Обложка канала

Sys-Admin & InfoSec Channel. Страница 5

Посты с ИТ-ресурсов, новости, тулзы, хакинг, администрирование, возможны бредовые посты с мемами, поздравлениями, может даже хейтами..

  • Sys-Admin & InfoSec Channel

    Brand Impersonation Campaign Targeting Big Brands

    Bolster's threat research team uncovered a widespread brand impersonation scam campaign targeting 100+ clothing, footwear, and apparel brands.

    Bolster AI
  • Sys-Admin & InfoSec Channel

  • Sys-Admin & InfoSec Channel

    / Mystic Stealer – Evolving “stealth” Malware Mystic Stealer has begun to establish a stronger foothold in the threat landscape, as evidenced by the rising number of command and control (C2) panels observed in the wild... 50 active command and control (C2) servers, indicating the growing prevalence of this threat.. Descriptions. Mitigation steps: www.cyfirma.com/outofba…-malware
    Mystic Stealer - Evolving "stealth" Malware - CYFIRMA

    EXECUTIVE SUMMARY Information stealers pose an ongoing and dynamic threat to the security of both individuals and organizations. CYFIRMA’s Research...

    CYFIRMA
  • Реклама

  • Sys-Admin & InfoSec Channel

  • Sys-Admin & InfoSec Channel

    MOVEit Transfer Critical Vulnerability – CVE Pending (June 15, 2023) - Progress Community

    Progress has discovered a vulnerability in MOVEit Transfer that could lead to escalated privileges and potential unauthorized access to the environment. If you are a MOVEit Transfer customer, it is extremely important that you take immediate action as noted below in order to help protect your MOVEit Transfer environment.

    Progress
  • Sys-Admin & InfoSec Channel

  • Sys-Admin & InfoSec Channel

    Open SysConf'23 День Х: 16 сентября (Суббота)   Парни и девочки, день Open SysConf'23 встречи - 16 сентября (суббота) 2023. Подтягиваем ширинки, блузки, гладим шнурки и волосы (у кого есть) и намереваемся на встречу в этот прекрасный и уверен солнечный во всех отношениях день ☀️ Возможно нашей встрече не хватает именно твоего доклада..? — Форма регистрации докладчика Место проведения: выбирается. Локация: Казахстан, г.Алматы. Всем Peace ✌️
  • Sys-Admin & InfoSec Channel

    Detection Engineering in Azure & Introducing AzDetectSuite

    Over the past few years of performing Azure security research, I have seen many new attack primitives & techniques discovered that an adversary could abuse within Azure & Azure Active Directory (AAD). When explaining a technique to a client, the challenge wasn’t explaining how something could be abu...

    TECHCOMMUNITY.MICROSOFT.COM
  • Sys-Admin & InfoSec Channel

    Cisco Security Advisory: Cisco AnyConnect Secure Mobility Client Software for Windows and Cisco Secure Client Software for Windows Privilege Escalation Vulnerability

    A vulnerability in the client update feature of Cisco AnyConnect Secure Mobility Client Software for Windows and Cisco Secure Client Software for Windows could allow a low-privileged, authenticated, local attacker to elevate privileges to those of SYSTEM. This vulnerability exists because improper permissions are assigned to a temporary directory that is created during the upgrade process. An attacker could exploit this vulnerability by abusing a specific function of the Windows installer process. A successful exploit could allow the attacker to execute code with SYSTEM privileges. Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability. This advisory is available at the following link:https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ac-csc-privesc-wx4U4Kw Attention: Simplifying the Cisco portfolio includes the renaming of security products under one brand: Cisco Secure. For more information, see Meet…

    Cisco
  • Sys-Admin & InfoSec Channel

    OWASP API Security Top-10 for 2023 Risk Ratings

    As you know by now, the final version of the OWASP API Security Top-10 2023 has been released. At first blush, the final 2023 release seems to retain most

    Wallarm
  • Sys-Admin & InfoSec Channel

    Открытый практикум: Configuration drift – управляем конфигурацией приложений   13 Июня (Вторник) 19:00 по МСК. Детали Программа: • Что такое configuration drift? • Какая может быть архитектура configuration drift? • Рассмотрим пример реализации configuration drift Ведет: Александр Крылов – Опыт работы в DevOps более 7 лет. Постоянный спикер конференций: DevOps conf, TeamLead conf, Highload conf. Автор курса по Haproxy на Rebrain.  
  • Sys-Admin & InfoSec Channel

    / When Hackers hack the Hackers - Malware Analysis for a group targeting Malware Developers Detailed analysis revealed Command & Control (C2) connections using Discord for communication. www.r-tec.net/r-tec-b…ers.html P.S. Malicious domains with Cobalt Strike C2, Remcos C2 already blocked in OpenBLD.net DNS
    r-tec Blog | When Hackers hack the Hackers

    Last year, our experts had the opportunity to observe the execution of non-standard processes in a sandbox-like, isolated virtual machine (VM). Further analysis of these processes revealed Command & Control (C2) connections using Discord for communication. As we continued to analyse the C2 agent, we also gained access to the attacker's Discord channel and were able to take a look at all the commands and modules executed for many more compromised systems. This attacker/group was very different to the ones we typically see while doing Incident Response for our customers in terms of the motivation and goals. It seemed, that this attacker was mainly compromising Malware developers and or Offensive Security related people to steal and sell code from the target systems. In this post, the malware analysis process, as well as attacker activities and Indicators of Compromise (IoCs) are presented.

    www.r-tec.net
  • Sys-Admin & InfoSec Channel

    / Can you trust ChatGPT’s package recommendations? ChatGPT can offer coding solutions, but its tendency for hallucination presents attackers with an opportunity: vulcan.io/blog/ai…age-risk
    Can you trust ChatGPT’s package recommendations?

    ChatGPT can offer coding solutions, but its tendency for hallucination presents attackers with an opportunity. Here's what we learned.

    Vulcan Cyber
  • Sys-Admin & InfoSec Channel

    ✨️️ Open SysConf'23 - Регистрация Докладчика   Несмотря на то, что мы планируем встречу на осень, было решено начать сбор докладчиков уже сегодня. Тематики как всегда - IT, Dev(Sec)Ops, AppSec, Cybersec, Hardening, Сложные сертификации.. особенно круто, если это собственный ресерч или крутая разработка, которая делает этот прекрасный мир лучше. Начинай думать, сегодня о том, что будем делать завтра 😉 — Форма регистрации Здесь
  • Sys-Admin & InfoSec Channel

    Netdata - Best Open-source Monitoring And Troubleshooting System   Few time ago I found Netdata.cloud - is a brilliant service with unique features: • Fast deploy: One line of code and metrics will start collecting • Multiple monitors: Auto-discovering many type of services on target systems • Envs: On-premise, hybrid, IoT, multi-cloud, containers (k8s, Docker, LXC, LXD, and more) • Integrations: OS, DB, Networks, Applications with over 1k+ integrations • Import data: Prometheus, StatsD, SQL - visualize with opinionated dashboards and charts In short - a couple of minutes is enough to start monitoring the system, with full coverage for all necessary needs • Active Directory, CoreDNS, IIS, Docker and more and more live monitors Live Demo • Site: https://www.netdata.cloud/features #sysadminlab #news #netdata #monitoring #observability #mychoice
  • Реклама

  • Sys-Admin & InfoSec Channel

    / Zyxel’s guidance for the recent attacks on the ZyWALL devices — some firewall versions could allow an unauthenticated attacker to execute some OS commands remotely by sending crafted packets to an affected device www.zyxel.com/global/…-devices
  • Sys-Admin & InfoSec Channel

    Today Digital Ocean supported OpenBLD.net DNS .. step forward in a joyful mood 🥳
  • Sys-Admin & InfoSec Channel