Think Outside the Scope: Advanced CORS Exploitation Techniques | https://medium.com/@sandh0t/think-outside-the-scope-advanced-cors-exploitation-techniques-dad019c68397
Medium
Think Outside the Scope: Advanced CORS Exploitation Techniques
Hi everyone,
Forwarded from r0 Crew (Channel)
Ret-sync now supports Ghidra (syncing with popular debuggers) https://github.com/bootleg/ret-sync #ghidra #reverse #debugger #dukeBarman
GitHub
GitHub - bootleg/ret-sync: ret-sync is a set of plugins that helps to synchronize a debugging session (WinDbg/GDB/LLDB/OllyDbg2/x64dbg)…
ret-sync is a set of plugins that helps to synchronize a debugging session (WinDbg/GDB/LLDB/OllyDbg2/x64dbg) with IDA/Ghidra/Binary Ninja disassemblers. - bootleg/ret-sync
Сканер вредоносов на основе нейронной сети в несколько строк
https://github.com/evilsocket/ergo-pe-av
https://github.com/evilsocket/ergo-pe-av
GitHub
GitHub - evilsocket/ergo-pe-av: 🧠 🦠 An artificial neural network and API to detect Windows malware, based on Ergo and LIEF.
🧠 🦠 An artificial neural network and API to detect Windows malware, based on Ergo and LIEF. - GitHub - evilsocket/ergo-pe-av: 🧠 🦠 An artificial neural network and API to detect Windows malware, bas...
🔥 Декомпиляция средствами NMT
Автоматическое создание декомпилятора на основе обучение по коду, построенному компилятором.
https://arxiv.org/pdf/1905.08325.pdf
https://github.com/omerktz/trafix
Автоматическое создание декомпилятора на основе обучение по коду, построенному компилятором.
https://arxiv.org/pdf/1905.08325.pdf
https://github.com/omerktz/trafix
GitHub
omerktz/TraFix
Implementation of TraFix (automatic trainable decompiler based on NMT) as published in ArXiv - omerktz/TraFix
Видео докладов с OPCODE 2019
https://www.youtube.com/playlist?list=PLDRL0OXbBArFutTX4o_tO9WX5vaRFaXkN
https://www.youtube.com/playlist?list=PLDRL0OXbBArFutTX4o_tO9WX5vaRFaXkN
YouTube
OPCDE 2019 - YouTube
Building a real-world web honeypot for CVE-2019–6340 (RCE in Drupal core)
https://medium.com/@SecurityBender/building-a-real-world-web-honeypot-for-cve-2019-6340-rce-in-drupal-core-f4240f989c3f
https://medium.com/@SecurityBender/building-a-real-world-web-honeypot-for-cve-2019-6340-rce-in-drupal-core-f4240f989c3f
Medium
Building a real-world web honeypot for CVE-2019–6340 (RCE in Drupal core)
A while ago I started a project for managing real-word web honeypots. I initially built it to manage some WordPress honeypots but after…
Analysis of a 1day (CVE-2019-0547) and discovery of a forgotten condition in the patch (CVE-2019-0726) – Part 1 of 2
https://sensepost.com/blog/2019/analysis-of-a-1day-cve-2019-0547-and-discovery-of-a-forgotten-condition-in-the-patch-cve-2019-0726-part-1-of-2/
https://sensepost.com/blog/2019/analysis-of-a-1day-cve-2019-0547-and-discovery-of-a-forgotten-condition-in-the-patch-cve-2019-0726-part-1-of-2/
Sensepost
SensePost | Analysis of a 1day (cve-2019-0547) and discovery of a forgotten condition in the patch (cve-2019-0726) – part 1 of…
Leaders in Information Security
Forwarded from Noise Security Bit
1-клик Remote Code Execution (RCE) в Skype Web Plugin и QT
https://0x41.cf/infosec/2019/05/28/skype-web-plugin-ez-rce.html
https://0x41.cf/infosec/2019/05/28/skype-web-plugin-ez-rce.html