-
New paper: Collector-stealer: a Russian origin credential and information extractor
In a new paper, F5 researchers Aditya K Sood and Rohit Chaturvedi present a 360 analysis of Collector-stealer, a Russian-origin credential and information extractor. Read more Go to Source
-
VB2021 localhost videos available on YouTube
VB has made all VB2021 localhost presentations available on the VB YouTube channel, so you can now watch – and share – any part of the conference freely and without registration. Read more Go to Source
-
VB2021 localhost is over, but the content is still available to view!
VB2021 localhost – VB’s second virtual conference – took place last week, but you can still watch all the presentations. Read more Go to Source
-
VB2021 localhost call for last-minute papers
The call for last-minute papers for VB2021 localhost is now open. Submit before 20 August to have your paper considered for one of the slots reserved for ‘hot’ research! Read more Go to Source
-
New article: Run your malicious VBA macros anywhere!
Kurt Natvig explains how he recompiled malicious VBA macro code to valid harmless Python 3.x code. Read more Go to Source
-
CVE-2025-0214 – OpenCart TMD Custom Header Menu SQL Injection Vulnerability
CVE ID : CVE-2025-0214 Published : Jan. 4, 2025, 5:15 p.m. | 3 hours, 7 minutes ago Description : A vulnerability was found in TMD Custom Header Menu 4.0.0.1 on OpenCart. It has been rated as problematic. This issue affects some unknown processing of the file /admin/index.php. The manipulation of the argument headermenu_id leads to sql injection.…
-
CVE-2025-0213 – Campcodes Project Management System Remote Unrestricted File Upload Vulnerability
CVE ID : CVE-2025-0213 Published : Jan. 4, 2025, 5:15 p.m. | 3 hours, 8 minutes ago Description : A vulnerability was found in Campcodes Project Management System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /forms/update_forms.php?action=change_pic2&id=4. The manipulation of the argument file leads to unrestricted upload. The attack can…
-
CVE-2025-0212 – Campcodes Student Grading System SQL Injection
CVE ID : CVE-2025-0212 Published : Jan. 4, 2025, 4:15 p.m. | 4 hours, 7 minutes ago Description : A vulnerability was found in Campcodes Student Grading System 1.0. It has been classified as critical. This affects an unknown part of the file /view_students.php. The manipulation of the argument id leads to sql injection. It is possible…
-
CVE-2025-0211 – Campcodes School Faculty Scheduling System Remote File Inclusion Vulnerability
CVE ID : CVE-2025-0211 Published : Jan. 4, 2025, 3:15 p.m. | 5 hours, 7 minutes ago Description : A vulnerability was found in Campcodes School Faculty Scheduling System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /admin/index.php. The manipulation of the argument page leads to file inclusion. The…