Sijmen Mulder · @sjmulder
112 followers · 106 posts · Server mastodon.nl

We zoeken bij Securify een cloudengineer! securifybv.recruitee.com/o/clo

#jobs #azure #netsec

Last updated 1 year ago

Who Let The Dogs Out 🐾 · @ashed
138 followers · 10019 posts · Server mastodon.ml

MalDoc in PDF - Detection bypass by embedding a malicious Word file into a PDF file – - JPCERT/CC Eyes | JPCERT Coordination Center official Blog

blogs.jpcert.or.jp/en/2023/08/

> JPCERT/CC has confirmed that a new technique was used in an attack that occurred in July, which bypasses detection by embedding a malicious Word file into a PDF file. This blog article calls the technique “MalDoc in PDF” hereafter and explains the details of and countermeasures against it.

#netsec

Last updated 1 year ago

Chris Rosa · @chrisrosa
14 followers · 135 posts · Server sfba.social

Some sneaky base64 encoded HTML attachments lately.

#email #emailsec #netsec #sysadmin

Last updated 1 year ago

Chris Rosa · @chrisrosa
14 followers · 135 posts · Server sfba.social
Gonçalo Valério · @dethos
333 followers · 1399 posts · Server s.ovalerio.net

"Vulnerabilities in Sogou Keyboard encryption expose keypresses to network eavesdropping"

citizenlab.ca/2023/08/vulnerab

#netsec #infosec #security

Last updated 1 year ago

Eduardo K. Simioni · @eks
57 followers · 97 posts · Server mastodon.gamedev.place

Oof... Are session tokens really being stored in the logs?

theregister.com/2023/08/10/mic

#netsec #microsoft #onedrive

Last updated 1 year ago

windows-install-hosts.bat.lnk has been detected as Clam.lnk.Trojan.Qakbot-9977832-1

#netsec #infosec #itsecurity #malware #trojans

Last updated 1 year ago

HDTunePro.exe has been detected as Clam.Win.Ransomware.Cerber-9981227-0

Does anyone know more about this program?

#netsec #infosec #itsecurity #malware #ransomware

Last updated 1 year ago

Andrey · @alberand
9 followers · 54 posts · Server mas.to

CVE-2023-36325: Attackers can de-anonymize i2p hidden services with a message replay attack

xeiaso.net/blog/CVE-2023-36325

@cadey

Hey @cadey, do you host it as an exit node or only router? Just wondering, as I read that hosting an exit node could be problematic (as people do illegal stuff through it)

#infosec #netsec #cve #i2p

Last updated 1 year ago

Gonçalo Valério · @dethos
333 followers · 1394 posts · Server s.ovalerio.net

"Uninstall the Nightowl App, now."

robins.one/notes/uninstall-the

"...forcibly joins your devices into a botnet for use of market research, without your knowledge (other than the TOS in small text on the download page) or express consent (this feature cannot be turned off, even when the app is quit)."

#nightowl #apple #netsec #infosec #security

Last updated 1 year ago

My parents had malware on their computer - I had to remove it for them

- It was overwriting their search engines in all installed browsers (with redirection URLs)

- It added redirecting Amazon links to the Desktop and Start Menu

- Infection happened on August 24, 2023 0:10+0100

I think the program was named 'Cookie A.Q.'

#cybersecurity #cybersec #netsec #malware #adware #spyware

Last updated 1 year ago

quoll (√) · @quoll
272 followers · 3700 posts · Server mastodon.sdf.org

if a cyber security goon is demanding you to prove that some random CVE that was spat out of a dumb scan has been patched, you can probably find what you need in the packages changelog.Debian.gz file

eg:

zgrep CVE /usr/share/doc/openssh-server/changelog.Debian.gz

And yes x 💯 this is pointless bureaucracy that does nothing for security.

#webdev #netsec #goon

Last updated 1 year ago

Max Lee :blobcatverified: · @the_moep
33 followers · 269 posts · Server social.tchncs.de

According to Wiz the keys stolen by to get into Exchange eMail accounts was a lot more powerful and might've been able to access all Microsoft services!

wiz.io/blog/storm-0558-comprom

#china #microsoft #cloud #security #netsec #hacking #malware #privacy

Last updated 1 year ago

Gonçalo Valério · @dethos
333 followers · 1379 posts · Server s.ovalerio.net
Gonçalo Valério · @dethos
315 followers · 1361 posts · Server s.ovalerio.net

"Hunting for Nginx Alias Traversals in the wild"

labs.hakaioffsec.com/nginx-ali

Note: it has a juicy case study related to self-hosted bitwarden.

#bitwarden #nginx #netsec #infosec #security

Last updated 1 year ago

LocalAreaKnitwork 🧶 · @KillrBunn3
286 followers · 723 posts · Server defcon.social

Coming across a fun bug in Pentoo, grappling with it CONVINCED that I've screwed something up irreparably only to work up the courage, post a request for help, and finding that it's a known issue in the packet manager...

At least it wasn't a dumb question this time! 😃

#pentoo #linux #infosec #netsec

Last updated 1 year ago

Gonçalo Valério · @dethos
313 followers · 1341 posts · Server s.ovalerio.net
Hackademicus · @hackademicus
5 followers · 16 posts · Server mastodonnederland.online

KeePass fixed the bug that allows the extraction of the cleartext master password
KeePass fixed bug against cleartext master password
KeePass addressed the CVE-2023-32784 bug that allows the extraction of the cleartext master password from the memory of the client.

KeePass has addressed the CVE-2023-32
hackademicus.nl/keepass-fixed-

#security #news #netsec #keepass #infosec #hacking #BUG #password #blog

Last updated 1 year ago

Dave Drager · @ddrager
20 followers · 56 posts · Server hachyderm.io

Super interesting description of an iOS attack Kapersky has named "Triangulation": usa.kaspersky.com/blog/triangu

Looking forward to a deep dive on this.

#cybersecurity #triangulation #netsec

Last updated 1 year ago

Dustin · @DigitalKrampus
44 followers · 473 posts · Server geekdom.social

BrutePrint attack which targets smartphone fingerprint scanners via the SPI bus between it and the processor.

tl;dr

Android is very vulnerable to this attack. All smartphones tested had their fingerprint authentication bypassed eventually.

iPhones are somewhat vulnerable to this attack, though the attempt-lock feature of iOS reduced its effectiveness. The actual number of attempts allowed by iOS was actually 3x what it was configured to allow.

arstechnica.com/information-te

#netsec

Last updated 1 year ago