PCAP Files Are Great Arn't They??

December 15, 2012 | David Kirkpatrick

One of the most important skills in anyone's armory responsible for looking ...

Abusing the Android Debug Bridge

December 14, 2012 | Admin

The android debug bridge (or ADB for short) is a valuable tool, it is what ...

SpiderLabs Radio December 14, 2012 w/ Space Rogue

December 14, 2012 | Admin

We are back with another episode of SpiderLabs Radio hosted by Space Rogue. ...

My 5 Top Ways to Escalate Privileges

December 13, 2012 | Bruno Oliveira

During a penetration test, rarely will the tester get access to a system with ...

Abusing SAP Servers

December 13, 2012 | Joaquim Espinhara da Silva Neto

During some recent penetration tests I have noticed that large companies have ...

The Dexter Malware: Getting Your Hands Dirty

December 13, 2012 | Josh Grunzweig

A very interesting piece of malware that targets Point of Sale systems has ...

[Honeypot Alert] Turning Local File Inclusion into Reflected Code Execution

December 12, 2012 | Ryan Barnett

Which web application attack type is more severe: Local File Inclusion (LFI) or ...

Microsoft Patch Tuesday, December 2012 – 99 Bottles of Beer on the Wall

December 11, 2012 | Space Rogue

The head of Trustwave SpiderLabs Nicholas Percoco has had an unusual goal this ...

How to Hack and Not Get Caught

December 11, 2012 | Tim Maletic

The following thoughts on internal network penetration strategies are drawn ...

Class 101 - Automating the process of fingerprinting Web Applications and Identifying Vulnerabilities.

December 08, 2012 | Wendel Guglielmetti Henrique

First of all, this blog post is not for Web Application experts, instead I will ...

[Honeypot Alert] SQL Injection Scanning Detected in WordPress Error Logs

December 07, 2012 | Ryan Barnett

Normally for these Web Honeypot alert blog posts, I show snippets of the Apache ...

SpiderLabs Radio December 7, 2012 w/ Space Rogue

December 07, 2012 | Admin

We are back with a third (new) episode of SpiderLabs Radio hosted by Space ...

Microsoft Advance Notification for December 2012

December 06, 2012 | Space Rogue

Next week is Patch Tuesday, so this week we get the advance notification for ...

Blackberry OS 10 BlackLists Batman and PoohBear

December 06, 2012 | Space Rogue

A Blackberry oriented website in the UK was the first to notice an interesting ...

CCCDC Blue Teams vs Corporate Blue Team Comparision

December 06, 2012 | Ryan Linn

This weekend was the Community College Cyber Defense competition at Iowa State ...

Proxmark 3, now with more Android

December 03, 2012 | Admin

It's no secret; I'm a fan of the Proxmark 3 RFID testing board. It's a device ...

[Honeypot Alert] SQL Injection Scanning Targeting Joomla Plugins

December 03, 2012 | Ryan Barnett

The following SQL Injection attack payloads targeting Joomla components were ...

The Return of SpiderLabs Radio: Now with Space Rogue

November 30, 2012 | Admin

The SpiderLabs podcast known as SpiderLabs Radio has gone through many ...

[Honeypot Alert] User-Agent Field XSS Attacks

November 29, 2012 | Ryan Barnett

Our web honeypots picked up some more XSS attacks today:

An Analysis of a Fake Vodafone Bill PDF File

November 29, 2012 | Admin

We haven't come across many malicious PDF files recently in our spam traps, so ...

Detecting Successful XSS Testing with JS Overrides

November 29, 2012 | Ryan Barnett

Do you know when an attacker or security researcher successfully finds a ...

Microsoft Patch Tuesday, November 2012 – Lions and Tigers and RCE, Oh My!

November 13, 2012 | Space Rogue

I feel some compassion for those system administrators alongthe East Coast of ...

CVE-2012-4969 and the Unnamed Admin Panel

November 13, 2012 | Moshe Basanchig

While CVE-2012-4969 isn't new, we are still curious about the various ways this ...

Microsoft Advanced Notification for November 2012 - RCE, Yikes!

November 08, 2012 | Space Rogue

Microsoft has released its advance notification for next weeks Patch Tuesday ...

CWE the Vote

November 06, 2012 | Admin

It's a nice, sunny day in Cleveland, my friends. Tonight, after the votes are ...

Introducing Responder-1.0

October 24, 2012 | Admin

Responder is a multi threaded tool that answers to IPv4 LLMNR (Link-local ...

Worm Propagates Through Skype Messages

October 12, 2012 | Rodel Mendrez

For the past week, we've received a lot of reports of a worm that propagates ...

mDNS - Telling the world about you (and your device)

October 10, 2012 | Admin

Luiz Eduardo ( @effffn) and Rodrigo Montoro ( @spookerlabs ) have presented ...