Обложка канала

Sys-Admin & InfoSec Channel

Посты с ИТ-ресурсов, новости, тулзы, хакинг, администрирование, возможны бредовые посты с мемами, поздравлениями, может даже хейтами..

  • Sys-Admin & InfoSec Channel

    Unauthorized Access to Cross-Tenant Applications in Microsoft Power Platform

    A researcher at Tenable has discovered an issue that enables limited, unauthorized access to cross-tenant applications and sensitive data (including but not limited to authentication secrets). Background The issue occurred as a result of insufficient access control to Azure Function hosts, which are launched as part of the creation and operation of custom connectors in Microsoft’s Power Platform (Power Apps, Power Automation).

    Tenable®
  • Sys-Admin & InfoSec Channel

    / “PhishForce” — Vulnerability Uncovered in Salesforce’s Email Services Exploited for Phishing Facebook Accounts In-The-Wild Guardio Malicious Emails Sent by Trusted Email Gateways and more..: — labs.guard.io/phishfo…4ad4b5fa
  • Sys-Admin & InfoSec Channel

    Открытый практикум Linux by Rebrain: Память в Linux   Программа: • Эволюция адресации памяти • Виртуальная память • /proc/meminfo • 9 Августа (Среда), 20:00 МСК. Детали Ведет: • Андрей Буранов – Специалист по UNIX-системам в компании VK. Опыт работы с ОС Linux более 7 лет.
  • Реклама

  • Sys-Admin & InfoSec Channel

    / Threat social engineering over Microsoft Teams Microsoft Threat Intelligence has identified highly targeted social engineering attacks using credential theft phishing lures sent as Microsoft Teams chats by the threat actor that Microsoft tracks as Midnight Blizzard (previously tracked as NOBELIUM).. Read more on MS site.
    Midnight Blizzard conducts targeted social engineering over Microsoft Teams | Microsoft Security Blog

    Microsoft Threat Intelligence has identified highly targeted social engineering attacks using credential theft phishing lures sent as Microsoft Teams chats by the threat actor that Microsoft tracks as Midnight Blizzard (previously tracked as NOBELIUM).

    Microsoft Security Blog
  • Sys-Admin & InfoSec Channel

    The Massive macOS Threats Trending in the Dark Web. | Guardz.com

    The recent reveal of ShadowVault malware in our blog post decidedly piqued the interest of the cybersecurity news community. Keeping up-to-date with the

    Guardz.com
  • Sys-Admin & InfoSec Channel

    Evasive Phishing Tactic Utilizes Google AMP | Cofense

    Learn about a new phishing tactic utilizing Google Accelerated Mobile Pages (AMP) that is proving to be very successful at reaching intended targets.

    Cofense
  • Sys-Admin & InfoSec Channel

    / Canon Printers Disclosure Wi-Fi Sensitive information Sensitive information on the Wi-Fi connection settings stored in the memories of inkjet printers (home and office/large format) may not be deleted by the usual initialization process. CP2023-003 Vulnerability Mitigation/Remediation for Inkjet Printers: — psirt.canon/advisor…2023-003
    CP2023-003 Vulnerability Mitigation/Remediation for Inkjet Printers (Home and Office/Large Format)

    Sensitive information on the Wi-Fi connection settings stored in the memories of inkjet printers

    Canon PSIRT
  • Sys-Admin & InfoSec Channel

    Top 10 Active Directory Attack Methods

    It is imperative that organizations are aware of the most common ways that attackers can compromise Active Directory, which are explained here.

    Lepide Blog: A Guide to IT Security, Compliance and IT Operations
  • Sys-Admin & InfoSec Channel

    / APT Bahamut Targets Individuals with Android Malware Using Spear Messaging In this specific attack, the threat actor conducted targeted spear messaging attacks on WhatsApp Messenger..: www.cyfirma.com/outofba…essaging
    APT Bahamut Targets Individuals with Android Malware Using Spear Messaging - CYFIRMA

    EXECUTIVE SUMMARY The team at CYFIRMA recently obtained advanced Android malware targeting individuals in the South Asia region. The suspicious...

    CYFIRMA
  • Sys-Admin & InfoSec Channel

    Йоу 🤘. Open SysConf'23 16 Сентября точно быть!   В этом году Open SysConf.io поддержала локацией и всем сопутствующим команда из Kolesa Group В итоге у нас есть: — Комфортное пространство на ~100 человек — Онлайн трансляция и хороший интернет — Возможность подкрепиться, утолить жажду — Отличный лофт для знакомств, нетворкинга, приобретения новых связей и возможно даже новой работы — И конечно возможность для самореализации в отношении докладов и бесед Форма регистрации посетителя скоро будет готова, если ты 100% уверен, что придешь, то начинай тренировать скорость клика, так как места на оффлайн участие будут ограничены 😎 Скоро будет больше деталей, следите и ждите обновлений: — https://sysconf.io/ru  
  • Sys-Admin & InfoSec Channel

    / Multiple Vulnerabilities in Microsoft Message Queuing Service Affected platforms: Windows Impacted parties: Microsoft Windows users with Microsoft Message Queuing service installed Impact: Remote code execution and denial-of-service Severity level: Critical and Important www.fortinet.com/blog/th…bilities
    FortiGuard Labs Discovers Multiple Vulnerabilities in Microsoft Message Queuing Service | FortiGuard Labs

    Get an overview of the attack surfaces of MSMQ, the approaches taken to tackle the challenges encountered during fuzzing, and additional details of the vulnerabilities. Learn more.…

    Fortinet Blog
  • Sys-Admin & InfoSec Channel

    / GameOver(lay): Easy-to-exploit local privilege escalation vulnerabilities in Ubuntu Linux affect 40% of Ubuntu cloud workloads www.wiz.io/blog/ub…rability
    GameOverlay Vulnerability Impacts 40% of Ubuntu Workloads | Wiz Blog

    Wiz Research discovers CVE-2023-2640 & CVE-2023-32629, 2 privilege escalation vulnerabilities in Ubuntu's OverlayFS module impacting 40% of cloud workloads.

    wiz.io
  • Sys-Admin & InfoSec Channel

    Открытый практикум Networks by Rebrain: Просто о сложном - FreeSWITCH   • 3 Августа (Четверг), 19:00 МСК. Детали Программа: • SIP Профили (Internal, External - в чем их отличие) • Как настроить Gateway • Рассмотрим Dialplan (regex) • Настроим маршрутизацию для настроенного Gateway • Рассмотрим механизм ACL Ведет: • Роман Сыртланов – VoIP инженер. Опыт работы с VoIP 7 лет. Работает с Asterisk/FreeSWITCH/Kamailio
  • Sys-Admin & InfoSec Channel

    / Exploiting MikroTik RouterOS Hardware with CVE-2023-30799 Up until version 6.49.8 (July 20, 2023), MikroTik RouterOS Long-term was vulnerable to CVE-2023-30799. Remote and authenticated attackers can use the vulnerability to get a root shell on the router..: — vulncheck.com/blog/mi…evisited

    VulnCheck develops an exploit that gets a root shell on MikroTik RouterOS.

    Exploiting MikroTik RouterOS Hardware with CVE-2023-30799 - Blog - VulnCheck
  • Sys-Admin & InfoSec Channel

    Lazarus Threat Group Attacking Windows Servers to Use as Malware Distribution Points - ASEC BLOG

    AhnLab Security Emergency response Center (ASEC) has discovered that Lazarus, a threat group deemed to be nationally funded, is attacking Windows Internet Information Service (IIS) web servers and using them as distribution points for their malware. The group is known to use the watering hole technique for initial access. [1] The group first hacks Korean websites and modifies the content provided from the site. When a system using a vulnerable version of INISAFE CrossWeb EX V6 visits this website via a...

    ASEC BLOG
  • Реклама

  • Sys-Admin & InfoSec Channel

    🚀 OpenBLD.net DNS and Netdata Anomaly Detection   At OpenBLD.net, we believe in the power of collaboration and open-source initiatives. That's why we're thrilled to announce our partnership with Netdata, a leading player in the open-source monitoring solution tool. In the spirit of supporting like-minded projects, Netdata has generously provided free access to the business-grade plan on Netdata Cloud for OpenBLD.net ecosystem. Now OpenBLD.net DNS has additional opportunity will be proactively Cyber Defence oriented service 😎 ⚙️ How Netdata's ML-based Anomaly Detection Works ⚙️ How to agentless setup OpenBLD.netMain OpenBLD goals
  • Sys-Admin & InfoSec Channel

    Zenbleed

    Cmpxchg8B
  • Sys-Admin & InfoSec Channel

    About the security content of macOS Ventura 13.5

    This document describes the security content of macOS Ventura 13.5.

    Apple Support