SpiderLabs Radio: June 19, 2014

June 21, 2014

In this episode:

SpiderLabs Radio: June 12, 2014

June 13, 2014

In this episode:

Setting HoneyTraps with ModSecurity: Adding Fake Hidden Form Fields

June 12, 2014 | Ryan Barnett

This blog post continues with the topic of setting " HoneyTraps" within your ...

Microsoft Patch Tuesday, June 2014

June 10, 2014

June's Microsoft Patch Tuesday contains seven bulletins, including two rated ...

From a Username to Full Account Takeover

June 10, 2014 | Oren Hafif

In the past year there have been many major data breach incidents in which ...

SpiderLabs Radio: June 5, 2014

June 06, 2014

In this episode I talk about some odd ransom ware targeting Apple iDevices and ...

Microsoft Advance Notification for June 2014

June 05, 2014 | Robert Foggia

Microsoft will be releasing the next security patch release on Tuesday, June ...

CVE-2014-0515 Goes to Brazil for World Cup 2014

June 03, 2014 | Arseny Levin

The FIFA World Cup 2014 begings June 12 and enthusiasm about the event has ...

SpiderLabs Radio: May 30, 2014

May 31, 2014

In this episode I talk about:

CVE-2014-2120 – A Tale of Cisco ASA “Zero-Day”

May 30, 2014 | Jonathan Claudius

A few months ago I was trying to PoC a known cross-site scripting vulnerability ...

Third-Party Auth Token Theft: The Big Picture

May 29, 2014 | David Byrne

Nothing sets the technical journalists abuzz like the prospect of a ...

Wireless Cameras and Webcams: Are You Being Watched?

May 27, 2014

Trustwave SpiderLabs recently disclosed vulnerabilities in several models of ...

Java-based Malware Distributed Through Spam

May 22, 2014 | Rodel Mendrez

For the past few months, we've observed more spam with Java-based malware ...

SpiderLabs Radio: May 22, 2014

May 22, 2014

In this episode I talk about:

Trustkeeper Scan Engine Update - May 21, 2014

May 21, 2014 | Donovan Lampa

We're back to bring you a large Scan Engine update. We've packed this release ...

2014 Trustwave Global Security Report Available Now

May 21, 2014 | Trustwave SpiderLabs

Mass Malicious PDF Email Campaigns from Cutwail

May 21, 2014

Over the last two weeks we have noticed a high number of emails with PDF ...

Baby's first NX+ASLR bypass

May 20, 2014 | Dan Crowley

Recently, I've been trying to improve my skills with regards to exploiting ...

DEFCON 22 CTF Qualifiers Writeup

May 20, 2014 | Dan Crowley

Hi folks!

SpiderLabs Radio: May 15, 2014

May 15, 2014

In this episode:

Microsoft Patch Tuesday, May 2014

May 13, 2014

May's Microsoft Patch Tuesday contains eight bulletins, the most of any release ...

SpiderLabs Radio: May 8, 2014

May 10, 2014

In this episode:

Microsoft Advance Notification for May 2014

May 08, 2014 | Robert Foggia

Tuesday, May 13 marks the next Microsoft security patch release. This release ...

Exploit Kit Roundup: Best of Obfuscation Techniques

May 07, 2014 | Anat (Fox) Davidi

The world of exploit kits is an ever-changing one, if you happen to look away ...

[Honeypot Alert] Open Flash Charts File Upload Attacks

May 06, 2014

Our web honeypots picked up some increased scanning/exploit activity for the ...

Microsoft Internet Explorer 0-Day (CVE-2014-1776)

May 05, 2014 | Trustwave SpiderLabs

A zero-day vulnerability in Microsoft Internet Explorer, CVE-2014-1776, was ...

Detecting A Surveillance State - Part 4 Cellular Attacks

May 05, 2014

This is the fourth and final post in my series of posts about state actor ...

SpiderLabs Radio: May 1, 2014

May 02, 2014

In this episode: