Preface

What is this and why does it exist?

All links, the content behind and the opinions there are not mine.
If you follow an external link, it is your problem, not mine if you do not like, what you find there.
Please be aware, that this is just a list of topics I find interesting.

All mentioned security tools can be found here: https://github.com/MrMarco74/security-geraffel



Tools

OSINT Resource Classification System
–> orcs - github <–

Cobalt Strike cna script for randomized argument spoofing
–> deckbuilder - github <–

Go Machine
–> GoMachine - github <–



Talks & Knowledge

Development of a new Windows 10 KASLR Bypass (in One WinDBG Command)
–> Windows 10 1809 Kernel ASLR Bypass Evolution - Offensive Security <–

Huge list of threat intel OSINT Sources
–> collection of Threat Intel - Twitter/@paranoid_ch1ck <–

Vectorized Emulation: MMU Design
–> MMU Design - Gamozo Labs Blog <–

Verifications.io breach is one of the largest data breaches but the good news is that it does not involve passwords.
–> 2 billion records leaked - HackRead <–



Threats

Education and Science Giant Elsevier Left Users’ Passwords Exposed Online
–> Elsevier Left Users’ Passwords Exposed - motherboard <–

Libssh Releases Update to Patch 9 New Security Vulnerabilities
–> Libssh Vulns - The Hacker News <–