-
Jan 10, 2020
iOS forensic is quite complex: in many cases, jailbreaking is the only way to gather all most information available in iOS devices. Ok, logical acquisition is easy, safe and it always works: however, this kind of acquisition mostly gives you… read more »
-
Jan 9, 2020
Security experts from CheckPoint discovered multiple vulnerabilities in the popular TikTok app that could be chained by remote attackers to hijack any user accounts, execute malicious code on the target system and perform unwanted actions. Those vulnerabilities (that includes SMS… read more »
-
Jan 8, 2020
In an interesting article, editors by Privacy International examines some aspects of digital forensics on mobile phones, from the acquisition process to the data analysis phase. All the topics in the article [1] has been discussed in detail in the… read more »
-
Jan 3, 2020
Recently, digital intruders entered the Ring surveillance camera in the bedroom of an 8-year-old girl in Mississippi and started talking to her [1], then various other intrusions took place and it emerged that 3600 e-mail addresses, passwords, localizations and other… read more »
-
Jan 2, 2020
100 years ago, Isaac Asimov was born: was one of the writers who brought science fiction out of its niche market and a great scientific popularizer with many articles and essays. His legacy is estimated in about 500 books of… read more »
-
Jan 1, 2020
20 years ago the entire world was afraid to descend into chaos as a result of computers not being able to cope with displaying a date containing year 2000: both computer experts and general public alike were convinced that computers… read more »
-
Dec 24, 2019
“The Hitchhiker’s Guide to the Galaxy” is a cultural icon in science-fiction that spawned five books, stage shows, a 1981 TV series, a computer game, comic books and a major motion picture. But originally it was just a radio comedy… read more »
-
Dec 23, 2019
By default, containers run in unprivileged mode, that is, we cannot run Docker daemon inside a Docker container. However, a privileged Docker container is allowed to access to all the devices on the host woth the same privileges of the… read more »
-
Dec 20, 2019
POCKINT stands for “Pocket Intelligence”.
It is an OSINT multi purposes GUI program designed to be a lightweight and portable.
… read more »
-
Dec 19, 2019
According to a TrendMicro’s report, ‘The New Norm’, the major cybersecurity risks for organizations in 2020 comes from DevOps, third-party libraries, container components and even remote workers.
… read more »
-
Dec 18, 2019
Security research group Check Point Research recently uncovered a flaw in WhatsApp through which a single malicious user could crash the apps of all members of a group chat.
… read more »
-
Dec 17, 2019
Some days ago, I’ve been looking at a website named “IBM 360 Model 20 Rescue and Restoration”: a group of brave engineer started the project of restoration of an IBM System 360 Model 20, documenting all steps of the process.… read more »
-
Dec 13, 2019
Google and Facebook help connect the world and provide crucial services to billions users, but this services come at a systemic cost.
… read more »
-
Dec 12, 2019
British security firm Pen Test Partners tells us a creepy cybersecurity story set in a place difficult to associate with computers: the engine room of a ship.
… read more »
-
Dec 11, 2019
Security researcher Kishan Bagaria found a “bug” in AirDrop that let him repeatedly sent files to all devices able to accept files within wireless range of an attacker.
… read more »
-
Dec 10, 2019
Security should be built into every part of the DevOps lifecycle, including inception, design, build, test, release, support, maintenance, and beyond.
… read more »
-
Dec 7, 2019
Android’s December 2019 updates patches a small list of system and Qualcomm flaws across the operating system’s two patch levels [1]. According with Google, a specific flaws (CVE-2019-2232) may allows an attacker to cause a permanent denial of service by… read more »
-
Dec 6, 2019
At the re:Invent event, Amazon Web Services reveiled a new tool that can help customers to avoid publishing of unsecured S3 buckets.
… read more »
-
Dec 5, 2019
Security researcher Omer Tsarfati from CyberArk has discovered [1] a vulnerability in Microsoft’s OAuth implementation that may allows attacker to create authentication tokens with the victim’s permissions. This could let a malicious attacker access and control a victim’s account and… read more »
-
Dec 4, 2019
Recently, the italian hosting provider Netsons[1] discovered some unauthorized access on its Management System, occurred on March 2019.
… read more »