Quantcast
Channel: Compass Security Blog
Browsing index pages (140 articles)

Image may be NSFW.
Clik here to view.

The Good Old DNS Rebinding

“This application is hosted in our internal network and not exposed to the Internet, why should we invest money and time in securing it? Our employees have access to that data anyway…”If you performed...

View Article


Image may be NSFW.
Clik here to view.

.CH Zone Lookup Tool

Fighting cybercrime is one of the reason Switch announced to publish the .ch zone. Switzerland has a law on Open-Government-Data-Strategy that follows the open-by-default strategy The .ch zone file...

View Article


Image may be NSFW.
Clik here to view.

The “Volatility Triage App” for Splunk

We are proud to announce the release of our first Splunk App, which can be used to perform a first high level analysis of Volatility’s results coming from multiple hosts....

View Article

Image may be NSFW.
Clik here to view.

Evading Static Machine Learning Malware Detection Models – Part 2: The...

In the first blog post of this series, we tested several tools for evading a static machine learning-based malware detection model. As promised, we are now taking a closer look at the EMBER dataset...

View Article

Image may be NSFW.
Clik here to view.

Burp Extension: Copy Request & Response

Writing good reports is key in penetration tests / security assessments, since this is the final result delivered to the customer. Vulnerabilities should be described in a way so that the customer can...

View Article


Image may be NSFW.
Clik here to view.

Evading Static Machine Learning Malware Detection Models – Part 1: The...

Modern anti-malware products such as Windows Defender increasingly rely on the use of machine learning algorithms to detect and classify harmful malware. In this two-part series, we are going to...

View Article

Image may be NSFW.
Clik here to view.

101 for lateral movement detection

In case of an incident you’ll want to be ready to respond fast. Time is a crucial factor during an incident and the faster you move, the better. You want your Incident Resonse Team to be quick and...

View Article

Image may be NSFW.
Clik here to view.

Make the most out of BloodHound

During internal assessments in Windows environments, we use BloodHound more and more to gather a comprehensive view of the permissions granted to the different Active Directory objects. If you haven’t...

View Article


Image may be NSFW.
Clik here to view.

Yet Another Froala 0-Day XSS

Introduction Froala WYSIWYG HTML Editor is a lightweight WYSIWYG HTML Editor written in JavaScript that enables rich text editing capabilities for web applications [1]. Froala sanitizes the user input...

View Article


Image may be NSFW.
Clik here to view.

Relaying NTLM authentication over RPC

Since a few years, we – as pentesters – (and probably bad guys as well) make use of NTLM relaying a lot for privilege escalation in Windows networks. In this article, we propose adding support for the...

View Article

Image may be NSFW.
Clik here to view.

Reversing a .NET Orcus dropper

In this blog post we will reverse engineer a sample which acts as downloader for malware (aka a “dropper”). It is not uncommon to find such a downloader during DFIR engagements so we decided to take a...

View Article

New SMBGhost Vulnerability Affects Modern Windows Systems

After the infamous SMBv1 flaw with the name EternalBlue that was discovered some years ago (and all the consequences it had like WannaCry), a new vulnerability (CVE-2020-0796) affecting SMBv3 has been...

View Article

Image may be NSFW.
Clik here to view.

Domain-Join Computers the Proper Way

When you add a new computer, it must first join the domain. If you use its future main user to do it, they’ll become the owner and be able to hijack the computer to become a local administrator in...

View Article


Image may be NSFW.
Clik here to view.

Invoice Fraud with Everything the Bag of Tricks Has to Offer

Sometimes, it doesn’t take much for a good scam: a good story, a little persuasion, then disappear again… and sometimes, the scammers come up with tactics that come straight out of the textbook. In...

View Article

Image may be NSFW.
Clik here to view.

OWASP – Toronto January 2020

On January 22nd 2020, Compass Security Canada (CSCA) attended the monthly OWASP Toronto meeting at George Brown College where Rahul Raghavan gave a presentation titled “The Clutter that’s Choking...

View Article


Image may be NSFW.
Clik here to view.

Interview with Jim McKay

“I love hacking can be used for the greater good.” During the Solothurn Film Festival 2020 we had the opportunity to meet Jim McKay, who directed, among others, two episodes for Mr. Robot season one....

View Article

Image may be NSFW.
Clik here to view.

Finding Active Directory attack paths using BloodHound

Finding and exploiting/patching attack paths in your Active Directory environment As an attacker or an analyst during an internal penetration test or a red team assessment, we often ask (ourselves)...

View Article


Image may be NSFW.
Clik here to view.

Challenging Your Forensic Readiness with an Application-Level Ransomware Attack

Contents Introduction Attack Scenario Outlook MAPI COM OutlookCOM Init Function OutlookCOM Traverse Function OutlookCOM Example OutlookCOM Ransomware Conclusion References Introduction Most ransomware...

View Article

Image may be NSFW.
Clik here to view.

Hacking Tools Cheat Sheet

A Note about Cheat Sheets Everyone knows: cheat sheets are cool! They are very useful if you already know the basics about a topic but you have to look up details when you are not sure about...

View Article

Image may be NSFW.
Clik here to view.

Introducing Web Vulnerabilities into Native Apps

Intro Mobile applications nowadays make heavy use of WebViews in order to render their user interfaces. Frameworks such as PhoneGap / Apache Cordova are even used to implement most of the...

View Article
Browsing index pages (140 articles)


Latest Images