Preface

What is this and why does it exist?

All links, the content behind and the opinions there are not mine.
If you follow an external link, it is your problem, not mine if you do not like, what you find there.
Please be aware, that this is just a list of topics I find interesting.

All mentioned security tools can be found here: https://github.com/MrMarco74/security-geraffel



Tools

DNS Masquerading Server for Windows
–> mod0Umleitung - GitHub <–

UACMe – Defeat Windows User Account Control (UAC)
–> UACMe - Darknet.Org.Uk <–

NoSQLMap – Automated NoSQL Exploitation Tool
–> NoSQLMap - Darknet.Org.Uk <–

Microsoft Windows - Escalate UAC Protection Bypass (Via COM Handler Hijack) (Metasploit)
–> Windws UAC Bypass - Exploit-DB <–

WiNX Portable: Runs for hours on a battery! #WiFi 0wnage on the move!
–> WiNX Portable - Hacker Arsenal <–

Bytecode Viewer - A Java 8 Jar & Android Apk Reverse Engineering Suite (Decompiler, Editor, Debugger & More)
–> Bytecode Viewer - KITPLOIT <–



Talks & Knowledge

Research of the Mirai Botnet from Akamai Technologies, Cloudflare, Georgia Institute of Technology, Google, Merit Network, University of Illinois Urbana-Champaign and the University of Michigan
–> Understanding the Mirai Botnet - usenix <–



Threats

Beware – Smartphones Can Be Hacked With Malicious Replacement Parts
–>Smartphones Can Be Hacked With Malicious Replacement Parts - HackRead <–

Sony PlayStation Social Media Accounts Hacked; Claims PSN Database Breach
–> PSN Database Breach - The Hacker News <–

A UDP Tunnel which tunnels UDP via FakeTCP/UDP/ICMP Traffic by using Raw Socket,helps you Bypass UDP FireWalls(or Unstable UDP Environment).Its Encrpyted,Anti-Replay and Multiplexed.It aslo acts as a Connection Stablizer.
–> udp2raw-tunnel - GitHub <–

First fishy phishing sites sighted
–> .fish Phishing Site - NetCraft <–

Who needs Macros when you have PowerPoint “Mouse Over Actions”
–> PowerPoint MouseOver - Twitter <–

Spyware backdoor prompts Google to pull 500 apps with >100m downloads
–> Spyware backdoor in Android Apps - arsTECHNICA <–

AccuWeather caught sending user location data, even when location sharing is off
–> AccuWeather spys on you - ZDNet <–