Aggregator
从源码泄露到后台解密上传:分享 一次 .NET 实战渗透笔记
9 months 2 weeks ago
Sharp4WebCmd 再增强:无需 cmd.exe 实现任意命令和外部 EXE 文件的执行
9 months 2 weeks ago
.NET 2025 年第 79 期实战工具库和资源汇总
9 months 2 weeks ago
当前环境出现异常状态,需完成验证后才能继续访问服务。
从源码泄露到后台解密上传:分享 一次 .NET 实战渗透笔记
9 months 2 weeks ago
当前环境出现异常状态,请完成验证操作后继续访问相关内容或服务。
Sharp4WebCmd 再增强:无需 cmd.exe 实现任意命令和外部 EXE 文件的执行
9 months 2 weeks ago
当前环境出现异常状态,需完成验证后方可继续访问。文中提供了一个"去验证"的按钮。
JVN: トレンドマイクロ製ウイルスバスター クラウド(Windows版)におけるWindowsショートカット(.LNK)の不適切な取扱い(CVE-2025-52521)
9 months 2 weeks ago
トレンドマイクロ株式会社から、ウイルスバスター クラウド(Windows版)向けのアップデートが公開されました。
派早报:工信部试点隐私号专用号段 700
9 months 2 weeks ago
工信部试点隐私号专用700号段以减少手机号泄露风险;罗马仕因充电宝安全隐患召回产品并停工停产;微软Xbox高管建议被裁员工用AI稳定情绪;工信部发布移动互联网用户权益保护合规指南;iOS版Edge浏览器支持扩展功能;DeepSeek自有平台因用户体验不佳导致用户流失;TikTok计划在美国上架专用版本。
CVE-2002-1209 | SolarWinds TFTP Server 5.0.55 GET Request path traversal (EDB-21964 / Nessus ID 10333)
9 months 2 weeks ago
A vulnerability was found in SolarWinds TFTP Server 5.0.55. It has been rated as critical. Affected by this issue is some unknown functionality of the component GET Request Handler. The manipulation leads to path traversal.
This vulnerability is handled as CVE-2002-1209. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
RapidDNS 数据更新服务免费测试正式启动!
9 months 2 weeks ago
当前环境异常需完成验证后才能继续访问。
RapidDNS 数据更新服务免费测试正式启动!
9 months 2 weeks ago
RapidDNS 数据更新免费测试正式开启
李斌:蔚来亏损都在明处,财报很干净;小米 YU7 正式交付首批车主;华为盘古团队回应「抄袭」|极客早知道
9 months 2 weeks ago
当前环境出现异常问题,需完成验证后方能继续访问操作.
李斌:蔚来亏损都在明处,财报很干净;小米 YU7 正式交付首批车主;华为盘古团队回应「抄袭」|极客早知道
9 months 2 weeks ago
7 月 6 日消息,今天下午小米 YU7 正式交付首批车主,小米创办人、董事长兼 CEO 雷军为车主交付车辆,并合影、为车主开车门;充电宝召回原因为电池在生产过程中混入金属异物。
OpenAI says GPT-5 will unify breakthroughs from different models
9 months 2 weeks ago
OpenAI计划将现有模型整合至GPT-5中,提升推理与多模态能力。同时,报告指出2025年云攻击将利用简单技术实现复杂目标,揭示八大关键威胁。
新型Sinobi忍者勒索病毒分析
9 months 2 weeks ago
新型Sinobi忍者勒索病毒样本分析
新型Sinobi忍者勒索病毒分析
9 months 2 weeks ago
当前环境出现异常问题,需完成验证后方可继续访问相关内容或功能。
What I learned after being targeted by a 15-member black hat hacker group for 10 years
9 months 2 weeks ago
文章介绍了两种黑客:操作系统级别和硬件级别。操作系统级别黑客技术较浅,容易被清除;硬件级别黑客利用零日漏洞攻击硬件或固件,难以被发现且破坏性强。作者建议学习BIOS编程以成为顶级黑客。
OpenAI says GPT-5 will unify breakthroughs from different models
9 months 2 weeks ago
OpenAI has again confirmed that it will unify multiple models into one and create GPT-5, which is expected to ship sometime in the summer. [...]
Mayank Parmar
CVE-2013-1451 | Microsoft Internet Explorer 8/9 HTTP/HTTPS Request config (ID 57641 / EDB-24432)
9 months 2 weeks ago
A vulnerability has been found in Microsoft Internet Explorer 8/9 and classified as critical. This vulnerability affects unknown code of the component HTTP/HTTPS Request Handler. The manipulation leads to configuration.
This vulnerability was named CVE-2013-1451. The attack can be initiated remotely. Furthermore, there is an exploit available.
It is recommended to replace the affected component with an alternative.
vuldb.com
can somebody tell me what this code does? (Pretty sure its malware so dont try running it or anything)
9 months 2 weeks ago
该文章描述了一段恶意代码片段,用于通过Python pip安装特定模块并执行加密请求操作。