12/28

LastPass users warned their master passwords are compromised

https://www.bleepingcomputer.com/news/security/lastpass-users-warned-their-master-passwords-are-compromised/
LastPass users warned their master passwords are compromised

Playing around COM objects - PART 1 - Red Teaming's Dojo

https://mohamed-fakroud.gitbook.io/t3nb3w/playing-around-com-objects-part-1#before-hooking
Playing around COM objects - PART 1 - Red Teaming's Dojo

Introduction · Reverse Engineering

https://0xinfection.github.io/reversing/
Introduction · Reverse Engineering

Turning bad SSRF to good SSRF: Websphere Portal (CVE-2021-27748) – Assetnote

https://blog.assetnote.io/2021/12/26/chained-ssrf-websphere/
Turning bad SSRF to good SSRF: Websphere Portal (CVE-2021-27748) – Assetnote

RedLine malware shows why passwords shouldn't be saved in browsers

https://www.bleepingcomputer.com/news/security/redline-malware-shows-why-passwords-shouldnt-be-saved-in-browsers/
RedLine malware shows why passwords shouldn't be saved in browsers

Log4j – Apache Log4j Security Vulnerabilities

https://logging.apache.org/log4j/2.x/security.html
Log4j – Apache Log4j Security Vulnerabilities

Releases · hasherezade/hollows_hunter

https://github.com/hasherezade/hollows_hunter/releases/
Releases · hasherezade/hollows_hunter

Releases · hasherezade/pe-sieve

https://github.com/hasherezade/pe-sieve/releases/
Releases · hasherezade/pe-sieve

V8 Heap pwn and /dev/memes - WebOS Root LPE | Blog

https://www.da.vidbuchanan.co.uk/blog/webos-wampage.html
V8 Heap pwn and /dev/memes - WebOS Root LPE | Blog

optee-qemu/README.md at main · pjlantz/optee-qemu · GitHub

https://github.com/pjlantz/optee-qemu/blob/main/README.md
optee-qemu/README.md at main · pjlantz/optee-qemu · GitHub

Active Defense & Cyber Deception w/ John Strand - Antisyphon

https://www.antisyphontraining.com/active-defense-cyber-deception-w-john-strand/
Active Defense & Cyber Deception w/ John Strand - Antisyphon

Experts Detail Logging Tool of DanderSpritz Framework Used by Equation Group Hackers

https://thehackernews.com/2021/12/experts-detail-logging-tool-of.html
Experts Detail Logging Tool of DanderSpritz Framework Used by Equation Group Hackers

fa.pdf

https://news.amnpardaz.com/wp-content/uploads/sites/3/2021/12/fa.pdf
fa.pdf

0xbb - PHP LFI with Nginx Assistance

https://bierbaumer.net/security/php-lfi-with-nginx-assistance/
0xbb - PHP LFI with Nginx Assistance