Aggregator
俄罗斯黑客利用新型 PathWiper 恶意软件,攻击乌克兰关键基础设施
Investigate Faster: From Data Collection to Actionable Intelligence with SANS FOR498
本地多语言AI字幕组:whisper实战教程
Whisper是OpenAI发布的一个开源自动语音识别(ASR)系统,它于 2022 年发布,目的是提供一个强大、通用、易于使用的语音转文本工具。
自从Whisper发布以后,市面上就涌现出大量“视频生成字幕”工具,但大部分工具都是要付费的,而且能在Windows和Linux下使用的较少。其实这部分工具就是将Whisper包装一层以后使用,我们完全可以直接在本地电脑上运行Whisper模型,...
CVE-2000-0169 | Oracle Application Server 4.0 on Win NT Web Listener /ows-bin privileges management (EDB-19809 / Nessus ID 57619)
美国2015-2025十年秘密行动全景解析
CVE-2025-5851 | Tenda AC15 15.03.05.19_multi HTTP POST Request /goform/AdvSetLanip fromadvsetlanip lanMask buffer overflow (EUVD-2025-17417)
CVE-2010-4610 | Html-edit CMS 3.1.8 index.php Error cross site scripting (EDB-15800 / ID 12463)
.NET 2025年第 75 期工具库和资源汇总
报名学习 | 国内最专业、最全面的 [ .NET 代码审计 ] 体系化视频学习课程
PNG中潜伏.NET攻击载体,红队借图突围EDR防线
CVE-2002-0419 | Microsoft IIS up to 5.1 NTLM Authentication information disclosure (EDB-21313 / Nessus ID 11871)
离开格力后,王自如首开直播回应;比亚迪回应「车圈恒大」风波;传 Meta 百亿美元投资 Scale AI | 极客早知道
CVE-2007-1675 | IBM Lotus Domino up to 6.5.5 Authentication Mechanism nimap.exe EasyBee memory corruption (Nessus ID 24903 / ID 74235)
CVE-2007-1680 | Yahoo! Messenger 8.0/8.0 2005.1.1.4/8.0.0.863/8.1.0.209/8.1.0.239 ActiveX Control yacscom.dll createandjoinconference stack-based overflow (VU#388377 / Nessus ID 24913)
CVE-2007-1681 | Sun Solaris 10.0 Java Web Console format string (Nessus ID 25072 / ID 86760)
CVE-2007-1689 | Symantec Norton Personal Firewall 2004 ActiveX Control islalert.dll Get memory corruption (VU#983953 / ID 34055)
CVE-2007-1683 | IncrediMail IMMenuShellExt ActiveX control ActiveX Control imshext.dll dowebmenuaction stack-based overflow (VU#906777 / EDB-3877)
Quiet Riot: enumeration tool for scalable, unauthenticated validation of AWS principals
Quiet Riot An enumeration tool for scalable, unauthenticated validation of AWS principals; including AWS Account IDs, root e-mail addresses, users, and roles. Featureploitation Limits Throttling After performing extensive analysis of scaling methods using the...
The post Quiet Riot: enumeration tool for scalable, unauthenticated validation of AWS principals appeared first on Penetration Testing Tools.
KubeAPI-Inspector: Discover the secrets hidden in apis
A tool specifically designed for Kubernetes environments aims to efficiently and automatically discover hidden vulnerable APIs within clusters. It reveals and demonstrates a common error through a workshop format, which could lead to API...
The post KubeAPI-Inspector: Discover the secrets hidden in apis appeared first on Penetration Testing Tools.