Archive

Archive

1481 bookmarks
Custom sorting
Windows 10^H^H Symbolic Link Mitigations
Windows 10^H^H Symbolic Link Mitigations
Posted by James Forshaw, abusing symbolic links like it’s 1999. For the past couple of years I’ve been researching Windows elevation of ...
·googleprojectzero.blogspot.co.uk·
Windows 10^H^H Symbolic Link Mitigations
Обзор нового Intercepter-NG 0.9.10 / Хабрахабр
Обзор нового Intercepter-NG 0.9.10 / Хабрахабр
Intro С большим удовольствием хочу представить новую версию Intercepter-NG 0.9.10, которая, на мой взгляд, в значительной степени расширяет область применения...
·habrahabr.ru·
Обзор нового Intercepter-NG 0.9.10 / Хабрахабр
Shopify: Remote Code Execution
Shopify: Remote Code Execution
This post revolves around a remote code execution vulnerability that I found in Shopify Before I start I'd inform you that the vulnerability I found was reported to Shopify, as a part of their bug bounty program in early July and has been fixed. This vulnerability was in the subdomain
·prakharprasad.com·
Shopify: Remote Code Execution
DYLD_PRINT_TO_FILE exploit found in the wild
DYLD_PRINT_TO_FILE exploit found in the wild
Last month, Stefan Esser blogged about a zero-day vulnerability in OS X, without having informed Apple about the problem first. Unfortunately, today has brought the discovery of the first known exploit.
·blog.malwarebytes.org·
DYLD_PRINT_TO_FILE exploit found in the wild
Строим real-time веб-приложения с RethinkDB
Строим real-time веб-приложения с RethinkDB
От переводчика: Совсем недавно узнал про эту довольно интересную базу данных и как раз наткнулся на свежую статью. На Хабре нет почти ни слова о RethinkDB, в...
·m.habrahabr.ru·
Строим real-time веб-приложения с RethinkDB
How I disabled your Chrome security extensions
How I disabled your Chrome security extensions
It turned out that the extension corruption issue was reported in a separate report and by the time I reported the combination of the two issues, the fix for the corruption issue was already out in Chrome Beta! Both issues are now fixed in the latest stable version.
·labs.detectify.com·
How I disabled your Chrome security extensions
babun/babun
babun/babun
babun - Babun - a Windows shell you will love!
·goo.gl·
babun/babun
MS15-083 – Microsoft Windows SMB Memory Corruption Vulnerability | Core Sec
MS15-083 – Microsoft Windows SMB Memory Corruption Vulnerability | Core Sec
On August 11, 2015 Microsoft released 14 security fixes, including an SMB Server fix. In this post I'll explain how I triggered the SMB Server bug. Microsoft Security Bulletin MS15-083: Of all the available patches, I focused in this one: Server Message Block Memory Corruption Vulnerability - CVE-2015-2474
·blog.coresecurity.com·
MS15-083 – Microsoft Windows SMB Memory Corruption Vulnerability | Core Sec
Comma Separated Vulnerabilities
Comma Separated Vulnerabilities
Using Formula Injection to attack users and steal spreadsheet contents:
·contextis.com·
Comma Separated Vulnerabilities
Apple Safari URI spoofing (CVE-2015-5764)
Apple Safari URI spoofing (CVE-2015-5764)
tl;dr Apple Safari for OS X was prone to URI spoofing vulnerability  (and more general a user interface spoofing). Apple released security u...
·intothesymmetry.blogspot.ch·
Apple Safari URI spoofing (CVE-2015-5764)
sirdarckcat: Range Responses: Mix, Match & Leak
sirdarckcat: Range Responses: Mix, Match & Leak
Hey! The videos from AppSec 2015 are now online, and the Service Workers talk is too. Anyway, this post is about another of the slides in...
·sirdarckcat.blogspot.ru·
sirdarckcat: Range Responses: Mix, Match & Leak
Check Point Discovers Critical vBulletin 0-Day
Check Point Discovers Critical vBulletin 0-Day
vBulletin is a commercial forum and blog platform developed by vBulletin Solutions, Inc. It was created over 10 years ago and is written in PHP. It is the world’s most popular forum platform, powering ~78% out of the forums in the top 100K web-sites. Currently there are estimated to be over 40,000 live sites using…
·blog.checkpoint.com·
Check Point Discovers Critical vBulletin 0-Day
XSS to RCE in Atlassian Hipchat | Matt Austin
XSS to RCE in Atlassian Hipchat | Matt Austin
How An XSS in (Hipchat Native OSX application) can lead to remote code execution. Two issues exist in Atlassian’s HipChat desktop client that allow an attack...
·maustin.net·
XSS to RCE in Atlassian Hipchat | Matt Austin
Privilege Escalation | To Shell And Back: Adventures In Pentesting
Privilege Escalation | To Shell And Back: Adventures In Pentesting
Common Windows Privilege Escalation Vectors Imagine this scenario:  You've gotten a Meterpreter session on a machine (HIGH FIVE!), and you opt for running getsystem in an attempt to escalate your privileges... but what that proves unsuccessful?  Should you throw in the towel? Only if you're a quitter... but you're not, are you?  You're a champion!!!  :) In this post I will walk us through common privilege escalation techniques on Windows, demonstrating how to "manually" accomplish each task as well as talk about any related Metasploit modules.  While most techniques are easier to exploit...
·toshellandback.com·
Privilege Escalation | To Shell And Back: Adventures In Pentesting
升级中
升级中
·drops.wooyun.org·
升级中
PortSwigger Web Security Blog: Detecting and exploiting path-relative style
PortSwigger Web Security Blog: Detecting and exploiting path-relative style
Early last year Gareth Heyes unveiled a fascinating new technique for attacking web applications by exploiting path-relative stylesheet imports, and dubbed it ‘Relative Path Overwrite’. This attack tr
·blog.portswigger.net·
PortSwigger Web Security Blog: Detecting and exploiting path-relative style