IM
IronMonkey Threat Research
LIVE
|
Articles 28,704
|
CVEs 366,691
|
APT Groups 800
|
Tools 2,196
|
Updated recently
Today Yesterday All 28,672 articles — Page 953 of 956
Orange Cyberdefense ·

This is a summary of our BlackHat USA 2020 talk. Introduction On some of our engagements, Szymon and I found ourselves on various networks vulnerable to; insecure, misconfigured, and often...

Communications Information Technology
McAfee Labs | McAfee Blogs ·

Building Adaptable Security Architecture Against NetWalker NetWalker Overview The NetWalker ransomware, initially known as Mailto, was first detected in August... The post McAfee Defender’s Blog:...

Financial Services Government Facilities
McAfee Labs | McAfee Blogs ·

Executive Summary The NetWalker ransomware, initially known as Mailto, was first detected in August 2019. Since then, new variants were... The post Take a “NetWalk” on the Wild Side appeared first...

Financial Services Government Facilities
Orange Cyberdefense ·

From the 1st of August 2020, SensePost will be changing, from the name of our company, to the name of our ethical hacking team and related services. Our company name will change to Orange...

Information Technology
McAfee Labs | McAfee Blogs ·

Executive Summary We are in the midst of an economic slump [1], with more candidates than there are jobs, something... The post Operation (노스 스타) North Star A Job Offer That’s Too Good to be True?...

Hidden Cobra Gamaredon Group Defense Industrial Base Commercial Facilities
McAfee Labs | McAfee Blogs ·

Building Adaptable Security Architecture Against the Operation North Star Campaign Operation North Star Overview Over the last few months, we... The post McAfee Defender’s Blog: Operation North...

Defense Industrial Base Information Technology
Report Feed ·

Joint report between the NCSC and KPMG UK is the first in a series to benchmark and track levels of diversity and inclusion in the cyber security industry.

Government Facilities
Cloud Threat Landscape ·

Drizly, an online alcohol delivery service, recently notified customers of a data breach in which a hacker accessed customer information. This breach reportedly affected up to 2.5 million...

Financial Services
Cloud Threat Landscape ·

On 2020-07-28, a campaign was reported, involving Doki operator, gaining initial access via Software misconfig, while using Exploiting host mount to escape to host, targeting Docker to achieve...

Information Technology
Cloud Threat Landscape ·

Over the July 4th holiday weekend Expel’s SOC spotted a coin-mining attack in a customer’s Amazon Web Services (AWS) environment. The attacker compromised the root IAM user access key and used it...

McAfee Labs | McAfee Blogs ·

Happy Birthday! Today we mark the fourth anniversary of the NoMoreRansom initiative with over 4.2 million visitors, from 188 countries,... The post Six Hundred Million Reasons to Celebrate: No...

Financial Services Commercial Facilities
Blog ·

Recently I had the need to explore coverage guided fuzzing in Go. Whilst there is a bit of information scattered around on multiple different sites, as someone who is fairly new to Go, I couldn’t...

Financial Services Go Fuzzing
n1ghtw0lf ·

Background

Tutorials
n1ghtw0lf ·

In the first part we talked about the basics of Qiling, you can find it here.

Commercial Facilities Tutorials
Cloud Threat Landscape ·

On 2020-07-25, a campaign was reported, involving Meow, gaining initial access via Software misconfig, while using FTP access, Misconfigured DB abuse, targeting MongoDB, Elasticsearch, Apache...

Ransomware – Hacker Combat ·

What Are Bad Bots? A Bot, or internet bot, web bot, and www bot, among other similar terms, is technically a program or software that is designed to perform relatively... The post How to Prevent...

Orange Cyberdefense ·

tl;dr: In this writeup I am going to describe how to abuse a GenericWrite ACE misconfiguration in Active Directory to run arbitrary executables. During a recent assessment I found a new way to...

McAfee Labs | McAfee Blogs ·

Windows Subsystem for Linux Plan 9 Protocol Research Overview This is the final blog in the McAfee research series trilogy... The post Hunting for Blues – the WSL Plan 9 Protocol BSOD appeared...

Report Feed ·

The NCSC report highlights the cyber threats faced by the sports sector and suggests how to stop or lessen their impact on organisations.

Government Facilities
McAfee Labs | McAfee Blogs ·

The McAfee Advanced Threat Research team today published the McAfee® Labs COVID-19 Threats Report, July 2020. In this “Special Edition”... The post McAfee COVID-19 Report Reveals Pandemic Threat...

Financial Services Commercial Facilities
Orange Cyberdefense ·

After the SigRed (CVE-2020-1350) write-up was published by Check Point, there was enough detailed information for the smart people, like Hector and others of the Twitterverse (careful with the...

Information Technology
Orange Cyberdefense ·

When conducting a red team exercise, we want to blend in as much as possible with the existing systems on the target network. For most large networks, that means looking like a Windows machine...

Low-level adventures ·

Welcome back to part 2.2 of this series! If you have not yet checked out part 1 or part 2.1, please do so first as they highlight important reconnaissance steps as well as the first half of the...

Healthcare and Public Health
n1ghtw0lf ·

QBot is a modular information stealer also known as Qakbot or Pinkslipbot. It has been active for years since 2007. It has historically been known as a banking Trojan, meaning that it steals...

Financial Services Malware Analysis
Report Feed ·

A summary of the NCSC’s analysis of the May 2020 US sanction which caused the NCSC to modify the scope of its security mitigation strategy for Huawei.

Government Facilities
Low-level adventures ·

Welcome back to part 2 of this series! If you have not checked out part 1 yet, please do so first, as it highlights important reconnaissance steps!So let us dive right into the IDA adventure to...

Orange Cyberdefense ·

I recently tested an Internet facing Anti-Spam product called SpamTitan Gateway. As you could infer from the name of the product, this platform’s purpose was to detect Spam and or other malicious...

Financial Services
Low-level adventures ·

Recently, we came across some firmware samples from D-Link routers that we were unable to unpack properly. Luckily, we got our hands on an older, cheaper but similar device (DIR882) that we could...

Commercial Facilities
Orange Cyberdefense ·

Intro For the longest time I had the idea to implement a notification system that would alert me if someone ever logged in (or tried to login) to an SSH server or XSession on a machine I...

Low-level adventures ·

Note: This is a re-upload of an old write-up.This is another write-up from an interesting little challenge. The original forum post about it can be found here. To get your hands on the challenge...