Information security
ReSolver researcher discovered a backdoor in ZyXEL LTE3301-M209 LTE routers.
CVE-2022-40602 is associated with hard-coded credentials by analogy with similar problems in Telnet in D-Link DWR-921. He analyzed ELF, focusing on amit features that contained a loophole in D-Link routers....
Experts warn of a critical vulnerability of the Linux kernel of 10 points on the CVSS scale,
Experts warn of a critical vulnerability of the Linux kernel of 10 points on the CVSS scale, which affects SMB servers and can lead to RCE. The critical vulnerability of the Linux kernel makes SMB servers with ksmbd enabled (a Linux kernel server that implements the SMB3 protocol in the kernel...
Microsoft, as usual, quietly fixed an important security vulnerability in the
Microsoft, as usual, quietly fixed an important security vulnerability in the Azure service (ACS) after researchers from Mnemonic discovered that the problematic function allows attacks to bypass the network between tenants....
How to conduct an online investigation: 5 useful tools
If you are interested in someone's data, but you can't find it, then you have outdated tools. Today we have prepared the best extensions and services that work in 2022:...
Anonymize your traffic using 4nonimizer
Friends, today I would like to tell you about a great tool called 4nonimizer. This utility allows you to mask all your traffic from the provider by changing the IP address using one of the 19 VPN services that support OpenVPN technology....
Search for a person by nickname
In this post we will talk about services that can find a person by his nickname on the Internet. They all conduct a fully automatic search on various services, social networks, websites, forums, and so on....
We follow the victim with the help of a link
Trape is an OSINT tool that allows you to track and execute social engineering attacks in real time. The utility creates a phishing link that allows you to follow the user who clicks on it. Thanks to this tool, you can get information such as: IP, geolocation, OS. You can also run js scripts...
Finding site vulnerabilities
XAttacker — created for the lazy and inquisitive, with it you can not only find out what engine the site is on, but also find out its vulnerabilities, as well as get links to these vulnerabilities....
We check the VPN for reliability
When using a VPN, your IP address is "Masked", as it were, this does not allow third-party services to see your personal IP address. A little bit about the principle of tracking: when you connect to a site, it sends a request to your provider to get an IP address, and no matter how much...
A selection of the most important applications for your security and anonymity
Friends, I present to your attention a list of useful applications that will help increase your security and anonymity. There are more benefits than from some Google services. And by the way, part of the benefit is that now you will be saved from the surveillance of those same Google services....
Protecting ourselves from DDoS attacks
Anti-DDOS is an open source project designed to protect against DOS and DDoS attacks. The necessary protection configurations are used and works only on the Linux operating system, but is fully compatible with it....
We punch by the bank card number
There are situations when we need to break through the data about a person, but we only have his card number on hand. It seems that everything is already done, but not everything is lost!...
? Darknet sites selling drugs are switching to using Android applications
? Darknet sites selling drugs are switching to using Android applications Resecurity specialists have noticed that darknet marketplaces selling illegal substances have started using their own Android apps to increase privacy and avoid the attention of law enforcement agencies. The trend has been...
?? Scientists carried out the first cyberattack without the participation of people
?? Scientists carried out the first cyberattack without the participation of people The malicious code was created using the Text-to-SQL model, which is capable of deceiving NPL models of natural language processing and leading to the theft of confidential information and DoS attacks....
? A free decryptor has appeared for the MegaCortex ransomware
? A free decryptor has appeared for the MegaCortex ransomware Bitdefender has released a tool for decrypting files affected by MegaCortex malware attacks. The utility allows victims of the grouping to recover their data for free....