Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Directory Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

research

20 articles

Elastic Security Labs research Oct 1

Elastic publishes 2024 Global Threat Report

Elastic Security Labs has released the 2024 Elastic Global Threat Report, surfacing the most pressing threats, trends, and recommendations to help keep organ...

Elastic Security Labs → Details

Elastic Security Labs research Google Apple Linux Sep 28

Cups Overflow: When your printer spills more than Ink

Elastic Security Labs discusses detection and mitigation strategies for vulnerabilities in the CUPS printing system, which allow unauthenticated attackers to...

T1190

Elastic Security Labs → Details

Elastic Security Labs research Linux Sep 27

Betting on Bots: Investigating Linux malware, crypto mining, and gambling API abuse

The REF6138 campaign involved cryptomining, DDoS attacks, and potential money laundering via gambling APIs, highlighting the attackers' use of evolving malwa...

T1498

Elastic Security Labs → Details

Elastic Security Labs research Sep 20

Storm on the Horizon: Inside the AJCloud IoT Ecosystem

Wi-Fi cameras are popular due to their affordability and convenience but often have security vulnerabilities that can be exploited.

Elastic Security Labs → Details

Elastic Security Labs research Sep 18

Code of Conduct: DPRK’s Python-fueled intrusions into secured networks

Investigating the DPRK’s strategic use of Python and carefully crafted social engineering, this publication sheds light on how they breach highly secure netw...

T1204

Elastic Security Labs → Details

Elastic Security Labs research Linux Sep 13

Kernel ETW is the best ETW

This research focuses on the importance of native audit logs in secure-by-design software, emphasizing the need for kernel-level ETW logging over user-mode h...

T1562

Elastic Security Labs → Details

Elastic Security Labs research Sep 6

Elastic releases the Detection Engineering Behavior Maturity Model

Using this maturity model, security teams can make structured, measurable, and iteritive improvements to their detection engineering teams..

Elastic Security Labs → Details

PortSwigger Research research Sep 3

Introducing the URL validation bypass cheat sheet

URL validation bypasses are the root cause of numerous vulnerabilities including many instances of SSRF, CORS misconfiguration, and open redirection.

PortSwigger Research → Details

Elastic Security Labs research Linux Aug 30

Linux Detection Engineering - A Sequel on Persistence Mechanisms

In this final part of this Linux persistence series, we'll continue exploring persistence mechanisms on Linux systems, focusing on more advanced techniques a...

Elastic Security Labs → Details

Elastic Security Labs research Linux Aug 21

Linux Detection Engineering - A primer on persistence mechanisms

In this second part of the Linux Detection Engineering series, we map multiple Linux persistence mechanisms to the MITRE ATT&CK framework, explain how they w...

Elastic Security Labs → Details

Elastic Security Labs research Apple Aug 15

Beyond the wail: deconstructing the BANSHEE infostealer

The BANSHEE malware is a macOS-based infostealer that targets system information, browser data, and cryptocurrency wallets.

Elastic Security Labs → Details

PortSwigger Research research Aug 8

Gotta cache 'em all: bending the rules of web cache exploitation

Through the years, we have seen many attacks exploiting web caches to hijack sensitive information or store malicious payloads.

T1598

PortSwigger Research → Details

Elastic Security Labs research Aug 8

Now in beta: New Detection as Code capabilities

Elastic Security Labs → Details

PortSwigger Research research Aug 7

Splitting the email atom: exploiting parsers to bypass access controls

Some websites parse email addresses to extract the domain and infer which organisation the owner belongs to. This pattern makes email-address parser discrepa...

PortSwigger Research → Details

PortSwigger Research research Oracle Aug 7

Listen to the whispers: web timing attacks that actually work

Websites are riddled with timing oracles eager to divulge their innermost secrets. It's time we started listening to them.

PortSwigger Research → Details

Elastic Security Labs research Microsoft Aug 6

Dismantling Smart App Control

This article will explore Windows Smart App Control and SmartScreen as a case study for researching bypasses to reputation-based systems, then demonstrate de...

Elastic Security Labs → Details

Elastic Security Labs research Microsoft Intel Aug 1

BITS and Bytes: Analyzing BITSLOTH, a newly identified backdoor

Elastic Security Labs identified a novel Windows backdoor leveraging the Background Intelligent Transfer Service (BITS) for C2. This malware was found during...

Elastic Security Labs → Details

Elastic Security Labs research Microsoft Jul 11

Introducing a New Vulnerability Class: False File Immutability

This article introduces a previously-unnamed class of Windows vulnerability that demonstrates the dangers of assumption and describes some unintended securit...

Elastic Security Labs → Details

PortSwigger Research research Apple Jul 9

Fickle PDFs: exploiting browser rendering discrepancies

Imagine the CEO of a random company receives an email containing a PDF invoice file. In Safari and MacOS Preview, the total price displayed is £399.

PortSwigger Research → Details

PortSwigger Research research Jul 2

A hacking hat-trick: previewing three PortSwigger Research publications coming to DEF CON & Black Hat USA

We're delighted to announce three major research releases from PortSwigger Research will be published at both Black Hat USA and DEF CON 32.

PortSwigger Research → Details

«Previous page 1 ... 28 29 30 31 32 ... 38 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA