Author: Cybernoz

Abusing internal API to achieve IDOR in New Relic
23
Mar
2023

Abusing internal API to achieve IDOR in New Relic

I recently found a nice insecure direct object reference (IDOR) in New Relic which allowed me to pull data from…

Hacker holding out hands
23
Mar
2023

Python info-stealing malware uses Unicode to evade detection

A malicious Python package on PyPI uses Unicode as an obfuscation technique to evade detection while stealing and exfiltrating developers’…

Nexus: New Android Botnet Anticipated to Grow More Dangerous
23
Mar
2023

New Android Botnet Nexus Being Rented Out on Russian Hacker Forum

The developer of the Android botnet is rending out Nexus through a Malware-as-a-Service (MaaS) subscription for $3000 per month. A…

23
Mar
2023

Fake ChatGPT for Google extension hijacks Facebook accounts

A new Chrome extension promising to augment users’ Google searches with ChatGPT also leads to hijacked Facebook accounts, Guardio Labs…

Everywoman in Tech Forum 2023: What it means to be an authentic tech leader
23
Mar
2023

Everywoman in Tech Forum 2023: What it means to be an authentic tech leader

“I got this recruitment letter from a high-tech company that said, ‘We’re particularly interested in you as a female thought…

US District Court's Network Access For Sale Claims Hacker Group
23
Mar
2023

US District Court’s Network Access For Sale Claims Hacker Group

The notorious Everest ransomware group has allegedly attacked the US District Court and is currently selling its network access on…

Don’t Force Yourself to Become a Bug Bounty Hunter
23
Mar
2023

Don’t Force Yourself to Become a Bug Bounty Hunter

Ever since I was a kid I was never good at doing schoolwork. I had envied everyone that seemed to…

23
Mar
2023

A common user mistake can lead to compromised Okta login credentials

Logged failed logins into a company’s Okta domain could be used by threat actors to discover access credentials of valid…

Cybersecurity Maturity Report
23
Mar
2023

2023 Cybersecurity Maturity Report Reveals Organizational Unpreparedness for Cyberattacks

Mar 23, 2023The Hacker News In 2022 alone, global cyberattacks increased by 38%, resulting in substantial business loss, including financial…

IT Sustainability Think Tank: Closing the sustainability gap through diverse and inclusive hiring
23
Mar
2023

IT Sustainability Think Tank: Closing the sustainability gap through diverse and inclusive hiring

Innovative use of technology is needed not only to improve climate resilience and disaster recovery, but to reduce manufacturing waste…

Serverless Toolkit for Pentesters - ropnop blog
23
Mar
2023

Serverless Toolkit for Pentesters – ropnop blog

Serverless is awesome and I can’t believe this stuff is free. I’m releasing some serverless functions that I’ve developed over…

Android Banking Trojan
23
Mar
2023

A New Rising Android Banking Trojan Targeting 450 Financial Apps

Mar 23, 2023Ravie LakshmananMobile Security / Banking An emerging Android banking trojan dubbed Nexus has already been adopted by several…