- If Attackers can abuse free online services, they will do for sure! Why spend time to deploy a C2 infrastructure if you have plenty of ways to use "official" services. Not only, they don't cost any money but the traffic can be hidden in the normal traffic; making them more difficult to detect. A very […]
- As promised in diary entry "XORsearch: Searching With Regexes", I will outline another method to search with xorsearch and regexes.
- Two weeks ago, version 1.3.0 of Langflow was released. The release notes list many fixes but do not mention that one of the "Bug Fixes" addresses a major vulnerability. Instead, the release notes state, "auth current user on code validation." [1]
- [This is a Guest Diary by Matthew Gorman, an ISC intern as part of the SANS.edu BACS program]