Aggregator
CVE-2025-23841 | Nikos M Top Flash Embed Plugin up to 0.3.4 on WordPress cross site scripting
CVE-2025-23827 | Strx Magic Floating Sidebar Maker Plugin up to 1.4.1 on WordPress cross site scripting
CVE-2025-23199 | librenms up to 24.10.x /ajax_form.php descr cross site scripting (GHSA-27vf-3g4f-6jp7)
CVE-2025-23200 | librenms up to 24.10.x ajax_form.php state cross site scripting (GHSA-c66p-64fj-jmc2)
CVE-2025-23201 | librenms up to 24.10.x /addhost community cross site scripting (GHSA-g84x-g96g-rcjc)
IBM 发布安全公告:安全验证目录存在严重安全漏洞
海云安开发者智能助手(D10)全面接入DeepSeek,赋能开发者安全高效编码新范式
开工大吉|金蛇启岁,好“巳”连连
2025年SCA工具推荐:悬镜源鉴SCA 4.8 揭秘,组件风险无处遁形,供应链资产透明无忧
sharem: ultimate Windows shellcode tool
sharem SHAREM is intended to be the ultimate Windows shellcode tool, with support to emulate over 12,000 WinAPIs, virtually all user-mode Windows syscalls, and SHAREM provides numerous new features. SHAREM was released on September...
The post sharem: ultimate Windows shellcode tool appeared first on Penetration Testing Tools.
CVE-2014-1214 | ProJoom Smart Flash Header up to 3.0.2 on Joomla views/upload.php Filename unrestricted upload (EDB-39088 / ID 12903)
Process Stomping: execute shellcode on an executable’s section
Process Stomping A variation of ProcessOverwriting to execute shellcode on an executable’s section What is it Process Stomping, is a variation of hasherezade’s Process Overwriting and it has the advantage of writing a shellcode payload on...
The post Process Stomping: execute shellcode on an executable’s section appeared first on Penetration Testing Tools.
PurpleOps: open-source self-hosted purple team management web application
PurpleOps PurpleOps is a free, open-source web app to track Purple Team assessments. Create assessments aligned with MITRE ATT&CK, leveraging data from sources like Atomic Red Team and SIGMA. Centralise blue and red team...
The post PurpleOps: open-source self-hosted purple team management web application appeared first on Penetration Testing Tools.