Aggregator
.NET 总第 66 期红队武器库和资源汇总
8 months 2 weeks ago
git-alerts: detect and monitor GitHub org users’ public repositories for secrets and sensitive files
8 months 2 weeks ago
GitAlerts GitHub repositories created under any organization can be controlled by the GitHub administrators. However, any repository created under an organization’s user account is not controllable unless the organization has adopted the GitHub enterprise-managed...
The post git-alerts: detect and monitor GitHub org users’ public repositories for secrets and sensitive files appeared first on Penetration Testing Tools.
ddos
美 7 巨头市值蒸发1.5万亿美元;微软50周年曝大量 AI 新产品;Altman:GPT-5 几个月内发布 | 极客早知道
8 months 2 weeks ago
知情人士回应余承东卸任车 BU 董事长:并非不管汽车业务,更加聚焦华为终端与鸿蒙智行
美 7 巨头市值蒸发1.5万亿美元;微软50周年曝大量 AI 新产品;Altman:GPT-5 几个月内发布 | 极客早知道
8 months 2 weeks ago
知情人士回应余承东卸任车 BU 董事长:并非不管汽车业务,更加聚焦华为终端与鸿蒙智行
美 7 巨头市值蒸发1.5万亿美元;微软50周年曝大量 AI 新产品;Altman:GPT-5 几个月内发布 | 极客早知道
8 months 2 weeks ago
知情人士回应余承东卸任车 BU 董事长:并非不管汽车业务,更加聚焦华为终端与鸿蒙智行
hashdb-ida: Malware string hash lookup plugin for IDA Pro
8 months 2 weeks ago
HashDB IDA Plugin Malware string hash lookup plugin for IDA Pro. This plugin connects to the OALABS HashDB Lookup Service. Adding New Hash Algorithms The hash algorithm database is open source and new algorithms can...
The post hashdb-ida: Malware string hash lookup plugin for IDA Pro appeared first on Penetration Testing Tools.
ddos
Deploy a 'hello world' model serving using triton server without GPU
8 months 2 weeks ago
Terenceli
[webapps] Next.js Middleware 15.2.2 - Authorization Bypass
8 months 2 weeks ago
Next.js Middleware 15.2.2 - Authorization Bypass
[webapps] Kubio AI Page Builder 2.5.1 - Local File Inclusion (LFI)
8 months 2 weeks ago
Kubio AI Page Builder 2.5.1 - Local File Inclusion (LFI)
[webapps] Exclusive Addons for Elementor 2.6.9 - Stored Cross-Site Scripting (XSS)
8 months 2 weeks ago
Exclusive Addons for Elementor 2.6.9 - Stored Cross-Site Scripting (XSS)
[webapps] Royal Elementor Addons and Templates 1.3.78 - Unauthenticated Arbitrary File Upload
8 months 2 weeks ago
Royal Elementor Addons and Templates 1.3.78 - Unauthenticated Arbitrary File Upload
[remote] Microchip TimeProvider 4100 Grandmaster (Data plot modules) 2.4.6 - SQL Injection
8 months 2 weeks ago
Microchip TimeProvider 4100 Grandmaster (Data plot modules) 2.4.6 - SQL Injection
[webapps] IBM Security Verify Access 10.0.0 - Open Redirect during OAuth Flow
8 months 2 weeks ago
IBM Security Verify Access 10.0.0 - Open Redirect during OAuth Flow
CVE-2025-3083
8 months 2 weeks ago
Currently trending CVE - Hype Score: 1 - Specifically crafted MongoDB wire protocol messages can cause mongos to crash during command validation. This can occur without using an authenticated connection. This issue affects MongoDB v5.0 versions prior to 5.0.31, MongoDB v6.0 versions prior to 6.0.20 and MongoDB v7.0 ...
CVE-2025-30095
8 months 2 weeks ago
Currently trending CVE - Hype Score: 10 - VyOS 1.3 through 1.5 (fixed in 1.4.2) or any Debian-based system using dropbear in combination with live-build has the same Dropbear private host keys across different installations. Thus, an attacker can conduct active man-in-the-middle attacks against SSH connections if ...
CVE-2025-0676
8 months 2 weeks ago
Currently trending CVE - Hype Score: 10 - This vulnerability involves command injection in tcpdump within Moxa products, enabling an authenticated attacker with console access to exploit improper input validation to inject and execute systems commands. Successful exploitation could result in privilege escalation, ...
CVE-2025-0401
8 months 2 weeks ago
Currently trending CVE - Hype Score: 1 - A vulnerability classified as critical has been found in 1902756969 reggie 1.0. Affected is the function download of the file src/main/java/com/itheima/reggie/controller/CommonController.java. The manipulation of the argument name leads to path traversal. It is possible to ...
Daily Dose of Dark Web Informer - 4th of April 2025
8 months 2 weeks ago
This daily article is intended to make it easier for those who want to stay updated with my regular Dark Web Informer and X/Twitter posts.
Dark Web Informer - Cyber Threat Intelligence
Threat Attack Daily - 4th of April 2025
8 months 2 weeks ago
Threat Attack Daily - 4th of April 2025
Dark Web Informer - Cyber Threat Intelligence