IM
IronMonkey Threat Research
LIVE
|
Articles 25,458
|
CVEs 337,950
|
APT Groups 800
|
Tools 2,196
|
Updated recently
Today Yesterday All 25,426 articles — Page 823 of 848
Blog ·

In the past few years I created some twitter threads (e.g. Windows Kernel Security Linux Kernel Security) on a number of publications I found the most interesting within the vulnerability research...

Energy Apple XNU
Cloud Threat Landscape ·

Permiso identified a credential harvesting campaign targeting cloud infrastructure for the purpose of harvesting credentials. The majority of the victim system were running public facing Juptyer...

Information Technology
Wiz Blog | RSS feed ·

Critical RCE vulnerability found in Linux kernel's `ksmbd` module: remote attackers can execute code without authentication. The module is not enabled by default on most operating systems.

Maxwell Dulin's Resources ·

Omni is an NFT money market on Ethereum. It allowed for borrowing and lending via NFTs. For instance, a user could borrow an ERC20 asset for the NFT put up as collateral. This makes the NFT more...

Healthcare and Public Health
maxwelldulin ·

ping is a program to test network reachability of remote hosts. ping makes use of raw sockets in order to make ICMP messages. ping reads raw IP packages from the network responses. As part of this...

maxwelldulin ·

CheckMk is an IT infrastructure monitoring solution written in Python and C++, similar to Zabbix and Icinga. The architecture has an Apache reverse proxy which directs request to several web...

maxwelldulin ·

The NXP SoC chip has various fuse configurations for security sensitive operations. Once a fuse has been blown, the functionality is forever disabled. The fuse SDP_READ_DISABLE is used to prevent...

Silver Fox Transportation Systems Government Facilities
Maxwell Dulin's Resources ·

Riot Games is a video game creator with many different websites. Because of this, there are many different endpoints that need access to metadata associated with the user. In order to do this,...

Wiz Blog | RSS feed ·

A new exploit method targeting CVE-2022-41080 and CVE-2022-41082 vulnerabilities in Exchange servers, which can bypass previous workarounds, has been discovered and exploited in the wild....

Wiz Blog | RSS feed ·

Wiz enhances its Dynamic Scanner to detect publicly exposed, unauthenticated APIs

Healthcare and Public Health Information Technology
Cloud Threat Landscape ·

On 2022-12-21, an incident was reported, involving an unknown actor, gaining initial access via Unknown, targeting GitHub to achieve Data exfiltration.

Wiz Blog | RSS feed ·

Easily detect dangling domains to reduce the risk of phishing campaigns and cookie harvesting of organization’s customers.

Information Technology
n1ghtw0lf ·

In the previous post we talked about writing x64dbg scripts, now let’s dive deeper and write our own plugin to do the same job (automatically dumping unpacked PE payloads in memory). x64dbg comes...

Transportation Systems Tutorials
Wiz Blog | RSS feed ·

Wiz extends its cloud analysis with an external scanner, giving customers an attacker's view of their externally exposed resources to reduce noise.

Information Technology
n1ghtw0lf ·

x64dbg is an open-source x64/x32 debugger for windows, it has dozens of features that make the life of reverse engineers and malware analysts easier. One of the coolest features of x64dbg is that...

Tutorials
Wiz Blog | RSS feed ·

Learn about how AWS's recently released Delegated Administrator for AWS Organization can be used to solve common problems at your company and the issues you might run into with it.

Wiz Blog | RSS feed ·

A step-by-step framework for modeling and improving SaaS and PaaS tenant isolation by reducing your cloud applications’ attack surface

Information Technology Critical Manufacturing
Wiz Blog | RSS feed ·

Detect and mitigate CVE-2022-27518, a Citrix ADC and Gateway unauthenticated RCE 0-day exploited in the wild by a nation state actor. Organizations should patch urgently.

Information Technology
Wiz Blog | RSS feed ·

CI/CD pipelines, as an essential part of the software development process, are an attractive target to malicious actors. Based on our research of cloud environments, we share common...

Energy Information Technology
Wiz Blog | RSS feed ·

Wiz extends its CIEM capabilities to enable least privilege access for Azure environments.

Kaspersky ICS CERT (English) ·

I would like to talk about some of the tricks and methods I have seen used to gain that all important initial access to remote systems. Specifically, the unexpected and unusual.

Publications
Wiz Blog | RSS feed ·

AWS re:Invent is the largest conference of the year for Amazon Web Services (AWS) with hundreds of talks. We picked our favorite cloud security talks that are available online.

Quick Heal Security Labs - Home ·

Ransomware is a sophisticated malware that infects computing devices and holds the data hostage intending to extort money from its victims. Ransomware uses encryption techniques that render the...

Syrian Electronic Army Financial Services Commercial Facilities Antivirus Email
Wiz Blog | RSS feed ·

Wiz adds full detection of cloud services for deeper visibility and control over shadow IT.

Information Technology
Wiz Blog | RSS feed ·

Hear from industry experts to understand the challenges ahead and best practices CISOs can follow to avoid issues in the future.

Financial Services
Wiz Blog | RSS feed ·

Wiz extends its risk assessment to support host and application level misconfigurations, enabling customers to ensure security and compliance posture for applications.

Information Technology
Wiz Blog | RSS feed ·

We'd like to take a moment this holiday season to recognize our greatest asset—our customers.

Information Technology Healthcare and Public Health
Blue Team Archives - Black Hills Information Security, Inc. ·

Kent Ickler // It’s been over two years since Jordan and I talked about a Blue Team’s perspective on Red Team tools. A Blue Team’s Perspective on Red Team Hack […] The post PlumHound Reporting...

Author Blue Team
Wiz Blog | RSS feed ·

Get all the news from Las Vegas and learn about how Wiz and AWS continue to strengthen a strategic relationship to secure customers’ AWS environments.

Information Technology
Maxwell Dulin's Resources ·

Two ways that things can be hacked in blockchain-land: attacking code running on the blockchain or attacking the blockchain itself. While auditing code for the EVM implementation for Polkadot...