Pas d'actualité

Soutenez No Hack Me sur Tipeee

L'Actu de la veille

Stay Ahead of Ransomware: Hot Off the Press
There is always something new happening in the world of ransomware, and this month we're rounding up the latest and greatest to talk through it together. Instead of a single topic, Ryan and Mari are pulling together a handful of the most interesting ransomware stories making news right now and breaking them down one by one. What's on the list? It could be anything. The first AI-driven ransomware attack. A major takedown or arrest. A fresh case study from the field. Something crawling around the dark web. We'll divide and conquer, share what stood out to us, and talk through what it actually means for defenders and responders. Join your hosts Ryan Chapman and Mari DeGrazia (plus a special guest) as we catch up on what's been happening in the world of ransomware. Bring your own hot takes and...
https://www.youtube.com/watch?v=Zh0krpVYjYI
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Automate Volatility 3 Memory Analysis with This Tool
In this episode, we'll look at a tool that can run multiple Volatility 3 plugins simultaneously, automating your memory analysis and saving you valuable time during investigations. *** If you enjoy this video, please consider supporting 13Cubed on Patreon at patreon.com/13cubed. *** 📖 Chapters 00:00 - Intro 02:18 - Demo 🛠 Resources VolGolangWrapper: https://github.com/BeanBagKing/VolGolangWrapper #Forensics #DigitalForensics #DFIR #ComputerForensics #WindowsForensics #LinuxForensics
https://www.youtube.com/watch?v=0GMTydimOP4
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

L'Actu à J-2

CyberLab Con 26 Track 1 (I'm live at 2PM UTC!)

https://www.youtube.com/watch?v=56zFqJq6qZw
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

L'Actu des jours précédents

The Post-Mythos Defenders' Playbook: The Ban, the Reversal, and What Defenders Do Now
In June, the US government switched off the two most capable AI models on the planet, overnight, worldwide, over a single letter. Anthropic had just shipped Claude Fable 5 broadly and Mythos 5, a version of the same model without cyber guardrails, to vetted partners when an export-control directive barred foreign-national access and forced both offline for everyone. Less than three weeks later, those controls are lifting. Fable 5 returns globally on July 1, and Mythos 5 is being restored to a vetted set of US organizations. So, what do defenders do when the most capable model is also the one a government can revoke overnight? This month on STAR, I sit down with Thomas Roccia (@fr0gger_), who recently left Microsoft to build Security Break and his agent-visibility platform, NOVA. We'll...
https://www.youtube.com/watch?v=-uov7hN8yM8
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Payload Podcast 009 - Steven Flores
Learn Cybersecurity and more with Just Hacking Training: https://jh.live/training See what else I'm up to with: https://jh.live/newsletter ℹ️ Resources: See what cybersecurity events are happening: https://jh.live/infosecmap Learn how to code with CodeCrafters: https://jh.live/codecrafters Host your own VPN with OpenVPN: https://jh.live/openvpn Get Blue Team Training and SOC Analyst Certifications with CyberDefenders: https://jh.live/cyberdefense
https://www.youtube.com/watch?v=sLmxcGUNxfs
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Black Hat Stories | Shanna Daly, CEO of Torin Cyber Group
On this episode of Black Hat Stories, Shanna Daly, CEO of Torin Cyber Group, shares a perspective on the value of Black Hat and its impact on the cybersecurity community. From technical talks and research presentations to Arsenal demonstrations and industry collaboration, Black Hat creates opportunities to uncover vulnerabilities, share knowledge, and advance cybersecurity defenses. As privacy concerns continue to grow and threat actors remain ahead of the curve, Black Hat serves as a critical forum for researchers and practitioners to exchange ideas and stay one step ahead.
https://www.youtube.com/watch?v=kT3jbknQCdc
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

What to Expect at Black Hat USA 2026
Over 20,000 practitioners. 100+ hands-on training courses. Peer-reviewed research that doesn't exist anywhere else yet. Black Hat USA runs August 1-6, 2026 in Las Vegas, and this year's agenda is shaping up to be the most exciting one yet. Black Hat USA 2026 brings together the cybersecurity community for six days of training, research, and hands-on evaluation. Here's what you're walking into: • Training (August 1-4): 100+ expert-led courses taught by practitioners who've deployed these techniques in live environments. This year's expanded AI security track covers securing LLMs, defending against autonomous agents, and building detection pipelines that work at machine speed. • Briefings (August 5-6): Peer-reviewed research selected by an independent review board. AI agent exploitation....
https://www.youtube.com/watch?v=HopnPmgHUis
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Is Your Continuous Threat Exposure Management Actually Continuous with Michiel Prins
Continuous security is not just running more tests. It is knowing what changed and testing when the risk changed. In this episode of Exposed by HackerOne, Maggie Miller sits down with Michiel Prins, Co-founder and Senior Director at HackerOne, to discuss why periodic testing and more frequent scans are not enough in an AI-accelerated threat environment. They cover how attack surfaces are shifting, why schedule-based testing can leave teams exposed, and how differential testing can help security teams focus on the changes that actually matter. Michiel also explains why always-on researcher engagement and bug bounty programs still matter in mature security programs. From researcher creativity to hidden vulnerability trends to the danger of playing vulnerability whack-a-mole, this conversation...
https://www.youtube.com/watch?v=0ebMYPjHUNM
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Black Hat Europe 2025 | Compromising The AI Agent Ecosystem Via Its "Universal Connector"
The Model Context Protocol (MCP) is being positioned as the "USB-C" for connecting AI to the physical world. In an 8-month investigation, we conducted the first large-scale security audit of this emerging ecosystem, analyzing over 1,000 MCP projects on GitHub. We identified more than 500 unique vulnerabilities, including critical Remote Code Execution (RCE) flaws impacting major clients like ChatGPT and Cursor. Our research uncovers three systemic attack surfaces across the MCP landscape: Protocol-Level Design Flaws: We are the first to demonstrate how to weaponize the new "Elicitation" feature, creating a full phishing-to-agent-hijacking exploit chain, and leveraging the protocol's inherent conflation of instruction and data to enable potent indirect prompt injections. Implementation Inconsistencies:...
https://www.youtube.com/watch?v=fG36PSl_sgo
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

This Hacker Made ,000 Hacking a Major Retailer's AI Chatbot Over DNS (Live Demo!)
LIKE and SUBSCRIBE with NOTIFICATIONS ON if you enjoyed the video! 👍 📚 If you want to learn bug bounty hunting from me: https://bugbounty.nahamsec.training 💻 If you want to practice some of my free labs and challenges: https://app.hackinghub.io 💵 FREE 0 DigitalOcean Credit: https://m.do.co/c/3236319b9d0b in the wallet. A 9 item. And a large retailer's AI chatbot standing between Ads and a discount it was built to protect. In this episode of the AI Hacker Series, Ads is back to show the real payloads — and he walks me through breaking a live replica of one of his favorite bugs. No markdown, no clickable links, clean front-end sanitization... so he pulled the data out over DNS instead. The real target was a major retailer with a public bug bounty program, and it...
https://www.youtube.com/watch?v=w7cH0xZp5oc
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Black Hat Europe 2025 | Millions of Intranet Devices Are Facing Silent Takeover (On-Demand Only)
The shift to cloud-managed IoT has introduced a dangerous blind spot in the security posture of millions of enterprise and residential devices. While vendors focus on web-facing threats, a far more insidious risk has emerged: cloud-device communication channels are becoming the new attack surface. In this presentation, we reveal critical vulnerabilities affecting products from major network equipment manufacturers that enable remote, unauthenticated takeover of intranet devices. Moreover, we demonstrate that security improvements made by vendors—such as enforcing one-to-one cloud–device communication channels—are still insufficient, and can continue to be exploited under real-world conditions. We present new attack technique that allows attackers anywhere in the world to impersonate...
https://www.youtube.com/watch?v=MVliifh92tQ
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Install GrapheneOS Before Your Phone Becomes the Checkpoint
Big thank you to DeleteMe for sponsoring this video. Use my link to receive a 20% discount https://joindeleteme.com/Bombal or use the QR Code in the video. Your phone is becoming the checkpoint. Governments around the world are pushing age verification and age-check systems deeper into apps, platforms, and devices. Apple has its Declared Age Range API. Google Play has the Play Age Signals API. But GrapheneOS has drawn a very different line: it is not building this kind of age-check infrastructure into the operating system. In this video, I explain why that matters, how GrapheneOS differs from iOS and mainstream Android, and why a privacy-focused Pixel setup gives you more control over the device in your pocket. GrapheneOS does not make you invisible, but it does reduce trust in Google by...
https://www.youtube.com/watch?v=ViWVlXg2NTU
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Black Hat Europe 2025 | Bootstrapping Trust: From Isolated Build Machines to Enclaved CI Pipelines
This session presents a production-ready approach to securing CI build pipelines against compromised infrastructure by anchoring trust in a physically isolated build machine and leveraging enclave-based builders. The isolated machine compiles and signs a minimal enclave image, which becomes the only entity allowed to build software artifacts in the cloud. The builder enclave image runs inside AWS Nitro Enclaves and enforces strict policy checks such as requiring signed commit hashes before proceeding. Remote attestation is used to verify the AWS Nitro enclave's (the builder) integrity by an Intel SGX enclave verifier before provisioning the build secret, with the SGX enclave serving as a root of trust by encrypting its database with the processor's sealing key. We'll detail the threat model,...
https://www.youtube.com/watch?v=V411Vadty38
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

NEW AI Hacking Challenges with Andrew Bellini!
Just Hacking Training livestream Friday, July 10th at 1pm ET: more prompt injection challenges have been added to Andrew Bellini's OnlyLANs.ai ! https://justhacking.com
https://www.youtube.com/watch?v=2Xtq9EjNq7E
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Black Hat Europe 2025 | Pwning .NET Framework Applications Through HTTP Client Proxies And WSDL
.NET Framework is still extremely popular. It powers thousands of various applications, including the ones heavily utilized in huge enterprises. Both the .NET Framework (and applications based on it) have been researched for many years, and at some point, we could think that we have already discovered all the major attack surfaces. What if I told you that its HTTP client proxies are fundamentally broken? As their name and documentation suggest, their role is to access HTTP-based services. However, they can be abused to access the filesystem and achieve Arbitrary File Write, depending on how the client is being used. This presentation details how I discovered the Invalid Cast vulnerability in .NET Framework HTTP client proxies. I will start with the initial discovery of the root cause. Then,...
https://www.youtube.com/watch?v=WbsHlAyGTQA
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Black Hat Europe 2025 | Ghost In The Stack: Evolving Call Stack Spoofing In A Post-CET Era
Stack spoofing is a sophisticated technique that manipulates a thread's call stack so that code execution appears to originate from a different, benign location. In 2023, with StackMoonwalk, we presented a novel approach to this that slipped through common stack-based detection logic. Since then, we've watched defenders build on that research to expand telemetry and design more robust detectors. At the same time, we've seen increased adoption of hardware-backed mitigations (HSP|CET), which could offer another source of truth to spot this technique. Two years later, we asked ourselves whether it was finally time for stack spoofing to die. Well... it wasn't. The talk begins in today's non-HSP environments, exploring modern detection frameworks built on call stack analysis and showing how fragile...
https://www.youtube.com/watch?v=tOVcScKuJvU
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Black Hat Europe 2025 | ORMageddon: Leaking More Than You Joined For
Object Relational Mappers (ORMs) have become ubiquitous across software development, due to the ease of storing code objects on backend databases and builtin security mechanisms to protect against SQL injection. Previous security research has focused on the discovery of SQL injection vulnerabilities in the query builder layer of an ORM, but there has been an oversight into investigating insecure uses of an ORM. This talk is about the ORM Leak vulnerability class, where an insecure use of an ORM or exposed interface for database querying that does not validate user inputs beforehand could result in leaking out sensitive data, without the exploitation of a SQL injection vulnerability. We will cover the conditions necessary for an ORM Leak vulnerability, real world examples of ORM leaks and...
https://www.youtube.com/watch?v=tJR4FirA9Nk
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Black Hat Europe 2025 | Breaking AI Inference Systems: Lessons From Pwn2Own Berlin
At Pwn2Own Berlin 2025, AI systems made their debut as official competition targets. This talk documents our successful exploitation of real-world AI infrastructure in that context focusing on vulnerabilities we discovered and demonstrated in Ollama and NVIDIA Triton Inference Server. We detail our security research methodology, which included threat modeling, file format fuzzing, and plugin analysis. In Ollama, we discovered multiple bugs before and during the competition, including an authentication bypass (CVE issued) and a heap overflow found via fuzzing—although it was patched three weeks before the event. In Triton Server, we uncovered a command injection vulnerability in its model configuration pipeline, leading to reliable remote code execution. We'll also briefly explore other...
https://www.youtube.com/watch?v=Qy1Uu5Wdkg8
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Stay Ahead of Ransomware - July 2026
Are you staying ahead of today's ransomware threats? Do you understand how modern ransomware groups are evolving and what that means for your organization? Stay Ahead of Ransomware is a SANS livestream designed to keep you informed, prepared, and one step ahead of adversaries. Join SANS Certified Instructors Ryan Chapman and Mari DeGrazia as they break down the latest ransomware trends, attacker methodologies, and real-world case insights shaping today's threat landscape. Ransomware is becoming more targeted, more sophisticated, and more damaging. Security teams are under constant pressure to detect, respond to, and prevent these attacks, but keeping up with rapid changes can be a challenge. This livestream delivers practical, experience-driven advice to help you better understand how...
https://www.youtube.com/watch?v=9qzqMfqrd9U
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Black Hat Europe 2025 | Nation-Scale SecOps: How CERT PL Scans Poland
At CERT PL, a national CSIRT for Poland, we learned that the security of public entities is an area with numerous easily exploitable vulnerabilities and a significant need for free tools to improve the situation. In this presentation, I will describe the approach we follow to enhance the security of public and private entities in Poland. I will introduce moje.cert.pl (meaning 'my CERT PL' in English), a system where administrators can join, scan their domains and networks for vulnerabilities, and receive notifications about user password breaches within their domains — all in one place and for free. I will also explain how we automatically scan tens of thousands of public entities in Poland (even ones that don't know about the CSIRT) and present Artemis, an open-source tool we developed...
https://www.youtube.com/watch?v=7c15gEyJF1I
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Black Hat Europe 2025 | Not Just Victims: The Hidden Villains Inside Infostealer Logs
Infostealer malware is malicious code designed to infiltrate users' systems and secretly extract sensitive data such as browser information, system details, account credentials, cryptocurrency wallets, and screenshots. This stolen data is often sold or leaked on dark web platforms. While many victims are innocent, some are involved in criminal activities, which our research focuses on uncovering. Preliminary analysis of stealer logs revealed distinct behavioral patterns like multiple similar accounts and criminal conduct indicators, suggesting links to scams and illegal operations. To better analyze these vast and complex datasets, we integrated Large Language Models (LLMs) that assist in organizing, classifying, and enriching loosely structured or ambiguous textual data within stealer logs....
https://www.youtube.com/watch?v=C8JXQ8EAaNk
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

I Made an AI Agent That Reverses CVEs While I Sleep
LIKE and SUBSCRIBE with NOTIFICATIONS ON if you enjoyed the video! 👍 Signup for Zapier here 👉🏼 https://bit.ly/4woWdic 📚 If you want to learn bug bounty hunting from me: https://bugbounty.nahamsec.training 💻 If you want to practice some of my free labs and challenges: https://app.hackinghub.io 💵 FREE 0 DigitalOcean Credit: https://m.do.co/c/3236319b9d0b 🔗 LINKS: 📖 MY FAVORITE BOOKS: Bug Bounty Bootcamp: The Guide to Finding and Reporting Web Vulnerabilities -https://amzn.to/3Re8Pa2 Hacking APIs: Breaking Web Application Programming Interfaces - https://amzn.to/45g4bOr Black Hat GraphQL: Attacking Next Generation APIs - https://amzn.to/455F9l3 🍿 WATCH NEXT: If I Started Bug Bounty Hunting in 2024, I'd Do this - https://youtu.be/z6O6McIDYhU 2023 How to Bug...
https://www.youtube.com/watch?v=C7TbsqTmzWs
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

THE MOD WORKS! lets improve it
Learn Cybersecurity and more with Just Hacking Training: https://jh.live/training See what else I'm up to with: https://jh.live/newsletter ℹ️ Resources: See what cybersecurity events are happening: https://jh.live/infosecmap Learn how to code with CodeCrafters: https://jh.live/codecrafters Host your own VPN with OpenVPN: https://jh.live/openvpn Get Blue Team Training and SOC Analyst Certifications with CyberDefenders: https://jh.live/cyberdefense
https://www.youtube.com/watch?v=4SoKErPUy9Y
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Black Hat Europe 2025 | Taking Control Over Legacy And ERTMS/ETCS Railroad Signaling Systems
Railroad signaling systems have evolved from legacy trackside beacons to sophisticated digital protocols such as the European Train Control System (ETCS) under the European Rail Traffic Management System (ERTMS). Despite these advancements, security vulnerabilities remain due to the inherent trust placed in beacon-based signaling mechanisms. This talk explores how both legacy and high-speed railway signaling systems can be compromised using low-cost and even hand-crafted hardware and software-defined radio (SDR) techniques. In legacy systems such as ASFA (Anuncio de Señales y Frenado Automático) and similar trackside beacon-based signaling architectures, we demonstrate how an attacker can deploy rogue balises using passive magnetic elements tuned to specific resonance frequencies. These...
https://www.youtube.com/watch?v=hd6221cFb3g
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

New to Linux? This is the best place to start!
In this video, I walk you through the entire process of dual booting Windows and Linux Mint on a modern laptop, installing them side-by-side on the same drive. I show you how to download the Linux Mint ISO, use Rufus to create a bootable USB drive, and partition your existing drive using Windows Disk Management. Because modern hardware introduces specific roadblocks, I also cover the essential troubleshooting steps required before installation. You will see exactly how to back up your recovery keys, fully disable Windows BitLocker encryption, and navigate your BIOS/UEFI settings to turn off Secure Boot so that your Linux Mint installation does not fail. Big thank you to Geekom for sponsoring this video. To get a discount on your Geekom X14 Pro and Geekom A5 Mini PC use the following codes....
https://www.youtube.com/watch?v=VQZqysdxGUU
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

the vibe continues
Learn Cybersecurity and more with Just Hacking Training: https://jh.live/training See what else I'm up to with: https://jh.live/newsletter ℹ️ Resources: See what cybersecurity events are happening: https://jh.live/infosecmap Learn how to code with CodeCrafters: https://jh.live/codecrafters Host your own VPN with OpenVPN: https://jh.live/openvpn Get Blue Team Training and SOC Analyst Certifications with CyberDefenders: https://jh.live/cyberdefense
https://www.youtube.com/watch?v=egZOUdA0iaw
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Black Hat Europe 2025 | Slashing QUIC's Performance With A Hash DoS
QUIC was designed for low-latency and high-performance communication, but what if its very design enables an attack that can bring it to a crawl? In this talk, we present a remote Hash Denial-of-Service (Hash DoS) attack that exploits hash collisions in QUIC's processing of connection IDs (CID). Our survey of over 20 QUIC server implementations revealed that a third of them were vulnerable to this attack, allowing a remote attacker to trigger excessive hash table operations with minimal effort, leading to severe slowdowns or even complete stalls. In this talk, we'll break down the attack mechanics, discuss the different hash functions used by QUIC implementations, show how to exploit them, and demonstrate the real-world impact of the attack with performance metrics and a proof-of-concept...
https://www.youtube.com/watch?v=anofgjg_jU4
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

let's vibe
Learn Cybersecurity and more with Just Hacking Training: https://jh.live/training See what else I'm up to with: https://jh.live/newsletter ℹ️ Resources: See what cybersecurity events are happening: https://jh.live/infosecmap Learn how to code with CodeCrafters: https://jh.live/codecrafters Host your own VPN with OpenVPN: https://jh.live/openvpn Get Blue Team Training and SOC Analyst Certifications with CyberDefenders: https://jh.live/cyberdefense
https://www.youtube.com/watch?v=vUvulqnTCVk
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Inside H1-813 Live Hacking Event with Salesforce in Tokyo
What does security look like in the agentic enterprise era? Go inside HackerOne and Salesforce's Live Hacking Event in Tokyo, where researchers from around the world collaborated in real time to identify, validate, and help resolve vulnerabilities—strengthening security through proactive collaboration. As AI transforms how enterprises build and operate, organizations face evolving risks across increasingly dynamic systems and workflows. For more than 10 years, Salesforce has partnered with HackerOne and the global security researcher community to strengthen security through continuous testing and live collaboration. This recap highlights the teamwork, innovation, and researcher expertise helping organizations stay ahead of risk in the agentic AI era. Learn more about HackerOne: https://www.hackerone.com...
https://www.youtube.com/watch?v=8hHhD2t9tv4
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

2026 home lab setup to test malicious links safely for FREE (step by step)
Get KASM for free with the Community Edition: https://davidbombal.wiki/3T7Qy1F Install 1.19 now:  https://davidbombal.wiki/44zhkm9 Learn more about the Kasm Workspaces platform: https://davidbombal.wiki/3Rbi7Xn Kasm Workspaces Documentation:  https://davidbombal.wiki/3SyA3M3 Big thank you to KASM for sponsoring this video: A lot of cybersecurity training tells you to never click links. But what happens when you actually have to click one and you don't know if it's a safe link or a phishing link? In this video David Bombal shows the exact setup he uses to open suspicious or dodgy links without infecting his local computer. His approach: a cheap N95 mini PC running Ubuntu and Kasm Workspaces, placed in a DMZ between two firewalls from two different vendors (one internet-facing, one...
https://www.youtube.com/watch?v=bIEVyQyJLic
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Which is Ethernet? What's the difference?
Do you really need Cat 8 Ethernet for your home network in 2026? And what actually happens when you touch the end of a fiber optic cable? We break it all down with hands-on demos. At Cisco Live, I caught up with Jim from Fluke Networks to dive deep into the physical layer of networking. We strip away the marketing hype and look at the real-world performance of both copper and glass. In this video, we cover everything from the crucial safety reasons why you should never look into a fiber cable, to a microscope demonstration showing how a single speck of dirt or finger oil can cause frame errors and take down your SFP modules. We also run a live cable certification test on Cat 6 vs Cat 8 to show you exactly why Cat 6A is all you actually need for your home network, and how pros use an OTDR...
https://www.youtube.com/watch?v=nblqwk8QxuY
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Poisoned Packages & Stolen Secrets: The Rise of Supply Chain Attacks
Software supply chain attacks have surged in 2026, with threat actors increasingly targeting the trusted packages, repositories, and CI/CD workflows developers rely on every day. Recent campaigns linked to TeamPCP and Mini Shai-Hulud demonstrate how a single compromised maintainer account, package, or build pipeline can quickly spread across npm, PyPI, GitHub, cloud environments, and downstream enterprise users. In this episode of STAR, we'll examine major software supply chain compromises, including the AntV npm incident, Megalodon-style GitHub backdooring, and other recent campaigns. We'll walk through the TeamPCP attack chain to uncover how attackers steal secrets, compromise build systems, abuse trust mechanisms, and expand access across the software ecosystem. Join us on July 25 to...
https://www.youtube.com/watch?v=grETPN1nUxw
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Closing the Discovery-Remediation Gap | CTEM in Practice
The gap between finding vulnerabilities and fixing them is getting wider — even as AI accelerates discovery. On the H1 Platform, submissions are up 92% year over year, with 32% classified as critical or high severity. That's not a volume problem. It's an operational one. In this Ask Us Anything session, HackerOne Co-Founder, CISO & CTO Alex Rice, CPO Nidhi Aggarwal, and Co-Founder & Senior Director, Product Management Michiel Prins tackle the questions security leaders are actually asking about Continuous Threat Exposure Management (CTEM): → How do engineering teams avoid getting buried when AI finds vulnerabilities faster than they can fix them? → What does a continuous testing architecture look like at scale? → How do you prioritize remediation when the backlog grows faster than...
https://www.youtube.com/watch?v=zRJHaKvkspc
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

This Hacker Got Paid ,000+ to Break Frontier AI Models
LIKE and SUBSCRIBE with NOTIFICATIONS ON if you enjoyed the video! 👍 📚 If you want to learn bug bounty hunting from me: https://bugbounty.nahamsec.training 💻 If you want to practice some of my free labs and challenges: https://app.hackinghub.io 💵 FREE 0 DigitalOcean Credit: https://m.do.co/c/3236319b9d0b 🔗 LINKS: 📖 MY FAVORITE BOOKS: Bug Bounty Bootcamp: The Guide to Finding and Reporting Web Vulnerabilities -https://amzn.to/3Re8Pa2 Hacking APIs: Breaking Web Application Programming Interfaces - https://amzn.to/45g4bOr Black Hat GraphQL: Attacking Next Generation APIs - https://amzn.to/455F9l3 🍿 WATCH NEXT: If I Started Bug Bounty Hunting in 2024, I'd Do this - https://youtu.be/z6O6McIDYhU 2023 How to Bug Bounty - https://youtu.be/FDeuOhE5MhU Bug Bounty Hunting...
https://www.youtube.com/watch?v=OUSCzHN2o1c
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Build a Complete Free CCNA Home Lab in 2026 With No Gear
In this episode, David Bombal sits down with Joe and Dalton from Cisco to break down the biggest Cisco Modeling Labs (CML) 2.10 release yet. Joe demos the new open source MCP server (model context protocol) that lets an AI model like Claude build a full CML lab from plain English. Just by asking for three IOL routers with a simple BGP config, the AI looks up the node definitions, invents the IP addresses, builds the topology, chooses eBGP on its own, and even starts the lab and waits for convergence. From there you will see the MCP server spin up a CCNA troubleshooting scenario from the official blueprint, quiz you, review your console history and final config, and hand back an honest evaluation with coaching tips. It can even turn a BGP packet capture into a ladder diagram to explain how...
https://www.youtube.com/watch?v=iHw6X0j_jnw
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Will this replace PoE (Power over Ethernet)?
Big thanks to NTT DATA for sponsoring this video and to Cisco for sponsoring my trip to Cisco Live Vegas. For more information about NTT DATA and Cisco's partnership, click here https://services.global.ntt/en-us/about-us/our-partners/cisco 1000W touch safe power sounds impossible, but Class 4 Fault Managed Power is changing how we think about power delivery for AI data centers, buildings, networking, and IT infrastructure. In this interview, we look at how Cisco, NTT, and Panduit are approaching the next generation of energy networking systems. Traditional Power over Ethernet is useful for endpoints like access points, cameras, sensors, and phones, but PoE tops out around 100 watts. Fault Managed Power introduces a new class of power delivery that can deliver much higher wattage while...
https://www.youtube.com/watch?v=-kHIYtSLbTU
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

H1 Platform Demo | CTEM at AI Scale
Continuous Threat Exposure Management (CTEM) starts here. The H1 Platform moves security teams from vulnerability discovery to validated exploitability, automated remediation, and measurable risk reduction across the entire attack surface. See how the H1 Platform delivers CTEM end-to-end: ▶ Continuous testing — black-box and source-code testing create an always-on source of findings ▶ Research community — where automation reaches its limit, the world's largest community of security researchers pushes further, surfacing the issues only human creativity finds ▶ Agentic validation — Hai, HackerOne's AI orchestrator, validates exploitability in real time with documented proof ▶ Automated remediation — fix-ready findings route directly to engineering with root cause, code change,...
https://www.youtube.com/watch?v=t9xJmdqU3_U
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

AI Security's Last Mile Problem with Michael Mckinley
Most AI security vendors will show you a compelling demo. Almost none of them will tell you what it costs to close the gap between what their tool promises and what your team actually needs. In this episode of Exposed, Maggie Miller sits down with Michael Mckinley, Lead Sales Engineer at HackerOne, to get into what the AI security buying landscape actually looks like for security leaders right now - and why the most expensive part of any AI security tool is rarely the license fee. It's the last mile. From evaluating agentic offensive technology through a CTEM lens, to why a 50% false positive rate is still a bill someone has to pay, to how agreed-upon metrics cut through AI noise better than any vendor benchmark: this is the most grounded conversation on AI security evaluation you'll find...
https://www.youtube.com/watch?v=uI7MoYNpUCk
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

How I Made ,000 Hacking Broken Access Control
LIKE and SUBSCRIBE with NOTIFICATIONS ON if you enjoyed the video! 👍 📚 If you want to learn bug bounty hunting from me: https://bugbounty.nahamsec.training 💻 If you want to practice some of my free labs and challenges: https://app.hackinghub.io I've made over ,000 from one bug class: broken access control. And it wasn't from spraying low-severity reports. In this video I break down 5 BAC bugs live and chain them into a full account takeover, the exact way the high-value bounties actually get paid. I built a free lab on HackingHub so you can try every one of these yourself the second the video ends 👇 🧪 Free lab: https://app.hackinghub.io/hubs/hospitalhub 🎓 Full Broken Access Control course: hhub.io/bac2026 💬 Want to see me build a custom Claude skill that hunts...
https://www.youtube.com/watch?v=6v3B3FxDHbo
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

How the USN Journal Really Works
Have you ever wondered how you can look at the USN Journal on a live and running system? In this episode, we'll dive in to see how it actually works and whether it matches what we've been taught. *** If you enjoy this video, please consider supporting 13Cubed on Patreon at patreon.com/13cubed. *** 📖 Chapters 00:00 - Intro 01:04 - Demo 🛠 Resources NTFS Journal Forensics: https://www.youtube.com/watch?v=1mwiShxREm8 Introduction to MFTECmd - NTFS MFT and Journal Forensics: https://www.youtube.com/watch?v=_qElVZJqlGY #Forensics #DigitalForensics #DFIR #ComputerForensics #WindowsForensics
https://www.youtube.com/watch?v=eSLHyqZlglk
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

The Korvath Incident: A macOS Forensics Challenge
🔥 Announcing a new challenge for Investigating macOS Endpoints! This comprehensive hands-on macOS forensics scenario accompanies our in-depth training and allows students to put their investigative skills to the test in a realistic case. Enroll today at https://training.13cubed.com/investigating-macos-endpoints #macos
https://www.youtube.com/watch?v=tRvw13e3Qn0
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

This Hacker Made ,000 Hacking AI With One Email
LIKE and SUBSCRIBE with NOTIFICATIONS ON if you enjoyed the video! 👍 📚 If you want to learn bug bounty hunting from me: https://bugbounty.nahamsec.training 💻 If you want to practice some of my free labs and challenges: https://app.hackinghub.io 💵 FREE 0 DigitalOcean Credit: https://m.do.co/c/3236319b9d0b 🔗 LINKS: 📖 MY FAVORITE BOOKS: Bug Bounty Bootcamp: The Guide to Finding and Reporting Web Vulnerabilities -https://amzn.to/3Re8Pa2 Hacking APIs: Breaking Web Application Programming Interfaces - https://amzn.to/45g4bOr Black Hat GraphQL: Attacking Next Generation APIs - https://amzn.to/455F9l3 🍿 WATCH NEXT: If I Started Bug Bounty Hunting in 2024, I'd Do this - https://youtu.be/z6O6McIDYhU 2023 How to Bug Bounty - https://youtu.be/FDeuOhE5MhU Bug Bounty Hunting...
https://www.youtube.com/watch?v=3oARlXLiySw
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Stay Ahead of Ransomware Livestream - June 2026
Are you keeping up with the latest ransomware activity? Do you know the tactics, techniques, and procedures attackers are using right now? Ransomware isn't slowing down. Cases continue to rise year over year, and the methods behind them keep evolving. Join SANS Certified Instructors Ryan Chapman and Mari DeGrazia as they walk through what's happening in today's ransomware landscape and what you should be paying attention to. Don't wait until you're in the middle of an incident. Subscribe to stay current.
https://www.youtube.com/watch?v=9NoZYiAqdhw
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Offensive Security Views on HTTP [RFC 9110]
I've distilled the security considerations of RFC 9110 using NotebookLM's cinematic overviews.
https://www.youtube.com/watch?v=tJFwXCUhFHo
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

How I Found My First ,000 AI Vulnerability
LIKE and SUBSCRIBE with NOTIFICATIONS ON if you enjoyed the video! 👍 📚 If you want to learn bug bounty hunting from me: https://bugbounty.nahamsec.training 💻 If you want to practice some of my free labs and challenges: https://app.hackinghub.io 💵 FREE 0 DigitalOcean Credit: https://m.do.co/c/3236319b9d0b 🔗 LINKS: 📖 MY FAVORITE BOOKS: Bug Bounty Bootcamp: The Guide to Finding and Reporting Web Vulnerabilities -https://amzn.to/3Re8Pa2 Hacking APIs: Breaking Web Application Programming Interfaces - https://amzn.to/45g4bOr Black Hat GraphQL: Attacking Next Generation APIs - https://amzn.to/455F9l3 🍿 WATCH NEXT: If I Started Bug Bounty Hunting in 2024, I'd Do this - https://youtu.be/z6O6McIDYhU 2023 How to Bug Bounty - https://youtu.be/FDeuOhE5MhU Bug Bounty Hunting...
https://www.youtube.com/watch?v=Q6hQlM6f6Cs
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Rebase Before Merging? More Like RCE Before Merging (CVE-2026-52806)
I found an unpatched RCE via argument injection in Gogs. Any authenticated user can create a pull request from a branch with a malicious name, then abuse the "Rebase before merging" feature to inject arbitrary arguments into git rebase. Since git rebase supports --exec, the injected argument gives the attacker command execution on the server. Rapid7 scored this as CVSSv4 9.4 (Critical), and at the time of disclosure, there is no patch available 😬 @OfficialRapid7 Analysis (Me!): https://www.rapid7.com/blog/post/ve-authenticated-rce-via-argument-injection-gogs-unfixed/ @MetasploitR7 module (Also me!): https://github.com/rapid7/metasploit-framework/pull/21515 PR fix: https://github.com/gogs/gogs/pull/8301 👷‍♂️Resources🛠 https://cryptocat.me/resources Overview: 0:00 Introduction 0:38...
https://www.youtube.com/watch?v=wt6l_5VB91A
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

2026 Threat Landscape Reality Check: Turning Threat Intelligence into Analytic Advantage
This introductory episode of STAR welcomes new host Sean O'Connor, with former host Katie Nickels joining for a special handoff conversation. Together with guests Rebekah Brown and John Doyle, they will examine insights from recent 2026 threat reports and what those findings reveal about today's evolving cyber landscape. The conversation will also explore what these shifts mean for modern intelligence teams and how building a strong foundation in intelligence work, combined with a clear understanding of how attackers operate, helps organizations turn threat information into smarter security decisions and stronger defenses. Join us for a focused look at how to turn 2026 threat reporting into meaningful analytic advantage.
https://www.youtube.com/watch?v=QLVsn9cSDTs
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

This GitHub README Hijacks Your AI and Spreads Like a Virus
LIKE and SUBSCRIBE with NOTIFICATIONS ON if you enjoyed the video! 👍 📚 If you want to learn bug bounty hunting from me: https://bugbounty.nahamsec.training 💻 If you want to practice some of my free labs and challenges: https://app.hackinghub.io Your AI coding assistant can be turned into a worm. Hidden in a README file, prompt injections can hijack your coding agents and spread from repository to repository like the old MySpace XSS worm. Security researcher and hacker Edward Morris shows me how to: • Turn innocent README files into malicious vectors • Bypass AI agent sandboxes using time-delayed exploits • Self-replicate across GitHub repositories • Steal API keys and compromise entire codebases 00:00 Intro 01:24 Why Target AI Coding Agents? 04:05 Sandbox Bypass Methods 07:46...
https://www.youtube.com/watch?v=4PBD-9IG13I
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Authenticate? No Thanks, I'll Skip It! (CVE-2026-20182)
CVE-2026-20182 is a critical (CVSS 10.0) authentication bypass in Cisco Catalyst SD-WAN Controller. The vdaemon service has a missing verification branch in vbond_proc_challenge_ack meaning any peer claiming device type 2 (vHub) falls straight through and is marked authenticated with no checks. From there, a single VMANAGE_TO_PEER message injects an attacker-controlled SSH key into the vmanage-admin account, granting persistent NETCONF access to the control plane. This is not a patch bypass of CVE-2026-20127, it's a separate bug in the same vdaemon stack, found during the n-day research. Talos reports UAT-8616 (the same threat actor from last time) is already exploiting it in the wild 💀 CVE-2026-20127: https://youtu.be/6vgpwr37nR0 Analysis: https://www.rapid7.com/blog/post/ve-cve-2026-20182-critical-authentication-bypass-cisco-catalyst-sd-wan-controller-fixed/ @MetasploitR7...
https://www.youtube.com/watch?v=_AxRbX_GLiA
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

The Bug Bounty Roadmap I'd Follow If I Started Over (With AI)
LIKE and SUBSCRIBE with NOTIFICATIONS ON if you enjoyed the video! 👍 Last week my buddy Douglas pulled K from one bug bounty program using Claude. Everyone wanted the AI workflow. Almost nobody wanted to hear *why it actually worked*: he already knew his bug classes cold. So here's the exact roadmap I'd follow if I had to start bug bounty hunting from scratch today — five pillars, in order, with AI plugged in at every stage as an accelerator, not a crutch. **What's in this video:** - 0:00 — Intro - 3:07 — Pillar 1 - 4:57 — Pillar 2 - 7:17 — Pillar 3 - 11:04 — Pillar 4 - 14:07 — Pillar 5 - 17:44 — The Accelerator vs Crutch test - 19:09 — Recap & final thoughts Comment **"Claude hacking"** if you want the next video — me hunting a target end-to-end with Claude...
https://www.youtube.com/watch?v=kujCmXELWqo
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Stay Ahead of Ransomware Livestream: May 2026
Ransomware isn't just sticking around, it's changing in ways that are easy to miss if you're not watching closely. Join SANS Certified Instructors Ryan Chapman and Mari DeGrazia for our May episode as they break down what's happening right now in the ransomware landscape and what you should be paying attention to. The goal is simple: help you stay informed and better prepared before you're dealing with it firsthand. Tune in the first Tuesday of every month to stay ahead.
https://www.youtube.com/watch?v=n0LFC2T9tV4
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Stop Using AI Connectors Until You Watch This
LIKE and SUBSCRIBE with NOTIFICATIONS ON if you enjoyed the video! 👍 📚 If you want to learn bug bounty hunting from me: https://bugbounty.nahamsec.training 💻 If you want to practice some of my free labs and challenges: https://app.hackinghub.io Your ChatGPT connectors are a hacker's goldmine. Plug in Gmail, Calendar, Notion, or Drive, and any attacker who can email you has a way into your AI agent. In this episode, @TakSec breaks down a real bug bounty POC where one connector covered two of the three ingredients an attacker needs to fully hijack an AI agent and exfil sensitive data. We cover: - What connectors actually expose when you plug them into ChatGPT - How AI agents get phished the same way humans do - The 3 ingredients every prompt injection attack needs (input, target,...
https://www.youtube.com/watch?v=_3TfHEfVvCQ
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Hunting Copy Fail: 732 Bytes to Root
In this episode, we'll look at how Copy Fail (CVE-2026-31431) works and highlight key forensic detection opportunities. *** If you enjoy this video, please consider supporting 13Cubed on Patreon at patreon.com/13cubed. *** 📖 Chapters 00:00 - Intro 01:19 - Demo 🛠 Resources CVE-2026-31431 (Copy Fail) Forensics: https://nullsec.us/cve-2026-31431-copy-fail-forensics/ #Forensics #DigitalForensics #DFIR #ComputerForensics #CopyFail
https://www.youtube.com/watch?v=ZVmpK-9rP0Q
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

DEF CON 34 - DEF CON Policy Announcement - Katie Noble, Heather West
The new leadership of the DEF CON Policy project share the goals of DEF CON Policy and remind you that their Call for Papers closes May 1.
https://www.youtube.com/watch?v=y7vMt_IM0Bw
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

The AI Conversation I've Been Avoiding
I've got some thoughts about AI. Let's talk about how it's changing digital forensics, how I actually use it in practice, and what you need to know if you're in or entering the field. *** If you enjoy this video, please consider supporting 13Cubed on Patreon at patreon.com/13cubed. *** 📖 Chapters 00:00 - Intro 00:43 - Public Models 05:17 - Local Models 06:37 - DF/IR Tools + AI 08:25 - Vibe Coding 10:02 - Career Advice #Forensics #DigitalForensics #DFIR #ComputerForensics #WindowsForensics
https://www.youtube.com/watch?v=wKn-9sKBqX8
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Unauthenticated Access to Cisco SD-WAN (CVE-2026-20127)
CVE-2026-20127 is an authentication bypass in Cisco Catalyst SD-WAN affecting the vbond component. There's a bug in how control plane messages are handled, allowing an attacker to inject state into the connection and bypass authentication entirely. In this video, I review Rapid7's analysis (written by me!) walking through the protocol, breaking down the packet structure, and tracing the vulnerable logic in vdaemon. R7 Labs Analysis: https://attackerkb.com/topics/bP3FMvHe7z/cve-2026-20127/rapid7-analysis @MetasploitR7 module (Stephen Fewer): https://github.com/rapid7/metasploit-framework/blob/master/modules/auxiliary/admin/networking/cisco_sdwan_auth_bypass.rb UAT-8616 Activity: https://blog.talosintelligence.com/uat-8616-sd-wan/ NEW @OfficialRapid7 podcast: https://www.youtube.com/playlist?list=PLMrgKzfE1aIOm4UP9XIqkni0tuOqH6BXq 👷‍♂️Resources🛠 https://cryptocat.me/resources 0:00...
https://www.youtube.com/watch?v=6vgpwr37nR0
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Stay Ahead of Ransomware - Initial Access via Evolving Social Engineering
For years, Initial Access in the world of Ransomware and Cyber Extortion was a battle between phishing, Remote Desktop Protocol (then just "remote access"), and software vulnerability exploitation. While those three remain key players, social engineering tactics have evolved and taken on a more substantial share of the initial access market. Ransomware campaigns are more commonly involving threats such as the ever-evolving ClickFix along with Teams-based social engineering tactics that often involve QuickAssist and/or RMM threats. Join Ryan and Mari as they walk you through example attacks, live with hands-on keyboard analysis of such attacks, and discuss tips and tricks related to prevention, detection, and response for these initial access methods.
https://www.youtube.com/watch?v=1IFeGVyny2c
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

From Gut to Gold Standard: The Admiralty System in CTI
From Your Gut to a Gold Standard: Introducing the Admiralty System in CTI 🎙️ Freddy Murstad, Senior Threat Intelligence Advisor, Intelligence Tradecraft 📍 Presented at SANS CTI Summit 2026 This presentation introduces the Admiralty System, a time-tested framework originally used for evaluating intelligence. Today, this system offers CTI professionals a robust method for assessing the reliability of Cyber Threat Intelligence (CTI) in an increasingly complex digital landscape. The presentation will highlight its adaptability for addressing modern cybersecurity challenges and explore the system's historical context. A key focus will be on understanding the crucial distinction between Source Reliability (the trustworthiness of the origin of the information) and Information Credibility...
https://www.youtube.com/watch?v=y-CSDxMMXb0
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Hunting North Korea's Contagious Interview Operation
Hunting North Korea's State-Sponsored “Contagious Interview” Operation: Attacks on Developers via the Software Supply Chain 🎙️ Kirill Boychenko, Senior Threat Intelligence Analyst, Socket 📍 Presented at SANS CTI Summit 2026 North Korean state-sponsored threat actors behind the “Contagious Interview” operation blend social engineering with malicious open source packages to compromise developers and tech job seekers. Throughout 2025, we identified and analyzed hundreds of malicious npm packages (thousands of downloads) delivering stealthy, multi-stage loaders and infostealers that fetch the BeaverTail malware and the InvisibleFerret backdoor. Operators pose as recruiters on LinkedIn, deliver “coding assignments” via GitHub, Bitbucket, and Google Docs, and pressure targets...
https://www.youtube.com/watch?v=BJveyxO_t_c
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Can We Forecast CTI's Future? Mapping with SATs
Can We Forecast Our Own Fate? Mapping the Future of the CTI Industry with SATs 🎙️ Josh Darby MacLellan, Staff Threat Intelligence Advisor, Feedly 📍 Presented at SANS CTI Summit 2026 CTI teams frequently forecast threats, but what if we forecast the future of CTI itself? Disruption from technology and geopolitics are increasing, CTI is not immune. Foresight SATs (Structured Analytic Techniques) provide insights into whether the CTI industry is heading for a boom, bust, or something completely different. More importantly, forecasting enables CTI analysts to prepare for our possible futures. In this session, I will provide a step-by-step walkthrough of how I used Foresight Technique SATs (including Key Drivers Generation, Key Uncertainties Finder, Multiple Scenarios Generation and...
https://www.youtube.com/watch?v=B9TkeUbD1Mk
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Poison in the Digital Well: Supply Chain Defense
Poison in the Digital Well: Intelligence-Driven Defense Against Supply Chain Attacks 🎙️ Shilpi Mittal, Lead Security Engineer, Tyson Foods Inc. 📍 Presented at SANS CTI Summit 2026 Software supply chain attacks are surging to unprecedented levels. In 2025, such attacks doubled compared to the previous year, now accounting for roughly 30% of all breaches. Threat actors are exploiting trusted vendor relationships as an entry point–effectively poisoning the well upstream to compromise countless downstream customers. A stark example occurred in September 2025, when a single npm attack injected malware into 18 widely used packages (totaling 2.6 billion weekly downloads). This incident underscored how a “weakest link” in the software supply chain can jeopardize thousands of organizations...
https://www.youtube.com/watch?v=T8gt7uSDnc8
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Can't Stop, Won't Stop: TA584 Innovates Initial Access
Can't Stop, Won't Stop: TA584 Innovates Initial Access 🎙️ Selena Larson, Staff Threat Researcher, Proofpoint 📍 Presented at SANS CTI Summit 2026 TA584 is one of the most prominent cybercriminal threat actors tracked by Proofpoint threat researchers. In 2025, the actor demonstrated multiple attack chain changes including new, global targeting; ClickFix social engineering; and delivering new malware, Tsundere Bot. TA584 is a prominent initial access broker (IAB) that targets organizations globally. Campaigns typically target hundreds of organizations with tens of thousands of messages and impersonate a variety of organizations including those in healthcare, government, business services, nonprofits, software, and financial services, among others. Proofpoint assesses with high...
https://www.youtube.com/watch?v=5NUNowKonXM
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Beyond Bullet Points: Visual Intelligence in the Age of AI
Beyond Bullet Points: Visual Intelligence in the Age of AI 🎙️ Sierra (Stanczyk) Karcher, Intelligence Practices Lead, PwC Global Threat Intelligence 🎙️ David Johnson, Threat Intelligence Advisor, Feedly 📍 Presented at SANS CTI Summit 2026 The way we consume and interact with information constantly evolves. For intelligence analysts, the challenge is not just collecting and analyzing data, it's how we transform that complexity into clarity for ourselves, our teams, and our stakeholders. Intelligence consumers are equally challenged with an influx of information, often turning to AI to summarize news feeds and intelligence reports. CTI analysts have a unique opportunity: We can sharpen our visual tradecraft, embrace new tools, and reimagine how we deliver intelligence to our...
https://www.youtube.com/watch?v=XJSM6EIlbKs
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

NEW2CTI | Beyond the Feed: CTI That Matters to Business
NEW2CTI | Beyond the Feed: Designing CTI Programs That Matter to the Business 🎙️ Sydney Jones, Head of Cyber Threat Management, CLS Group 🎙️ Arun Warikoo, Head of Cyber Threat Intelligence, CIB Americas, BNP Paribas 📍 Presented at SANS CTI Summit 2026 Across organizations, intelligence teams grapple with the following challenges: aligning the threat intelligence program with organization's business priorities, and articulating its tangible business value. How does a threat intelligence program ensure that insights on the current and emerging threat landscape reach the right stakeholders and ultimately safeguard business continuity and resiliency.
https://www.youtube.com/watch?v=_xC1qCweFIA
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Mac Imaging Made Easy with Fuji
🎉 New for 2026! In this episode, we'll look at Fuji — a free, open-source tool for performing live, logical forensic acquisitions of Mac computers (Intel or Apple Silicon). You'll see how Fuji leverages built-in macOS tools to generate a DMG image, ready for analysis in your forensic tool of choice. This video is an excerpt from the 13Cubed training course "Investigating macOS Endpoints." Visit https://training.13cubed.com to learn more! 🛠 Resources Fuji: https://github.com/Lazza/Fuji
https://www.youtube.com/watch?v=9ZkLdFodhzM
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

PromptShield™ Vs Claude File Creation Attacks
Your new file analysis tools are the latest entry point for command injection. Attackers use external files to trick your environment into running untrusted code and scraping sensitive data from SharePoint or internal projects. A request to "analyze a CSV" can silently append environment variables to a PDF, leaking your runtime keys because the model shares your administrator's permissions. Validating these attacks is nearly impossible when the payload is plain English. You can't rely on basic filters to catch exfiltration when the model is designed to be helpful. PromptShield™ identifies the underlying intent before data leaves the environment, detecting unauthorized access in real-time. It sees into the corners of your workflow to stop the noise before it becomes a breach. 🔒...
https://www.youtube.com/watch?v=Fm39l8WdLVM
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

PromptShield™ Vs LLMs Exploiting NPM Packages
Your build pipeline is a wide-open door. Attackers are now compromising popular NPM packages to execute post-install scripts that hunt for your secrets. It isn't just a Windows problem; these exploits recursively search Linux and Mac OS directories to dump sensitive data from Trezor, Ledger, and Metamask wallets. If your API has elevated permissions, these prompt injections bypass standard file access controls to exfiltrate data before your SOC even sees the spike. Monitoring for suspicious commands is a start, but manual review can't keep up with the noise. You need a defensible architecture that stops the intent of the attack, not just the known signature. While most systems are vulnerable to this level of command injection, our prompt classification identifies the malicious payload...
https://www.youtube.com/watch?v=WMeL-KKcQ98
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Security-driven Rapid Release - Pwn2Own Documentary (Part 4)
Learn hacking (ad): https://www.hextree.io What does it take to fix a vulnerability in Firefox and release an Update? part 1: https://www.youtube.com/watch?v=YQEq5s4SRxY part 2: https://www.youtube.com/watch?v=uXW_1hepfT4 part 3: https://www.youtube.com/watch?v=NT1VCmJF3mU part 4: https://www.youtube.com/watch?v=x4CUAuwoZVk (Spoilers) Firefox Security Response to pwn2own 2025: https://blog.mozilla.org/security/2025/05/17/firefox-security-response-to-pwn2own-2025/ =[ ❤️ Support ]= → My courses: https://www.hextree.io/ → My font: https://shop.liveoverflow.com/ → per Video: https://www.patreon.com/join/liveoverflow → per Month: https://www.youtube.com/channel/UClcE-kVhqyiHCcjYwcpfj9w/join 2nd Channel: https://www.youtube.com/LiveUnderflow =[ 🐕 Social ]= → LinkedIn: https://www.linkedin.com/in/liveoverflow →...
https://www.youtube.com/watch?v=x4CUAuwoZVk
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Firefox JIT Bug - Pwn2Own Documentary (Part 3)
Learn hacking (ad): https://www.hextree.io We talk to Manfred Paul and learn about his research process. We also dive into the technical details about his JIT bug and learn about the optimization he exploited. part 1: https://www.youtube.com/watch?v=YQEq5s4SRxY part 2: https://www.youtube.com/watch?v=uXW_1hepfT4 part 3: https://www.youtube.com/watch?v=NT1VCmJF3mU part 4: https://www.youtube.com/watch?v=x4CUAuwoZVk (Spoilers) Firefox Security Response to pwn2own 2025: https://blog.mozilla.org/security/2025/05/17/firefox-security-response-to-pwn2own-2025/ =[ ❤️ Support ]= → My courses: https://www.hextree.io/ → My font: https://shop.liveoverflow.com/ → per Video: https://www.patreon.com/join/liveoverflow → per Month: https://www.youtube.com/channel/UClcE-kVhqyiHCcjYwcpfj9w/join 2nd...
https://www.youtube.com/watch?v=NT1VCmJF3mU
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

The First Exploit - Pwn2Own Documentary (Part 2)
Learn hacking (ad): https://www.hextree.io What happens in the Pwn2Own disclosure room? Let's find out in part 2 of my short documentary about how Mozilla fixes 0days. part 1: https://www.youtube.com/watch?v=YQEq5s4SRxY part 2: https://www.youtube.com/watch?v=uXW_1hepfT4 part 3: https://www.youtube.com/watch?v=NT1VCmJF3mU part 4: https://www.youtube.com/watch?v=x4CUAuwoZVk (Spoilers) Firefox Security Response to pwn2own 2025: https://blog.mozilla.org/security/2025/05/17/firefox-security-response-to-pwn2own-2025/ =[ ❤️ Support ]= → My courses: https://www.hextree.io/ → My font: https://shop.liveoverflow.com/ → per Video: https://www.patreon.com/join/liveoverflow → per Month: https://www.youtube.com/channel/UClcE-kVhqyiHCcjYwcpfj9w/join 2nd Channel: https://www.youtube.com/LiveUnderflow =[...
https://www.youtube.com/watch?v=uXW_1hepfT4
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

The World's Hardest Hacking Competition - Pwn2Own Documentary (Part 1)
Learn hacking (ad): https://www.hextree.io Pwn2Own 2025 was happening in Berlin and I got the opportunity to follow Mozilla into the disclosure room and document how Mozilla fixes critical vulnerabilities. part 1: https://www.youtube.com/watch?v=YQEq5s4SRxY part 2: https://www.youtube.com/watch?v=uXW_1hepfT4 part 3: https://www.youtube.com/watch?v=NT1VCmJF3mU part 4: https://www.youtube.com/watch?v=x4CUAuwoZVk (Spoilers) Firefox Security Response to pwn2own 2025: https://blog.mozilla.org/security/2025/05/17/firefox-security-response-to-pwn2own-2025/ Sorry for the long delay of this video... Permiere Pro hated me in this project and 2025 was a shit year. =[ ❤️ Support ]= → My courses: https://www.hextree.io/ → My font: https://shop.liveoverflow.com/ → per Video: https://www.patreon.com/join/liveoverflow →...
https://www.youtube.com/watch?v=YQEq5s4SRxY
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

PromptShield™ Vs Google Calendar Invitation Attacks
Adversaries are weaponizing Google Calendar to execute unauthorized commands on connected infrastructure. A malicious meeting invite bypasses traditional secure email gateways because it originates from a verified Google server. The payload is not a macro or an executable file. It is a plain-text prompt injection hidden within the event description. The attack triggers when Google's native AI assistant attempts to parse the calendar schedule. The AI reads the malicious instructions and executes them with the victim's full privilege level. Over time, this allows attackers to manipulate linked devices without triggering a malware alert. 🔒 Secure A With PromptShield™ --------------------------------------------------------------- Sitting between users and your AI models, PromptShield™...
https://www.youtube.com/watch?v=aRR2WZgrmRs
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

DEF CON 33 - DisguiseDelimit: Exploiting Synology NAS with Delimiters and Novel Tricks - Ryan Emmon
Network Attached Storage (NAS) devices are indispensable in many corporate and home environments. These devices often live on the network edge, providing convenient remote access to confidential files and internal networks from the public internet. What happens when this goes terribly wrong? In this presentation, I'll discuss how I developed a zero-day exploit targeting dozens of Synology NAS products. At the time of discovery, the exploit facilitated unauthenticated root-level remote code execution on millions of NAS devices in the default configuration. My exploitation strategy centered around smuggling different types of delimiters that targeted multiple software components. In the past, exploitation of the vulnerability's bug class demanded additional primitives that weren't available...
https://www.youtube.com/watch?v=3F5icGjDWfg
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

DEF CON 33 - Browser Extension Clickjacking: One Click and Your Credit Card Is Stolen - Marek Tóth
Browser extensions have become increasingly popular for enhancing the web browsing experience. Common examples are ad blockers, cryptocurrency wallets, and password managers. At the same time, modern websites frequently display intrusive elements, such as cookie consent banners, newsletter subscription modals, login forms, and other elements that require user interaction before the desired content can be displayed. In this talk, I will present a new technique based on clickjacking principles that targets browser extensions, where I used fake intrusive elements to enforce user interaction. In my research, I tested this technique on the 11 most widely used password managers, which resulted in discovering multiple 0-day vulnerabilities that could affect tens of millions of users. Typically,...
https://www.youtube.com/watch?v=Gu4IoDXNqoU
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

DEF CON 33 - Can't Stop the ROP: Automating Universal ASLR Bypasses - Bramwell Brizendine
High-entropy ASLR was supposed to make bypasses of ASLR on Windows virtually impossible - until now! This talk will debut nine novel bypasses of the strongest form of ASLR on Windows, which makes attacks such as brute-forcing totally infeasible. This talk showcases how mostly simple, easy-to-find ROP gadgets can be used to construct highly reliable, universal ASLR bypasses to key Windows system DLLs, allowing ROP gadgets from those DLLs to be used freely in exploits! The end result? The attack surface is greatly expanded, making it possible to do more attacks on binaries previously constrained by limited gadgets. What may have been impossible before due to insufficient ROP gadgets, now is quite possible! While this talk focuses primarily on ASLR bypass for x64, we will also briefly touch upon...
https://www.youtube.com/watch?v=NrTNNi9PP5Y
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Tracking Program Execution with a Little Known Registry Key
In this episode, we'll take a look at another obscure, registry-based execution artifact that may help you fill in yet another piece of the puzzle. *** If you enjoy this video, please consider supporting 13Cubed on Patreon at patreon.com/13cubed. *** 📖 Chapters 00:00 - Intro 00:33 - About Registry Hives 02:10 - Demo 🛠 Resources FeatureUsage — Evidence of Execution: https://upadhyayraj.medium.com/featureusage-evidence-of-execution-appswitched-8df98ac0ddc2 The Windows Forensic Journey — “AppSwitched”: https://medium.com/@boutnaru/the-windows-forensic-journey-appswitched-55abc690f0f0 #Forensics #DigitalForensics #DFIR #ComputerForensics #WindowsForensics
https://www.youtube.com/watch?v=yoFkF-NHZvo
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

The Truth About Windows Explorer Timestamps
In this episode, we'll uncover how Windows Explorer really retrieves file timestamps when you browse a directory of files. Learn why these timestamps actually come from the $FILE_NAME attribute in the parent directory's $I30 index, not from $STANDARD_INFORMATION, and how NTFS structures like $INDEX_ROOT and $INDEX_ALLOCATION make this process efficient. *** If you enjoy this video, please consider supporting 13Cubed on Patreon at patreon.com/13cubed. *** 📖 Chapters 00:00 - Intro 01:02 - Recap of MACB Timestamps 04:52 - Recap of $I30 06:58 - Conclusion 🛠 Resources $STANDARD_INFORMATION vs. $FILE_NAME: https://dfir.ru/2021/01/10/standard_information-vs-file_name/ #Forensics #DigitalForensics #DFIR #ComputerForensics #WindowsForensics
https://www.youtube.com/watch?v=PdyVkmhMcOA
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

I bought this tiny ereader… Then rewrote It
Meet the Xteink X4, a tiny 4.3" E-ink eReader that can cost around and is small enough to slip in a pocket. If you're a security professional (or just someone who lives in technical docs) and you want a way to read without getting pulled into notifications and doomscrolling, this minimalist ereader is a surprisingly good alternative to reading on your phone. What makes the Xteink X4 interesting isn't just the price it's how much you can do with it. It's ESP32-based, which makes it a genuinely approachable device for anyone learning firmware development and embedded C++. I walk through the usability, why I recommend the community firmware for a cleaner UI, and how I use it with Calibre and Calibre-Web for a more self-hosted, library-style workflow instead of being locked into a...
https://www.youtube.com/watch?v=yMoq17-1pJA
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Major Update to 13Cubed Courses: Chaos at Cobalt
Chaos at Cobalt, a major new practice scenario, is now available for Investigating Windows Endpoints, Investigating Windows Memory, and Investigating Linux Devices. Access the Additional Content module to get started! 🚀 Or enroll today at https://training.13cubed.com #Forensics #DigitalForensics #DFIR #ComputerForensics #WindowsForensics #LinuxForensics
https://www.youtube.com/watch?v=CzF6DFhSfHw
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

DEF CON 33 Recon Village - How to Become One of Them: Deep Cover Ops - Sean Jones, Kaloyan Ivanov

https://www.youtube.com/watch?v=aSOiPxOBs1E
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

DEF CON 33 Recon Village - Inside the Shadows Tracking RaaS Groups, Cyber Threats - John Dilgen

https://www.youtube.com/watch?v=esKyHO5WjPU
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

DEF CON 33 Recon Village - Autonomous Video Hunter AI Agents for Real Time OSINT - Kevin Dela Rosa

https://www.youtube.com/watch?v=oHjQSpcP664
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

DEF CON 33 Recon Village - A Playbook for Integration Servers - Ryan Bonner, Guðmundur Karlsson

https://www.youtube.com/watch?v=wgf5GKrY3nc
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

DEF CON 33 Recon Village - Mapping the Shadow War From Estonia to Ukraine - Evgueni Erchov

https://www.youtube.com/watch?v=y-1_nKM8DRQ
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

DEF CON 33 Recon Village - Building Local Knowledge Graphs for OSINT - Donald Pellegrino

https://www.youtube.com/watch?v=yIUfntW_TxY
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

DEF CON 33 Recon Village - OSINT & Modern Recon Uncover Global VPN Infrastructure - Vladimir Tokarev

https://www.youtube.com/watch?v=4HGFlZZfWc8
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

DEF CON 33 Recon Village - Pretty Good Pivot - Simwindie

https://www.youtube.com/watch?v=6mykx1zS1yo
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

DEF CON 33 Recon Village - enumeraite: AI Assisted Web Attack Surface Enumeration - Özgün Kültekin

https://www.youtube.com/watch?v=IzsBS_E2RVY
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

DEF CON 33 Recon Village - OSINT Signals Pop Quiz - Master Chen

https://www.youtube.com/watch?v=L-ZqeZbiWn8
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

DEF CON 33 Recon Village - Investigating Foreign Tech from Online Retailers - Michael Portera

https://www.youtube.com/watch?v=MAtllbHmxP4
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Manipulating Memory with Cheat Engine - Hacky Christmas [NahamCon 2025 CTF]
🎅 Video walkthrough for the Hacky Christmas challenge I made for the NahamCon Capture the Flag (CTF) competition 2025 Winter Edition (organised by @NahamSec) It was a game hacking challenge (Unity) where players were expected to escape the ice box (teleport) and then obtain more than 1 million points. The easiest way to do this is to identify those values (coordinates and points) in memory, and modify them! Write-ups/tutorials aimed at beginners - Hope you enjoy 🙂 #NahamCon #NahamCon2025 #NahamConCTF #CTF #GameHacking #CheatEngine Full write-ups for all my NahamCon 2025 challenges: https://cryptocat.me/blog/ctf/2025#nahamcon-winter Want to learn more about hacking games with cheat engine? Check out my full tutorial series over on the @intigriti channel: https://www.youtube.com/watch?v=ku6AtIY-Lu0&list=PLmqenIp2RQcg0x2mDAyL2MC23DAGcCR9b...
https://www.youtube.com/watch?v=fs9WeNkUB4M
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Adversarial Image Attacks Explained
Adversarial images are specially crafted visuals that embed hidden prompts or instructions, invisible to humans but detectable by AI systems, allowing attackers to manipulate AI behavior through prompt injection. These attacks exploit image processing pipelines like OCR and scaling, potentially leading to data leaks, unauthorized actions, or command execution in tools like Google Gemini and Vertex AI. To defend against them, treat all images as untrusted inputs, disable unnecessary automated processing, and use advanced tools like PromptShield™ to scan and block risky content in real time. Read the full article: https://purplesec.us/learn/adversarial-image-attacks/ 🔒 Secure Your LLMs With PromptShield™ --------------------------------------------------------------- Sitting between...
https://www.youtube.com/watch?v=fNhXqDOoMfA
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Mother Printers: Full Exploit Chain Analysis + Demo [HackingHub]
Mother Printers is a multi-stage challenge (web/rev/pwn) I created for @HackingHub_io. It was inspired by the Brother Printers CVEs discovered by Stephen Fewer (@OfficialRapid7) and extended by Star Labs (@STAR-Labs) for Pwn2Own 2025. Players must first enumerate a printer manufacturer website. When downloading the firmware, they will spot an open directory listing with a "printer_build" binary and a remote printer configuration (exposed secrets). While reversing the binaries, they find a similar chain of vulnerabilities to the original research; info leak, authentication bypass (default password generation), buffer overflow in the referer header (3-byte overwrite) and an SSRF. The challenge is designed so that players must chain all vulnerabilities together, i.e. a vulnerability can only...
https://www.youtube.com/watch?v=ebNYtX_8lOY
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

13Cubed AMA - Answering Your Questions!
In this special 13Cubed episode, I answer questions collected from the community! *** If you enjoy this video, please consider supporting 13Cubed on Patreon at patreon.com/13cubed. *** #Forensics #DigitalForensics #DFIR #ComputerForensics
https://www.youtube.com/watch?v=duz5BoZUly8
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

The Robot is Watching You [Not Sci-Fi Anymore]
The robot is watching you, @aliasrobotics7887 discovered. And it's sending all data to remote servers. Alias then put an AI Hacking Agent (CAI) inside the robot. CAI hacked the robot and the cloud infrastructure from within. Read their entire 100-page paper, reporting what they did: https://arxiv.org/pdf/2509.14096
https://www.youtube.com/watch?v=0v1M63zwt7Y
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

IDA Free Reverse Engineering - Step-by-Step EXE Analysis
Step-by-step reverse engineering tutorial with IDA Free covering decompiling, types, enums, function definitions, and naming for EXEs. Sample can be found on unpac.me 7b5b060d9013725413f3f77719d0881035246b281e18005c0040e78a32e1c6cc Full tutorial series on the OALABS Patreon https://www.patreon.com/collection/1259251?view=expanded
https://www.youtube.com/watch?v=u1ZEh3bb6h4
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Hidden Product Activation and Serial Keygen - "Ultimate Calculator 3000" [Rev/Web Challenge]
🚩 Video walkthrough for the "Ultimate Calculator 3000" (rev/web) challenge I created and hosted on my website (https://cryptocat.me) 😺 Players had to locate a hidden validator routine inside the calculator binary, uncover a secondary HTTP service, and obtain the support team's offline validation tool. Reversing the Go binary exposed an HMAC-based serial check, allowing crafted serials to pass verification and reveal the flag 😎 #CTF #Challenge #CryptoCat Check out the accompanying writeup here: https://cryptocat.me/blog/ctf/monthly/cryptocat/1025/ultimate_calculator/ Join discord for source code and early access to future challenges: https://discord.cryptocat.me 🐛CryptoCat CTF Challenges🐞 https://challenge.cryptocat.me - https://discord.gg/qHbAN3wfRK 👷‍♂️Resources🛠 https://cryptocat.me/resources Overview: 0:00...
https://www.youtube.com/watch?v=lRJno96za5A
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

The Easy Way to Analyze Linux Memory
In this episode, we'll take a look at a quick and easy way to find the Intermediate Symbol File (ISF) for the Linux memory image you're analyzing. This method will save you time and help streamline your memory analysis workflow. *** If you enjoy this video, please consider supporting 13Cubed on Patreon at patreon.com/13cubed. *** 📖 Chapters 00:00 - Intro 00:37 - Demo 🛠 Resources Abyss-W4tcher ISFs: https://github.com/Abyss-W4tcher/volatility3-symbols leludo84 ISFs: https://github.com/leludo84/vol3-linux-profiles Volatility-ready URLs: https://raw.githubusercontent.com/Abyss-W4tcher/volatility3-symbols/refs/heads/master/banners/banners.json https://raw.githubusercontent.com/leludo84/vol3-linux-profiles/refs/heads/main/banners-isf.json #Forensics #DigitalForensics #DFIR #ComputerForensics...
https://www.youtube.com/watch?v=W40gdWNdwUI
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

The AI Black Box Problem - [Latent Space Exploration]
Latent space exploration. Created from multiple sources using NotebookLM.
https://www.youtube.com/watch?v=HfCUbauGUNs
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

AI Ethics That Work: Privacy, Fairness & Security
How do we build AI security that is ethical, resilient, and trustworthy without turning “ethics” into a checkbox? Host Jason Firch sits down with Tom Vazdar (Chief AI Officer, PurpleSec) and Josh Salvage (CTO, PurpleSec) to unpack the real-world tensions between privacy, fairness, explainability, regulation, human oversight, and adversarial threats. If you're a security leader, engineer, or business decision-maker, this conversation will help you separate PR from practice and design AI systems that respect rights, dignity, and safety—while staying practical for SMBs and enterprises alike. 🔒 Secure Your LLMs With PromptShield™ --------------------------------------------------------------- Sitting between users and your AI models, PromptShield™ detects, blocks, and educates...
https://www.youtube.com/watch?v=lsZ0h4_b5T0
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

AI Security Frameworks: Must-Know Challenges & Solutions For 2025
Uncover the biggest challenges organizations face in implementing AI security frameworks and explore expert solutions to stay ahead in 2025! Join Security Beyond The Checkbox host Jason Firch, alongside PurpleSec's Chief AI Officer Tom Vazdar, and CTO Joshua Selvidge, as they break down the essentials of securing AI systems. From cloud-based deployments to zero trust models, learn how to protect critical infrastructure like hospitals and banks from emerging threats like data poisoning and model manipulation. Discover why frameworks like ISO 42001 and NIST AI RMF are vital for governance, ethics, and robust security. Gain insights into the importance of industry-academia-policy collaboration to strengthen AI security standards. 🔒 Secure Your LLMs With PromptShield™ --------------------------------------------------------------- Sitting...
https://www.youtube.com/watch?v=UJ7FFF33kik
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Shadow AI: The Silent Cybersecurity Threat Businesses Can't Ignore
In this episode of Security Beyond the Checkbox, host Jason Firch sits down with PurpleSec's Chief AI Officer Tom Vazdar, and CTO Joshua Selvidge to unpack Shadow AI, which is the unauthorized use of AI tools like ChatGPT that mirrors the risks of Shadow IT. As SMBs grapple with emerging threats like ransomware and phishing, Shadow AI is exploding due to its easy access and massive productivity gains, but it brings serious dangers if left unchecked. We dive into why employees turn to these tools (often non-maliciously) to boost efficiency, and the real risks: data leaks, intellectual property theft, regulatory violations under GDPR or HIPAA, and reputational harm. Hear real-world examples, including Samsung's ban on ChatGPT after engineers leaked proprietary code, and Air Canada's chatbot...
https://www.youtube.com/watch?v=MLUBbgReax8
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Brother Printers Vulnerabilities Explained - Info Leak, Auth Bypass, Buffer Overflow, SSRF, DoS
🖨 Print Scan Hacks: Multiple vulnerabilities were identified across various Brother devices by Stephen Fewer (@OfficialRapid7) 🔬 In this video, we'll analyse the zero-day research whitepaper and review the 8 vulnerabilities/exploits (CVE-2024-51977 through CVE-2024-51984) that were disclosed. Topics covered include info leak, remote auth bypass, buffer overflow, SSRF, DoS and credential exposure. Write-ups/tutorials aimed at beginners - Hope you enjoy 🙂 #Vulnerability #Research #OffSec 🐛Brother Printer Vulnerability Research🐞 Blog: https://www.rapid7.com/blog/post/multiple-brother-devices-multiple-vulnerabilities-fixed Whitepaper: https://assets.contentstack.io/v3/assets/blte4f029e766e6b253/blt6495b3c6adf2867f/685aa980a26c5e2b1026969c/vulnerability-disclosure-whitepaper.pdf Exploits:...
https://www.youtube.com/watch?v=--SaQKmcyiU
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

IDA Free Reverse Engineering - Step-by-Step DLL Analysis
Step-by-step reverse engineering tutorial with IDA Free covering decompiling, types, enums, function definitions, and naming for DLLs. Sample can be found on unpac.me 93f9703cc7339014cd1bc82da0ab8909957112b93fba2430b5ee90a1d424a5ed Full tutorial series on the OALABS Patreon https://www.patreon.com/collection/1259251?view=expanded
https://www.youtube.com/watch?v=tbIjHJ1ygBY
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

OWASP Secure Code Inspired Offensive Payloads [For Pentesters]
A compilation of attack vectors and payloads for penetration testing and offensive security, inspired from the OWASP Secure Code Review Guide. I've guided NotebookLM to create this presentation for offensive pentesters.
https://www.youtube.com/watch?v=XqwJusDJXEQ
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Will AI Replace Digital Forensics Experts?
Is AI going to replace digital forensic investigators? In this episode, we'll test a local instance of DeepSeek-R1 in Windows forensics to see how it compares to a human investigator. Let's find out if AI can handle the job! *** If you enjoy this video, please consider supporting 13Cubed on Patreon at patreon.com/13cubed. *** 📖 Chapters 00:00 - Intro 01:23 - The Questions Begin 10:43 - Closing Thoughts 🛠 Resources #Forensics #DigitalForensics #DFIR #ComputerForensics #WindowsForensics #AI #DeepSeek
https://www.youtube.com/watch?v=lvkBtIhvThk
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

HTTP Pipelining or Request Smuggling? - No More False Positives
Based on the amazing work of James Kettle from Portswigger. You can find it here: https://portswigger.net/research/how-to-distinguish-http-pipelining-from-request-smuggling. I've guided NotebookLM to create this presentation for offensive pentesters.
https://www.youtube.com/watch?v=SNQlR6jiGeg
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Leaking Passwords via CSS Injection - "Fancy Login Form" [WHY CTF 2025]
🚩 Video walkthrough for the "Fancy Login Form" web challenge featured in the 2025 WHY CTF competition. The challenge involved exploiting a URL-based redirection to take control of a CSS file, then using blind exfiltration to extract each character of the admin's password from the login form field 😎 #CTF #Challenge #WHY2025 Check out the accompanying writeups here: https://cryptocat.me/blog/ctf/2025/#why/ Join my discord server if you have any questions: https://discord.cryptocat.me 🐛What Hackers Yearn (@WHY2025NL) CTF🐞 https://ctf.why2025.org https://why2025.org https://discord.gg/fkn7qW3GRT https://ctftime.org/event/2680 👷‍♂️Resources🛠 https://cryptocat.me/resources Overview: 0:00 Intro 0:46 Fancy Login Form 2:27 Hijacking CSS file 6:10 Blind data exfiltration 9:37...
https://www.youtube.com/watch?v=jUjlj2z5jJk
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Analysing the DOM to find Reflected XSS
Stuck watching YouTube videos about bug bounty hunting rather than a bounty hitting your inbox? In this series I partner with Bugcrowd to bring you everything you need to know to find their most common first bugs. In this video we explore one of the common first vulnerabilities - Reflected Cross-Site Scripting (XSS). Learn the basics of XSS, how to identify and exploit this vulnerability, and see a practical demonstration you can replicate on your own targets. With step-by-step methodology and tips, this episode will guide you through finding and validating the internets most common first bug. This series couldn't happen without the support of our sponsor Bugcrowd, Bugcrowd is the best place to start hacking with a wide range of public and private programs from APIs to Desktop Applications...
https://www.youtube.com/watch?v=CpV3XDqzYyE
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

HTTP/1.1 - The Desync Endgame
Based on the amazing work of James Kettle of @PortSwiggerTV found at https://portswigger.net/research/http1-must-die. I've guided NotebookLM by @Google to create this presentation for offensive pentesters.
https://www.youtube.com/watch?v=zs1rZnZuJ6A
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

On HTTP Request Smuggling - RFC 9110 Style
Based on the RFC 9110, I've guided NotebookLM by @Google to create this presentation for offensive pentesters, specifically on HTTP Methods. RFC 9110: https://www.rfc-editor.org/rfc/rfc9110.html
https://www.youtube.com/watch?v=CvEBA_Sm-mw
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

HTTP Methods for Offensive Pentesting
Based on the RFC 9110, I've guided NotebookLM by @Google to create this presentation for offensive pentesters, specifically on HTTP Methods. RFC 9110: https://www.rfc-editor.org/rfc/rfc9110.html
https://www.youtube.com/watch?v=ZtoPYQD0rXs
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Behind the Book: Threat Hunting macOS with Jaron Bradley
In this episode, I sit down with Jaron Bradley, author of the upcoming book Threat Hunting macOS. With the recent release of the new 13Cubed training course Investigating macOS Endpoints, this felt like the perfect time to bring Jaron on the channel to discuss his new book — a resource I believe will be an excellent companion to the course. 📘 Order Jaron's Book – Threat Hunting macOS https://themittenmac.com/threat-hunting-book/ 🌐 Visit Jaron's Website – The Mitten Mac https://themittenmac.com/ 🎓 Learn macOS Forensics! https://training.13cubed.com/investigating-macos-endpoints #Forensics #DigitalForensics #DFIR #ComputerForensics #macOSForensics
https://www.youtube.com/watch?v=8Uj2NbWnU6M
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Still not found your first bug? Try IDORs
Stuck watching YouTube videos about bug bounty hunting rather than your inbox? In this series I partner with Bugcrowd to bring you everything you need to know to find their most common first bugs. In this episode we're talking about the ever popular IDOR, and while yes, I am aware I have made videos on this topic many times, it's still a solid choice for your first bug, difficult to automate and scale, yet easy to understand and test for. Its tediousness means that top hackers often skip them in favour of trickier bugs, making it perfect for newer bug bounty hunters to focus on. This series couldn't happen without the support of our sponsor Bugcrowd, Bugcrowd is the best place to start hacking with a wide range of public and private programs from APIs to Desktop Applications and everything...
https://www.youtube.com/watch?v=8Uva1su3goc
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Windows Memory Forensics Challenge
Welcome to a special Windows Memory Forensics Challenge from 13Cubed. This is an excellent opportunity to get some hands-on practice with Windows memory forensics. You'll find the questions below, as well as a link to download the memory sample needed to answer those questions. 🎉 Check out the official training courses from 13Cubed at https://training.13cubed.com! 🛑 CONTEST IS CLOSED 🛑 All winners have been selected. We still encourage you to participate in the lab, as we believe it will serve as an excellent practice opportunity. If you do participate, please consider creating a video or blog-based walkthrough of the process, as it would be a valuable resource for the community! ⚠️ CAUTION ⚠️ This memory sample contains a simulated ransomware for educational purposes....
https://www.youtube.com/watch?v=6JN6iAenEoA
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

New Course! Investigating macOS Endpoints
Check out Investigating macOS Endpoints, a comprehensive macOS forensics training course from 13Cubed! Starting with fundamental principles, Investigating macOS Endpoints advances to encompass log analysis, file systems, forensic artifacts, persistence mechanisms, evidence collection, and more! This course offers extensive hands-on practice and a capstone involving the analysis of a compromised system. Tailored for both beginners and seasoned professionals, it serves as an ideal resource for mastering macOS forensics! 🎉 Enroll today at https://training.13cubed.com/investigating-macos-endpoints! #Forensics #DigitalForensics #DFIR #macOSForensics
https://www.youtube.com/watch?v=_D6oHm-371A
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Offensive Security Web Expert (OSWE) Review + Tips/Tricks [OffSec]
Offensive Security Web Expert (OSWE) review, tips/tricks etc. Hopefully this video will be useful for aspiring bug bounty hunters, security researchers, pentesters, CTF players etc who might be interested in taking the Advanced Web Attacks and Exploitation course from Offensive Security (OffSec) 🙂 #OSWE #BugBounty #EthicalHacking #PenTesting #AppSec #WebSec #InfoSec #OffSec ↢OffSec OSWE↣ Web-300 course: https://www.offsec.com/courses/web-300 Web-300 syllabus: https://manage.offsec.com/app/uploads/2023/01/WEB-300-Syllabus-Google-Docs.pdf Web-300 FAQ: https://help.offsec.com/hc/en-us/articles/360046868971-WEB-300-Advanced-Web-Attacks-and-Exploitation-FAQ OSWE exam guide: https://help.offsec.com/hc/en-us/articles/360046869951-WEB-300-Advanced-Web-Attacks-and-Exploitation-OSWE-Exam-Guide OSWE...
https://www.youtube.com/watch?v=IK4t-i5lDEs
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Vibe Coding in Cursor for Cyber Security
In the past few weeks I've dove headfirst into vibe coding with Cursor, so I wanted to share what I've been working on and some tips and tricks. In this video we'll cover all things vibe coding for hackers: What is it? How is it making waves on Twitter and within the startup and AI influencer communities? More importantly, what does it mean for us bug bounty hunters and hackers? I'll share tips on using AI for coding, how to get started with tools like Cursor, Gemini, and Docker, and even give you a peek at a vibe-coded pet adoption website I worked on. Whether you're a coding newbie or looking to simplify your process, this video has something for you. Enjoy! Links: Awesome .cursorrules: https://github.com/PatrickJS/awesome-cursorrules Spec-drive Vibe Coding (how to write design docs for...
https://www.youtube.com/watch?v=wnVpmSrhNRo
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Tsuku CTF Web Challenge Walkthroughs (2025)
🚩 Video walkthrough for the 3 web challenges featured in the 2025 Tsuku CTF competition. Challenges include JSON injection, sensitive file disclosure and flawed PRNG implementation, YAML injection with WAF 😎 #CTF #Challenge #Tsuku Check out the accompanying writeups here: https://cryptocat.me/blog/ctf/2025#tsuku Join my discord server if you have any questions: https://discord.cryptocat.me 🐛CIT@CTF🐞 https://tsukuctf.org https://discord.gg/xNgh3a6Ynp 👷‍♂️Resources🛠 https://cryptocat.me/resources Overview: 0:00 Intro 0:08 len_len 2:47 flash 8:28 YAMLwaf 12:23 Conclusion
https://www.youtube.com/watch?v=qGd4d0zmhy8
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

CTF@CIT Web Challenge Walkthroughs (2025)
🚩 Video walkthrough for the 5 web challenges featured in the 2025 CIT@CTF competition. Challenges include SQL injection (SQLi), git repo version history (git-dumper), local file read (with basic filter), flask session cookie tampering + server-side template injection (SSTI) and credential reuse / HTTP method tampering 😎 #CTF #Challenge #CIT Check out the accompanying writeups here: https://cryptocat.me/blog/ctf/2025/#ctf-cit Join my discord server if you have any questions: https://discord.cryptocat.me 🐛CIT@CTF🐞 https://ctf.cyber-cit.club https://discord.gg/GzUAsFvhbk 👷‍♂️Resources🛠 https://cryptocat.me/resources Overview: 0:00 Intro 0:06 Breaking authentication (SQLi) 2:20 Commit & Order: Version Control Unit (git dumping / history) 4:25 How I Parsed your JSON...
https://www.youtube.com/watch?v=ZBdApaw0r0M
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Reverse Engineering Access Tokens Part 2
This tutorial covers Windows Access Tokens, the Logon Session, Token Elevation, AdjustTokenPrivileges and the Windows Access Control Model. This is part of our IDA Pro reverse engineering series. The full series can be found on our patron... https://www.patreon.com/collection/1259251 ----- References Token Viewer (Tool) https://github.com/googleprojectzero/sandbox-attacksurface-analysis-tools LogonSessions (Tool) https://learn.microsoft.com/en-us/sysinternals/downloads/logonsessions Elastic - Introduction to Windows tokens for security practitioners https://www.elastic.co/blog/introduction-to-windows-tokens-for-security-practitioners UAC Overview (old but good) https://www.tiraniddo.dev/2017/05/reading-your-way-around-uac-part-1.html Access Control Model (Microsoft) https://learn.microsoft.com/en-us/windows/win32/secauthz/access-control-components LSA...
https://www.youtube.com/watch?v=Y58eBWyJxDA
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

How FIN6 Exfiltrates Files Over FTP
Access the FIN6 Exfiltration Lab: https://bit.ly/3XsXFRZ In this final episode of our FIN6 Adversary Emulation mini-series, we demonstrate how to emulate FIN6's exfiltration techniques, focusing on how this financially motivated threat actor collects, stages, archives, and exfiltrates sensitive data from compromised systems. // CYBER RANGES Adversary Emulation Labs ► New to CYBER RANGES? Register for a free account here: https://bit.ly/42VxDu5 ► Access the FIN6 Exfiltration Lab: https://bit.ly/3XsXFRZ ► Adversary Emulation Fundamentals Labs (Free): https://bit.ly/4gQd8SB 🔗 Video Resources & References CTID Adversary Emulation Library: https://github.com/center-for-threat-informed-defense/adversary_emulation_library 🎥 Have an idea for a video? make your submission here: https://forms.gle/VDwwMsuudzQfT9VM6 //...
https://www.youtube.com/watch?v=SbZ7JUII-SQ
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

From Zero to Zero Day (and beyond) - Life of a Hacker: Jonathan Jacobi
I met Jonathan in 2018 at the CCC when he was just 18 years old. Back then he referenced my videos which had a little bit of impact on his life. Now a lot of time has passed and in this interview I want to get to know Jonathan better. How did he get into hacking, founding of the CTF team perfect blue, working as a vulnerability researcher and ultimately transitioning into a new career. From Zero to Zero Day (2018): https://www.youtube.com/watch?v=xp1YDOtWohw Jonathan on Twitter: https://x.com/j0nathanj 00:00:00 - How we met 00:02:16 - Jonathan's early life 00:04:24 - Going to college as a teenager 00:18:52 - Meeting like-minded people in CTF 00:27:29 - Getting first VR internship at Checkpoint 00:32:34 - Creating opportunities through networking 00:43:40 - Working at Microsoft Security Response...
https://www.youtube.com/watch?v=BOLN_B0qnZk
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Automated AI Reverse Engineering with MCP for IDA and Ghidra (Live VIBE RE)
Testing MCP plugins for IDA and Ghidra live with @mrexodia IDA MCP https://github.com/mrexodia/ida-pro-mcp Ghidra MCP (thanks @lauriewired ) https://github.com/LaurieWired/GhidraMCP Malware sample 7b5b060d9013725413f3f77719d0881035246b281e18005c0040e78a32e1c6cc ----- OALABS DISCORD https://discord.gg/6h5Bh5AMDU OALABS PATREON https://www.patreon.com/oalabs Twitch https://www.twitch.tv/oalabslive OALABS GITHUB https://github.com/OALabs UNPACME - AUTOMATED MALWARE UNPACKING https://www.unpac.me/#/ -----
https://www.youtube.com/watch?v=iFxNuk3kxhk
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Reverse Engineering Access Tokens Part 1
This tutorial walks through the process of reverse engineering malware which uses AdjustTokenPrivileges to enable SeDebugPrivilege. No steps are skipped in the process! This is Module 2.2 of our IDA Pro reverse engineering series. The full series can be found on our patron... https://www.patreon.com/collection/1259251 ----- OALABS DISCORD https://discord.gg/6h5Bh5AMDU OALABS PATREON https://www.patreon.com/oalabs Twitch https://www.twitch.tv/oalabslive OALABS GITHUB https://github.com/OALabs UNPACME - AUTOMATED MALWARE UNPACKING https://www.unpac.me/#/ -----
https://www.youtube.com/watch?v=iT2U3UXhic4
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Python for Pentesters II - 0. Introduction
Part of the Python for Pentesters II course: https://www.youtube.com/playlist?list=PLonlF40eS6nyj9h8wwrOgf1yBGDB2CYT1 Connect with me: X: https://twitter.com/cristivlad25 IG: https://instagram.com/cristivladz
https://www.youtube.com/watch?v=1AAZDkSZePs
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Python for Pentesters II - 11 - Additional Resources and Personal Message
Part of the Python for Pentesters II course: https://www.youtube.com/playlist?list=PLonlF40eS6nyj9h8wwrOgf1yBGDB2CYT1 Connect with me: X: https://twitter.com/cristivlad25 IG: https://instagram.com/cristivladz
https://www.youtube.com/watch?v=zVgV__cRhvo
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Python for Pentesters II - 10 - Finding Hidden Wireless Networks with Python
Part of the Python for Pentesters II course: https://www.youtube.com/playlist?list=PLonlF40eS6nyj9h8wwrOgf1yBGDB2CYT1 Connect with me: X: https://twitter.com/cristivlad25 IG: https://instagram.com/cristivladz
https://www.youtube.com/watch?v=0EB5U8dcAVc
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Python for Pentesters II - 9 - Spoofing your MAC Address with Python
Part of the Python for Pentesters II course: https://www.youtube.com/playlist?list=PLonlF40eS6nyj9h8wwrOgf1yBGDB2CYT1 Connect with me: X: https://twitter.com/cristivlad25 IG: https://instagram.com/cristivladz
https://www.youtube.com/watch?v=OtvSfjX6kGY
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Python for Pentesters II - 8 - Cracking Hashes with Python and Hashlib
Part of the Python for Pentesters II course: https://www.youtube.com/playlist?list=PLonlF40eS6nyj9h8wwrOgf1yBGDB2CYT1 Connect with me: X: https://twitter.com/cristivlad25 IG: https://instagram.com/cristivladz
https://www.youtube.com/watch?v=EA4JFh8hj9E
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Python for Pentesters II - 7 - Discovering Subdomains with Python
Part of the Python for Pentesters II course: https://www.youtube.com/playlist?list=PLonlF40eS6nyj9h8wwrOgf1yBGDB2CYT1 Connect with me: X: https://twitter.com/cristivlad25 IG: https://instagram.com/cristivladz
https://www.youtube.com/watch?v=X9oyU7kUob8
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Python for Pentesters II - 6 - Attacking Web Forms with requests and BeautifulSoup in Python
Part of the Python for Pentesters II course: https://www.youtube.com/playlist?list=PLonlF40eS6nyj9h8wwrOgf1yBGDB2CYT1 Connect with me: X: https://twitter.com/cristivlad25 IG: https://instagram.com/cristivladz
https://www.youtube.com/watch?v=sYg3dyetcYA
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

18 - API Security (low/med/high) - Damn Vulnerable Web Application (DVWA)
18 - API Testing (low/med/high difficulties) video from the Damn Vulnerable Web Application (DVWA) walkthrough/tutorial series. DVWA is an intentionally vulnerable application for you to learn about ethical hacking. I made this series for students on the MSc in cybersecurity course at Queen's University Belfast but hopefully it can help others too! Hope you enjoy 🙂 ↢Damn Vulnerable Web Application (DVWA)↣ https://github.com/digininja/DVWA 👷‍♂️Resources🛠 https://cryptocat.me/resources ↢Chapters↣ Start - 0:00 Low - 0:38 Med - 3:59 High - 7:07 Impossible - 13:19 End - 13:35
https://www.youtube.com/watch?v=c_6RaCekH40
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

The German Hacking Championship
An amazing event for aspiring German hackers is happening right now. I went to the finals in 2024, share a few impressions and tell you about this year's event. Learn hacking: https://www.hextree.io/ (ad) CSCG 2025 runs from 1. March 2025 until 1. May 2025 Rules: https://play.cscg.live/rules Die Hacking Meisterschaft: https://hacking-meisterschaft.de/ NFITS: https://nfits.de/spenden/ European Cybersecurity Challenge: https://ecsc.eu/ 00:00 - Intro DHM 2024 00:52 - CTF Teams vs. CSCG Teams 01:48 - Sponsor Challenges 03:04 - My CSCG History 04:18 - NFITS 05:06 - Die Deutsche Hacking Meisterschaft (DHM) 07:00 - Take the Opportunity! 07:47 - Outro =[ ❤️ Support ]= → My courses: https://www.hextree.io/ → My font: https://shop.liveoverflow.com/ → per Video: https://www.patreon.com/join/liveoverflow →...
https://www.youtube.com/watch?v=f0C3RH7baEw
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

17 - Cryptography (low/med/high) - Damn Vulnerable Web Application (DVWA)
17 - Cryptography (low/med/high difficulties) video from the Damn Vulnerable Web Application (DVWA) walkthrough/tutorial series. DVWA is an intentionally vulnerable application for you to learn about ethical hacking. I made this series for students on the MSc in cybersecurity course at Queen's University Belfast but hopefully it can help others too! Hope you enjoy 🙂 ↢Damn Vulnerable Web Application (DVWA)↣ https://github.com/digininja/DVWA ↢Cryptography↣ https://cryptohack.org @pastiesbin2254 : https://www.youtube.com/watch?v=8Tr2aj6JETg https://www.nccgroup.com/uk/research-blog/cryptopals-exploiting-cbc-padding-oracles @nccgroup : https://www.youtube.com/watch?v=6yHM19rQjDo 👷‍♂️Resources🛠 https://cryptocat.me/resources ↢Chapters↣ Start - 0:00 Low - 0:14 Med...
https://www.youtube.com/watch?v=7WySPRERN0Q
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Do you know this common Go vulnerability?
When auditing code it's crucial to know about common issues. In this video we explore a Go issue that I was not aware of. Learn hacking on https://www.hextree.io/ (ad) 38c3 CTF - Fajny Jagazyn Wartości Kluczy: https://2024.ctf.link/internal/challenge/fb03748d-7e94-4ca2-8998-a5e0ffcbd761/ Unintended solution: https://msanft.foo/blog/hxp-38c3-web-fajny-jagazyn/ Challenge author writeup: https://hxp.io/blog/114/hxp-38C3-CTF-Fajny-Jagazyn-Wartoci-Kluczy/ VSCode Go debugger client code: https://github.com/golang/vscode-go/blob/39786ea90f18ab98f75d091b9a04367d1b1df82c/extension/src/debugAdapter/goDebug.ts#L1557 00:00 - Intro 00:20 - Go gjson vs json behavior 01:33 - Overview CTF challenge "Fajny Jagazyn Wartości Kluczy" 04:33 - Weird server setup? 05:55 - Arbitrary file read 07:00 - /proc...
https://www.youtube.com/watch?v=wVknDjTgQoo
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Emulating FIN6 - Active Directory Enumeration Made EASY
In this episode of the FIN6 Adversary Emulation series, we focus on Active Directory (AD) enumeration—a critical phase in FIN6's discovery techniques. Understanding how adversaries enumerate Active Directory environments will help you refine your tradecraft or improve your detection and mitigation capabilities if you are a Blue Teamer. In this video, you will learn how FIN6 performs Active Directory enumeration, and how to use native Windows commands like "net" and PowerShell's "Get-AD*" cmdlets for AD Enumeration. You will also learn how to utilize "AdFind.exe" to extract information from an Active Directory Environment. The lab environment used in this demonstration is available for free on CYBER RANGES, allowing you to follow along and practice these techniques in a safe and controlled...
https://www.youtube.com/watch?v=Iwxmscx3XXc
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

A Scammer Tried to Hack Me!
🚨🚔 I was recently offered a video sponsorship opportunity which turned out to be a DocuSign scam! They said they liked my videos but really just wanted to infect me with some malware 😿 Anyway, I thought I'd make a quick educational video to raise awareness. I'll explain what raised my suspicions and how I confirmed that the scammer was trying to hack me! #MalwareAnalysis #CyberSecurity #CyberSecurityAwareness #InfoSec #ScamBaiting #CryptoCat 🦠Malware Analysis🦠 VirusTotal: https://www.virustotal.com/gui/file/8f6f207277a8881e9c2042de4dc3a7c824eaa0334f522d96d412a2dfe5f93820/detection APP.ANY.RUN Analysis: https://app.any.run/tasks/78722395-a017-4ac5-a18c-47464aae63a7 APP.ANY.RUN Safebrowsing: https://app.any.run/browses/6a13f769-5ec1-43e4-bc23-71f076e04e36 DocuSign Scams: https://abnormalsecurity.com/blog/cybercriminals-exploit-docusign 👷‍♂️Resources🛠 https://cryptocat.me/resources Overview: 0:00...
https://www.youtube.com/watch?v=v8ZwlKAjMJA
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

The SECRET to Embedding Metasploit Payloads in VBA Macros
In this episode of the Offensive VBA series, we explore how to integrate PowerShell payloads and stagers into custom VBA macros for initial access. Specifically, we'll demonstrate how to repurpose and format PowerShell stagers generated by Msfvenom and PowerShell-Empire to execute a reverse shell. This video will teach you how to format and embed HTA-based PowerShell payloads inside a VBA macro. // Adversary Emulation Labs New to CYBER RANGES? Register here: https://bit.ly/40dRMsb CYBER RANGES Adversary Emulation Labs (Free): https://bit.ly/4amBPEU 🎥 Have an idea for a video? make your submission here: https://forms.gle/VDwwMsuudzQfT9VM6 // MORE RESOURCES HACKERSPLOIT BLOG ►► https://bit.ly/3qjvSjK HACKERSPLOIT FORUM ►► https://bit.ly/39r2kcY HACKERSPLOIT ACADEMY ►►...
https://www.youtube.com/watch?v=Q1wQuHw5JKI
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Offensive VBA 0x4 - Reverse Shell Macro with Powercat
In this episode of the Offensive VBA series, we dive into one of the most powerful techniques for red teamers—creating a reverse shell VBA macro using Powercat. This technique enables stealthy command execution and remote access through malicious macro-enabled Office documents. In this video, you will learn how to build a reverse shell VBA Macro that leverages Powercat allowing you to stealthily execute remote commands in-memory using PowerShell. Powercat: https://github.com/besimorhino/powercat // Adversary Emulation Labs New to CYBER RANGES? Register here: https://bit.ly/40dRMsb CYBER RANGES Adversary Emulation Labs (Free): https://bit.ly/4amBPEU 🎥 Have an idea for a video? make your submission here: https://forms.gle/VDwwMsuudzQfT9VM6 // MORE RESOURCES HACKERSPLOIT BLOG ►►...
https://www.youtube.com/watch?v=0W3Z3Br56XM
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Offensive VBA 0x3 - Developing PowerShell Droppers
In this episode of the Offensive VBA series, we take VBA macros to the next level by developing PowerShell droppers designed for red team operations. Learn how to craft stealthy and effective VBA scripts that deliver and execute PowerShell payloads seamlessly. Here's what we'll cover: Writing VBA macros to execute PowerShell scripts, executing payloads directly in memory for stealth, leveraging environment variables to identify system paths dynamically, and techniques to remove traces of macro execution for stealthier operations // Adversary Emulation Labs New to CYBER RANGES? Register here: https://bit.ly/40dRMsb CYBER RANGES Adversary Emulation Labs (Free): https://bit.ly/4amBPEU 🎥 Have an idea for a video? make your submission here: https://forms.gle/VDwwMsuudzQfT9VM6 // MORE...
https://www.youtube.com/watch?v=ot3053UxJOc
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Offensive VBA 0x2 - Program & Command Execution
Welcome to the second episode of the Offensive VBA series, where we explore how to execute programs and system commands using VBA macros—essential skills for red teamers looking to leverage VBA for initial access and automation. In this video, you will learn how to use the Shell function to run external programs and commands and leverage the WScript.Shell object for enhanced control over command execution. You will also learn how to use the Shell Window Style options to ensure stealth during execution. // Adversary Emulation Labs New to CYBER RANGES? Register here: https://bit.ly/40dRMsb CYBER RANGES Adversary Emulation Labs (Free): https://bit.ly/4amBPEU 🎥 Have an idea for a video? make your submission here: https://forms.gle/VDwwMsuudzQfT9VM6 // MORE RESOURCES HACKERSPLOIT BLOG...
https://www.youtube.com/watch?v=ogbrNZ3SCRY
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Offensive VBA 0x1 - Your First Macro
Welcome to the first episode of the Offensive VBA series, where we equip red teamers with the skills to leverage VBA for initial access and offensive operations. This video introduces you to Visual Basic for Applications (VBA)—a powerful scripting language integrated into Microsoft Office. Here's what we'll cover: What is VBA?: An overview of how VBA works and integrates with MS Office, A walkthrough of the Integrated Development Environment (IDE) and its features, and How to create and run a basic macro. Core Concepts: - Subroutines, Functions, and their calls. - Variable declaration, data types, and scope. - User input/output with MsgBox and control statements. // Adversary Emulation Labs New to CYBER RANGES? Register here: https://bit.ly/40dRMsb CYBER RANGES Adversary Emulation...
https://www.youtube.com/watch?v=jGy7_NusjuQ
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Emulating FIN6 - Gaining Initial Access (Office Word Macro)
Welcome to the next installment in our adversary emulation series! This video focuses on emulating initial access via a spear-phishing attachment—specifically, a malicious Word document with an embedded macro, just like FIN6 might use. 🚨 Next Up: If you want to manually develop your own VBA macros for initial access, don't worry—we've got you covered in the next video, where we'll dive deeper into crafting custom macros for red team operations. 🎥 Practical Labs: This video uses the CYBER RANGES platform to simulate a realistic attack environment. Try it out and follow along! // Adversary Emulation Labs New to CYBER RANGES? Register here: https://bit.ly/40dRMsb CYBER RANGES Adversary Emulation Labs (Free): https://bit.ly/4amBPEU The lab used in this video: https://app.cyberranges.com/scenario/624cd3877733a30007185a15 🔗...
https://www.youtube.com/watch?v=hUBRnh5dzrI
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

USB Ethernet Adapter Malware??? Chinese RJ45-USB Full Analysis - Part 1
Reverse engineering all stages with line by line code analysis. e3f57d5ebc882a0a0ca96f9ba244fe97fb1a02a3297335451b9c5091332fe359 OP https://epcyber.com/blog/f/chinese-rj45-usb-with-flash-memory-exe-recognized-as-malware -- OALABS PATREON https://www.patreon.com/oalabs UNPACME - AUTOMATED MALWARE UNPACKING https://www.unpac.me/#/ OALABS DISCORD https://discord.gg/6h5Bh5AMDU Twitch https://www.twitch.tv/oalabslive OALABS GITHUB https://github.com/OALabs
https://www.youtube.com/watch?v=3IfJSGWIrCo
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

FIN6 Adversary Emulation Plan (TTPs & Tooling)
Step into the world of adversary emulation with this in-depth video on the FIN6 Emulation Plan. Learn how to use the Center for Threat-Informed Defense (CTID) Adversary Emulation Library to craft a comprehensive emulation plan that replicates FIN6's sophisticated TTPs. This video will provide you with: An intelligence summary of FIN6, and the FIN6 emulation plan detailing TTPs from initial access to discovery, privilege escalation, and exfiltration. The Adversary Emulation Fundamentals labs used in this video and series are available for free on CYBER RANGES to practice and refine your emulation skills. // Adversary Emulation Labs New to CYBER RANGES? Register here: https://bit.ly/40dRMsb CYBER RANGES Adversary Emulation Labs (Free): https://bit.ly/4amBPEU Lab used in this video: https://app.cyberranges.com/scenario/624cb3bd7733a30007185990 🔗...
https://www.youtube.com/watch?v=qEfk44G4zFM
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Developing An Adversary Emulation Plan
Creating an adversary emulation plan is a critical process for red teamers and cybersecurity professionals aiming to improve their organization's threat detection and response capabilities. In this video, we break down the entire process starting with how to select a threat actor relevant to your industry or geolocation, finding and leveraging Cyber Threat Intelligence (CTI) to gather insights on the adversary, and mapping the adversary's TTPs using the MITRE ATT&CK framework. 🔗 Video Resources & References Explore the comprehensive APT Groups and Operations Directory to find details on APT groups by region, their TTPs, and campaigns: https://apt.threattracking.com APTnotes: https://github.com/kbandla/APTnotes APT & CyberCriminal Campaign Collection: https://github.com/CyberMonitor/APT_CyberCriminal_Campagin_Collections //...
https://www.youtube.com/watch?v=1N49x1EWw7s
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

How 3 Hackers Combined Their Skills for Big Bounties! (And how you can do it too)
Join us in this special episode as we sit down with the winners of Bugcrowd's Hacker Showdown Carnival of Chaos virtual event: sw33tLie, bsysop, and godiego! Discover their hacking methodologies, collaboration techniques, and their journey to victory. Learn how they met, their advice for forming your own team, and the coolest exploits they uncovered during the event. If you're interested in bug bounties, team hacking, or just want to meet more hacker friends, this episode is a must-watch! 00:00 Introduction and Special Guests 01:04 Meet the Hackers 02:55 Carnival of Chaos Experience 04:32 Collaboration and Team Dynamics 06:15 Roles and Strategies in Hacking 13:00 Finding the Right Collaborators 15:25 Live Hacking Events vs. Virtual Events 22:30 Coolest Findings and Bug Stories 29:52 Advice...
https://www.youtube.com/watch?v=gUuDyIE44bc
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Introduction To Advanced Persistent Threats (APTs)
This informative video is designed to give you a comprehensive understanding of Advanced Persistent Threats (APTs). In this video, you will learn what APTs are, how they differ from traditional threat actors, and why they pose a significant challenge to organizations worldwide. This video also explores the categorization and naming of APT Groups based on nation-state affiliation, motivations, and the tactics they employ to achieve their objectives. This video also sheds light on the complexities of APT naming conventions used by major cybersecurity vendors, such as CrowdStrike and Mandiant, and the challenges in tracking these elusive groups. 🔗 Don't miss this resource: Access the "APT Groups and Operations" repository here: https://apt.threattracking.com — a comprehensive spreadsheet...
https://www.youtube.com/watch?v=CwSG5sa0Nao
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

403 Bypass and Deserialization in BentoML Library (CVE-2024-2912) - "Summar-AI-ze" [Web Challenge]
🚩 Video walkthrough for the "Summar-AI-ze" (web) challenge I created and hosted on my NEW website (https://cryptocat.me)!! Players were required to bypass a 403 error by using the X-Forwarded-For HTTP header, allowing them to activate an internal feature and grant their account beta access. The "beta" feature was a word summarization tool, running BentoML (LLM) on the backend. Players could identify the library by changing the content-type, triggering an error. Some research would yield CVE-2024-2912; a python pickle deserialization vulnerability, discovered by PinkDraconian 💜 Players could use the supplied PoC to gain code execution and exfiltrate the flag using curl 😎 #CTF #Challenge #CryptoCat Check out the accompanying writeup here: https://cryptocat.me/blog/ctf/monthly/cryptocat/1224/summaraize/ Join...
https://www.youtube.com/watch?v=5NCzDZcx_Dg
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Advent of Cyber Day 24: MQTT & Wireshark
Check out TryHackMe's Advent of Cyber Event: https://tryhackme.com/r/christmas?utm_source=youtube&utm_medium=social&utm_campaign= Join Katie, aka InsiderPhD, on the 24th day of TryHackMe's Advent of Cyber! Today, we're diving into the mysterious world of communication protocols, focusing on the MQTT protocol. Discover how the city of Wereville faces off against Mayor Malware's sabotage of smart lights and HVAC systems. Using Wireshark, Katie demonstrates how to analyze MQTT traffic, understand the publish-subscribe model, and reverse engineer networking protocols. With a blend of British humour and hands-on learning, Katie leads you through the process of identifying malicious commands and securing IoT devices. By the end, you'll learn how to troubleshoot smart devices, monitor network...
https://www.youtube.com/watch?v=ct6393M_Iow
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Introduction To Adversary Emulation
This video introduces you to Adversary Emulation and its role in Red Team operations. Furthermore, this video also explains the differences between Adversary Emulation and Simulation. Adversary emulation in the context of Red Teaming is the process of mimicking/emulating the tactics, techniques, and procedures (TTPs) of a threat actor/adversary to test the effectiveness and efficacy of an organization's defenses. //PLATFORMS BLOG ►► https://bit.ly/3qjvSjK FORUM ►► https://bit.ly/39r2kcY ACADEMY ►► https://bit.ly/39CuORr //SOCIAL NETWORKS TWITTER ►► https://bit.ly/3sNKXfq DISCORD ►► https://bit.ly/3hkIDsK INSTAGRAM ►► https://bit.ly/3sP1Syh LINKEDIN ►► https://bit.ly/360qwlN PATREON ►► https://bit.ly/365iDLK MERCHANDISE ►► https://bit.ly/3c2jDEn //BOOKS Privilege...
https://www.youtube.com/watch?v=CUMhiSdOSkY
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Advent of Cyber Day 13: Exploring WebSocket Vulnerabilities with InsiderPhD
Check out TryHackMe's Advent of Cyber Event: https://tryhackme.com/r/christmas?utm_source=youtube&utm_medium=social&utm_campaign= Join me, in today's TryHackMe Advent of Cyber Day 13 walkthrough, where she diving into WebSockets and WebSocket message manipulation vulnerabilities. Learn about WebSocket message manipulation, common security risks such as weak authentication, message tampering. Follow along as I demonstrates how to identify and exploit WebSocket vulnerabilities in a web application. Perfect for anyone interested in web security, bug bounty hunting, and real-time communication protocols. 00:00 Introduction and Welcome 00:26 Story Setup: The Threat in Wareville 01:22 Understanding WebSockets 02:54 WebSocket Vulnerabilities 04:08 WebSocket Message Manipulation 07:33 Practical...
https://www.youtube.com/watch?v=ozgRXn44FF0
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Mastering Persistence: Using an Apache2 Rootkit for Stealth and Defense Evasion
In this video, I demonstrate the process of establishing persistence and evading defenses on Linux through the use of an Apache2 rootkit. The lab used in this video can be accessed for free on the CYBER RANGES platform. The links to the platform and lab are listed below: // CYBER RANGES CYBER RANGES: https://app.cyberranges.com SQL Injection Lab: https://app.cyberranges.com/scenario/67474e64a3907f65136f1a6d //LINKS Apache2 Rootkit: https://github.com/ChristianPapathanasiou/apache-rootkit //PLATFORMS BLOG ►► https://bit.ly/3qjvSjK FORUM ►► https://bit.ly/39r2kcY ACADEMY ►► https://bit.ly/39CuORr //SOCIAL NETWORKS TWITTER ►► https://bit.ly/3sNKXfq DISCORD ►► https://bit.ly/3hkIDsK INSTAGRAM ►► https://bit.ly/3sP1Syh LINKEDIN ►► https://bit.ly/360qwlN PATREON...
https://www.youtube.com/watch?v=Ra2altDvPYI
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Review: This Is How They Tell Me the World Ends (not with a bang but with a bug)
Join me on a brand-new series as I indulge my childhood dream of creating a personal library, focusing on InfoSec books! Kicking things off, we dive into 'This Is How They Tell Me How The World Ends' by Nicole Perlroth. Despite being an ebook enthusiast, I decided it was high time to fill my custom-built bookcase with real books. We'll explore the fascinating histories and personal stories behind bug bounties, zero days, and cyber warfare, all narrated with the flair of a seasoned journalist. From cyber politics to sassy hacker quips - what did happen to that salmon anyway? To how hackers take on the global stage of politics 00:00 Introduction to the Quest for Infosec Books 00:29 Building the Dream Library 00:55 E-Readers vs. Physical Books 02:41 Criteria for Book Selection 04:44 First Book...
https://www.youtube.com/watch?v=OvUmumbiGRI
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Understanding the Bugcrowd VRT: An Insider's Guide
Join us at DEF CON as we sit down with Codingo, VP of Operations at Bugcrowd, to look into the Vulnerability Rating Taxonomy (VRT). Learn what makes the VRT unique, how it compares to other vulnerability rating systems like CVSS, and why it's a key part of Bugcrowd's platform. Discover how the VRT evolves, the community's role in its development, and essential tips for hackers advocating for higher priorities on their findings. Whether you're a seasoned Bugcrowd hacker or new to the platform, this interview offers valuable insights and practical advice for improving your skills and understanding of the VRT. 00:00 Introduction to the VRT and Bugcrowd 00:33 Bugcrowd's Unique Offerings for Hackers 01:19 Understanding the VRT: An Interview with Kodinga 02:22 Differences Between VRT and CVSS 03:09...
https://www.youtube.com/watch?v=AIJK_Lw8rKw
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Google's Mobile VRP Behind the Scenes with Kristoffer Blasiak (Hextree Podcast Ep.1)
"There are not that many people that do Android research [...] There is no lack of targets. If people would actually look, there is lots to it. The scope is huge." - This is a conversation with Kristoffer Blasiak about Google's Mobile Vulnerability Rewards Program (VRP). Learn Android Hacking (ad): https://hextree.io/hextree-x-google Mobile VRP: https://bughunters.google.com/about/rules/android-friends/6618732618186752/google-mobile-vulnerability-reward-program-rules 00:00 - Introducing Kristoffer and Mobile VRP 01:38 - What happens when you submit a bug 05:07 - Android app bug bounty opportunities 08:38 - "There is no lack of targets" 13:06 - The side-loading threat model 17:00 - Bugs in Android app vs. web app 23:30 - Hextree sponsored by Google =[ ❤️ Support ]= → per Video:...
https://www.youtube.com/watch?v=SyTy1uZgx8E
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Reverse Engineering LAB Setup Tutorial (updated)
If you are just getting started with reverse engineering this the place to start. In this tutorial we provide an overview the current setup that we currently run, this is also the same setup used in all of our live streams and tutorials. The full notes for this tutorial are unlocked for everyone on our Patreon including links to all of the tools mentioned https://www.patreon.com/posts/101718688 ----- OALABS DISCORD https://discord.gg/6h5Bh5AMDU OALABS PATREON https://www.patreon.com/oalabs Twitch https://www.twitch.tv/oalabslive OALABS GITHUB https://github.com/OALabs UNPACME - AUTOMATED MALWARE UNPACKING https://www.unpac.me/#/ -----
https://www.youtube.com/watch?v=adAr0KBJm4U
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Get Bigger Bounties With Better Reports
At DEFCON a few weeks ago, I sat down with Codingo, VP of operations to talk about the key elements of writing an effective bug report, especially for non-native English speakers and beginners. We also discuss the importance of clarity, accurate replication steps, and the impact of comprehensive report writing on your bug bounty success. Learn from Bugcrowd's framework and community-driven practices to enhance your cybersecurity skills and make a stronger impact with your findings. 00:00 Introduction and Apology 00:37 Sponsor Message: Bugcrowd 01:22 Live from DEF CON 01:53 The Importance of Report Writing 02:17 Key Elements of a Good Report 04:46 Challenges in Report Writing 06:11 The Triage Process 08:21 Support for Non-Native English Speakers 09:17 Common Reasons for Bug Rejection 11:09...
https://www.youtube.com/watch?v=hnU0mRl0WBI
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

My theory on how the webp 0day was discovered (BLASTPASS)
Want to learn more about hacking? Checkout our courses on https://www.hextree.io (ad) I have spent many hours looking at the webp vulnerability used in the 0day attack against iPhones. In the past videos we have seen why fuzzers have a hard time finding the issue, so I wanted to understand how this was discovered. And I think I have a good theory! Part 1: Huffman Tables https://youtu.be/lAyhKaclsPM Part 2: Fuzzing libwebp https://youtu.be/PJLWlmp8CDM Sources: https://citizenlab.ca/2023/09/blastpass-nso-group-iphone-zero-click-zero-day-exploit-captured-in-the-wild/ https://googleprojectzero.blogspot.com/2019/08/the-fully-remote-attack-surface-of.html https://googleprojectzero.blogspot.com/2020/01/remote-iphone-exploitation-part-1.html https://googleprojectzero.blogspot.com/2021/01/a-look-at-imessage-in-ios-14.html https://github.com/seemoo-lab/frida-scripts/blob/main/scripts/libdispatch.js https://googleprojectzero.blogspot.com/2021/12/a-deep-dive-into-nso-zero-click.html https://citizenlab.ca/2023/04/nso-groups-pegasus-spyware-returns-in-2022/ https://googleprojectzero.blogspot.com/2021/12/a-deep-dive-into-nso-zero-click.html https://github.com/libjxl/libjxl/blob/4b9dbde293f7f282b6952a02340300abfca2b184/lib/jxl/huffman_table.cc#L51 https://github.com/webmproject/libwebp/blob/7861947813b7ea02198f5d0b46afa5d987b797ae/src/dec/vp8l_dec.c#L86C3-L86C76 https://github.com/Tencent/mars/blob/9ab46e19ed3d4fcafe9d0de4b36547321f5ead83/mars/comm/windows/zlib/inftrees.h#L41 https://github.com/google/brunsli/blob/master/c/enc/jpeg_huffman_decode.h#L20 00:00...
https://www.youtube.com/watch?v=_ACCK0AUQ8Q
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Learn Android Hacking! - University Nevada, Las Vegas (2024)
During DEF CON and Black Hat, Google invited me to give a talk about Android hacking to students as part of init.g at the University Nevada, Las Vegas. In this talk I share my "trick" how to get into Android hacking and reverse engineering, which can also be adapted to any other topic. Learn android hacking (ad): https://app.hextree.io/map/android Watch my Vegas Vlog: https://www.youtube.com/watch?v=bhQ6FF3fCdA Article about the init.g event: https://www.unlv.edu/announcement/academics/google-sponsors-initgvegas-student-event-unlv-during-defcon =[ ❤️ Support ]= → per Video: https://www.patreon.com/join/liveoverflow → per Month: https://www.youtube.com/channel/UClcE-kVhqyiHCcjYwcpfj9w/join 2nd Channel: https://www.youtube.com/LiveUnderflow =[ 🐕 Social ]= → Twitter: https://twitter.com/LiveOverflow/ →...
https://www.youtube.com/watch?v=fPt6fJDjKKM
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

My Trip to Las Vegas for DEFCON & Black Hat
My second time in Las Vegas for DEF CON and Black Hat. Lots has changed since I have been here 6 years ago. This trip was quite emotional for me and I am so grateful for the experience. Hope to meet you all again. Learn hacking (ad): https://app.hextree.io/ Buy our Faultier (US): https://1bitsquared.com/collections/embedded-hardware/products/faultier Google x Hextree Android Courses: https://www.hextree.io/hextree-x-google Raspberry Pi Hacking Challenge: https://www.hextree.io/rp2350 Embedded System Village: https://embeddedvillage.org/ My previous DEF CON 26 (6 years ago) Vlog: - https://youtu.be/B8saYocsI-U - https://www.youtube.com/watch?v=RXgp4cDbiq4 =[ ❤️ Support ]= → per Video: https://www.patreon.com/join/liveoverflow → per Month: https://www.youtube.com/channel/UClcE-kVhqyiHCcjYwcpfj9w/join 2nd...
https://www.youtube.com/watch?v=bhQ6FF3fCdA
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Planning Red Team Operations | Scope, ROE & Reporting
Hey guys, HackerSploit here back again with another video. This video outlines the process of planning and orchestrating Red Team operations. This video also outlines various Red Team resources, guides, and templates to plan and orchestrate a successful Red Team Operation. //LINKS & RESOURCES REDTEAM.GUIDE: https://redteam.guide/ The slides and written version of this video can be accessed on the HackerSploit Forum: https://forum.hackersploit.org/t/introduction-to-the-mitre-att-ck-framework/9127 //HACKERSPLOIT PLATFORMS BLOG ►► https://bit.ly/3qjvSjK FORUM ►► https://bit.ly/39r2kcY ACADEMY ►► https://bit.ly/39CuORr //SOCIAL NETWORKS TWITTER ►► https://bit.ly/3sNKXfq INSTAGRAM ►► https://bit.ly/3sP1Syh LINKEDIN ►► https://bit.ly/360qwlN PATREON ►► https://bit.ly/365iDLK MERCHANDISE...
https://www.youtube.com/watch?v=usDt-s2sACI
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Mapping APT TTPs With MITRE ATT&CK Navigator
Hey guys, HackerSploit here back again with another video. This video will introduce you to the MITRE ATT&CK Navigator and will illustrate how it can be operationalized for planning and orchestrating Red Team operations. MITRE ATT&CK Framework: https://attack.mitre.org/ MITRE ATT&CK Navigator: https://mitre-attack.github.io/attack-navigator/ //PLATFORMS BLOG ►► https://bit.ly/3qjvSjK FORUM ►► https://bit.ly/39r2kcY ACADEMY ►► https://bit.ly/39CuORr //SOCIAL NETWORKS TWITTER ►► https://bit.ly/3sNKXfq DISCORD ►► https://bit.ly/3hkIDsK INSTAGRAM ►► https://bit.ly/3sP1Syh LINKEDIN ►► https://bit.ly/360qwlN PATREON ►► https://bit.ly/365iDLK MERCHANDISE ►► https://bit.ly/3c2jDEn //BOOKS Privilege Escalation Techniques ►► https://amzn.to/3ylCl33 Docker...
https://www.youtube.com/watch?v=hN_r3JW6xsY
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Zombieware
Self-replicating malware, long abandoned by its operators, continues to contribute significant volume and noise to malware feeds. We investigate this trend, which we refer to as Zombieware! Join us on Patreon for Part 2 where we reverse engineer a popular file infector and write an extractor to recover the infected files! https://www.patreon.com/posts/zombieware-part-103656376 Full Zombieware blog post can be found on our UnpacMe blog here: https://blog.unpac.me/2024/04/25/zombieware/ Ladislav Zezula's excellent talk from BSides Prague can be found here: https://www.youtube.com/watch?v=OgXvd-Wce9o ----- OALABS DISCORD https://discord.gg/oalabs OALABS PATREON https://www.patreon.com/oalabs Twitch https://www.twitch.tv/oalabslive OALABS GITHUB https://github.com/OALabs UNPACME - AUTOMATED...
https://www.youtube.com/watch?v=NNLZmB6_aGA
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Should I report this vulnerability? Will I get a bounty?
It's really exciting to find your first bug BUT it's crushing when you realise it isn't reportable or comes back as NA from a client. Here are my top tips for identifying if you've found something and double checking before getting caught up in excitement! I still get emails about IDORs being NA because you need a victims cookie and hackers who are angry at bug bounty programs or triagers.
https://www.youtube.com/watch?v=T4EhE5f7fQg
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

How to take notes when you suck at it
This episode of the Bug Bounty course we talk about the importance of developing a personal note taking system that supports both hacking and learning. Emphasizing the differentiation between notes taken during hacking activities and those for learning about vulnerabilities. We look at methods for organizing and accessing your notes whether you are into Notion, Obsidian or Vim or even mind maps we'll look at how to integrate your notes with tools like Burp Suite. Creating your own knowledge base you can refer to every time you hack, tailored to individual needs and preferences and refine your own note-taking strategies for successful hacking and learning. 00:00 Introduction to the Bug Bounty Course 00:14 The Importance of a Personalized Note-Taking System 00:53 Sponsor Shoutout: Bugcrowd 01:45...
https://www.youtube.com/watch?v=uXuMvUPlvd0
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Finding The .webp Vulnerability in 8s (Fuzzing with AFL++)
A guide on how to do fuzzing with AFL++ in an attempt to rediscover the libwebp vulnerability CVE-2023-4863 that was used to hack iPhones. Want to learn hacking? Signup to https://hextree.io (ad) Buy my shitty font: https://shop.liveoverflow.com/ (ad) Watch webp Part 1: https://www.youtube.com/watch?v=lAyhKaclsPM Sudo Vulnerability Series: https://www.youtube.com/playlist?list=PLhixgUqwRTjy0gMuT4C3bmjeZjuNQyqdx Docker Video: https://www.youtube.com/watch?v=-YnMr1lj4Z8 OSS-Fuzz: https://github.com/google/oss-fuzz OSS-Fuzz libwebp coverage: https://storage.googleapis.com/oss-fuzz-coverage/libwebp/reports/20230901/linux/src/libwebp/src/utils/report.html AFLplusplus: https://github.com/AFLplusplus/AFLplusplus/blob/stable/docs/fuzzing_in_depth.md vanhauser's blog: https://www.srlabs.de/blog-post/advanced-fuzzing-unmasks-elusive-vulnerabilities vanhauser/thc...
https://www.youtube.com/watch?v=PJLWlmp8CDM
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Introduction to YARA Part 4 - Efficient Rule Development
In this OALABS Patreon tutorial we cover the foundations of writing efficient YARA rules and provide some tips that can help speed up your YARA hunting. The full notes for this tutorial are unlocked for everyone on our Patreon https://www.patreon.com/posts/introduction-to-96638239 ----- OALABS DISCORD https://discord.gg/6h5Bh5AMDU OALABS PATREON https://www.patreon.com/oalabs Twitch https://www.twitch.tv/oalabslive OALABS GITHUB https://github.com/OALabs UNPACME - AUTOMATED MALWARE UNPACKING https://www.unpac.me/#/ -----
https://www.youtube.com/watch?v=xKeF_cPKXt0
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Introduction to YARA Part 3 - Rule Use Cases
In this OALABS Patreon tutorial we cover the three main use cases for YARA rules and how they apply to both BlueTeam/SOC operations and malware analysis. Fun notes have been unlocked for everyone on our Patreon here https://www.patreon.com/posts/introduction-to-96637668 The following are links to UnpacMe specific tutorials for developing each type of rule. Identifying specific malware families (unpacked) https://support.unpac.me/howto/hunting-with-yara/#identifying-specific-malware-families-unpacked Identifying malware on disk or in network traffic (packed) https://support.unpac.me/howto/hunting-with-yara/#identifying-malware-on-disk-or-in-network-traffic-packed Hunting (malware characteristics) https://support.unpac.me/howto/hunting-with-yara/#hunting-malware-characteristics ----- OALABS...
https://www.youtube.com/watch?v=xutDqu_OiH8
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Introduction to YARA Part 2 - Hunting on UnpacMe
In this OALABS Patreon tutorial we demonstrate a simple YARA hunting example using the UnpacMe free YARA scan service: https://www.unpac.me Full notes have been unlocked on our Patreon here https://www.patreon.com/posts/introduction-to-96637337 ----- OALABS DISCORD https://discord.gg/6h5Bh5AMDU OALABS PATREON https://www.patreon.com/oalabs Twitch https://www.twitch.tv/oalabslive OALABS GITHUB https://github.com/OALabs UNPACME - AUTOMATED MALWARE UNPACKING https://www.unpac.me/#/ -----
https://www.youtube.com/watch?v=Xqvlju9ED1c
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Introduction to YARA Part 1 - What is a YARA Rule
In this OALABS Patreon tutorial we cover the basics of YARA, what is it, how is it used, and how to write your first rule. Full notes have been unlocked on our Patreon here https://www.patreon.com/posts/introduction-to-96636471 ----- OALABS DISCORD https://discord.gg/6h5Bh5AMDU OALABS PATREON https://www.patreon.com/oalabs Twitch https://www.twitch.tv/oalabslive OALABS GITHUB https://github.com/OALabs UNPACME - AUTOMATED MALWARE UNPACKING https://www.unpac.me/#/ -----
https://www.youtube.com/watch?v=3BpIhbsDR_I
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

OALABS Holiday Variety Show 2023
𝘔𝘦𝘳𝘳𝘺 𝘐𝘋𝘈𝘮𝘢𝘴 𝘢𝘯𝘥 𝘢 𝘏𝘢𝘱𝘱𝘺 𝘉𝘪𝘯𝘫𝘢-𝘠𝘦𝘢𝘳 Join us for our holiday special reverse engineering variety show! - Guess the prompt AI charades - Random RE banter - Suspicious liquids in bottles We've got it all! Merry Christmas everyone we will see you in 2024! ----- OALABS PATREON https://www.patreon.com/oalabs OALABS DISCORD https://discord.gg/6h5Bh5AMDU Twitch https://www.twitch.tv/oalabslive OALABS GITHUB https://github.com/OALabs UNPACME - AUTOMATED MALWARE UNPACKING https://www.unpac.me/#/ -----
https://www.youtube.com/watch?v=XMVhX29AJbQ
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

A Vulnerability to Hack The World - CVE-2023-4863
Citizenlab discovered BLASTPASS, a 0day being actively exploited in the image format WebP. Known as CVE-2023-4863 and CVE-2023-41064, an issue in webp's build huffman table function can lead to a heap buffer overflow. This vulnerability is very interesting and I'm excited to share with you what I learned. Want to learn hacking? Signup to https://hextree.io (ad) Buy my shitty font: https://shop.liveoverflow.com/ (ad) WebP Fix Commit: https://chromium.googlesource.com/webm/libwebp/+/902bc9190331343b2017211debcec8d2ab87e17a Citizenlab: https://citizenlab.ca/2023/09/blastpass-nso-group-iphone-zero-click-zero-day-exploit-captured-in-the-wild/ Ben Hawkes: https://blog.isosceles.com/the-webp-0day/ Software Updates Apple https://support.apple.com/en-gb/106361 Chrome https://chromereleases.googleblog.com/2023/09/stable-channel-update-for-desktop_11.html Firefox...
https://www.youtube.com/watch?v=lAyhKaclsPM
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Tips For Analyzing Delphi Binaries in IDA (Danabot)
Reverse Engineering Delphi is a nightmare ... or it can be if you don't have the right setup! In this clip we cover some easy tips that can help make some of the analysis a bit easier. Full notes with links for tools are available here: https://research.openanalysis.net/danabot/loader/delphi/2023/12/04/danabot.html Full stream with analysis of the Danabot loader is available on Patreon here: https://www.patreon.com/posts/live-stream-vod-94510766 ----- OALABS PATREON https://www.patreon.com/oalabs OALABS DISCORD https://discord.gg/6h5Bh5AMDU Twitch https://www.twitch.tv/oalabslive OALABS GITHUB https://github.com/OALabs UNPACME - AUTOMATED MALWARE UNPACKING https://www.unpac.me/#/ -----
https://www.youtube.com/watch?v=04RsqP_P9Ss
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

How To Recognize Macro Encrypted Strings in Malware
How to identify when a macro is used to encrypt strings in malware... inferring source from disassembly! ----- OALABS PATREON https://www.patreon.com/oalabs OALABS DISCORD https://discord.gg/6h5Bh5AMDU Twitch https://www.twitch.tv/oalabslive OALABS GITHUB https://github.com/OALabs UNPACME - AUTOMATED MALWARE UNPACKING https://www.unpac.me/#/ -----
https://www.youtube.com/watch?v=fEAGYjhKzJY
Partager : LinkedIn / Twitter / Facebook / View / View (lite)

Reinventing Web Security
Follow me down the rabbit hole into the wonderful world of IT security. Buy my terrible font (ad): https://shop.liveoverflow.com Learn hacking (ad): https://hextree.io Related Videos: https://www.youtube.com/watch?v=866olNIzbrk https://www.youtube.com/watch?v=lKzsNp4AveY Tweets: https://twitter.com/LiveOverflow/status/1720734431659376995 https://twitter.com/LiveOverflow/status/1720799912181284864 https://twitter.com/LiveOverflow/status/1721493232310214910 Understanding the Risks of Stolen Credentials: https://static.googleusercontent.com/media/research.google.com/en//pubs/archive/46437.pdf Chapters: 00:00 - Intro 00:40 - Security Terminology 01:38 - Direct Database Access 03:40 - Introducing a Security Boundary 05:36 - Typical Web Security Vulnerabilities 07:03 - Clear-text Passwords...
https://www.youtube.com/watch?v=LxUAnZY_08o
Partager : LinkedIn / Twitter / Facebook / View / View (lite)