Aggregator
.NET 免杀新思路,基于 Emit 技术实现的 WebShell
.NET 总第 70 期红队武器库和资源汇总
五一快乐 | 技术成长不打烊,送您一份节日专属福利!
CVE-2019-7317 | Oracle Hyperion Infrastructure Technology 11.2.6.0 libpng denial of service (ID 371797 / BID-108098)
CVE-2020-11022 | Oracle Hospitality Cruise Shipboard Property Management System jQuery cross site scripting (EDB-49766 / Nessus ID 209233)
CVE-2019-11358 | Oracle Hyperion Planning 11.1.2.4/11.2.6.0 jQuery cross site scripting (Nessus ID 208606 / ID 176919)
CVE-2021-35560 | Oracle Java SE 8u301 Deployment Remote Code Execution
CVE-2021-35588 | Oracle Java SE 7u311/8u301 Hotspot denial of service
CVE-2021-35323 | bludit 3.13.1 Login Username cross site scripting (Issue 1327 / EDB-50529)
小米取消 SU7 Ultra 大马力限制 OTA;淘宝闪购上线,每天2个大红包;极客团队推《人生切割术》同款键盘 | 极客早知道
CVE-2012-4901 | Template CMS up to 2.1.1 admin/index.php themes_editor cross site scripting (EDB-21742 / BID-55766)
CVE-2021-31682 | Automated Logic WebCTRL/WebCTRL OEM up to 6.5 Login Portal operatorlocale cross site scripting (EDB-50463)
CVE-2021-41182 | jQuery-UI up to 1.12.x Datepicker Widget altField cross site scripting (GHSA-9gj3-hwp5-pmwc / Nessus ID 211078)
CVE-2021-41183 | jQuery-UI up to 1.12.x Datepicker Widget *Text cross site scripting (GHSA-j7qv-pgf6-hvh4 / Nessus ID 211078)
CVE-2021-41184 | jQuery-UI up to 1.12.x position of cross site scripting (GHSA-gpqq-952q-5327 / Nessus ID 211078)
TeamsPhisher: Send phishing messages and attachments to Microsoft Teams users
TeamsPhisher TeamsPhisher is a Python3 program that facilitates the delivery of phishing messages and attachments to Microsoft Teams users whose organizations allow external communications. It is not ordinarily possible to send files to Teams...
The post TeamsPhisher: Send phishing messages and attachments to Microsoft Teams users appeared first on Penetration Testing Tools.
Damn Vulnerable RESTaurant: An intentionally vulnerable Web API game for learning and training
Damn Vulnerable RESTaurant An intentionally vulnerable API service designed for learning and training purposes dedicated to developers, ethical hackers, and security engineers. The idea of the project is to provide an environment that can...
The post Damn Vulnerable RESTaurant: An intentionally vulnerable Web API game for learning and training appeared first on Penetration Testing Tools.
More From Our Main Blog: DragonForce Ransomware Gang | From Hacktivists to High Street Extortionists
DragonForce ransomware group is targeting major UK retailers. Learn about this evolving threat and what steps can be taken to mitigate risk.
The post DragonForce Ransomware Gang | From Hacktivists to High Street Extortionists appeared first on SentinelOne.