Aggregator
[译文] 恶意代码分析:5.解析Blackjack Group的Fuxnet恶意软件(工控攻击解析)
1 year 7 months ago
本文详细解析Blackjack的工控攻击,是来自Team82的文章。
[2024]黑产银狐木马最新变种分析,怎么越来越像APT了?
1 year 7 months ago
huoji APT,银狐 2024-08-17 18 次浏览 0 次点赞本文由 huoji 创作,采用 知识共享署名 3.0,可自由转载、引用,但需署名作者且注明文章出
Holonym Foundation Raises $5.5 Million To Provide Global Digital Personhood With Human Keys
1 year 7 months ago
**DELAWARE, United States, August 16th, 2024/Chainwire/--**Led by Finality Capital and Paper Venture
Edward Snowden's IoCs
1 year 7 months ago
Edward Snowden's IoCsI'm retiring.Personal domain: hxxp://lavabit.comPersonal email address
Exposing a SEC's EDGAR Securities Hacking Fraud Scheme Incident - And Where's the Beef?
1 year 7 months ago
Do you need a true Hollywood story where the hacker "knew the news" in advance before widespread pu
够快够强!30小时学CTF
1 year 7 months ago
适合新手入门
2024 KCTF 大赛 | 第二题《星际生物》解析
1 year 7 months ago
【崇文路大专】战队率先拿下本题“一血”
Obs164|將一篇英文文章製作成Anki閃卡的步驟,使用Yanki、ChatGPT(Copilot)與Note Splitter
1 year 7 months ago
由
Una bizzarra mail da una Questura italiana
1 year 7 months ago
A metà giugno scorso ho ricevuto una mail molto strana: una richiesta di informazioni apparentement
Порядок из хаоса: что объединяет рыб, птиц и магнитные частицы
1 year 7 months ago
Ученые разоблачают неочевидные связи между физикой и биологией.
Cosa Sono Le Blockchain Modulari: Data Availability, RaaS e Rollup
1 year 7 months ago
Le blockchain modulari sono specializzate nell'esecuzione di un'operazione specifica piuttosto che
CVE-2023-3409 | Bricks Plugin up to 1.8.1 on WordPress Setting reset_settings cross-site request forgery
1 year 7 months ago
A vulnerability, which was classified as problematic, has been found in Bricks Plugin up to 1.8.1 on WordPress. Affected by this issue is the function reset_settings of the component Setting Handler. The manipulation leads to cross-site request forgery.
This vulnerability is handled as CVE-2023-3409. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2023-3408 | Bricks Plugin up to 1.8.1 on WordPress Setting save_settings cross-site request forgery
1 year 7 months ago
A vulnerability classified as problematic was found in Bricks Plugin up to 1.8.1 on WordPress. Affected by this vulnerability is the function save_settings of the component Setting Handler. The manipulation leads to cross-site request forgery.
This vulnerability is known as CVE-2023-3408. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2023-5505 | BackWPup Plugin up to 4.0.1 on WordPress path traversal
1 year 7 months ago
A vulnerability classified as critical has been found in BackWPup Plugin up to 4.0.1 on WordPress. Affected is an unknown function. The manipulation leads to path traversal.
This vulnerability is traded as CVE-2023-5505. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
CVE-2023-3419 | tagDiv Opt-In Builder Plugin up to 1.4.4 on WordPress sql injection
1 year 7 months ago
A vulnerability was found in tagDiv Opt-In Builder Plugin up to 1.4.4 on WordPress. It has been rated as critical. This issue affects some unknown processing. The manipulation leads to sql injection.
The identification of this vulnerability is CVE-2023-3419. The attack may be initiated remotely. There is no exploit available.
vuldb.com
CVE-2023-0714 | Metform Elementor Contact Form Builder Plugin up to 3.2.4 on WordPress Double Extension unrestricted upload
1 year 7 months ago
A vulnerability was found in Metform Elementor Contact Form Builder Plugin up to 3.2.4 on WordPress. It has been declared as critical. This vulnerability affects unknown code of the component Double Extension Handler. The manipulation leads to unrestricted upload.
This vulnerability was named CVE-2023-0714. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2023-3416 | tagDiv Opt-In Builder Plugin up to 1.4.4 on WordPress sql injection
1 year 7 months ago
A vulnerability was found in tagDiv Opt-In Builder Plugin up to 1.4.4 on WordPress. It has been classified as critical. This affects an unknown part. The manipulation leads to sql injection.
This vulnerability is uniquely identified as CVE-2023-3416. It is possible to initiate the attack remotely. There is no exploit available.
vuldb.com
详解:L4LB四层负载均衡IP伪造漏洞
1 year 7 months ago
前言去年11月,在国家信息安全漏洞共享平台CNVD、国家信息安全漏洞库CNNVD报告过TOA的IP伪造漏洞,到今天快过去1年了,各受影响方也基本修复完毕,今天聊一下细节吧。回顾当初演示时,使用
详解:L4LB四层负载均衡IP伪造漏洞
1 year 7 months ago
去年报告过IP源地址伪造漏洞,到今天快过去一年了,到底是如何实现的?跟阿里的安全专家 pyn3rd 发现的是同一个漏洞吗?有人说简单的HTTP的Header追加伪造?有人说是修改返回包内容,本地欺骗?有人说这是装神弄鬼,炒冷饭? 今天就来聊下吧。
CFC4N