Primal Security Podcast

PrimalSec Podcast Ep25 Hacktoberfest

Informações:

Sinopsis

Octoberfest -> Micah just released python parser for untapped https://github.com/WebBreacher/untappdScraper   Mirai Botnet DNS Attacks (IoT) https://krebsonsecurity.com/2016/10/hacked-cameras-dvrs-powered-todays-massive-internet-outage/ Joomla Vuln (CVE-2016-8869, 8870) - Unauth Account creation and priv esc Joomla core 3.4.4-3.6.3 (patched 3.6.4) PoC is out on this several examples. https://medium.com/@showthread/joomla-3-6-4-account-creation-elevated-privileges-write-up-and-exploit-965d8fb46fa2#.7kwnegsvj Dirtyc0w exploit (CVE-2016-5195) https://dirtycow.ninja/ BSidesDC 2016: https://www.youtube.com/channel/UCVImyGhRATNFGPmJfxaq1dw We Spoke Sean Metcaf Spoke on Powershell Micah Spoke on how to get connected in the security industry   BSidesJXN - 5 Ways We Break into a Network https://breakpoint-labs.com/5-ways-we-get-on-your-network/ Phishing Web App Vulns Multicast Name Resolution Poisoning SMB Relay Attacks Account Compromise