Preface

What is this and why does it exist?

All links, the content behind and the opinions there are not mine.
If you follow an external link, it is your problem, not mine if you do not like, what you find there.
Please be aware, that this is just a list of topics I find interesting.

All mentioned security tools can be found here: https://github.com/MrMarco74/security-geraffel



Tools

Android Frida library to hunt Android Malware
–> uitkyk - github <–

Set of tests for fuzzing engines
–> fuzzer-test-suite - github <–

πfs - the data-free filesystem
–> pifs - github <–



Talks & Knowledge

VSS for SMB File Shares
–> VSS for SMB File Shares - Microsoft TechNet <–

Inception Framework: Alive and Well, and Hiding Behind Proxies
–> Inception Framework - Symantec <–

Active Directory as a C2 (Command & Control)
–> AD as C2 - Akijosberry <–

Apple Blocks Sites From Abusing HSTS Security Standard to Track Users
–> Apple Blocks HSTS Abusing - The Hacker News <–

GrayKey iPhone unlocker poses serious security concerns
–> GrayKey iPhone unlocker - Malwarebytes Labs <–



Threats

Pre-Installed Malware Found On 5 Million Popular Android Phones
–> Android Pre-Installed Malware - The Hacker News <–

Russian APT Compromised Cisco Router in Energy Sector Attacks
–> APT DragonFly 2.0 - DarkReading <–

Powershell-RAT - Python Based Backdoor That Uses Gmail To Exfiltrate Data Through Attachment
–> Powershell-RAT - KitPloit <–

Proof-of-Concept Code for “Chakracore Scripting Engine Vulnerability (CVE-2018-0891)
–> CVE-2018-0891 - Bugs.Chromium / The Hacker News <–