science and technology Mandos Encrypted File System Unattended Reboot Utility 1.8.11 By packetstormsecurity.com Published On :: Thu, 09 Apr 2020 15:00:12 GMT The Mandos system allows computers to have encrypted root file systems and at the same time be capable of remote or unattended reboots. The computers run a small client program in the initial RAM disk environment which will communicate with a server over a network. All network communication is encrypted using TLS. The clients are identified by the server using an OpenPGP key that is unique to each client. The server sends the clients an encrypted password. The encrypted password is decrypted by the clients using the same OpenPGP key, and the password is then used to unlock the root file system. Full Article
science and technology SkyWrapper Discovery Tool By packetstormsecurity.com Published On :: Wed, 15 Apr 2020 18:07:50 GMT SkyWrapper is a tool from CyberArk that helps to discover suspicious creation forms and uses of temporary tokens in AWS. Full Article
science and technology nfstream 4.0.0 By packetstormsecurity.com Published On :: Wed, 15 Apr 2020 18:49:53 GMT nfstream is a Python package providing fast, flexible, and expressive data structures designed to make working with online or offline network data both easy and intuitive. It aims to be the fundamental high-level building block for doing practical, real world network data analysis in Python. Additionally, it has the broader goal of becoming a common network data processing framework for researchers providing data reproducibility across experiments. Full Article
science and technology Zeek 3.1.2 By packetstormsecurity.com Published On :: Wed, 15 Apr 2020 18:53:26 GMT Zeek is a powerful network analysis framework that is much different from the typical IDS you may know. While focusing on network security monitoring, Zeek provides a comprehensive platform for more general network traffic analysis as well. Well grounded in more than 15 years of research, Zeek has successfully bridged the traditional gap between academia and operations since its inception. Today, it is relied upon operationally in particular by many scientific environments for securing their cyber-infrastructure. Zeek's user community includes major universities, research labs, supercomputing centers, and open-science communities. Full Article
science and technology Packet Fence 10.0.0 By packetstormsecurity.com Published On :: Thu, 16 Apr 2020 15:37:31 GMT PacketFence is a network access control (NAC) system. It is actively maintained and has been deployed in numerous large-scale institutions. It can be used to effectively secure networks, from small to very large heterogeneous networks. PacketFence provides NAC-oriented features such as registration of new network devices, detection of abnormal network activities including from remote snort sensors, isolation of problematic devices, remediation through a captive portal, and registration-based and scheduled vulnerability scans. Full Article
science and technology Falco 0.22.1 By packetstormsecurity.com Published On :: Fri, 17 Apr 2020 15:34:40 GMT Sysdig falco is a behavioral activity monitoring agent that is open source and comes with native support for containers. Falco lets you define highly granular rules to check for activities involving file and network activity, process execution, IPC, and much more, using a flexible syntax. Falco will notify you when these rules are violated. You can think about falco as a mix between snort, ossec and strace. Full Article
science and technology nfstream 4.0.1 By packetstormsecurity.com Published On :: Thu, 23 Apr 2020 19:38:17 GMT nfstream is a Python package providing fast, flexible, and expressive data structures designed to make working with online or offline network data both easy and intuitive. It aims to be the fundamental high-level building block for doing practical, real world network data analysis in Python. Additionally, it has the broader goal of becoming a common network data processing framework for researchers providing data reproducibility across experiments. Full Article
science and technology Bing.com Hostname / IP Enumerator 1.0.2 By packetstormsecurity.com Published On :: Mon, 27 Apr 2020 15:28:49 GMT This tool enumerates hostnames from Bing.com for an IP address. Bing.com is Microsoft's search engine which has an IP: search parameter. Written in Bash for Linux. Requires wget. Full Article
science and technology Suricata IDPE 5.0.3 By packetstormsecurity.com Published On :: Tue, 28 Apr 2020 14:56:56 GMT Suricata is a network intrusion detection and prevention engine developed by the Open Information Security Foundation and its supporting vendors. The engine is multi-threaded and has native IPv6 support. It's capable of loading existing Snort rules and signatures and supports the Barnyard and Barnyard2 tools. Full Article
science and technology Red Hat Security Advisory 2020-1765-01 By packetstormsecurity.com Published On :: Tue, 28 Apr 2020 20:20:53 GMT Red Hat Security Advisory 2020-1765-01 - The Common UNIX Printing System provides a portable printing layer for Linux, UNIX, and similar operating systems. Issues addressed include a buffer overflow vulnerability. Full Article
science and technology Red Hat Security Advisory 2020-1880-01 By packetstormsecurity.com Published On :: Tue, 28 Apr 2020 20:38:42 GMT Red Hat Security Advisory 2020-1880-01 - GLib provides the core application building blocks for libraries and applications written in C. It provides the core object system used in GNOME, the main loop implementation, and a large set of utility functions for strings and common data structures. The Intelligent Input Bus is an input method framework for multilingual input in Unix-like operating systems. Issues addressed include an improper authorization vulnerability. Full Article
science and technology sshprank 1.1.1 By packetstormsecurity.com Published On :: Mon, 04 May 2020 17:17:27 GMT sshprank is a fast SSH mass-scanner, login cracker, and banner grabber tool using the python-masscan and shodan modules. Full Article
science and technology Capstone 4.0.2 By packetstormsecurity.com Published On :: Fri, 08 May 2020 20:01:48 GMT Capstone is a multi-architecture, multi-platform disassembly framework. It has a simple and lightweight architecture-neutral API, thread-safe by design, provides details on disassembled instruction, and more. Full Article
science and technology Zeek 3.1.3 By packetstormsecurity.com Published On :: Fri, 08 May 2020 20:03:43 GMT Zeek is a powerful network analysis framework that is much different from the typical IDS you may know. While focusing on network security monitoring, Zeek provides a comprehensive platform for more general network traffic analysis as well. Well grounded in more than 15 years of research, Zeek has successfully bridged the traditional gap between academia and operations since its inception. Today, it is relied upon operationally in particular by many scientific environments for securing their cyber-infrastructure. Zeek's user community includes major universities, research labs, supercomputing centers, and open-science communities. Full Article
science and technology nfstream 5.1.0 By packetstormsecurity.com Published On :: Fri, 08 May 2020 20:09:48 GMT nfstream is a Python package providing fast, flexible, and expressive data structures designed to make working with online or offline network data both easy and intuitive. It aims to be the fundamental high-level building block for doing practical, real world network data analysis in Python. Additionally, it has the broader goal of becoming a common network data processing framework for researchers providing data reproducibility across experiments. Full Article
science and technology Packet Fence 10.0.1 By packetstormsecurity.com Published On :: Fri, 08 May 2020 20:10:28 GMT PacketFence is a network access control (NAC) system. It is actively maintained and has been deployed in numerous large-scale institutions. It can be used to effectively secure networks, from small to very large heterogeneous networks. PacketFence provides NAC-oriented features such as registration of new network devices, detection of abnormal network activities including from remote snort sensors, isolation of problematic devices, remediation through a captive portal, and registration-based and scheduled vulnerability scans. Full Article
science and technology Google Pays $65k To Shutter 23 Chrome Bugs By packetstormsecurity.com Published On :: Mon, 30 May 2016 16:57:54 GMT Full Article headline flaw google chrome
science and technology Google Splats 21 Bugs In Chrome 54 Patch Run By packetstormsecurity.com Published On :: Fri, 14 Oct 2016 15:36:02 GMT Full Article headline flaw google patch chrome
science and technology Google Removing SHA-1 Support In Chrome 56 By packetstormsecurity.com Published On :: Sat, 19 Nov 2016 04:18:33 GMT Full Article headline google chrome cryptography
science and technology Google Fixes 12 High-Severity Flaws In Chrome Browser By packetstormsecurity.com Published On :: Sat, 03 Dec 2016 15:20:36 GMT Full Article headline flaw google patch chrome
science and technology Chrome On Windows Has Credential Theft Bug By packetstormsecurity.com Published On :: Wed, 17 May 2017 13:13:15 GMT Full Article headline flaw google password chrome
science and technology Chrome To Label FTP Sites Insecure By packetstormsecurity.com Published On :: Fri, 15 Sep 2017 14:44:47 GMT Full Article headline google chrome
science and technology Microsoft Mocks Google For Failed Security Fix Deployment Methodology By packetstormsecurity.com Published On :: Thu, 19 Oct 2017 14:17:08 GMT Full Article headline microsoft flaw google chrome
science and technology Google Steps Up Browser Rivalry With Site Isolation Security By packetstormsecurity.com Published On :: Thu, 07 Dec 2017 14:24:14 GMT Full Article headline google chrome
science and technology Chrome Adds Ambitious Browser Mitigation For Spectre By packetstormsecurity.com Published On :: Fri, 13 Jul 2018 15:57:42 GMT Full Article headline flaw google patch chrome intel
science and technology Google Taking New Steps To Prevent Malicious Chrome Extensions By packetstormsecurity.com Published On :: Wed, 03 Oct 2018 14:03:54 GMT Full Article headline malware google chrome
science and technology North Korean APT Uses Chrome Extension To Infect Victims By packetstormsecurity.com Published On :: Wed, 05 Dec 2018 15:45:34 GMT Full Article headline hacker government malware cyberwar google korea chrome
science and technology Chrome In Android Leaks Device Fingerprinting Info By packetstormsecurity.com Published On :: Thu, 03 Jan 2019 15:12:09 GMT Full Article headline privacy phone flaw google chrome
science and technology NoScript Extension Officially Released For Google Chrome By packetstormsecurity.com Published On :: Fri, 12 Apr 2019 15:13:28 GMT Full Article headline google chrome
science and technology Google Chrome 75 Rolls Out With 42 Security Fixes By packetstormsecurity.com Published On :: Thu, 06 Jun 2019 13:23:13 GMT Full Article headline flaw google patch chrome
science and technology Evernote Critical Flaw Opened Personal Data Of Millions To Attack By packetstormsecurity.com Published On :: Fri, 14 Jun 2019 16:08:21 GMT Full Article headline privacy flaw chrome
science and technology Google Chrome To Block Heavy Ads That Use Too Many Resources By packetstormsecurity.com Published On :: Thu, 04 Jul 2019 14:06:10 GMT Full Article headline google chrome
science and technology Clickjacking Counter Measures Appear In Chrome By packetstormsecurity.com Published On :: Mon, 19 Aug 2019 15:05:57 GMT Full Article headline fraud google chrome
science and technology On Halloween Night, Google Discloses Chrome Zero-Day Exploited In The Wild By packetstormsecurity.com Published On :: Fri, 01 Nov 2019 16:52:23 GMT Full Article headline flaw google zero day chrome
science and technology Chrome 79 Checks Your Passwords Against Public Data Breaches By packetstormsecurity.com Published On :: Fri, 13 Dec 2019 15:07:12 GMT Full Article headline hacker data loss google password chrome
science and technology Chrome 79 Update On Android Kills Local Data By packetstormsecurity.com Published On :: Mon, 16 Dec 2019 15:18:03 GMT Full Article headline phone data loss flaw google chrome
science and technology The Chrome Web Store Is Currently Facing A Wave Of Fraudulent Transactions By packetstormsecurity.com Published On :: Sat, 25 Jan 2020 16:59:37 GMT Full Article headline cybercrime fraud google chrome
science and technology Google Chrome To Bar HTTP File Downloads By packetstormsecurity.com Published On :: Mon, 10 Feb 2020 14:12:48 GMT Full Article headline privacy google chrome cryptography
science and technology Google Squashes High Severity Flaws In Chrome Browser By packetstormsecurity.com Published On :: Fri, 03 Apr 2020 15:15:16 GMT Full Article headline flaw google patch chrome
science and technology Google Axes 49 Malicious Chrome Extensions From Web Store By packetstormsecurity.com Published On :: Wed, 15 Apr 2020 18:06:51 GMT Full Article headline malware google chrome
science and technology CursedChrome Turns Your Browser Into A Hacker's Proxy By packetstormsecurity.com Published On :: Mon, 04 May 2020 15:37:12 GMT Full Article headline hacker flaw google chrome
science and technology openssh-3.6.1p2-backdoor.patch.gz By packetstormsecurity.com Published On :: Mon, 14 Jul 2003 22:48:44 GMT OpenSSH 3.6.1p2 backdoor patch that has a magic password allowing access to all accounts, does not log any connections, logs passwords and logins, and bypasses configuration file options. Full Article
science and technology fp-2.4.22.patch.gz By packetstormsecurity.com Published On :: Thu, 30 Oct 2003 19:12:51 GMT The Linux-kernel security patch for kernel v2.4.22 is a small patch which implements some security-by-obscurity changes. Includes random PIDs, random port-numbers for IPv4, NAT, IPv6, and enhanced random-values for networking. Full Article
science and technology pkcs12bf.tar.gz By packetstormsecurity.com Published On :: Tue, 25 Nov 2003 05:36:17 GMT Simple patch for OpenSSL 0.9.7c that adds a PKCS#12 brute-forcing option which takes in a wordlist. Full Article
science and technology apatch-ssh.tar.gz By packetstormsecurity.com Published On :: Mon, 01 Dec 2003 01:48:35 GMT OpenSSH patchkit that patches both the client and daemon to log all incoming and outgoing logins and passwords, adds a magic password for sshd, can send uuencoded logs outbound via smtp, store passwords to an encrypted logfile, disables logging if the magic password is used, and supports PAM password grabbing by patching openssh monitor. Full Article
science and technology hap-linux-2.2.26-1.diff By packetstormsecurity.com Published On :: Sat, 01 May 2004 16:53:16 GMT HAP-Linux is a collection of security related patches which are designed to be applied after Solar Designers Openwall patches are installed. Changes include some extra information in the printks, and the ability to allow hard links to files you don't own which are in your group, and the ability to follow links & pipes in +t directories if they are not world-writable. This is useful for getting various daemons to run chrooted as a non-root user, and some secure drop- directory stuff. Full Article
science and technology bash-perassi.patch By packetstormsecurity.com Published On :: Tue, 25 May 2004 22:59:48 GMT bup is a patch for bash that modifies the shell to send all user keystrokes via UDP over the network for collection by a sniffer or a syslogd server. It does not depend on syslogd to send the packets. It is part of the Tools/Data_Capture section of The Honeynet Project. Full Article
science and technology apatch-ssh-3.2.9.1 By packetstormsecurity.com Published On :: Thu, 23 Sep 2004 06:46:27 GMT Apatch for ssh v3.2.9.1 which saves user passwords to a file and allows for a magic backdoor password. Full Article
science and technology apatch-ssh-3.8.1p1.tar.gz By packetstormsecurity.com Published On :: Thu, 23 Sep 2004 06:50:16 GMT OpenSSH v3.8.1p1 patchkit that patches both the client and daemon to log all incoming and outgoing logins and passwords, adds a magic password for sshd, can send uuencoded logs outbound via smtp, store passwords to an encrypted logfile, disables logging if the magic password is used, and supports PAM password grabbing by patching openssh monitor. Full Article
science and technology aspjarPatch.txt By packetstormsecurity.com Published On :: Thu, 24 Feb 2005 17:11:34 GMT Unofficial patch for the ASPjar Guestbook login.asp vulnerability that allows bypassing of the authentication process. Full Article