FreshRSS

πŸ”’
❌ About FreshRSS
There are new available articles, click to refresh the page.
Before yesterday/r/netsec - Information Security News & Discussion

How to create an hacking lab on apple silicon

By /u/XznX

Hi all,

Has anybody managed to create a functioning hacking lab on Apple silicon?

Im trying to create a hacking lab so I could practice hacking vulnhub machines.

To my understanding, there are 2 alternatives to Virtual Box: 1. Using parallels 2. Using UTM

I’m okay with buying these software, I just cant get them to work.

Things I’ve tried: 1. Following this tutorial:

https://patrick-rottlaender.medium.com/create-a-virtual-hacking-lab-on-apple-silicon-mac-a86d9b3b2e5f

I was able to create a kali vm with 2 network interfaces (one internal for contacting the target and one external for contacting the www) But when I follow the process of converting the .ova to .qcow2 and creating the machines, a lot of machines boot up with out a network interface (even though I have defined one) I will note that some machines work fine, making the problem harder to debug. (Ive tried deleting the network adapter and creating a new one, as well as changing the β€œhost only” to β€œbridged” and it didn’t work)

  1. Using parallels:

I was able to create a working kali vm but couldn’t find a guide that explains how to open vulnhub’s machines in parallel. (They are usually a .ova files or .vmdk)

My main question is if anyone was able to create a lab that works with vulnhub machines on apple silicon.

My side questions are: 1. Does anyone knows how to debug my problem with UTM? (That some machines don’t recognize the network adapter) 2. Has anyone know a guide that explains how to import vulnhub machines to parallels? 3. Is there a third alternative I’m missing?

Will appreciate any help, Thanks in advance!

submitted by /u/XznX
[link] [comments]

June 1st CA/Browser Forum Code Signing Requirements Require the use of an HSM

By /u/marklarledu

Apparently it wasn't a requirement to use an HSM until just a couple weeks ago. I was surprised to read this but now some of those code signing breaches from the past make more sense.

submitted by /u/marklarledu
[link] [comments]

Welcome New Moderators!

By /u/sanitybit

Hey /r/netsec,

I'm thrilled to bring some exciting news to you all today. We've expanded our moderation team to include a group of passionate information security professionals who are dedicated to helping /r/netsec continue to serve as your go-to resource for high-quality, technical security content.

Please join me in extending a warm welcome to our new moderators:

All of these folks have a shared passion for information security, and a shared vision for /r/netsec as a curated, community-sourced aggregator for top-tier security content and research. We're all here to help cut through the noise of fear-mongering and low quality clickbait, and stick to our roots by rewarding the folks who create high-quality original content.

Our new moderators will be working closely with the existing team to uphold and enforce our content guidelines. We believe in open discussion and collaboration, and any disagreements about content removal, spam decisions, bans, or user-facing activity will be handled through conversation with the mod team.

I am incredibly excited for this new chapter in /r/netsec, and I am grateful to each of you for making this community what it is. Let's continue to build a thriving and engaging space for high-quality, technical security discourse together.

- /u/sanitybit

GreetztoSophSecandBusticatiworldwide.

submitted by /u/sanitybit
[link] [comments]
❌