Aggregator
SHELLSILO: The Tool Translating C Code to Syscall Shellcode for Hackers
SHELLSILO is a cutting-edge tool that translates C syntax into syscall assembly and its corresponding shellcode. It streamlines
The post SHELLSILO: The Tool Translating C Code to Syscall Shellcode for Hackers appeared first on Penetration Testing Tools.
网络安全信息与动态周报2025年第43期(10月20日-10月26日)
【漏洞通告】Apache Tomcat RewriteValve 目录遍历漏洞 (CVE-2025-55752)
OpenVPN Flaw: RCE Bug Allows Command Injection via DNS Parameters
A vulnerability has been discovered in early builds of OpenVPN, allowing attackers to execute arbitrary commands on a
The post OpenVPN Flaw: RCE Bug Allows Command Injection via DNS Parameters appeared first on Penetration Testing Tools.
LG Uplus 确认数据泄露,韩国三大电信运营商相继失守
LG Uplus 确认数据泄露,韩国三大电信运营商相继失守
知名国际汇款公司西联汇款宣布将在Solana链上推出USDPT美元稳定币
BiDi Swap: New Phishing Trick Exploits Unicode to Forge Web Addresses
In a recent report, researchers from Varonis Threat Labs reminded the cybersecurity community of a deceptive technique used
The post BiDi Swap: New Phishing Trick Exploits Unicode to Forge Web Addresses appeared first on Penetration Testing Tools.
CVE-2025-64131 | SAML Plugin up to 4.583.vc68232f7018a_ on Jenkins improper authentication (Nessus ID 271958)
CVE-2025-64140 | Azure CLI Plugin up to 0.9 on Jenkins os command injection (Nessus ID 271958)
CVE-2025-9164 | Docker Desktop up to 4.48.0 Installer.exe uncontrolled search path (EUVD-2025-36191 / Nessus ID 271961)
CVE-2021-40870 | Aviatrix Controller 5.3.1516/5.4.1066/5.4.1204 pathname traversal (Nessus ID 271965)
CVE-2025-11374 | HashiCorp Consul/Consul Enterprise allocation of resources (EUVD-2025-36559 / Nessus ID 271966)
Vibe Coding: Google AI Studio Unveils Tool to Build AI Apps from Prompts
Google has unveiled a completely reimagined development experience within Google AI Studio, known as “vibe coding.” This new
The post Vibe Coding: Google AI Studio Unveils Tool to Build AI Apps from Prompts appeared first on Penetration Testing Tools.
KeePwn: automate KeePass discovery and secret extraction
KeePwn A python script to help red teamers discover KeePass instances and extract secrets. Features & Roadmap KeePass
The post KeePwn: automate KeePass discovery and secret extraction appeared first on Penetration Testing Tools.
简析《CISA战略重点:面向网络安全未来的CVE质量提升路线图》
PQC Readiness: Cloudflare Secures Half of Traffic Against ‘Harvest Now, Decrypt Later’ Threat
The transition to post-quantum cryptography is becoming increasingly tangible. At the end of October, Cloudflare reported that over
The post PQC Readiness: Cloudflare Secures Half of Traffic Against ‘Harvest Now, Decrypt Later’ Threat appeared first on Penetration Testing Tools.
New Windows 11 Feature Proactively Diagnoses Memory Issues After BSOD
Microsoft has begun testing a new Windows 11 feature that prompts users to run a memory diagnostic after
The post New Windows 11 Feature Proactively Diagnoses Memory Issues After BSOD appeared first on Penetration Testing Tools.