Cyber Security Awareness and Vulnerabilities Blog

RSS

We all hate passwords. Either you can't remember them, or you re-use the same one over and over to avoid forgetting it. Trying to come up with new passwords is a never-ending battle against human memory versus the potential for someone to guess the…

Read More

In this demo, you'll learn how to leverage the already installed PCAP-enabled agent from last week in order to establish a remote interface on the restricted internal network. After searching for the "Remote Network Interface" module, drop it under the agent. Then, select the interface on…

Read More

In this quick video, we show how the PCAP plugin can be installed and used in order to quickly and efficiently improve the speed of information gathering tasks. Since installing the PCAP plugin requires administrative privileges, we'll begin by running a local escalation module. For this…

Read More

  In this video, we show how to set up a temporal agent using the DNS communication channel. In order to mimic a client-side attack against a victim inside our restricted network, we'll use the "Server Agent in Web Server" module. After selecting the proper architecture,…

Read More

SecureAuth and Core Security have been monitoring the evolving situation with “Meltdown” (CVE-2017-5754) and “Spectre” (CVE-2017-5753 and CVE-2017-5715) – the recently disclosed processor (CPU) vulnerabilities. Our team has not detected any current impact to customer implementations at this time. We have already initiated…

Read More

It’s the start of a new year. A time where it’s normal for businesses to look at what worked, what didn’t and what to start or stop. With those conversations happening, it’s just as important to discuss this from a security perspective. Looking back,…

Read More

In today’s connected world there are too many devices and too many networks to protect and cyber criminals are more sophisticated than ever. The 2017 threat landscape proved that no one is immune to cyber attacks. But can we take the cybersecurity mistakes…

Read More

While working on the NVIDIA DxgDdiEscape Handler exploit, it became obvious that The GDI primitives approach discussed the last couple of years would be of no help to reliably exploit this vulnerability. So we came up with another solution: We could map some specially chosen virtual addresses,…

Read More

                In this quick tips and tricks video, you will learn how to launch a remote shell using WMI in Core Impact. Follow the steps in the video to learn how you can do this in your…

Read More

More than 1,800 delegates from companies around the globe converged last week in Las Vegas for Gartner’s annual Identity and Access Management (IAM) Summit. Gartner IAM is unique in that it is solely focused on identity and access management rather than covering all…

Read More