Npm Run Hack:Me - A Supply Chain Attack Journey
https://ift.tt/tOesCW3
Submitted March 11, 2025 at 09:42PM by unknownhad
via reddit https://ift.tt/zw3gier
https://ift.tt/tOesCW3
Submitted March 11, 2025 at 09:42PM by unknownhad
via reddit https://ift.tt/zw3gier
rxj.dev
Npm Run Hack:Me - A Supply Chain Attack Journey
I thought I was being recruited. Instead, I gave hackers access to my system by running a simple 'npm run start'. Discover how the tech details of this supply chain attack and how to protect yourself.
Detecting and Mitigating the Apache Camel Vulnerability CVE-2025-27636
https://ift.tt/Bu8EQfF
Submitted March 12, 2025 at 12:53AM by oridavid1231
via reddit https://ift.tt/9jua48D
https://ift.tt/Bu8EQfF
Submitted March 12, 2025 at 12:53AM by oridavid1231
via reddit https://ift.tt/9jua48D
Akamai
Detecting and Mitigating the Apache Camel Vulnerabilities | Akamai
Akamai researchers have created detection noscripts and additional details for the Apache Camel vulnerabilities CVE-2025-27636 and CVE-2025-29891.
Analysis of CVE-2025-24813 Apache Tomcat Path Equivalence RCE
https://ift.tt/MWNzETg
Submitted March 12, 2025 at 01:30PM by buherator
via reddit https://ift.tt/3cyljK1
https://ift.tt/MWNzETg
Submitted March 12, 2025 at 01:30PM by buherator
via reddit https://ift.tt/3cyljK1
scrapco.de
Lingua Diabolis | Analysis of CVE-2025-24813 Apache Tomcat Path Equivalence RCE
Impossible XXE in PHP
https://ift.tt/6tXB8N7
Submitted March 12, 2025 at 01:29PM by Fugitif
via reddit https://ift.tt/8B4LFY2
https://ift.tt/6tXB8N7
Submitted March 12, 2025 at 01:29PM by Fugitif
via reddit https://ift.tt/8B4LFY2
PT SWARM
Impossible XXE in PHP
Writing secure code today is easier than making a mistake that would lead to an XXE vulnerability. While examining a library, I wondered: is its code truly secure? At first glance, everything appeared to be filtered, and the function didn’t have the attributes…
Pre-authentication SQL injection to RCE in GLPI (CVE-2025-24799/CVE-2025-24801)
https://ift.tt/Jz784HA
Submitted March 12, 2025 at 04:23PM by uBaze
via reddit https://ift.tt/w51XGCV
https://ift.tt/Jz784HA
Submitted March 12, 2025 at 04:23PM by uBaze
via reddit https://ift.tt/w51XGCV
Ruthless Mantis - Modus Operandi
https://ift.tt/2jy5ceI
Submitted March 13, 2025 at 02:45AM by small_talk101
via reddit https://ift.tt/lDzTG9d
https://ift.tt/2jy5ceI
Submitted March 13, 2025 at 02:45AM by small_talk101
via reddit https://ift.tt/lDzTG9d
New Lumma Stealer campaign abuses Reddit threads to drop malware via fake WeTransfer links
https://ift.tt/TV8inWo
Submitted March 13, 2025 at 04:42AM by Individual-Gas5276
via reddit https://ift.tt/AULHB6k
https://ift.tt/TV8inWo
Submitted March 13, 2025 at 04:42AM by Individual-Gas5276
via reddit https://ift.tt/AULHB6k
Moonlock
Fake Reddit and WeTransfer pages are spreading malware
Lumma Stealer and AMOS are used in the campaign.
Identify the Security Problem First, Then Embrace AI
https://ift.tt/wshiHrd
Submitted March 13, 2025 at 01:21PM by repoog
via reddit https://ift.tt/8K2wCuJ
https://ift.tt/wshiHrd
Submitted March 13, 2025 at 01:21PM by repoog
via reddit https://ift.tt/8K2wCuJ
Medium
Identify the Problem First, Then Embrace AI
Recently, I paid attention to some open-source projects and technical articles related to security that involve large language models (LLMs). The authors emphasized the use of LLMs, but a closer look…
Sign in as anyone: Bypassing SAML SSO authentication with parser differentials
https://ift.tt/PDLZbg3
Submitted March 13, 2025 at 01:03PM by ulldma
via reddit https://ift.tt/dhrGNFb
https://ift.tt/PDLZbg3
Submitted March 13, 2025 at 01:03PM by ulldma
via reddit https://ift.tt/dhrGNFb
The GitHub Blog
Sign in as anyone: Bypassing SAML SSO authentication with parser differentials
Critical authentication bypass vulnerabilities were discovered in ruby-saml up to version 1.17.0. See how they were uncovered.
New all-in-one monitoring project with leaks, cve db, ransomware info, ddos target, and news
https://ift.tt/yf2c5M1
Submitted March 13, 2025 at 12:52PM by Electrical-Wish-4221
via reddit https://ift.tt/8isS4xd
https://ift.tt/yf2c5M1
Submitted March 13, 2025 at 12:52PM by Electrical-Wish-4221
via reddit https://ift.tt/8isS4xd
Cybermonit
Cybermonit is a modern platform for monitoring CVS vulnerabilities, data leaks, ransomware attacks and ongoing DDoS attacks, enabling rapid threat identification and effective response to cyber incidents.
Cradle.sh Open Source Threat Intelligence Hub
https://cradle.sh
Submitted March 13, 2025 at 07:50PM by small_talk101
via reddit https://ift.tt/fSdoX2Y
https://cradle.sh
Submitted March 13, 2025 at 07:50PM by small_talk101
via reddit https://ift.tt/fSdoX2Y
cradle.sh
CRADLE Intelligence Hub
Latest version: v2.10.0 CRADLE Intelligence Hub Batteries included collaborative knowledge management solution for threat intelligence researchers.
Brushing Up on Hardware Hacking Part 2 - SPI, UART, Pulseview, and Flashrom
https://ift.tt/a5hK3ID
Submitted March 13, 2025 at 09:10PM by wrongbaud
via reddit https://ift.tt/CGjuRYX
https://ift.tt/a5hK3ID
Submitted March 13, 2025 at 09:10PM by wrongbaud
via reddit https://ift.tt/CGjuRYX
Voidstar Security Research Blog
Brushing Up on Hardware Hacking Part 2 - SPI, UART, Pulseview, and Flashrom
Hacking a Low-Cost Electric Toothbrush
Memory Corruption in Delphi
https://ift.tt/lGxNHmq
Submitted March 14, 2025 at 02:59AM by 907jessejones
via reddit https://ift.tt/RNos3nU
https://ift.tt/lGxNHmq
Submitted March 14, 2025 at 02:59AM by 907jessejones
via reddit https://ift.tt/RNos3nU
Include Security Research Blog
Memory Corruption in Delphi - Include Security Research Blog
In our team's latest blog post, we build a few examples that showcase ways in which memory corruption vulnerabilities could manifest in Delphi code despite being included in a list of "memory safe" languages within a paper published by the NSA. We cover how…
Decrypting Encrypted files from Akira Ransomware (Linux/ESXI variant 2024) using a bunch of GPUs
https://ift.tt/LydpqoV
Submitted March 14, 2025 at 06:57AM by yohanes
via reddit https://ift.tt/efmcUwW
https://ift.tt/LydpqoV
Submitted March 14, 2025 at 06:57AM by yohanes
via reddit https://ift.tt/efmcUwW
Tinyhack.com
Decrypting Encrypted files from Akira Ransomware (Linux/ESXI variant 2024) using a bunch of GPUs
I recently helped a company recover their data from the Akira ransomware without paying the ransom. I'm sharing how I did it, along with the full source code.
The code is here: https://github.com/yohanes/akira-bruteforce
To clarify, multiple ransomware…
The code is here: https://github.com/yohanes/akira-bruteforce
To clarify, multiple ransomware…
Android Kernel Adventures: Insights into Compilation, Customization and Application Analysis
https://ift.tt/05Hw6CY
Submitted March 17, 2025 at 06:08AM by thewatcher_
via reddit https://ift.tt/qEArGx3
https://ift.tt/05Hw6CY
Submitted March 17, 2025 at 06:08AM by thewatcher_
via reddit https://ift.tt/qEArGx3
Medium
Android Kernel Adventures: Insights into Compilation, Customization and Application Analysis
This article marks the first in a series aimed at sharing my adventures, personal notes, and insights into the Android kernel. My focus…
History of NULL Pointer Dereferences on macOS
https://ift.tt/PxSYkG9
Submitted March 17, 2025 at 01:21PM by bajk
via reddit https://ift.tt/jVqiAS6
https://ift.tt/PxSYkG9
Submitted March 17, 2025 at 01:21PM by bajk
via reddit https://ift.tt/jVqiAS6
AFINE - digitally secure
History of NULL Pointer Dereferences on macOS - AFINE - digitally secure
Technical analysis of NULL Pointer Dereference bugs, mitigations, and exploit development challenges on Apple Silicon macOS.
Jaguar Land Rover Breached by HELLCAT Ransomware Group Using Its Infostealer Playbook—Then a Second Hacker Strikes
https://ift.tt/IaPXg0i
Submitted March 17, 2025 at 01:54PM by Malwarebeasts
via reddit https://ift.tt/FSKn5BR
https://ift.tt/IaPXg0i
Submitted March 17, 2025 at 01:54PM by Malwarebeasts
via reddit https://ift.tt/FSKn5BR
InfoStealers
Jaguar Land Rover Breached by HELLCAT Ransomware Group Using Its Infostealer Playbook—Then a Second Hacker Strikes
Stay informed with the latest insights in our Infostealers weekly report. Explore key findings, trends and data on info-stealing activities.
CVE-2025-24016: Unsafe Deserialization Vulnerability in Wazuh Leading to Remote Code Execution
https://ift.tt/0ezhAMy
Submitted March 17, 2025 at 04:13PM by amitschenedel
via reddit https://ift.tt/Jg2A0r9
https://ift.tt/0ezhAMy
Submitted March 17, 2025 at 04:13PM by amitschenedel
via reddit https://ift.tt/Jg2A0r9
Daily CVE Reports
CVE-2025-24016: Unsafe Deserialization Vulnerability in Wazuh Leading to Remote Code Execution
Deep dive into CVE-2025-24016 a critical remote code execution (RCE) vulnerability affecting Wazuh, a widely used open-source SIEM platform.
[Tool] TruffleShow: A Client-Side Web Viewer for TruffleHog Outputs
https://ift.tt/lM38u9z
Submitted March 17, 2025 at 06:47PM by pelesenk
via reddit https://ift.tt/MGxbYWh
https://ift.tt/lM38u9z
Submitted March 17, 2025 at 06:47PM by pelesenk
via reddit https://ift.tt/MGxbYWh
Bypassing Authentication Like It’s The ‘90s - Pre-Auth RCE Chain(s) in Kentico Xperience CMS - watchTowr Labs
https://ift.tt/Ec0sBNC
Submitted March 17, 2025 at 05:55PM by dx7r__
via reddit https://ift.tt/4ujiMQw
https://ift.tt/Ec0sBNC
Submitted March 17, 2025 at 05:55PM by dx7r__
via reddit https://ift.tt/4ujiMQw
watchTowr Labs
Bypassing Authentication Like It’s The ‘90s - Pre-Auth RCE Chain(s) in Kentico Xperience CMS
I recently joined watchTowr, and it is, therefore, time - time for my first watchTowr Labs blogpost, previously teased in a tweet of a pre-auth RCE chain affecting some ‘unknown software’.
Joining the team, I wanted to maintain the trail of destruction left…
Joining the team, I wanted to maintain the trail of destruction left…
SAMLStorm: Critical Authentication Bypass in xml-crypto and Node.js libraries
https://ift.tt/9VWJjKi
Submitted March 17, 2025 at 07:03PM by Smooth-Loquat-4954
via reddit https://ift.tt/L3cKYNP
https://ift.tt/9VWJjKi
Submitted March 17, 2025 at 07:03PM by Smooth-Loquat-4954
via reddit https://ift.tt/L3cKYNP
Workos
SAMLStorm: Critical Authentication Bypass in xml-crypto and Node.js libraries — WorkOS
Any service using xml-crypto or a Node.js SAML implementation using it, should update immediately to the latest version. WorkOS customers are safe and were not impacted.