|
You are here |
blog.andlabs.org | ||
| | | | |
www.skeletonscribe.net
|
|
| | | | | This combines RSnake's Popup & Focus URL Hijacking * with Paul Stone's login detection to enhance phishing attacks. The basic concept ... | |
| | | | |
textslashplain.com
|
|
| | | | | One attack technique I've seen in use recently involves enticing the victim to enter their password into a locally-downloaded HTML file. The attack begins by the victim receiving an email lure with a HTML file attachment (for me, often with the .shtml file extension): When the user opens the file, a HTML-based credential prompt is... | |
| | | | |
pberba.github.io
|
|
| | | | | How to deploy a phishing attack on LastPass users, even when they are protected with Yubikey physical keys, and why U2F helps us prevent phishing | |
| | | | |
www.lampysecurity.com
|
|
| | | This past weekend I attended the Orlando BSides at Full Sail University. It's a two-day event, with the first day dedicated to workshops and the second day talks and villages. The whole conference was available by streaming as well as in person. The conference wasn't far from me, and I attended both the workshops and the talks in person. Unlike most conferences, Orlando BSides had extremely affordable tickets. The basic ticket for the conference was $25, with students able to attend for free aft | ||