Preface

What is this and why does it exist?

All links, the content behind and the opinions there are not mine.
If you follow an external link, it is your problem, not mine if you do not like, what you find there.
Please be aware, that this is just a list of topics I find interesting.

All mentioned security tools can be found here: https://github.com/MrMarco74/security-geraffel



Tools

Hardentools is a utility that disables a number of risky Windows features
–> hardentools - github <–

IDA Processor for Compiled YARA Rules
–> ida-yara-processor - github <–

GUI for testing Android phones for the Rowhammer bug
–> drammer-app - github <–



Talks & Knowledge

Installing Metasploit Framework on Ubuntu 18.04 LTS and Debian 7
–> MSF on Debian - Dark Operator <–

Find Rogue DNS Servers with Stealthwatch
–> Find Rogue DNS - Youtube / Network with Fish <–

Client-side software update verification failures
–> update failures - github <–

A list of files / paths to probe when arbitrary files can be read on a Microsoft Windows operating system
–> windowsblindread - github <–



Threats

Remote Code Execution in apt/apt-get
–> CVE-2019-3462 - Max Justicz <–

Remotely compromise devices by using bugs in Marvell Avastar Wi-Fi: from zero knowledge to zero-click RCE
–> WiFi SoC RCE - EMBEDI <–