Preface

What is this and why does it exist?

All links, the content behind and the opinions there are not mine.
If you follow an external link, it is your problem, not mine if you do not like, what you find there.
Please be aware, that this is just a list of topics I find interesting.

All mentioned security tools can be found here: https://github.com/MrMarco74/security-geraffel



Tools

SIP-Based Audit and Attack Tool
–> Mr.SIP - github <–




Talks & Knowledge

Unprotected S3 Cloud Bucket Exposed 100GB of Classified NSA Data
–> 100GB NSA Data leaked - HackRead <–

XSLT Server Side Injection Attacks
–> XSLT SSI Attacks - Context <–

Git Some Security: Locking Down GitHub Hygiene
–> GitHub Hygiene - DarkReading <–

How to Install TOR on Android and iOS Devices
–> TOR on Smartphones - HackRead <–

H2HC University - Rodrigo Branco - Firmware is the new Black
–> Firmware is the new Black - github <–

Report: Developers aren’t to blame for security issues
–> State of Software Security Developer Guide - SD Times <–




Threats

The #iAmRoot Apple macOS bug can be triggered via the command line. Great news for malware writers, not so much for rest of us.
–> #iAmRoot Bug - The Register <–

Cisco Patches Critical WebEx Vulnerabilities
–> Cisco WebEx Vulns - SecurityWeek <–

Patch for macOS Root Access Flaw Breaks File Sharing
–> macOS Root Access Flaw - SecurityWeek <–

HP Silently Installs Telemetry Bloatware On Your PC—Here’s How to Remove It
–> How to Remove HP Bloatware- The Hacker News <–