Alaid TechThread
@offensive_thread
675
subscribers
6
photos
1
video
83
files
1.31K
links
Vulnerability discovery, threat intelligence, reverse engineering, AppSec
Download Telegram
Join
Alaid TechThread
675 subscribers
Alaid TechThread
https://www.atredis.com/blog/cylance-privilege-escalation-vulnerability
Atredis Partners
Escalating Privileges with CylancePROTECT — Atredis Partners
CylancePROTECT contains a privilege escalation vulnerability due to the update service granting Users Modify permissions on the log folder, as well as any log file it writes. This allows any user to empty the folder and use it as a Mount Point, which can…
Alaid TechThread
https://landave.io/2018/05/7-zip-from-uninitialized-memory-to-remote-code-execution/
landave's blog
7-Zip: From Uninitialized Memory to Remote Code Execution
Blog about anti-virus software vulnerabilities.
Alaid TechThread
https://www.heise.de/ct/artikel/Exclusive-Spectre-NG-Multiple-new-Intel-CPU-flaws-revealed-several-serious-4040648.html
c't Magazin
Exclusive: Spectre-NG - Multiple new Intel CPU flaws revealed, several serious
New flaws and even more patches - "Spectre Next Generation" is just around the corner. According to information exclusively available to c't, researchers have already found eight new security holes in Intel processors.
Alaid TechThread
deeplearning.pdf
395.6 KB
Alaid TechThread
https://arxiv.org/pdf/1802.10135.pdf
Alaid TechThread
Microsoft Malware Classification Challenge
Alaid TechThread
https://researchcenter.paloaltonetworks.com/2018/02/unit42-sofacy-attacks-multiple-government-entities/
Unit42
Sofacy Attacks Multiple Government Entities
Unit 42 examines recent Sofacy group activities including multiple attacks to government entities.
Alaid TechThread
https://s.siguza.net/dl/pdf/2018-Zer0Con.pdf
Alaid TechThread
https://geektimes.com/post/294455/
Habr
Почему нельзя кричать на свой HDD
На конференции по компьютерной безопасности Ekoparty 2017 в Буэнос-Айресе аргентинский хакер Альфредо Ортега (Alfredo Ortega) показал очень интересную...
Alaid TechThread
1702.06162-2.pdf
297.4 KB
Alaid TechThread
https://www.ikotler.org/BackdooringWithMetadata.pdf?t=1&cn=ZmxleGlibGVfcmVjc18y&refsrc=email&iid=5ee0e9a83e6d4d7194d5b1c1570e1a72&uid=717932366&nid=244+285282312
Alaid TechThread
https://www.megabeets.net/decrypting-dropshot-with-radare2-and-cutter-part-1/
Megabeets
Decrypting APT33's Dropshot Malware with Radare2 and Cutter – Part 1
In this article, we'll get familiar with Cutter, a GUI for radare2, as well as analyze an advanced malware. In the end, we'll write a decryption script using r2pipe's Python bindings.
Alaid TechThread
https://leanpub.com/IDAPython-Book
Alaid TechThread
https://payatu.com/cloudfuzz-machine-learning-powered-content-specific-input-generation-fuzzing/
payatu
CloudFuzz: Machine learning powered content specific input generation for fuzzing - payatu
CloudFuzz is an integrated software framework for security based fuzzing. The end goal is to provide a workflow that will allow continuous fuzzing and generate reports of the software security…
Alaid TechThread
https://github.com/huku-/research/wiki/Intel-CPU-security-features
- Intel CPU security features
GitHub
Intel CPU security features
Notes on various topics I'm interested in. Contribute to huku-/research development by creating an account on GitHub.
Alaid TechThread
https://blogs.securiteam.com/index.php/archives/3689
- QRadar Remote Command Execution
Alaid TechThread
https://www.contextis.com/blog/frag-grenade-a-remote-code-execution-vulnerability-in-the-steam-client
Alaid TechThread
https://www.weibo.com/ttarticle/p/show?id=2309404245794218721506
iOS jailbreak internals (1): Remount rootfs after iOS 11.3
Alaid TechThread
https://github.com/0x09AL/CVE-2018-8174-msf
GitHub
GitHub - 0x09AL/CVE-2018-8174-msf: CVE-2018-8174 - VBScript memory corruption exploit.
CVE-2018-8174 - VBScript memory corruption exploit. - 0x09AL/CVE-2018-8174-msf
Alaid TechThread
https://dougallj.wordpress.com/2018/06/04/writing-a-hex-rays-plugin-vmx-intrinsics/
dougallj
Writing a Hex-Rays Plugin: VMX Intrinsics
I’ve been very excited to work with the new Hex-Rays Decompiler microcode API, and I’ve finally had the chance to sit down and build a useful plugin. This post describes the development…
Alaid TechThread
https://securelist.com/disappearing-bytes/84017/
Securelist
Disappearing bytes: Reverse engineering the MS Office RTF parser
In 2017, we encountered lots of samples that were ‘exploiting’ the implementation of Microsoft Word’s RTF parser to confuse all other third-party RTF parsers, including those used in anti-malware software.