Thursday, August 15, 2013

iVerify

Pretty neat tool for iOS devices! iVerify is an integrity validator for iOS devices capable of reliably detecting modifications such as malware and jailbreaks, without the use of signatures. It runs at boot-time to thoroughly inspect the device, identifying any changes and collecting relevant artifacts of these changes for offline analysis. This will let you know if the device has simply been jailbroken or if it has been modified in a much sneakier way.


https://github.com/trailofbits/iverify-oss

Wednesday, August 14, 2013

Survival of the Fittest: New York Times Attackers Evolve Quickly

Attackers behind the breach of the New York Times’ computer network late last year appear to be mounting fresh assaults that leverage new and improved versions of malware according to FireEye.

 The newest campaign uses updated versions of Aumlib and Ixeshe.

http://www.fireeye.com/blog/technical/2013/08/survival-of-the-fittest-new-york-times-attackers-evolve-quickly.html



Wednesday, August 7, 2013

Microsoft Security Advisory (2876146) Wireless PEAP-MS-CHAPv2 Authentication Could Allow Information Disclosure

Microsoft announced a security advisory that affects Windows Phone 8 and Windows Phone 7.8.

 "To exploit this issue, an attacker controlled system could pose as a known Wi-Fi access point, causing the targeted device to automatically attempt to authenticate with the access point, and in turn allowing the attacker to intercept the victim's encrypted domain credentials. An attacker could then exploit cryptographic weaknesses in the PEAP-MS-CHAPv2 protocol to obtain the victim's domain credentials. Those credentials could then be re-used to authenticate the attacker to network resources, and the attacker could take any action that the user could take on that network resource."

 Here's the link for suggested actions from Microsoft...

http://technet.microsoft.com/en-us/security/advisory/2876146

Tuesday, August 6, 2013

It's been a while..

I know, I know .. it's been a long time. I'll try to make this page more better this time. Lot's of new technologies out there!!!! And yes, the new site is now called 135OIC.com. :-) More to follow!

Friday, August 20, 2010

Network Solutions Parked Domains Actively Serving Malwares

The beginning of this year saw mass Web hosting compromises across numerous hosting providers; thousands of websites were compromised via vulnerabilities in shared hosting providers and as a result, were serving malware. We thought eventually everything would be cleaned up and everyone's operations would be back to normal--but it seems that didn't happen... yet.

http://blog.armorize.com/2010/08/smci-widget-by-network-solutions-still.html

Hack the Box Blue

https://arcy24.medium.com/hack-the-box-blue-f5ae5b602a5c