IM
IronMonkey Threat Research
LIVE
|
Articles 28,724
|
CVEs 366,928
|
APT Groups 800
|
Tools 2,196
|
Updated recently
Today Yesterday All 28,692 articles — Page 915 of 957
maxwelldulin ·

Instagram allows for the embedding of posts. When embedding a post, it's simply a popup with embedded HTML that makes a request to https://www.instagram.com/api/v1/oembed/. This will get the post...

maxwelldulin ·

The GNU C dynamic loader (ld) will find and load shared object libraries needs by the program. The dynamic loader is extremely security sensitive since it runs with whatever permissions of the...

Energy
Blue Team Archives - Black Hills Information Security, Inc. ·

Misconfigurations in Active Directory Certificate Services (ADCS) can introduce critical vulnerabilities into an Enterprise Active Directory environment, such as paths of escalation from low...

Alyssa Snow Blue Team
security – Ars Technica ·

Yet another tiny, crucial piece of volunteer software begets a big problem.

Nuclear Communications
ICS Medical Advisories ·

View CSAF 1. EXECUTIVE SUMMARY CVSS v3 7.8 ATTENTION: Low attack complexity Vendor: Santesoft Equipment: Sante FFT Imaging Vulnerability: Out-of-Bounds Read 2. RISK EVALUATION Successful...

Critical Manufacturing Healthcare and Public Health
Wiz Blog | RSS feed ·

Detect and mitigate CVE-2023-38545, a high severity buffer overflow vulnerability in cURL. Organizations should upgrade to the patched version.

ICS Medical Advisories ·

View CSAF 1. EXECUTIVE SUMMARY CVSS v3 7.8 ATTENTION: Low attack complexity Vendor: Santesoft Equipment: Sante DICOM Viewer Pro Vulnerabilities: Out-of-bounds Write, Stack-based Buffer Overflow 2....

Critical Manufacturing Healthcare and Public Health
Spam – Graham Cluley ·

Hackers have exploited a flaw in a widely-used app that warns of missile attacks against Israel to send a fake alert that a nuclear strike is imminent. Read more in my article on the Hot for Security blog.

Defense Industrial Base Nuclear Guest blog Spam
Wiz Blog | RSS feed ·

Get the tl;dr on Wiz's methodology for cloud vulnerability triage in our new report, "The good, the bad, and the vulnerable."

Information Technology
Cloud Threat Landscape ·

On 2023-10-10, a campaign was reported, involving an unknown actor, gaining initial access via Supply chain vector, while using Package typosquatting, Package Starjacking, with unknown impact.

Critical Manufacturing Information Technology
Threat Intelligence ·

From the first assembly lines to the robotics revolution, the manufacturing industry continually strives to find new ways to boost productivity while lowering costs. Today, major trends are...

Critical Manufacturing Information Technology AI & Machine Learning Manufacturing
maxwelldulin ·

tBTC is a bridge that brings BTC to the Ethereum network. This is done using the threshold protocol. Redemption's requested when going from BTC to tBTC on Ethereum can be rquested. Then, a list of...

Transportation Systems
Maxwell Dulin's Resources ·

The tweet starts with an image of Solidity code: here. It's mostly Yul Assembly with two functions calls in it. The first function g(), which calls storeAndReturn(). Inside of storeAndReturn() is...

Information Technology
maxwelldulin ·

Microsoft office allows users to put videos into Word from external locations, such as YouTube, via the Online Videos feature. When the video is embedded in the document, Office checks that the...

Maxwell Dulin's Resources ·

Entitlements are privilege capabilities on application within MacOS. These are stored as key-value pairs embedded within the code signature of the application. In MacOS, apps will have a UI...

Maxwell Dulin's Resources ·

grsecurity has a Linux kernel with a bunch of extra security protections in it. In this post, they detail a protection they created that was inspired from a real bug they found within the Nitro...

Nitro
Maxwell Dulin's Resources ·

Different blockchains have different settings and quirks that lead to various items. For instance, the average block time, timestamp and many others. This talk is inspired by a this Github...

Maxwell Dulin's Resources ·

The author commonly browses through DeFiLlama looking for new things to audit. If it has a TVL of 5M and has a bug bounty program, they will take a quick look for some low hanging fruit. The low...

Commercial Facilities Energy
Maxwell Dulin's Resources ·

The author of this post decided to look into DFX after only looking into smart contract security for a month. This is a decentralized exchange specifically for stablecoin swaps. Fee on Transfer...

Transportation Systems Commercial Facilities
Maxwell Dulin's Resources ·

Bug bounty sounds great! How do you pick a target? Since this is code you're going to be looking at for vulnerabilities and attempting to profit off of, you better make a good decision on this....

maxwelldulin ·

Stacking smashing protections, also known as stack canaries, is a memory corruption protection put on the stack. This is done by putting a special variable on the stack called the canary, that is...

Maxwell Dulin's Resources ·

Aave is a very common loan protocol in the web3 space. This works by depositing your collateral to the system, which allows you to take out loans from any token in the eco-system. A user can...

Maxwell Dulin's Resources ·

Uniswap X is a signature-based order book protocol. This allows for order fillers to perform arbitrary execution during the fulfillment, as long as the result of the execution is the order being...

Government Facilities
Maxwell Dulin's Resources ·

Aave is a very common loan protocol in the web3 space. Liquidation is the process of getting back the tokens of a loan in exchange for a discounted rate on the users collateral. For instance,...

Maxwell Dulin's Resources ·

Aave is a very common laon protocol in the web3 space. A flashloan is a loan that occurs within a single transaction. By doing this, a user can get access to a large amount of money without the...

Energy Commercial Facilities
Maxwell Dulin's Resources ·

Different types of bot actions with frontrunning/backrunning with various markets: Sandwiching: Increase the price of the asset, let the trade happen, then trade back to make a profit. Sniping:...

Maxwell Dulin's Resources ·

Terminals are the most common way for developers to interact with computers. The control codes of this is conveyed in-band to the users. Escape sequences like \x1b[32m are a good example of this....

Critical Manufacturing Energy
Maxwell Dulin's Resources ·

URL parsing is super hard to do properly. There is a standard that has been updated and changed over the years. Additionally, if there is a difference in verification vs. use at any point, this...

Threat Analysis Group (TAG) ·

This bulletin includes coordinated influence operation campaigns terminated on our platforms in Q3 2023. It was last updated on November 8, 2023.

Commercial Facilities Defense Industrial Base
Blue Team Archives - Black Hills Information Security, Inc. ·

Active Directory Certificate Services (ADCS) is used for public key infrastructure in an Active Directory environment. ADCS is widely used in enterprise Active Directory environments for managing...

Commercial Facilities Information Technology Alyssa Snow Blue Team