Week in Review

/Week in Review

Week 17 In Review – 2016

Resources Understanding and Hardening Linux Containers - www.nccgroup.trust In general, this operating system virtualization via Linux Containers is an attractive feature for efficiency, speed and modern application deployment, however many would-be adopters continue to question the security of these technologies or platforms. Techniques How I Hacked Facebook, and Found Someone's Backdoor Script - devco.re With [...]

2017-03-12T17:39:14-07:00 April 24th, 2016|Site News, Week in Review|0 Comments

Week 16 In Review – 2016

Events Related CanSecWest - www.slideshare.net BSides Nashville 2016 Videos - www.irongeek.com Infiltrate 2016 - infiltratecon.com Resources Ransomware: Past, Present, and Future - blog.talosintel.com The rise of ransomware over the past year is an ever growing problem. Businesses often believe that paying the ransom is the most cost effective way of getting their data back - [...]

Week 15 In Review – 2016

Events Related Tailoring the NIST Cybersecurity Framework for a Precise Fit - www.tenable.com One thing caught my attention right away: there were two digital clocks prominently displayed on either side of the auditorium. Both clocks were synchronized, and according to my phone, they were accurate to the second. It makes sense because NIST is the [...]

Week 14 In Review – 2016

Events Related Central Ohio Infosec Summit 2016 Videos - www.irongeek.com These are the videos from the Central Ohio Infosec Summit conference. Cyphercon 2016 Videos - www.irongeek.com These are the videos from the Cyphercon 2016 conference. TROOPERScon - www.youtube.com Resources pysap - github.com This Python library provides modules for crafting and sending packets using SAP's NI, Message Server, Router, RFC, [...]

Week 13 In Review – 2016

Resources More on Purple Teaming - carnal0wnage.attackresearch.com Purple Teaming is "conducting focused Red Teams with clear training objectives for the Blue Team." SDR Radio Academy: Reverse engineering a wireless car key fob - phasenoise.livejournal.com The Software Defined Radio Academy has the goals of attract Radio Amateurs to modern radio technology and show paths into SDR. Tools [...]

Week 12 In Review – 2016

Events Related Pwn2Own 2016: Hackers Earn $460,000 for 21 New Flaws - securityweek.com On the first day, contestants earned $282,500 for vulnerabilities in Safari, Flash Player, Chrome, Windows and OS X. On the second day, Tencent Security Team Sniper took the lead after demonstrating a successful root-level code execution exploit in Safari via a use-after-free flaw in Safari [...]

Week 10 In Review – 2016

Events Related BSides San Francisco 2016 Videos - www.irongeek.com These are the videos from the BSides San Francisco conference. BSides Indy 2016 Videos - www.irongeek.com These are the videos from the BSides Indy conference. Tools HTCAP - www.htcap.org htcap is a web application scanner able to crawl single page application (SPA) in a recursive manner by intercepting ajax calls [...]

Week 9 In Review – 2016

Resources USB HID/Fingerprint Reader that enters password if Fingerprint is correct - www.reddit.com CCDC Quals Notes (metasploit) - carnal0wnage.attackresearch.com Some quick notes for interesting stuff to keep for CCDC Quals/Notes Tools EZ-Wave - github.com Tools for Evaluating and Exploiting Z-Wave Networks using Software-Defined Radios. firmadyne - github.com FIRMADYNE is an automated and scalable system for [...]

Week 8 In Review – 2016

Events Related BSidesCapeTown 2015 - www.youtube.com Resources Ray Sharp CCTV DVR Password Retrieval & Remote Root - community.rapid7.com On January 22, 2013, a researcher going by the name someLuser detailed a number of security flaws in the Ray Sharp DVR platform. These DVRs are often used for closed-circuit TV (CCTV) systems and security cameras. Comodo: Comodo [...]