Aggregator
Pin hack
CVE-2012-1466 | NetMechanica NetDecision 4.5.1 information disclosure (EDB-18542 / XFDB-73531)
CVE-2012-5931 | Novell NetIQ 2.3.0/2.3.1 Privileged User Manager unifid.exe set_log_config path traversal (EDB-22737 / Nessus ID 63688)
CVE-2012-4958 | Novell File Reporter 1.0.2 NFRAgent.exe path traversal (VU#273371 / EDB-23323)
CVE-2012-4957 | Novell File Reporter 1.0.2 NFRAgent.exe path traversal (VU#273371 / EDB-23323)
CVE-2012-1464 | NetMechanica NetDecision 4.5.1 Installation information disclosure (EDB-18543 / Nessus ID 10297)
CVE-2012-5932 | Novell NetIQ 2.3.0/2.3.1 Privileged User Manager unifid.exe ldapagnt_eval Perl Code code injection (EDB-22738 / Nessus ID 63185)
Azure AD Vulnerability Leaks Credentials, Lets Attackers Deploy Malicious Apps
Exposing an ASP.NET Core appsettings.json file containing Azure Active Directory (Azure AD) credentials poses a critical attack vector, effectively handing adversaries the keys to an organization’s cloud environment. During a recent cybersecurity assessment by Resecurity’s HUNTER Team, researchers discovered that a publicly accessible appsettings.json file had exposed the ClientId and ClientSecret of an Azure AD application, […]
The post Azure AD Vulnerability Leaks Credentials, Lets Attackers Deploy Malicious Apps appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Threat Actors Exploit Windows Search in AnyDesk ClickFix Attack to Spread MetaStealer
In a novel twist on the year-long trend of ClickFix scams, threat actors have blended human-verification social engineering with the Windows search protocol to deliver MetaStealer, a commodity infostealer notorious for harvesting credentials and exfiltrating sensitive files. While the attack superficially resembles classic ClickFix and FileFix techniques, its unique infection chain—from a fake AnyDesk installer […]
The post Threat Actors Exploit Windows Search in AnyDesk ClickFix Attack to Spread MetaStealer appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Когда трубка молчит: как наладить связь с бабушкой после блокировки звонков в мессенджерах
Rovo Dev CLI – 可使用 Claude Sonnet 4、GPT-5 的免费 Claude Code,每天 2000 万 Token
CVE-2002-1677 | mrtgconfig 0.5.9 Error Message 14all.cgi cfg Path information disclosure (ID 10782 / XFDB-8070)
CVE-2002-1678 | Jelsoft vBulletin up to 2.2.4 memberlist.php $letterbits cross site scripting (ID 10547 / XFDB-8619)
CVE-2002-1707 | phpBB up to 2.0.1 install.php phpbb_root_dir privileges management (ID 10740 / XFDB-9370)
CVE-2002-1702 | Deltascripts Php Classifieds 6.0.5 URL cross site scripting (EDB-21552 / ID 10742)
OnionC2: The New C&C Framework for Anonymous Cyber Operations
OnionC2 is a command and control (C2) framework with communications over Tor network. It’s packed with privacy &
The post OnionC2: The New C&C Framework for Anonymous Cyber Operations appeared first on Penetration Testing Tools.