So any airline (presumably) can submit a flight plan to NATS, and they can be formatted in a way which locks-up the system. What does Red Team say about this?
And let's say NATS in the UK is now hardened against this. What about every other air traffic control system in the world?
#SQLInjection Attacks - Download a FREE preview and check the articles inside.
#infosec #cybersecurity #redteam #pentest #pentesting #hacking #hackers #coding #opensource #Linux #windows
#Windows #Linux #OpenSource #Coding #Hackers #Hacking #pentesting #pentest #redteam #CyberSecurity #InfoSec #sqlinjection
I really enjoyed this Pentesting story. The practical day-to-day challenge of being a pentester trying to break into a company with good security practices. Reading it reminded me of how stressed I felt a week into a pentest and still had not gotten a foothold; a little PTSD.
https://www.rapid7.com/blog/post/2023/08/31/pentales-what-its-like-on-the-red-team/
log that. Quite a lot is logged in eventlogs, like changing RDP resolution etc. But session passwordless session hijacking isnt logged.
@GossiTheDog
Wrote about this a few years ago: https://doublepulsar.com/rdp-hijacking-how-to-hijack-rds-and-remoteapp-sessions-transparently-to-move-through-an-da2a1e73a5f6
That enables silently hijacking rdp sessions.
#RedTeam: I know this is controversial but...I like Pineapple on Pizza.
#BlueTeam Delivering The Pizza:
@BlueTeamCon @BlueTeamCon #wifipinapple #pineappleonpizza @redteamvillage_
#redteam #blueteam #wifipinapple #pineappleonpizza
Sliver - Adversary Emulation Framework
#dns #golang #http #gplv3 #dns_server #sliver #redteam #security_tools #pentest #infosec
#dns #golang #http #gplv3 #dns_server #sliver #redteam #security_tools #pentest #infosec
Planning and preparing for a physical pen test is always mentally taxing on me.
Glad the on-site team was able to complete their tasks without lock-picks or the fuzz being called. I'm even more happy I had off-site duty this time and only had to babysit infrastructure and callbacks.
That photo of the <Internal Project> whiteboard was a nice touch.
I have another helpful site for both #RedTeam & #BlueTeam. Trusted websites that can be misused in an attack.
"Living Off Trusted Sites (LOTS) Project"
https://lots-project.com/ (lots-project DOT com)
DorXNG is a modern solution for harvesting OSINT data using advanced search engine operators through multiple upstream search providers. On the backend it leverages a purpose built containerized image of SearXNG, a self-host, hackable, privacy focused, meta-search engine.
#osint #infosec #redteam #defcon
We spoke at the @reconvillage this year at @defcon
Here is our talk and research:
https://www.youtube.com/watch?v=_5yEfCdOCGQ
https://github.com/ResearchandDestroy/DorXNG
https://github.com/ResearchandDestroy/BDR
#OSINT #InfoSec #RedTeam
Greetings from #DEFCON31! 👋
🐢 The Giskard team is now at #DC31 and we'll be happy to meet you. Join us at the #AIVillage for the #GenAI #RedTeam.
📩 DM us if you want to meet and discuss about #AISafety, #LLMs safety, #AI #Testing and #MLOps.
#Defcon31 #dc31 #aivillage #genai #redteam #aisafety #llms #ai #testing #MLops
I need 324 more #followers to beat out my following on Twitter. Who wants to help me out? I post content about Cyber Security and whatnot. #cyber #cybersecurity #tech #it #support #sysadmin #security #guitar #music #rock #rockandroll #metal #remote #fyp #foryou #foryourpage #tiktok #citizenfortress #infosec #veteran #vet #usnavy #navy #military #blackhat #whitehat #redteam #blueteam
#followers #cyber #cybersecurity #Tech #IT #support #sysadmin #security #guitar #music #rock #rockandroll #metal #remote #fyp #foryou #foryourpage #TikTok #citizenfortress #InfoSec #veteran #vet #usnavy #navy #military #blackhat #whitehat #redteam #blueteam
HackRead: Rust-Based Injector Deploys XWorm and Remcos RAT in Multi-Stage Attack https://www.hackread.com/rust-injector-xworm-remcos-rat-multi-stage-attack/ #CyberAttacks #CyberAttack #Security #security #Malware #RedTeam #Remcos #Rust #RAT
#cyberattacks #cyberattack #security #malware #redteam #remcos #rust #rat
OooOk Fediverse,
what's the best way to follow #defcon from afar if you don't have a Twitter account. Who to follow on Fediverse. Is there great blogs? Perhaps livestreams on YouTube or twitch?
Please retoot! 🥳
#askfedi #askfedivers #askmsatodon #infosec #opsec #itsec #redteam #blueteam
#defcon #askfedi #askfedivers #askmsatodon #infosec #opsec #itsec #redteam #blueteam
Double #VendrediLecture: Lovecraft Country et le tome 2 de Ces Guerres Qui Nous Attendent (le bouquin de prospective de la #RedTeam de #PSL)
#vendredilecture #redteam #psl
🙌We'll join you at the #AIVillage for the #GenAI #RedTeam! It's a great opportunity to show the potential of GenAI, and emphasize the importance of #AISafety🛡️
We've contributed to some of the challenges for the AIVillage #CTF and can’t wait to have you try them out!🤯 [2/4]
#aivillage #genai #redteam #aisafety #ctf