The Hacker News-- A group of researchers has detailed a new timing vulnerability in Transport Layer Security (TLS) protocol that could potentially allow an attacker to break the encryption and read sensitive communication under specific conditions. Dubbed "Raccoon Attack," the server-side attack exploits a side-channel in the cryptographic protocol (versions 1.2 and lower) to extract … Continue reading New Raccoon Attack Could Let Attackers Break SSL/TLS Encryption
Category: Articles
HTB Remote [Writeup]
InfoSec Write-ups - Medium-- NFS Check, CMS exploitation, UsoSvc service exploitContinue reading on InfoSec Write-ups » View original article on InfoSec Write-ups - Medium
Become a Data-Driven Leader with This Certification Bundle
Null Byte « WonderHowTo-- If you're interested in becoming an in-demand project manager or leader in today's data-driven world, you need to know more than just a few generic management strategies to lead teams and companies successfully. To land the best and most respected positions in the field, you're going to have to have an … Continue reading Become a Data-Driven Leader with This Certification Bundle
Kick Start In Bug Bounties
InfoSec Write-ups - Medium-- Image Credit : Hakin9.orgHello nasty Hackers!In this Write-up, I am going to share some pro tips which will surely help you, If you just started bug bounty & is unable to find valid bugs.For this write-up, I’m assuming that you already know the basics of Web Application Hacking & you are already familiar with … Continue reading Kick Start In Bug Bounties
Malvertising campaigns come back in full swing
Malwarebytes Labs-- Malvertising campaigns leading to exploit kits are nowhere near as common these days. Indeed, a number of threat actors have moved on to other delivery methods instead of relying on drive-by downloads. However, occasionally we see spikes in activity that are noticeable enough that they highlight a successful run. In late August, we … Continue reading Malvertising campaigns come back in full swing
How to Configure Port Forwarding to Create Internet-Connected Services
Null Byte « WonderHowTo-- Ports allow network and internet-connected devices to interact using specified channels. While servers with dedicated IP addresses can connect directly to the internet and make ports publicly available, a system behind a router on a local network may not be open to the rest of the web. To overcome the issue, … Continue reading How to Configure Port Forwarding to Create Internet-Connected Services
Cynet Takes Cyber Threat Protection Automation to the Next Level with Incident Engine
The Hacker News-- We have all heard of the "cybersecurity skills gap" — firms' inability to hire and retain high-level cybersecurity talent. I see this gap manifesting in two ways. First, companies that want to hire cybersecurity talent simply cannot find candidates with sufficient skills. Second, companies that cannot afford specialized cybersecurity talent and therefore … Continue reading Cynet Takes Cyber Threat Protection Automation to the Next Level with Incident Engine
Exploiting Sudo Rights| HTB TraceBack User
InfoSec Write-ups - Medium-- Horizontal privilege escalation from webadmin to sysadminContinue reading on InfoSec Write-ups » View original article on InfoSec Write-ups - Medium
Cybercriminals Are Using Legit Cloud Monitoring Tools As Backdoor
The Hacker News-- A cybercrime group that has previously struck Docker and Kubernetes cloud environments has evolved to repurpose genuine cloud monitoring tools as a backdoor to carry out malicious attacks, according to new research. "To our knowledge, this is the first time attackers have been caught using legitimate third party software to target cloud … Continue reading Cybercriminals Are Using Legit Cloud Monitoring Tools As Backdoor
Microsoft Releases September 2020 Security Patches For 129 Flaws
The Hacker News-- As part of this month's Patch Tuesday, Microsoft today released a fresh batch of security updates to fix a total of 129 newly discovered security vulnerabilities affecting various versions of its Windows operating systems and related software. Of the 129 bugs spanning its various products — Microsoft Windows, Edge browser, Internet Explorer, … Continue reading Microsoft Releases September 2020 Security Patches For 129 Flaws

![HTB Remote [Writeup]](https://h4ck3r5code.files.wordpress.com/2020/09/61a7c-10xjxkn0ooxdxmum2rgkafg.png?w=656&h=300&crop=1)




