Back to School - Exploiting a Remote Code Execution Vulnerability in Moodle
https://ift.tt/ZsbH8QB
Submitted August 27, 2024 at 02:09PM by RedTeamPentesting
via reddit https://ift.tt/DcJjlA4
https://ift.tt/ZsbH8QB
Submitted August 27, 2024 at 02:09PM by RedTeamPentesting
via reddit https://ift.tt/DcJjlA4
RedTeam Pentesting - Blog
Back to School - Exploiting a Remote Code Execution Vulnerability in Moodle
Surprisingly often, implementations include functionality where user input is passed to dangerous functions like PHP’s eval() - despite clear warnings. Often, devs are somewhat aware of this danger and attempt to sanitize the input, but this approach …
Taking the Crossroads: The Versa Director Zero-Day Exploitation
https://ift.tt/fGMAd9J
Submitted August 27, 2024 at 08:24PM by YogiBerra88888
via reddit https://ift.tt/yXMk2mP
https://ift.tt/fGMAd9J
Submitted August 27, 2024 at 08:24PM by YogiBerra88888
via reddit https://ift.tt/yXMk2mP
Lumen Blog
Taking the Crossroads: The Versa Director Zero-Day Exploitation
Black Lotus Labs uncovered a zero-day exploit in Versa Director servers. Learn its impact on SD-WAN security and how to mitigate threats.
I found 14 CVEs by downloading every Wordpress plugin and scanning all of it with Semgrep - full dataset published if you want to do some sifting yourself, there's plenty of output I haven't looked at.
https://ift.tt/BJQv1iS
Submitted August 28, 2024 at 02:09AM by ezzzzz
via reddit https://ift.tt/uFs682D
https://ift.tt/BJQv1iS
Submitted August 28, 2024 at 02:09AM by ezzzzz
via reddit https://ift.tt/uFs682D
Research Blog | Project Black
CVE Hunting Made Easy
In just three Sunday afternoons, I discovered 14 CVEs - and you can too! CVE hunting is more accessible than many realise, and the methodology outlined here requires only a bit of coding knowledge.
Exploring inner workings of a random free android VPN
https://ift.tt/iM2kupX
Submitted August 28, 2024 at 03:59AM by tootac
via reddit https://ift.tt/umF0YDO
https://ift.tt/iM2kupX
Submitted August 28, 2024 at 03:59AM by tootac
via reddit https://ift.tt/umF0YDO
Greek geek
Exploring inner workings of a random free android VPN
Introduction Nothing special here. Got some free time to play around and decided to explore a free VPN from android play store in hopes to find something interesting, solve some riddle and just have fun. For this experiment I chose “BD NET VPN”. It is freely…
Microsoft Copilot: From Prompt Injection to Exfiltration of Personal Information
https://ift.tt/r5vUmhO
Submitted August 28, 2024 at 01:43PM by albinowax
via reddit https://ift.tt/1HWDLhb
https://ift.tt/r5vUmhO
Submitted August 28, 2024 at 01:43PM by albinowax
via reddit https://ift.tt/1HWDLhb
Embrace The Red
Microsoft Copilot: From Prompt Injection to Data Exfiltration of Your Emails
Vtiger CRM (<= 8.1.0) SQL Injection in MailManager module - Shielder
https://ift.tt/8Q9SrBa
Submitted August 28, 2024 at 03:47PM by smaury
via reddit https://ift.tt/v4Q5LrA
https://ift.tt/8Q9SrBa
Submitted August 28, 2024 at 03:47PM by smaury
via reddit https://ift.tt/v4Q5LrA
Shielder
Shielder - Vtiger CRM (<= 8.1.0) SQL Injection in MailManager module
Vtiger CRM <= 8.1.0 has a SQL injection vulnerability in the MailManager module.
Vtiger CRM (<= 8.1.0) Broken Access Control in Migration module - Shielder
https://ift.tt/mPbOGCh
Submitted August 28, 2024 at 03:46PM by smaury
via reddit https://ift.tt/7eTJQGp
https://ift.tt/mPbOGCh
Submitted August 28, 2024 at 03:46PM by smaury
via reddit https://ift.tt/7eTJQGp
Shielder
Shielder - Vtiger CRM (<= 8.1.0) Broken Access Control in Migration module
Vtiger CRM <= 8.1.0 does not correctly check user's privileges. A low-privileged user can interact directly with the `Migration` administrative module to disable arbitrary modules in the instance.
Here's What Really Caused 8.5 Million Computers to Crash
https://ift.tt/0cNv8Qx
Submitted August 28, 2024 at 08:04PM by SnooMuffins9844
via reddit https://ift.tt/jNmOMyI
https://ift.tt/0cNv8Qx
Submitted August 28, 2024 at 08:04PM by SnooMuffins9844
via reddit https://ift.tt/jNmOMyI
Betterstack
Here's What Really Caused 8.5 Million Computers to Crash
How one security product crippled the world because of bad programming
CVE-2024-38063 - Remotely Exploiting The Kernel Via IPv6
https://ift.tt/axmOsNP
Submitted August 29, 2024 at 01:40PM by sanitybit
via reddit https://ift.tt/tVjabWK
https://ift.tt/axmOsNP
Submitted August 29, 2024 at 01:40PM by sanitybit
via reddit https://ift.tt/tVjabWK
Malwaretech
CVE-2024-38063 - Remotely Exploiting The Kernel Via IPv6 – MalwareTech
Performing a root cause analysis & building proof-of-concept for CVE-2024-38063, a CVSS 9.8 Vulnerability In the Windows Kernel IPv6 Parser
Bypassing airport security via SQL injection
https://ian.sh/tsa
Submitted August 29, 2024 at 09:29PM by pimterry
via reddit https://ift.tt/z4amFn3
https://ian.sh/tsa
Submitted August 29, 2024 at 09:29PM by pimterry
via reddit https://ift.tt/z4amFn3
Bypassing airport security via SQL injection
We discovered a serious vulnerability in the Known Crewmember (KCM) and Cockpit Access Security System (CASS) programs used by the Transportation Security Administration.
Analysis of CVE-2024-43044 — From file read to RCE in Jenkins through agents
https://ift.tt/Rt95wVP
Submitted August 29, 2024 at 10:17PM by thewatcher_
via reddit https://ift.tt/Ej8lW9m
https://ift.tt/Rt95wVP
Submitted August 29, 2024 at 10:17PM by thewatcher_
via reddit https://ift.tt/Ej8lW9m
Conviso AppSec
Analysis of CVE-2024-43044 — From file read to RCE in Jenkins through agents
The Jenkins team released an advisory (CVE-2024-43044) for an arbitrary file read vulnerability that allows an agent to be able to read files
Careful Where You Code: Multiple Vulnerabilities in AI-Powered PR-Agent
https://ift.tt/05DVirf
Submitted August 30, 2024 at 12:32AM by tmlxs
via reddit https://ift.tt/Hh8nUkl
https://ift.tt/05DVirf
Submitted August 30, 2024 at 12:32AM by tmlxs
via reddit https://ift.tt/Hh8nUkl
Kudelski Security Research
Careful Where You Code: Multiple Vulnerabilities in AI-Powered PR-Agent
Introduction There is a push to use LLMs in all aspects of software engineering, far beyond merely generating code snippets. This push includes integration with code repositories and build systems.…
Reverse Engineering Set Top Boxes (Blog Series)
https://ift.tt/7VYtAGX
Submitted August 31, 2024 at 04:08AM by cc-sw
via reddit https://ift.tt/zxE1pVZ
https://ift.tt/7VYtAGX
Submitted August 31, 2024 at 04:08AM by cc-sw
via reddit https://ift.tt/zxE1pVZ
Realtime UAC spearphishing idea
https://ift.tt/G2A1NnB
Submitted August 31, 2024 at 06:54AM by david-song
via reddit https://ift.tt/V70O5Nd
https://ift.tt/G2A1NnB
Submitted August 31, 2024 at 06:54AM by david-song
via reddit https://ift.tt/V70O5Nd
The New York Times Exposed GitHub Token Breach
https://ift.tt/NdFrcjS
Submitted September 01, 2024 at 02:29PM by shahibrahem498
via reddit https://ift.tt/u2yj9H7
https://ift.tt/NdFrcjS
Submitted September 01, 2024 at 02:29PM by shahibrahem498
via reddit https://ift.tt/u2yj9H7
Clutch
Clutch | The New York Times Exposed GitHub Token Breach
Clutch - Resources Stay informed with the latest insights, trends, and updates on the Non-Human Identity landscape
WiFi auth with OsmoHLR/SIM cards
https://ift.tt/vH7bG2X
Submitted September 01, 2024 at 11:04PM by parski841
via reddit https://ift.tt/9wRVaZ6
https://ift.tt/vH7bG2X
Submitted September 01, 2024 at 11:04PM by parski841
via reddit https://ift.tt/9wRVaZ6
KittenLabs
WiFi auth with OsmoHLR/SIM cards
Using WPA-Enterprise with EAP-SIM to authenticate against a network using SIM cards
The state of sandbox evasion techniques in 2024
https://ift.tt/IfZQjKH
Submitted September 03, 2024 at 01:19AM by Fudgedotdotdot
via reddit https://ift.tt/tGXvm4r
https://ift.tt/IfZQjKH
Submitted September 03, 2024 at 01:19AM by Fudgedotdotdot
via reddit https://ift.tt/tGXvm4r
Learning Rust for fun and backdoo-rs
https://ift.tt/t75DzSE
Submitted September 03, 2024 at 01:21PM by 0xdea
via reddit https://ift.tt/ekQ94Vv
https://ift.tt/t75DzSE
Submitted September 03, 2024 at 01:21PM by 0xdea
via reddit https://ift.tt/ekQ94Vv
hn security
Learning Rust for fun and backdoo-rs - hn security
“Launch the Polaris The end doesn’t […]
Traceeshark: Deep Linux runtime visibility meets Wireshark
https://ift.tt/WFzywtU
Submitted September 03, 2024 at 02:28AM by Pale_Fly_2673
via reddit https://ift.tt/P42EIV5
https://ift.tt/WFzywtU
Submitted September 03, 2024 at 02:28AM by Pale_Fly_2673
via reddit https://ift.tt/P42EIV5
GitHub
GitHub - aquasecurity/traceeshark: Deep Linux runtime visibility meets Wireshark
Deep Linux runtime visibility meets Wireshark. Contribute to aquasecurity/traceeshark development by creating an account on GitHub.
AWS vs Azure: A "Secure by default" comparison
https://ift.tt/ChLEYrG
Submitted September 03, 2024 at 04:59PM by phoenixzeu
via reddit https://ift.tt/nFyOasN
https://ift.tt/ChLEYrG
Submitted September 03, 2024 at 04:59PM by phoenixzeu
via reddit https://ift.tt/nFyOasN
Security Café
AWS vs Azure: A “Secure by default” comparison
Whether you are in charge of deciding what Cloud solution to choose for your organization or you are a Security Professional trying to decide what Cloud technology to learn, when it comes to choosi…
Analysis of CVE-2024-37084: Spring Cloud Remote Code Execution
https://ift.tt/cO0skzV
Submitted September 03, 2024 at 04:56PM by SL7reach
via reddit https://ift.tt/cKaNjoC
https://ift.tt/cO0skzV
Submitted September 03, 2024 at 04:56PM by SL7reach
via reddit https://ift.tt/cKaNjoC
SecureLayer7 - Offensive Security, API Scanner & Attack Surface Management
CVE-2024-37084: Spring Cloud Remote Code Execution
CVE-2024-37084 is a critical security vulnerability in Spring Cloud Skipper, specifically related to how the application processes YAML input. The vulnerability arises from the use of the standard...