Application Security Weekly for August 25

Chrome is finally starting to defend against clickjacking

https://www.theregister.co.uk/2019/08/19/clickjacking_countermeasures_chrome/

Dan Kaminsky only presented the solution in 2015

https://dankaminsky.com/2015/08/09/defcon-23-lets-end-clickjacking/

 

Facebook is in more access control hot water

https://nakedsecurity.sophos.com/2019/08/19/did-facebook-know-about-view-as-bug-before-2018-breach/

 

THERE IS AN IOS 12.4 JAILBREAK!  Man this made my life easier.

https://thehackernews.com/2019/08/ios-iphone-jailbreak.html?m=1

 

Oh man, a Zigbee toolset.  I've done some of this in C#, but this is WAY cooler

https://www.darknet.org.uk/2019/08/zigdiggity-zigbee-hacking-toolkit/

 

That's the news folks.  Stay safe out there.

Add comment

Bill Sempf

Husband. Father. Pentester. Secure software composer. Brewer. Lockpicker. Ninja. Insurrectionist. Lumberjack. All words that have been used to describe me recently. I help people write more secure software.

 

 

profile for Bill Sempf on Stack Exchange, a network of free, community-driven Q&A sites

MonthList