious activity on one of their customer's GitHub OAuth tokens. The team then rotated all GitHub OAuth tokens on December 31,...

Wiz Blog | RSS feed ·

The developers of PyTorch (a popular machine-learning framework) recently identified a malicious dependency confusion attack on the open-source project. Security teams are advised to check for...

Information Technology
Curated Intelligence ·

Jair Santanna (from Northwave Security) in collaboration with Curated Intelligence recently shared his methodology about how to analyze the databases of cybercriminal websites that offer...

Information Technology
Cloud Threat Landscape ·

PyTorch-nightly Linux packages installed via pip between December 25th and December 30th, 2022 ran a malicious binary. The malicious binary was introduced by a dependency, torchtriton, that was...

Critical Manufacturing Information Technology
maxwelldulin ·

The iPod 1G Touch was the first version in an amazing line of devices from Apple. So, the author wanted to emulate the device for future generations to enjoy. This was done via a branch of QEMU;...

maxwelldulin ·

While looking at Cambium, the authors found a simple SQL injection vulnerability. As always, the authors were not using parameterized queries, leading to string concatenation for a SQL injection....

Government Facilities Communications
@BushidoToken Threat Intel ·

Welcome to the final BushidoToken blog of 2022. Over the last year or so, an associate of mine in the UK has been targeted by a persistent Chinese-speaking scammer. The scammer often calls once or...

Financial Services Energy
maxwelldulin ·

Google Home is a suite of products for around the house automation. While using the device, they noticed how seamless adding users was. Additionally, the set of automated routines, that can be ran...

Communications Critical Manufacturing