■■■■■ Remotely stealing cookies from Firefox for Android by visiting an exploit website (CVE-2020-15647). PoC: https://gist.github.com/kanytu/7fe0640c87b0f3e57bda51e784a7255d Research: https://medium.com/bugbountywriteup/firefox-and-how-a-website-could-steal-all-of-your-cookies-581fe4648e8d https://t.me/cKure/6056
All posts tagged telegram
November 19, 2020 at 01:11PM
■■■□□ Bypassing the Redirect filters with 7 ways. https://elmahdi.tistory.com/m/4 https://t.me/cKure/6055
November 19, 2020 at 10:01AM
■■■■□ Tor Project rolls out program to turbo-charge network throughput. https://portswigger.net/daily-swig/tor-project-rolls-out-program-to-turbo-charge-network-throughput https://t.me/cKure/6054
November 19, 2020 at 09:43AM
■■■□□ #China 🇨🇳 linked hacking gang ‘APT10’ named as probable actor behind extended attacks on Japanese companies. https://go.theregister.com/feed/www.theregister.com/2020/11/19/apt_10_china_japan_attack/ | #Japan 🇯🇵 https://t.me/cKure/6053
November 18, 2020 at 08:47PM
■■■■□ Reverse Engineering: https://youtu.be/4urMITJKQQs https://t.me/cKure/6051
November 18, 2020 at 04:33PM
■■■■□ Chinese APT FunnyDream Runs Riot in Southeast Asia. https://www.infosecurity-magazine.com:443/news/chinese-apt-funnydream-runs-riot/ https://t.me/cKure/6049
November 18, 2020 at 03:06PM
■■■■□ Japan-Linked Organizations Targeted in Long-Running and Sophisticated Attack Campaign. https://symantec-enterprise-blogs.security.com/blogs/threat-intelligence/cicada-apt10-japan-espionage https://t.me/cKure/6048
November 18, 2020 at 03:01PM
■■■■□ CVE-2020-17053: Use-After-Free IE Vulnerability. https://www.trendmicro.com/en_us/research/20/k/cve-2020-17053-use-after-free-ie-vulnerability.html https://t.me/cKure/6047
November 18, 2020 at 02:55PM
■■□□□ Apple firewall bypass for selected applications. http://feedproxy.google.com/~r/TheHackersNews/~3/AI9RDjHzUSY/apple-lets-some-of-its-big-sur-macos.html https://t.me/cKure/6046
November 18, 2020 at 11:35AM
■■■□□ Unknown threat actors are scanning for WordPress websites with Epsilon Framework themes installed on over 150,000 sites and vulnerable to Function Injection attacks that could lead to full site takeovers. These attacks use POST requests to admin-ajax.php and as such do not leave distinct log entries, though they will be visible Wordfence Live Traffic. https://www.bleepingcomputer.com/news/security/hackers-are-actively-probing-millions-of-wordpress-sites/…
