Aggregator
CVE-1999-0301 | Sun Solaris 2.3/2.4/2.5/2.5.1 ps Command memory corruption (ID 00149 / EDB-19168)
7 months 1 week ago
A vulnerability classified as critical has been found in Sun Solaris 2.3/2.4/2.5/2.5.1. This affects an unknown part of the component ps Command. The manipulation leads to memory corruption.
This vulnerability is uniquely identified as CVE-1999-0301. It is possible to launch the attack on the local host. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
基于伪随机数生成器的模型后门攻击
7 months 1 week ago
本文展示了一种全新的攻击,攻击者利用随机平滑机制中的随机性进行后门攻击,仅需进行极小的更改即可实现攻击且难以被检测。
蓝叠 BlueStacks Air - 免费 Mac 安卓模拟器 (支持苹果芯片 / 替代网易 Mumu)
7 months 1 week ago
支持 Apple M 芯片 手机数码, 虚拟模拟 Mac, Android 2025-01-06尽管微软曾在 WIndows 11 上加入「安卓子系统」让很多 Mac 用户羡慕。但
Is it possible to bruteforce a web page with js based auth
7 months 1 week ago
PLAYFULGHOST backdoor supports multiple information stealing features
7 months 1 week ago
PLAYFULGHOST backdoor supports multiple information stealing features
PLAYFULGHOST backdoor supports multiple information stealing features
7 months 1 week ago
PLAYFULGHOST is a new malware family with capabilities including keylogging, screen and audio capture, remote shell access, and file transfer/execution. Google researchers analyzed a new malware family called PLAYFULGHOST that supports multiple features, including keylogging, screen and audio capture, remote shell, and file transfer/execution. The PLAYFULGHOST backdoor shares functionality with Gh0st RAT whose source code was publicly released in […]
Pierluigi Paganini
CVE-2011-3422 | Apple Mac OS X up to 10.6.5 Keychain input validation (Nessus ID 57797 / ID 119919)
7 months 1 week ago
A vulnerability, which was classified as critical, has been found in Apple Mac OS X up to 10.6.5. Affected by this issue is some unknown functionality of the component Keychain. The manipulation leads to improper input validation.
This vulnerability is handled as CVE-2011-3422. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2011-3457 | Apple iOS up to 5.1.1 OpenGL memory corruption (APPLE-SA-2012-09-19-1 / Nessus ID 57797)
7 months 1 week ago
A vulnerability, which was classified as critical, was found in Apple iOS up to 5.1.1. This affects an unknown part of the component OpenGL. The manipulation leads to memory corruption.
This vulnerability is uniquely identified as CVE-2011-3457. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2011-3453 | Apple Mac OS X up to 10.7.1 numeric error (HT5130 / Nessus ID 57797)
7 months 1 week ago
A vulnerability classified as critical has been found in Apple Mac OS X up to 10.7.1. Affected is an unknown function. The manipulation leads to numeric error.
This vulnerability is traded as CVE-2011-3453. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2011-3489 | Rockwellautomation RSLogix 19 Utility RsvcHost.exe memory corruption (ID 119604 / XFDB-69808)
7 months 1 week ago
A vulnerability was found in Rockwellautomation RSLogix 19 and classified as problematic. Affected by this issue is some unknown functionality in the library RnaUtility.dll of the file RsvcHost.exe of the component Utility. The manipulation leads to memory corruption.
This vulnerability is handled as CVE-2011-3489. The attack may be launched remotely. There is no exploit available.
vuldb.com
伏魔挑战赛.NET赛道 | 分享一款启动任意系统进程的免杀WebShell
7 months 1 week ago
环境异常 当前环境异常,完成验证后即可继续访问。 去验证
.NET 内网攻防实战电子报刊
7 months 1 week ago
01.NET内网安全攻防报刊小报童电子报刊【.NET内网安全攻防】也正式上线了,引入小报童也是为了弥补知识星球对于轻量级阅读支持的不足,为用户读者提供更佳的阅读体验。如果您对阅读体验的需求比较高,那么
.NET 一款域渗透执行密码喷射的工具
7 months 1 week ago
此文所提供的信息只为网络安全人员对自己所负责的网站、服务器等进行检测或维护参考,未经授权请勿利用文章中的技术资料对任何计算机系统进行入侵操作。利用此文所提供的信息而造成的直接或间接后果和损失,均由使用
伏魔挑战赛.NET赛道 | 分享一款启动任意系统进程的免杀WebShell
7 months 1 week ago
.NET 内网攻防实战电子报刊
7 months 1 week ago
.NET 一款域渗透执行密码喷射的工具
7 months 1 week ago
CVE-2004-1691 | Rhinosoft DNS4Me 3.0.0.4 Data resource consumption (EDB-24610 / XFDB-17426)
7 months 1 week ago
A vulnerability classified as problematic was found in Rhinosoft DNS4Me 3.0.0.4. Affected by this vulnerability is an unknown functionality of the component Data Handler. The manipulation leads to resource consumption.
This vulnerability is known as CVE-2004-1691. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
鸿蒙应用签名实操及机制探究
7 months 1 week ago
1. 背景华为鸿蒙单框架操作系统HarmonyOS NEXT已于2024年10月23日正式发布Release版。HarmonyOS NEXT仅支持鸿蒙原生应用,不再兼容安卓。本文对鸿蒙公开资料进行了深
CISOs’ Top Cybersecurity Threats 2025: Scattered Spider, Deepfakes, and More
7 months 1 week ago
In September 2024, Scattered