The naive approach to searching for patterns in source code is to use regular expressions; a better way is to parse the code with a custom parser, but both of these approaches have limitations. During my internship, I prototyped an internal tool called Syntex that does searching on Clang ASTs to avo...
Auto-warranty campaign made billions of calls
Intellectual Property Office says it breaks copyright law
A Primer on Process Reparenting in Windows. Process reparenting is a technique used in Microsoft Windows to create a child process under a different parent process than the one making the call to CreateProcess. Malicious actors can use this technique to evade security products or break process ances...
Staff told to work from home after compromise
A team of researchers came up with an ingenuous method leveraging AI to detect and classify malware in IIoT devices
Le Maschinenring Freising a été victime d'une cyberattaque, mais s'en est maintenant remis. Les membres sont satisfaits, mais il y a eu aussi des critiques de la part des responsables. Le système informatique a été paralysé pendant un mois, mais la plupart des données ont été récupérées. Le coût de...
The ongoing incident has impacted clinical and corporate systems, as well as some hospital phone lines and webpages
While 57% of these breaches were attributed to different types of malware, ATM skimming still accounted for 6.5% of all attacks targeting the financial sector
L'association de logement Connexus a confirmé une cyberattaque impliquant un accès non autorisé à ses systèmes, selon un message publié sur leur page Facebook le 18 décembre. En réaction, Connexus a déconnecté ses systèmes pour protéger les données personnelles des utilisateurs et travaille avec des...
NCSC says "blame and fear" won’t work
Fraudster used "popunders" and obfuscation to generate cash
Le 05 décembre 2022, trois vulnérabilités respectivement identifiées par les numéros CVE-2022-40259, CVE-2022-40242 et CVE-2022-2827 ont été signalées dans la solution d’administration à distance MegaRAC de l’éditeur AMI. La solution MegaRAC s’appuie sur un BMC (Baseboard Management Controller) :...
Mobile banking malware designed to steal bank and crypto credentials
Researchers warned that threat actors could potentially exploit Elastic IP transfer and compromise an IP address
An analysis of the threat posed by TikTok and why we need to weigh our options carefully.
ICO publishes detailed list of complaints and investigations
FTC reveals gaming firm's privacy violations and design tricks
During my internship at Trail of Bits, I explored the effectiveness of symbolic execution for finding vulnerabilities in native applications ranging from CTF challenges to popular open source libraries like image parsers, focusing on finding ways to enhance ManticoreUI. It is a powerful tool that im...
Phishing campaign spotted by CERT-UA