The Hacker News-- German investigating authorities have raided the offices of Munich-based company FinFisher that sells the infamous commercial surveillance spyware dubbed 'FinSpy,' reportedly in suspicion of illegally exporting the software to abroad without the required authorization. Investigators from the German Customs Investigation Bureau (ZKA), ordered by the Munich Public Prosecutor's Office, searched a View … Continue reading Police Raided German Spyware Company FinFisher Offices
Author: Dade Murphy
FIFA 21 game scams: watch out for unsporting conduct
Malwarebytes Labs-- Despite COVID-19, soccer season is slowly ebbing its way back into daily life around the world. It’s also sneaking back onto TV screens in the form of huge-budget video games. Step up to the plate, FIFA 21. FIFA games: the football juggernaut The FIFA series is an absolute monster in terms of sales, … Continue reading FIFA 21 game scams: watch out for unsporting conduct
Exploit Development 101 — Buffer Overflow Free Float FTP
InfoSec Write-ups - Medium-- Introduction to exploit development on Windows_x86_32Continue reading on InfoSec Write-ups » View original article on InfoSec Write-ups - Medium
Silent Librarian APT right on schedule for 20/21 academic year
Malwarebytes Labs-- A threat actor known as Silent Librarian/TA407/COBALT DICKENS has been actively targeting universities via spear phishing campaigns since schools and universities went back. We were initially tipped off by one of our customers, and were able to identify a new active campaign from this APT group. Based off a number of intended victims, … Continue reading Silent Librarian APT right on schedule for 20/21 academic year
FIN11 Hackers Spotted Using New Techniques In Ransomware Attacks
The Hacker News-- A financially-motivated threat actor known for its malware distribution campaigns has evolved its tactics to focus on ransomware and extortion. According to FireEye's Mandiant threat intelligence team, the collective — known as FIN11 — has engaged in a pattern of cybercrime campaigns at least since 2016 that involves monetizing their access to … Continue reading FIN11 Hackers Spotted Using New Techniques In Ransomware Attacks
MEDUZA – A More Or Less Universal SSL Unpinning Tool For iOS
KitPloit - PenTest Tools!-- "MEDUZA" ("медуза") means "jellyfish" in Ukrainian What is MEDUZA? It's a Frida-based tool, my replacement for SSLKillSwitch. I created it for in-house use, but then decided to opensource it. TBH, I hate open source, but the world is full of compromises... :(How does it work? It's simple. First time, you run … Continue reading MEDUZA – A More Or Less Universal SSL Unpinning Tool For iOS
Tyler Technologies Paid Ransomware Demand
Latest Hacking News-- Tyler Tech Ransomware Attack Overview A couple of weeks ago, Tyler Technologies made it to the news after suffering a Tyler Technologies Paid Ransomware Demand on Latest Hacking News. View original article on Latest Hacking News
Guide: Scale or Fail — Why MSSPs Need Multitenant Security Solutions
The Hacker News-- Managed Security Services Providers (MSSPs) have it rough. They have the burden of protecting their client organizations from cyberattacks, with clients from different industries, different security stacks, and different support requirements. And everything is in a constant state of flux. MSSPs are turning to multitenant solutions to help reduce the complexity of … Continue reading Guide: Scale or Fail — Why MSSPs Need Multitenant Security Solutions
Microsoft Releases Patches For Critical Windows TCP/IP and Other Bugs
The Hacker News-- Microsoft on Tuesday issued fixes for 87 newly discovered security vulnerabilities as part of its October 2020 Patch Tuesday, including two critical remote code execution (RCE) flaws in Windows TCP/IP stack and Microsoft Outlook. The flaws, 11 of which are categorized as Critical, 75 are ranked Important, and one is classified Moderate in … Continue reading Microsoft Releases Patches For Critical Windows TCP/IP and Other Bugs
TryHackMe- LazyAdmin CTF Writeup (Detailed)
InfoSec Write-ups - Medium-- CTF Writeup #3Welcome Folks!We are going to LazyAdmin CTF on TryHackMe. I hope you will like the writeup. There are 2 ways we will get root. Read along you’ll find them near the end.TryHackMe | LazyAdminLet’s dive in!! Enjoy the flow!!Deploy the machine.In the meantime when you are waiting for machine to be deployed, … Continue reading TryHackMe- LazyAdmin CTF Writeup (Detailed)





