Doing the Due Diligence: Analyzing the Next.js Middleware Bypass (CVE-2025-29927)
https://ift.tt/uTlfdnb
Submitted March 24, 2025 at 02:22PM by Mempodipper
via reddit https://ift.tt/mFuBcYR
https://ift.tt/uTlfdnb
Submitted March 24, 2025 at 02:22PM by Mempodipper
via reddit https://ift.tt/mFuBcYR
Searchlight Cyber
Doing the Due Diligence: Analyzing the Next.js Middleware Bypass (CVE-2025-29927) › Searchlight Cyber
This critical vulnerability allowed attackers to bypass authentication implemented in the middleware layer. With the popularity of this framework on the internet and within our customers' attack surfaces, our Security Research team took a deeper look at the…
Bypassing Detections with Command-Line Obfuscation
https://ift.tt/mx9KwMj
Submitted March 24, 2025 at 02:58PM by Wietze-
via reddit https://ift.tt/aKLw1cd
https://ift.tt/mx9KwMj
Submitted March 24, 2025 at 02:58PM by Wietze-
via reddit https://ift.tt/aKLw1cd
www.wietzebeukema.nl
Bypassing Detections with Command-Line Obfuscation
Defensive tools like AVs and EDRs rely on command-line arguments for detecting malicious activity. This post demonstrates how command-line obfuscation, a shell-independent technique that exploits executables’ parsing “flaws”, can bypass such detections. It…
Takumi, the AI Security Engineer | GMO Flatt Security Inc.
https://ift.tt/ANsLjCu
Submitted March 24, 2025 at 08:11PM by toyojuni
via reddit https://ift.tt/OfHjUvM
https://ift.tt/ANsLjCu
Submitted March 24, 2025 at 08:11PM by toyojuni
via reddit https://ift.tt/OfHjUvM
GMO Flatt Security
Takumi, the AI Security Engineer | GMO Flatt Security Inc.
Tuned by world-class offensive security experts, our AI agent, Takumi, uncovers critical vulnerabilities within your codebase that other tools miss, such as business logic bugs and broken authorizations. This allows you to receive actionable alerts with minimal…
Former U.S. Homeland Security Secretary Tom Ridge serves as a strategic advisor to CyberCatch, having inspired CEO Sai Huda to launch the company.
https://ift.tt/uwe7Z6B
Submitted March 24, 2025 at 10:56PM by Appropriate-Hunt-897
via reddit https://ift.tt/m3vV7IK
https://ift.tt/uwe7Z6B
Submitted March 24, 2025 at 10:56PM by Appropriate-Hunt-897
via reddit https://ift.tt/m3vV7IK
CyberCatch - AI-Enabled Cybersecurity Solution that enables compliance and cyber risk mitigation in 2 weeks or less.
A Special Message from The Honorable Tom Ridge
We are honored to have first U.S. Secretary of Homeland Security Tom Ridge on our team as Board Advisor. He inspired our CEO, Sai Huda, to found CyberCatch.
"How CyberCatch is using their AI-enabled platform for continuous compliance and risk mitigation" BNN Bloomberg LIVE Interview with CyberCatch CEO, Sai HudaSecurity
https://ift.tt/9uBFgo5
Submitted March 25, 2025 at 12:48AM by Appropriate-Hunt-897
via reddit https://ift.tt/b3hBaqD
https://ift.tt/9uBFgo5
Submitted March 25, 2025 at 12:48AM by Appropriate-Hunt-897
via reddit https://ift.tt/b3hBaqD
Frida 16.7.0 is out w/ brand new APIs for observing the lifecycles of threads and modules, a profiler, multiple samplers for measuring cycles/time/etc., MemoryAccessMonitor providing access to thread ID and registers, and more 🎉
https://ift.tt/ywoSest
Submitted March 25, 2025 at 04:01PM by oleavr
via reddit https://ift.tt/HEXD4ch
https://ift.tt/ywoSest
Submitted March 25, 2025 at 04:01PM by oleavr
via reddit https://ift.tt/HEXD4ch
Frida • A world-class dynamic instrumentation toolkit
Frida 16.7.0 Released
Observe and reprogram running programs on Windows, macOS, GNU/Linux, iOS, watchOS, tvOS, Android, FreeBSD, and QNX
Remote Code Execution Vulnerabilities in Ingress NGINX
https://ift.tt/gvlwsDf
Submitted March 25, 2025 at 05:18PM by albinowax
via reddit https://ift.tt/SIG5q2k
https://ift.tt/gvlwsDf
Submitted March 25, 2025 at 05:18PM by albinowax
via reddit https://ift.tt/SIG5q2k
wiz.io
CVE-2025-1974: The IngressNightmare in Kubernetes | Wiz Blog
Wiz Research uncovered RCE vulnerabilities (CVE-2025-1097, 1098, 24514, 1974) in Ingress NGINX for Kubernetes allowing cluster-wide secret access.
CVE-2024-55963: Unauthenticated RCE in Default-Install of Appsmith
https://ift.tt/ue9asPn
Submitted March 25, 2025 at 10:00PM by hackers_and_builders
via reddit https://ift.tt/IO9VG0J
https://ift.tt/ue9asPn
Submitted March 25, 2025 at 10:00PM by hackers_and_builders
via reddit https://ift.tt/IO9VG0J
Rhino Security Labs
CVE-2024-55963: Unauthenticated RCE in Default-Install of Appsmith
The Rhino research team decided to take a look at the Appsmith Enterprise Edition product. This led to the discovery of three new CVEs.
Next.js and the corrupt middleware: the authorizing artifact
https://ift.tt/aASjfCq
Submitted March 26, 2025 at 07:11AM by _PentesterLab_
via reddit https://ift.tt/HQarvGX
https://ift.tt/aASjfCq
Submitted March 26, 2025 at 07:11AM by _PentesterLab_
via reddit https://ift.tt/HQarvGX
zhero_web_security
Next.js and the corrupt middleware: the authorizing artifact
CVE-2025-29927
CodeQLEAKED – Public Secrets Exposure Leads to Potential Supply Chain Attack on GitHub CodeQL
https://ift.tt/fpdIUO8
Submitted March 26, 2025 at 09:43PM by IrohsLotusTile
via reddit https://ift.tt/EK8zZJR
https://ift.tt/fpdIUO8
Submitted March 26, 2025 at 09:43PM by IrohsLotusTile
via reddit https://ift.tt/EK8zZJR
Praetorian
CodeQLEAKED - Public Secrets Exposure Leads to Supply Chain Attack on GitHub CodeQL
An exposed GitHub token could have been used to launch a supply chain attack on GitHub CodeQL, resulting in source code exposure and repository tampering of CodeQL users.
Over 150K websites hit by full-page hijack linking to Chinese gambling sites
https://ift.tt/kWzBY72
Submitted March 26, 2025 at 09:24PM by unknownhad
via reddit https://ift.tt/1Eh7baR
https://ift.tt/kWzBY72
Submitted March 26, 2025 at 09:24PM by unknownhad
via reddit https://ift.tt/1Eh7baR
cside
Over 150K websites hit by full-page hijack linking to Chinese gambling sites
We estimate that approximately 150,000 websites have been impacted by this campaign. The noscript defines an array of keywords related to betting, gambling, and casino brands both in English and Chinese.
Llama's Paradox - Delving deep into Llama.cpp and exploiting Llama.cpp's Heap Maze, from Heap-Overflow to Remote-Code Execution
https://ift.tt/plIcAFd
Submitted March 26, 2025 at 10:09PM by moviuro
via reddit https://ift.tt/KRJ6LpU
https://ift.tt/plIcAFd
Submitted March 26, 2025 at 10:09PM by moviuro
via reddit https://ift.tt/KRJ6LpU
retr0.blog
Retr0's Register
Retr0's Threat Research
Behind the Schenes of a Chinese Phishing-As-A-Service: Lucid
https://ift.tt/WYzewmg
Submitted March 26, 2025 at 11:43PM by small_talk101
via reddit https://ift.tt/DBE6m3w
https://ift.tt/WYzewmg
Submitted March 26, 2025 at 11:43PM by small_talk101
via reddit https://ift.tt/DBE6m3w
smugglo – Bypass Email Attachment Restrictions with HTML Smuggling
https://ift.tt/wN3iWHv
Submitted March 25, 2025 at 03:24PM by b3rito
via reddit https://ift.tt/VmuHMzJ
https://ift.tt/wN3iWHv
Submitted March 25, 2025 at 03:24PM by b3rito
via reddit https://ift.tt/VmuHMzJ
GitHub
GitHub - b3rito/smugglo: smugglo - an easy to use noscript for wrapping files into self-dropping HTML payloads to bypass content…
smugglo - an easy to use noscript for wrapping files into self-dropping HTML payloads to bypass content filters - b3rito/smugglo
Blasting Past Webp - Google Project Zero
https://ift.tt/9WVp7Zc
Submitted March 27, 2025 at 06:02PM by poltess0
via reddit https://ift.tt/aq4ZHCp
https://ift.tt/9WVp7Zc
Submitted March 27, 2025 at 06:02PM by poltess0
via reddit https://ift.tt/aq4ZHCp
Blogspot
Blasting Past Webp
An analysis of the NSO BLASTPASS iMessage exploit Posted by Ian Beer, Google Project Zero On September 7, 2023 Apple issued an out-...
Blacklock Ransomware: A Late Holiday Gift with Intrusion into the Threat Actor's Infrastructure
https://ift.tt/WLwuaft
Submitted March 27, 2025 at 06:38PM by _vavkamil_
via reddit https://ift.tt/NS1gJlh
https://ift.tt/WLwuaft
Submitted March 27, 2025 at 06:38PM by _vavkamil_
via reddit https://ift.tt/NS1gJlh
I went to a security training for activists today, this is the manual they gave us, please tear it down or praise it
https://ift.tt/01BJh8U
Submitted March 28, 2025 at 11:47AM by [deleted]
via reddit https://ift.tt/Mt7pJxV
https://ift.tt/01BJh8U
Submitted March 28, 2025 at 11:47AM by [deleted]
via reddit https://ift.tt/Mt7pJxV
Sendgb
SendGB | Send Large Files | Free file transfer
Free and fast file sharing. Send large files easily. No registration required. We transfer files up to 5GB. File upload with great functions. Mail big file now!
Detect NetxJS CVE-2025-29927 efficiently and at scale
https://ift.tt/uFlie4L
Submitted March 28, 2025 at 02:25PM by Pepito_oh
via reddit https://ift.tt/pyaWGDX
https://ift.tt/uFlie4L
Submitted March 28, 2025 at 02:25PM by Pepito_oh
via reddit https://ift.tt/pyaWGDX
Patrowl
Blog: CVE-2025-29927 - Next.js - Patrowl
Betailing the GX text vulnerability, with an in-depth analysis and comprehensive research to make the study more thorough and exhaustive.
Feberis Pro: As one of first, I had and an opportunity to test new 4-in-1 Expansion Board for Flipper Zero
https://ift.tt/cwgnNaS
Submitted March 31, 2025 at 04:24PM by barakadua131
via reddit https://ift.tt/1IS6frK
https://ift.tt/cwgnNaS
Submitted March 31, 2025 at 04:24PM by barakadua131
via reddit https://ift.tt/1IS6frK
Mobile Hacker
Feberis Pro: The Ultimate 4-in-1 Expansion Board for Flipper Zero
In a previous blog post, I introduced Feberis, a versatile expansion board that enhanced the capabilities of the Flipper Zero by offering additional communication protocols. Now, I am excited to dive into the newly released Feberis Pro, a next-generation…
Oracle attempt to hide serious security incident from customers in Oracle SaaS service
https://ift.tt/jzhmeqK
Submitted March 31, 2025 at 06:38PM by Fugitif
via reddit https://ift.tt/RhuEOAU
https://ift.tt/jzhmeqK
Submitted March 31, 2025 at 06:38PM by Fugitif
via reddit https://ift.tt/RhuEOAU
Medium
Oracle attempt to hide serious cybersecurity incident from customers in Oracle SaaS service
Being a provider of cloud SaaS (Software-as-a-service) solutions requires certain cybersecurity responsibilities — including being…
Anatomy of an LLM RCE
https://ift.tt/iys3Ubt
Submitted March 31, 2025 at 05:53PM by FoxInTheRedBox
via reddit https://ift.tt/ZPIhsdl
https://ift.tt/iys3Ubt
Submitted March 31, 2025 at 05:53PM by FoxInTheRedBox
via reddit https://ift.tt/ZPIhsdl
Cyberark
Anatomy of an LLM RCE
As large language models (LLMs) become more advanced and are granted additional capabilities by developers, security risks increase dramatically. Manipulated LLMs are no longer just a risk of...