Aggregator
国内最专业、最全面的 [ .NET 代码审计 ] 体系化视频学习课程
红队快速打包,通过 Sharp4CompressArchive 一键定制化压缩文件
CVE-2024-57910 | Linux Kernel up to 6.1.124/6.6.71/6.12.9/6.13-rc6 regmap_read information disclosure (Nessus ID 215144 / WID-SEC-2025-0119)
CVE-2024-57909 | Linux Kernel up to 6.12.9/6.13-rc6 iio_for_each_active_channel information disclosure (WID-SEC-2025-0119)
CVE-2024-57908 | Linux Kernel up to 6.1.124/6.6.71/6.12.9/6.13-rc6 iio_for_each_active_channel information disclosure (Nessus ID 215144 / WID-SEC-2025-0119)
TripleCross: Linux eBPF rootkit
TripleCross TripleCross is a Linux eBPF rootkit that demonstrates the offensive capabilities of the eBPF technology. TripleCross is inspired by previous implant designs in this area, notably the works of Jeff Dileo at DEFCON...
The post TripleCross: Linux eBPF rootkit appeared first on Penetration Testing Tools.
The ShinyHunters Salesforce Attack: Vishing & OAuth Abuse Blamed for Qantas, Allianz, LVMH Breaches
Threat actors operating under the name ShinyHunters have orchestrated a series of cyberattacks targeting major corporations, including Qantas, Allianz Life, LVMH, and Adidas. Each incident centers around attempts to infiltrate client Salesforce environments through...
The post The ShinyHunters Salesforce Attack: Vishing & OAuth Abuse Blamed for Qantas, Allianz, LVMH Breaches appeared first on Penetration Testing Tools.
CVE-2024-57906 | Linux Kernel up to 6.1.124/6.6.71/6.12.9/6.13-rc6 iio_for_each_active_channel information disclosure (Nessus ID 215144 / WID-SEC-2025-0119)
CVE-2024-57907 | Linux Kernel up to 6.6.71/6.12.9/6.13-rc6 iio_for_each_active_channel information disclosure (Nessus ID 215144 / WID-SEC-2025-0119)
CVE-2024-57905 | Linux Kernel up to 6.12.9/6.13-rc6 information disclosure (Nessus ID 233479 / WID-SEC-2025-0119)
首届CCF智能汽车大赛(CCF IVC 2025) Mini-Venom(第一名)
首届CCF智能汽车大赛(CCF IVC 2025) Mini-Venom(第一名)
聚焦数据安全——看威努特如何保障企业合规运营
Storm-2603 Unleashes Warlock & LockBit Ransomware with Custom AK47 C2 Framework
Attacks linked to the Storm-2603 group continue to raise serious concerns within the cybersecurity community. This relatively obscure yet well-documented group, reportedly associated with China, has been implicated in the exploitation of recently discovered...
The post Storm-2603 Unleashes Warlock & LockBit Ransomware with Custom AK47 C2 Framework appeared first on Penetration Testing Tools.
CVE-2008-0474 | ManageEngine Applications Manager 8.1 Build 8100 showlink cross site scripting (EDB-20171 / XFDB-39914)
CVE-2008-0636 | Level Platforms Managed Workplace Service Center 6 information disclosure (EDB-31129 / BID-27702)
CVE-2008-7213 | mambo 4.6.2/4.6.3 connector.php Command cross site scripting (EDB-31066 / XFDB-39984)
CVE-2008-3712 | Mambo 4.6.2/4.6.5 mosConfig_sitename cross site scripting (EDB-32252 / XFDB-44503)
Microsoft to Block External Links in Excel, Phased Rollout Begins October 2025
Beginning in October 2025, Microsoft will implement sweeping measures to insulate Excel from potentially hazardous sources. A new default policy will block external links to certain file types, affecting all Excel users through a...
The post Microsoft to Block External Links in Excel, Phased Rollout Begins October 2025 appeared first on Penetration Testing Tools.