Un informático en el lado del mal: SuperLatch Docker: Integrar Latch con...
Al finalizar la segunda parte de este artículo habíamos visto como las aplicaciones en Go y Java están Up & Running, al mismo tiempo que teníamos pareadas ambas con el SuperLacth Docker en nuestra...
View ArticleBreakingPoint Labs Blog: Prevent DDoS Attacks from IoT Devices on Critical...
On April 9, 2009, an act of sabotage on an underground fiber optic cable in my small town brought…
View ArticleWired: Security: The US Leans on Private Firms to Expose Foreign Hackers
Opinion: The government needs to step up in calling out cyber-attackers. Otherwise, we risk playing into their hands.
View ArticleUn informático en el lado del mal: Eventos, charlas y citas desde hoy mismo...
La semana que viene el número de citas que tenemos es mucho más pequeño. Comienza el último mes del año, y además con un festivo nacional de por medio durante los próximos días. Pero a pesar de eso,...
View ArticleSANS Internet Storm Center, InfoCON: green: CoinMiners searching for hosts,...
We've seen the Elasticsearch being exploited using queries with script_fields for a while now, but we're seeing an increased activity. Attacks coming from %%ip:69.30.211.82%% are trying to exploit this...
View ArticleAlienVault Blogs: Things I Hearted this Week - 30th Nov 2018
Last week I was off attending IRISSCON in Dublin and so there was no update, and this week I’ve been at the SAN EU security awareness summit - so while I have been hearting things for the last two...
View ArticleZero in a bit: Marriott Confirms Breach Impacts As Many As 500 Million Guests
Marriott International has disclosed that the guest reservation database of its Starwood division has been breached, affecting as many as 500 million guests. The company has also confirmed that there...
View ArticleCisco Talos: Threat Roundup for Nov. 23 to Nov. 30
Today, Talos is publishing a glimpse into the most prevalent threats we've observed between Nov. 23 and Nov. 30. As with previous roundups, this post isn't meant to be an in-depth analysis. Instead,...
View ArticleWired: Security: Why a Hacker Exploited Printers to Make PewDiePie Propaganda
An anonymous hacker has claimed credit for the prank, which is part of an ongoing YouTube subscriber feud.
View ArticleUn informático en el lado del mal: ibombshell en BlackHat Europe: Nuevas...
Como ya sabéis por la cantidad de artículos que he escrito ya sobre ibombshell, éste fue un proyecto que empecé junto a mi compañero Álvaro Nuñez y hemos tenido la suerte de que BlackHat Europe 2018 lo...
View ArticleWired: Security: A Dunkin' Donuts Hack, a Fake FedEx Site, and More Security...
Scam centers, exposed massage company data, and more of the week's top security news.
View ArticleSANS Internet Storm Center, InfoCON: green: Wireshark update 2.6.5 available,...
Wireshark version 2.6.5 is available: release notes.And I'm taking this opportunity to feature one of the tools that come with the installation of Wireshark: capinfos.capinfos is a simple but useful...
View ArticleUn informático en el lado del mal: CodeTalk for Devs de Joomla! in Paranoid...
Como sabéis, hace no mucho tiempo Mateo González Fernández nos habló del proyecto de Jomla! in Paranoid Mode que había realizado como Trabajo de Fin de Grado en colaboración con nuestros compañeros de...
View ArticleWired: Security: iTunes Doesn't Encrypt Downloads—on Purpose
While HTTPS has made the web at large a much safe place, Apple has chosen to forgo it for iTunes and App Store downloads.
View ArticleSANS Internet Storm Center, InfoCON: green: Video: Dissecting a...
I made a video for my diary entry "Dissecting a CVE-2017-11822 Exploit": Didier Stevens Senior handler Microsoft MVPblog.DidierStevens.comDidierStevensLabs.com (c) SANS Internet Storm Center....
View ArticleDidier Stevens: Overview of Content Published in November
Here is an overview of content I published in November:Blog posts:Quickpost: Using pcapy with Npcap on WindowsUpdate: hash.py Version 0.0.6Update: cut-bytes.py Version 0.0.8Video: Analyzing PowerPoint...
View ArticleDidier Stevens: Quickpost: Developing for ESP32 with the Arduino IDE
I have a couple of ESP32’s that can also be programmed with the Arduino IDE, provided the necessary board manager is installed:After starting the IDEI open the preferences:And add the board manager URL...
View ArticleSANS Internet Storm Center, InfoCON: green: ISC Stormcast For Monday,...
(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
View ArticleUn informático en el lado del mal: Spring Boot & Angular: Desarrollo seguro...
Desde el viernes pasado está disponible en 0xWord el nuevo libro, y que además será el último de este año, en el que hemos estado trabajando. Lleva por título "Spring Boot & Angular: Desarrollo de...
View ArticleAlienVault Blogs: Award-winning Quarter Caps a Phenomenal Year
We’ve had a lot to celebrate this year. AlienVault, now an AT&T company, has received many awards, including three this quarter. In October, USM Anywhere was named the 2018 Cloud Security Solution...
View Article